Software Development, Testing & Security
Marcel Depré
Specializing in IEC 62443-4-1/4-2 for secure development and lifecycle management.
Implementing ISO/IEC 27001 with specialized add-ons and EU-driven CRA compliance to deliver comprehensive security management.
Services
Software development and security services for Dutch and European organizations
Software Architecture
- ✓ Enterprise system design
- ✓ Microservices architecture
- ✓ API development & integration
- ✓ Cloud-native solutions
Building reliable systems with modern technologies
Industrial Cybersecurity
- ✓ IEC 62443-4-1 secure product development
- ✓ IEC 62443-4-2 lifecycle security requirements
- ✓ Threat modeling & security validation
EU-driven standards for industrial control systems
Organizational Security
- ✓ ISO/IEC 27001 implementation
- ✓ ISO/IEC 27034 application security
- ✓ ISO/IEC 29147 vulnerability disclosure
- ✓ ISO/IEC 30111 vulnerability handling
Comprehensive security management systems
Software Testing & QA
- ✓ End-to-end (E2E) testing
- ✓ Dynamic application security testing (DAST)
- ✓ Test automation frameworks
- ✓ CI/CD integration & quality gates
Active development with a focus on testing excellence
Digital Platform
EU-Cyber-Laws.com
Born from frustration with traditional compliance approaches — transforming cybersecurity from checkbox bureaucracy to engaging, accessible practice for developers and auditors alike.
The Problem
Most companies approach DSA, CRA, and cybersecurity compliance through:
- • Endless paperwork and bureaucratic forms
- • Checkbox mentality without real understanding
- • Lack of structure and clear implementation paths
- • Disconnect between security teams and developers
- • Compliance seen as burden, not value-add
The Security Driven Mindset
My vision: cybersecurity accessible to every SDLC stakeholder through:
- • Bottom-up approach that motivates teams
- • Clear targets within reach, showing added value
- • Tools that make compliance work engaging
- • DevOps integration: CI/CD, SBOM, DAST, AI reviews
- • Audit trails and documentation that actually help
Transforming compliance from burden to competitive advantage
Current Work
ABB SpiritIt
Software Security & Compliance Specialist
Leading IEC 62443-4-1/4-2 security implementation with CRA compliance for industrial control systems.
- • IEC 62443-4-1 secure product development
- • IEC 62443-4-2 lifecycle security requirements
- • ISO/IEC 27001 security management
EU-Cyber-Laws.com
Founder & Owner
Information platform for EU cybersecurity compliance requirements.
- • Compliance Tools
- • Regulatory Guidance
- • Expert Resources
Depré.nl
Independent Consultancy
Independent consulting in software development, security, and compliance.
- • Software Testing & QA (E2E, DAST)
- • Security Consulting
- • Technical Leadership
- • Active Development Projects
Approach
Focus areas for software development and security
IEC 62443 Expert
Specialized in secure SDLC for industrial systems
CRA Ready
Expert in EU Cyber Resilience Act compliance
25+ Years
Proven track record since 1996
Local & International
Support in Dutch, English, and German
Ready to Transform Your Business?
Let's Discuss Your Next Project
From security architecture to regulatory compliance, I bring the expertise needed to ensure your technology initiatives succeed.
Trusted by enterprises across Europe • 25+ years of excellence