Skip to content

Capability statement

Verity Digital

Verity Digital is a registered business name of Miroslav Tadej (RBN 788725). Swift Hall, Collegewood, Castleknock, Dublin 15, Ireland.

What we do

Verity Digital is an independent software engineering practice delivering secure, production-grade web platforms for Irish SMEs, public-sector bodies and enterprise buyers. Engagements are fixed-scope or retained, and the client owns the source code.

  • Discovery Sprint — A fixed two-week engagement to scope, de-risk and cost your build.
  • MVP Build — Production-grade minimum viable product, shipped and deployed.
  • Platform Engineering — Scalable secure platforms with CI/CD, observability and IaC.
  • Security & Compliance Review — OWASP-aligned audit, GDPR readiness and remediation roadmap.
  • Fractional CTO — Senior technical leadership on a part-time retained basis.

Sectors

  • Professional Services — Consultancies · Agencies · Firms
  • Public-Sector Bidding — SMEs bidding for public contracts · Consultancies · Suppliers
  • EdTech & Training — Course providers · Training bodies · Developer education
  • Hospitality — Hotels · Guesthouses · Restaurants
  • Retail & E-commerce — Online stores · Multi-channel retail

Method

  1. Understand the business problem before writing a line of code — scope, constraints and success measures agreed in writing first.
  2. Design security in from the first commit: authentication, validation and least-privilege access are part of the build, never a pre-launch phase.
  3. Deliver in small, reviewable increments, documented as they are built, so the client can see progress and owns the record at handover.

Credentials

PgDip Cybersecurity (NFQ L9)HDip Computing — Web Dev (NFQ L8)MITx — CS & Python (online)PRINCE2 · MSPPMI member (since 2009)Master of Public Administration — research outstandingB.Com (Hons) Business ManagementB.Com Management

Engineering stack

Languages:
TypeScript, JavaScript, C#, SQL, Python
Frontend:
React, Vite, TanStack Query, Tailwind CSS, React Native (Expo)
Backend · Node:
Node.js, Express, Zod, JWT + TOTP 2FA
Backend · .NET:
.NET 10, ASP.NET Core, EF Core, ASP.NET Core Identity
Data:
PostgreSQL, Raw SQL + forward-only migrations, Prisma, Exclusion constraints (btree_gist)
Payments & AI:
Stripe, Signed webhooks, Anthropic API
Testing:
Vitest · xUnit, Testcontainers / service containers, Playwright + axe-core
DevOps & security:
Docker, GitHub Actions (OIDC), AWS (Elastic Beanstalk · RDS · S3 · CloudFront), OWASP, GDPR

Security & compliance posture

Application security is aligned to the OWASP Top 10 and reviewed as part of delivery, not after it: httpOnly-cookie JWT authentication with refresh-token rotation, role-based access control, and parameterised SQL throughout — no string-built queries anywhere. Data protection is designed in, with GDPR tooling for subject-rights handling, documented retention and a published privacy position. Our conformance target for accessibility is WCAG 2.2 AA, tested with automated accessibility gates in CI. ISO/IEC 27001 and Cyber Essentials are on the roadmap and are not yet held.

Contact