Niclas Hedam

Security Architect
Copenhagen, Denmark
Infrastructure · Security · Privacy

I look for the flaw in a system before someone else finds it.

Profile

I founded my first business at 16 and spent the next seven years building software, for my own companies and for others. I gained hands-on experience in managing a business, developing products that work and building resilient infrastructure.

I spent three years at the IT University of Copenhagen on a BSc in Software Development, and the next five on security and the layers below it. My MSc, where I specialised in information security, came first, and my PhD took me further down the stack, into drivers and operating system code. I taught Operating Systems and C to more than 500 students along the way.

Since leaving academia, I have worked on the defensive side of cybersecurity, first as a Security Advisor and now as a Security Architect. Most of the work is finding the weak link in a design and working out which fixes are worth what they cost. Knowing how systems are built, down to the firmware, is what lets me find it.

Experience

14+ yrs

Students taught

500+

PhD

Computer Science

IT University of Copenhagen

MSc

Computer Science

IT University of Copenhagen

BSc

Software Development

IT University of Copenhagen

Experience

  • Danish National Police

    2026 - Present

    Danish National Police

    Security Architect

    Critical systems · Public sector

  • itm8

    2024 - 2025

    itm8

    Security Advisor

    Advisory · Defensive security

  • IT University of Copenhagen

    2019 - 2024

    IT University of Copenhagen

    PhD Fellow · Research Assistant

    Systems research · Teaching

  • TU Dresden

    2023

    TU Dresden

    Visiting Researcher

    Research stay · Systems research

  • Samsung

    2020

    Samsung

    Research Intern

    Storage research · Firmware

  • Siteimprove

    2018 - 2019

    Siteimprove

    Student Developer

    Product development · Accessibility

  • Self-Employed

    2012 - 2019

    Self-Employed

    Founder

    Business development · Engineering

  • Pairy

    2016 - 2018

    Pairy

    Lead Developer

    Product leadership · Engineering

  • Trifork

    2015

    Trifork

    Junior Software Pilot

    Advisory · App development

Skills

Security Architecture
I design security controls at the architecture level for environments where failure has high operational cost. I work from the threat model through to implementation, including the code and infrastructure the design will run on.
Privacy by Design
I treat privacy as an engineering requirement from the first design. In practice that means collecting less data and being open with people about what is kept, while the system still does its job.
Software Engineering
I build and review software in C, C++, C#, Python, Java, JavaScript, TypeScript and PHP. I care most about secure defaults and code that is still easy to maintain years later.
Systems & Infrastructure
I have built cloud infrastructure on Kubernetes for startups, and worked hands-on with Linux, Active Directory, storage and networking, including on-site work in data centres.
Academic Research
My PhD research at the IT University of Copenhagen covered computational storage, drivers and firmware.
Technical Teaching & Mentoring
I have lectured 500+ students in Operating Systems and C at the IT University of Copenhagen. I have supervised a BSc project and mentored five students under SPS, the Danish support scheme for students with disabilities.

Briefs

Long-form writing on security and privacy.

14 briefs across 6 categories. That is 34,973 words, taking 2h 55m to read. They cite 78 sources.

A hand writing notes with a pen in an open notebook.

Authorship Was Never the Typing

· 21 min read · 8 sources

I use a language model to draft these briefs. Writing is mine when the idea, the verdict on what is true and the decision to publish were mine to get right.

3 runnable exhibits accompany the briefs, each with the output and the machine it was recorded on.

Get in touch

E-mail me directly. If it is sensitive, encrypt it with my PGP key.

ALGORITHM Ed25519
KEY ID 1C71 8BA1 A100 6103
FORMAT PGP/MIME · Inline PGP