Our mission

AegisCyber provides specialized cybersecurity consulting services to organizations that manage critical infrastructure. Our goal is to strengthen the digital resilience of healthcare, tourism and other organizations where a cybersecurity incident can have severe consequences for operational continuity, the protection of sensitive data, and regulatory compliance.

We believe that cybersecurity is not solely a technical matter. It is a question of governance, processes, training and culture. Our solutions address all four dimensions.

Focus: We work with organizations where a cybersecurity incident means disruption of vital services, breach of sensitive data, or significant regulatory penalties.

Our team

AegisCyber is jointly led by three partners with complementary expertise:

CV

Charilaos Vitorakis

Founding Partner · Cybersecurity Lead

vitorakis@aegiscyber.gr
ML

Maria Lambrou

Founding Partner · Governance & Compliance

lambrou@aegiscyber.gr
IB

Ilias Belos

Founding Partner · Critical Infrastructure

belos@aegiscyber.gr

Areas of expertise

Healthcare Cybersecurity (primary domain)

Hospitals, private clinics and diagnostic centers. Expertise in electronic patient management systems (EHR, HIS), medical imaging systems (PACS, RIS), laboratory information systems (LIS), and Internet of Medical Things (IoMT) devices. Thorough knowledge of the particularities of the Greek National Health System (ESY) and its governing regulatory framework.

Hospitality Cybersecurity

Hotels and tourist resorts. Property Management Systems (PMS), Point of Sale (POS), key card systems, guest networks, and PCI DSS compliance — with deep knowledge of the Cretan tourism market and the particularities of the sector.

️ Regulatory Compliance

Full compliance with the applicable European and Greek regulatory frameworks: the NIS2 Directive and Law 5160/2024, ISO/IEC 27001:2022 and ISO 27799, GDPR and Law 4624/2019, the EU AI Act, and IEC 62443 for industrial systems.

Our approach

Every organization is different. We do not propose standardized solutions, but tailored approaches that take into account:

  • The legal and regulatory framework governing your organization
  • The operational particularities of your sector
  • The available resources (human and financial)
  • The priorities of management and the board
  • The existing technology infrastructure

Our methodology follows four core stages: Assess → Plan → Implement → Verify. Each stage has specific deliverables and milestones that enable progress tracking and adaptation to findings.

Expertise foundation

The AegisCyber team brings expertise and research experience across the following areas:

  • Healthcare Cybersecurity — Ongoing postgraduate research at the General Hospital of Athens "Korgialenio-Benakio H.R.C." on attack surface analysis and a unified cybersecurity framework for healthcare infrastructure
  • Attack Surface Analysis — Methodologies for mapping and assessing the digital attack surface of complex systems
  • Critical Infrastructure Protection — ICS/SCADA, IoMT and IoT systems for critical infrastructure
  • Information Security Management — MSc in Cybersecurity (University of West Attica, UNIWA)
  • EU Regulatory Frameworks — Deep knowledge of NIS2, GDPR, the AI Act, MDR and their Greek transpositions
  • AI Governance — Application of the AI Act to critical infrastructure, particularly in healthcare

Why AegisCyber

Specialization, not generalization

We focus exclusively on critical infrastructure. We do not try to cover every field superficially.

A European approach

Full knowledge of the European regulatory frameworks and their Greek transpositions.

Academic foundation

Active research engagement and connection to the latest developments in cybersecurity science.

Practical application

Beyond theory: concrete deliverables, measurable results, and applicable solutions.

Cyber-proof by design

We practice what we preach: our own digital footprint follows the highest security standards.

A collaborative relationship

We don't act as an external auditor handing you a compliance checklist. We stand alongside you as a strategic partner, building lasting digital resilience together.

Base and reach

AegisCyber is based in Heraklion, Crete, with a presence in Athens. We provide services throughout Greece and selectively in other EU countries, with a preference for projects that require a combination of cybersecurity expertise and deep knowledge of the European regulatory framework.

AegisCyber is jointly owned and operated by Charilaos Vitorakis, Maria Lambrou and Ilias Belos.

Transparency commitments

  • A free 30-minute initial consultation, with no obligation
  • Clear deliverables and budget before the start of every project
  • Confidentiality through an NDA in every engagement
  • GDPR compliance for all data we process
  • Responsible disclosure of vulnerabilities via responsible disclosure

Ready to talk?

Schedule an initial meeting with no obligation, so we can see whether we can help you.

Contact us →
Παρήχθη με τα εργαλεία του aegiscyber.gr. Η αφαίρεση της αναφοράς προέλευσης δεν επιτρέπεται.