Let’s talk
Book a demo with our experienced team!
We’ll walk you through how to boost your application’s speed and reduce computational costs.
Sundbybergs Stad is a growing municipality in the Stockholm region. As the city expands and its operations become more digital, the need for strong cybersecurity keeps growing. To stay ahead of both current and emerging threats, the city has committed to an ongoing collaboration with Cyloq, built around regular penetration tests, weekly vulnerability scans, and close strategic alignment.
A long-term partner who understands our IT environment
Before working with Cyloq, the city’s approach to security was more reactive than proactive. Tests and scans were run from time to time, but without a consistent structure. That’s something IT Security Strategist Klas Strömberg set out to change.
Through a formal procurement process involving several vendors, Sundbybergs Stad chose Cyloq and signed a four-year contract covering penetration testing and vulnerability scanning.
“We wanted a long-term agreement so we could test continuously and adjust based on real-world threats,” says Klas. “That means we use different methods and different targets each time, and it’s always adapted to what’s most important right now.”
One of the biggest advantages of the long-term deal is that Cyloq now knows Sundbyberg’s IT environment inside and out. With ongoing dialogue between the teams, Cyloq can make proactive recommendations based on live threat intelligence, while Sundbyberg can request specific assessments tied to current needs.
“They understand our environment now and tailor suggestions based on real-world threats. That’s incredibly valuable.”
A smooth process and reports that drive action
You can’t test everything at once. You have to be intentional and focus on what matters most. Together with Cyloq, they agree on a scenario or an area to focus on for each test.
“We usually run it in two phases. First a broad mapping, then we regroup and decide what to drill deeper into.”
After each test, Cyloq delivers a detailed report.
“The reports are clear, well-structured, and easy to act on. They give us everything we need to fix and close off any identified vulnerabilities. Most of the time, our internal team handles the fixes, but Cyloq is always there when we need a hand.”
Today, Sundbybergs Stad runs two to three penetration tests per year, and weekly vulnerability scans to maintain constant visibility.
Fewer risks. Fewer unknowns.
The goal of the continuous testing was clear from the beginning: reduce risk, close gaps, and do it before someone else finds them. And it’s working.
“We’ve got fewer vulnerabilities in the environment, and that was the whole point. Cyloq helps us spot weak points early and fix them fast, before they turn into real problems.”
But the impact goes beyond technical fixes. The reports have also helped spark deeper internal conversations and increase security awareness among the internal IT staff.
“Sometimes you need an external perspective. Otherwise, it’s too easy to go blind to your own assumptions.”
Cyloq delivers. And yes, Sundbyberg recommends them.
One of the biggest advantages of working with Cyloq, Klas says, is how responsive they are.
“If something comes up, we get immediate feedback. Cyloq is fast and incredibly easy to work with.”
So, would he recommend Cyloq to other organizations?
“Absolutely. They know what they’re doing, and they genuinely care about delivering great results. The personal connection and engagement we get from Cyloq is on a totally different level from what we’ve seen with larger vendors.”