VX Fiber is an international broadband provider serving municipalities and enterprises that have their own fiber networks. With 80 employees and a rapidly growing infrastructure, cybersecurity has become a core priority. “Security is such a key issue now that it’s reported directly to the board,” says Tim Cambrant, Chief Security Officer at VX Fiber.
Bringing in an external partner became essential
Before working with Cyloq, security at VX Fiber was handled by a capable internal team. But something was missing. “We had good processes and the right mindset. But we realized that customers and investors started to expect third-party validation.” Tim explains.
As the company scaled up, the stakes grew. “The more customers we serve, the more critical we become to society. Questions concerning security now come up in sales meetings. We need to be able to show that our structure actually holds up.”
Even with strong in-house talent, the team knew: no matter how well you think you're doing, you need someone from the outside to challenge your assumptions.
“We wanted a clear picture of where we stood and someone independent to back it up.”
When VX Fiber started looking for a security partner, they didn’t want a big-box consultancy. They wanted someone who was agile, responsive, and easy to work with.
“They weren’t like the big vendors. They were easy to get in contact with, they were small and adaptable, and clearly ready to do the actual work instead of trying to sell a massive package.” After an initial meeting, VX Fiber brought in Cyloq to run a penetration test.
Penetration tests are now part of the policy
Tim admits they initially weren’t sure how much Cyloq would find in just two weeks.
“We had people on standby, ready to help or answer questions. But Cyloq didn’t need much. They just went in and got to work.”
Two weeks later, Cyloq delivered their report. The results spoke for themselves.
“Honestly, we were surprised by how much they found. Of course you want them to find something, but you still hope it’s not much. They dug deep, they were thorough, and it felt like they put in more time than they billed for.”
The process was smooth and effective. “We explain what we want them to focus on, grant access to relevant systems, and they take it from there. If something critical shows up, they let us know right away. They also offer to explain the results and assist with the fixes”
VX Fiber has now worked with Cyloq on three separate penetration tests and has made it policy to run one at least once a year. Each test targets a different area of the business, and when everything’s been tested, they start over.
“It’s not a one-off. It’s a continuous process. We rotate areas and keep the cycle going.”
Clear results and a stronger security culture
“The biggest shift is clarity. We now have a clear picture of our vulnerability profile. Cyloq gave us that external stamp of approval, which matters to our customers, our board, and our investors.”
But the impact wasn’t just structural, Cyloq reshaped the company’s security culture. “We have a young development team. Working with Cyloq gave them a new level of respect for security. They’ve seen firsthand why external reviews matter.”
“It’s not enough to have in-house experts. We all have blind spots. This partnership has shown us that no matter how thorough we think we are, we’ve definitely missed something. It’s raised awareness that even the most experienced people can overlook critical details, and we always need someone else reviewing what we do.”
Advice for other companies looking to tighten up security
Tim’s first tip: start with an honest audit.
“What are you trying to protect? For most, it’s customer data. Then take a hard look at access controls and storage practices. Smaller companies often overlook simple things, and what leaks is usually a document stored in the wrong place.”
His second tip: don’t do it alone.
“Not every company can afford a large security team. But even if you manage IT yourself, you need a third party to identify and close security gaps.”
Would they recommend Cyloq? No hesitation.
When asked if they would recommend Cyloq to others, the answer is clear:
“Definitely. They’re easy to work with, they’re fast, flexible, and knowledgeable. They deliver value and make our security efforts easier.”
“We see no reason to switch – or even supplement – with anyone else. So far, we haven’t given them a challenge they couldn’t handle.”
Want us to find the vulnerabilities you didn’t know were there?
Book a meeting