Hi, I'm Julio

Securing Your Digital Future with AI-Powered Expertise

Security Engineer with 10+ years of experience in penetration testing, security consulting, and AI-enhanced cybersecurity. OSCP & C-AI/MLPen certified.

OSCP C-AI/MLPen CAPen AWS Security
Julio Martinez speaking at Cybercamp
10+
Years Experience
7
Certifications
5+
Companies Secured

Services

Comprehensive cybersecurity solutions tailored to your needs

Penetration Testing

Thorough security assessments of web applications, APIs, mobile apps, cloud infrastructure, and Active Directory environments. Identify vulnerabilities before attackers do.

  • Web & API Testing
  • Mobile App Security (iOS/Android)
  • Cloud Security (AWS & GCP)
  • Active Directory & Network Pentesting
  • Bug Bounty Programme Management

Security Consulting

Strategic security guidance to embed security into your development lifecycle. From architecture review to compliance readiness.

  • Secure Architecture Design
  • Threat Modeling & Code Review
  • DevSecOps Pipeline Integration
  • ISO 27001 & SOC 2 Compliance
  • Security Incident Response

Secure Development

Custom security tools, internal platforms, and applications built with security baked in from day one. Full-stack development with an offensive security mindset.

  • Security Tooling & Automation
  • Web Applications with Security by Design
  • API Development with Built-in Auth & Access Control
  • AI-Powered Security Dashboards
  • Internal Security Platforms

Training & Courses

Hands-on cybersecurity training designed to upskill your team. From secure coding to AI/ML security awareness. I already deliver technical and security awareness training for companies that trust me with their teams.

  • Secure Coding Workshops
  • OWASP Top 10 Training
  • AI/ML Security Awareness
  • CTF-based Red Team Exercises
  • Custom Corporate Training

Engagement Models

Flexible collaboration adapted to your needs

Project-Based

Fixed-scope engagements with clear deliverables. Ideal for penetration tests, audits, and one-time assessments.

Retainer

Ongoing security partnership with a monthly pool of hours. Perfect for continuous security monitoring and advisory.

Daily Rate

Flexible day-rate consulting for workshops, training sessions, and short-term engagements.

C-AI/MLPen Certified

AI-Enhanced Security

AI-augmented security done right — faster timelines, deeper coverage, every result manually verified

As a Certified AI/ML Pentester (C-AI/MLPen), I use AI to amplify my offensive security expertise — not to replace it. The result: shorter engagement timelines, broader attack surface coverage, and high-quality deliverables with zero auto-generated filler. Every finding is reviewed and validated by a human.

AI-Assisted Vulnerability Discovery

AI agents accelerate reconnaissance and pattern recognition, uncovering vulnerabilities that manual testing alone might miss.

ML Model Security Assessment

Specialized testing of machine learning models for adversarial attacks, data poisoning, model extraction, and prompt injection vulnerabilities.

LLM Security Testing

Security assessment of Large Language Model integrations, including prompt injection, data leakage, and access control bypass.

Automated Security Workflows

Custom AI-powered tools and automated pipelines that reduce time-to-finding — with every output reviewed and certified by a security professional before delivery.

About Me

I'm Julio Martinez, a Security Engineer based in Malaga, Spain, with 10+ years of hands-on experience securing digital products for leading tech companies. I specialize in penetration testing, security consulting, and building security into the development lifecycle.

My career has taken me from identity management in the defense sector to offensive security at a global IT consultancy, vulnerability management at a major telecom operator, and currently working as a Senior Security Engineer at a leading tech platform. This diverse background gives me a unique perspective that combines offensive security skills with a deep understanding of how engineering teams build and ship software.

I use AI as a force multiplier — not a shortcut. As a certified AI/ML pentester, I leverage tools like Claude Code and custom AI agents to reduce timelines and expand coverage, but every finding, every report, and every recommendation is verified and validated by me. No slop, no auto-generated filler — just high-impact results backed by human expertise.

Experience

2022 - Present

Security Engineer

Leading Tech & Design Platform · Malaga, Spain

Application security, bug bounty management, cloud security assessments, and internal security tooling development.

2018 - 2022

Vulnerability Manager

Major Telecom Operator · Madrid, Spain

Owned end-to-end vulnerability management, integrated SAST/DAST into CI/CD pipelines, led secure design reviews for AWS projects.

2018

Senior Cybersecurity Consultant

Boutique Cybersecurity Consultancy · Madrid, Spain

Penetration testing, mentoring junior professionals, developing Master Director Plans based on ISO 27001.

2017 - 2018

Offensive Security Pentester

Global IT Consultancy · Madrid, Spain

Pentesting web, mobile, API and desktop apps. Designed CTF exercises for Red Team training and adversarial simulation.

2015 - 2017

Cybersecurity & Infrastructure Engineer

Defense & Aerospace Technology · Madrid, Spain

Identity management consulting (SAML), secure email infrastructure, authentication and federation best practices.

Skills & Tools

Security Testing

Burp Suite Metasploit Nessus Nmap Frida MobSF Recon & Fuzzing SAST/DAST

Application Security

OWASP Top 10 CWE Code Review Threat Modeling Secure Architecture SAML LDAP PKI

Cloud & DevOps

AWS GCP Terraform Ansible Docker Kubernetes CI/CD Security

Languages & Frameworks

Python JavaScript TypeScript Java PHP Bash C++ React Next.js FastAPI

Platforms

Linux Windows Active Directory Android iOS Git/GitHub

AI & Automation

Claude Code AI Agents Workflow Automation AI/ML Pentesting LLM Security AI-Assisted Pentesting

Speaking & Community

Active contributor to the cybersecurity community

Cybercamp (INCIBE)

Speaker at Cybercamp, one of Spain's largest cybersecurity conferences organized by INCIBE.

Navaja Negra

Speaker at Navaja Negra, a renowned Spanish security conference focused on offensive security research.

Intigriti Bug Bounty

Active bug bounty researcher on Intigriti, contributing to the security of major platforms.

CTF Competitions

Regular participant in CTF competitions, maintaining sharp offensive security skills.

Let's Secure Your Organization

Ready to strengthen your security posture? Get in touch for a free initial consultation.

Or reach me directly at

julioxus@gmail.com