Hi, I'm Julio
Securing Your Digital Future with AI-Powered Expertise
Security Engineer with 10+ years of experience in penetration testing, security consulting, and AI-enhanced cybersecurity. OSCP & C-AI/MLPen certified.
Services
Comprehensive cybersecurity solutions tailored to your needs
Penetration Testing
Thorough security assessments of web applications, APIs, mobile apps, cloud infrastructure, and Active Directory environments. Identify vulnerabilities before attackers do.
- Web & API Testing
- Mobile App Security (iOS/Android)
- Cloud Security (AWS & GCP)
- Active Directory & Network Pentesting
- Bug Bounty Programme Management
Security Consulting
Strategic security guidance to embed security into your development lifecycle. From architecture review to compliance readiness.
- Secure Architecture Design
- Threat Modeling & Code Review
- DevSecOps Pipeline Integration
- ISO 27001 & SOC 2 Compliance
- Security Incident Response
Secure Development
Custom security tools, internal platforms, and applications built with security baked in from day one. Full-stack development with an offensive security mindset.
- Security Tooling & Automation
- Web Applications with Security by Design
- API Development with Built-in Auth & Access Control
- AI-Powered Security Dashboards
- Internal Security Platforms
Training & Courses
Hands-on cybersecurity training designed to upskill your team. From secure coding to AI/ML security awareness. I already deliver technical and security awareness training for companies that trust me with their teams.
- Secure Coding Workshops
- OWASP Top 10 Training
- AI/ML Security Awareness
- CTF-based Red Team Exercises
- Custom Corporate Training
Engagement Models
Flexible collaboration adapted to your needs
Project-Based
Fixed-scope engagements with clear deliverables. Ideal for penetration tests, audits, and one-time assessments.
Retainer
Ongoing security partnership with a monthly pool of hours. Perfect for continuous security monitoring and advisory.
Daily Rate
Flexible day-rate consulting for workshops, training sessions, and short-term engagements.
AI-Enhanced Security
AI-augmented security done right — faster timelines, deeper coverage, every result manually verified
As a Certified AI/ML Pentester (C-AI/MLPen), I use AI to amplify my offensive security expertise — not to replace it. The result: shorter engagement timelines, broader attack surface coverage, and high-quality deliverables with zero auto-generated filler. Every finding is reviewed and validated by a human.
AI-Assisted Vulnerability Discovery
AI agents accelerate reconnaissance and pattern recognition, uncovering vulnerabilities that manual testing alone might miss.
ML Model Security Assessment
Specialized testing of machine learning models for adversarial attacks, data poisoning, model extraction, and prompt injection vulnerabilities.
LLM Security Testing
Security assessment of Large Language Model integrations, including prompt injection, data leakage, and access control bypass.
Automated Security Workflows
Custom AI-powered tools and automated pipelines that reduce time-to-finding — with every output reviewed and certified by a security professional before delivery.
About Me
I'm Julio Martinez, a Security Engineer based in Malaga, Spain, with 10+ years of hands-on experience securing digital products for leading tech companies. I specialize in penetration testing, security consulting, and building security into the development lifecycle.
My career has taken me from identity management in the defense sector to offensive security at a global IT consultancy, vulnerability management at a major telecom operator, and currently working as a Senior Security Engineer at a leading tech platform. This diverse background gives me a unique perspective that combines offensive security skills with a deep understanding of how engineering teams build and ship software.
I use AI as a force multiplier — not a shortcut. As a certified AI/ML pentester, I leverage tools like Claude Code and custom AI agents to reduce timelines and expand coverage, but every finding, every report, and every recommendation is verified and validated by me. No slop, no auto-generated filler — just high-impact results backed by human expertise.
Experience
Security Engineer
Leading Tech & Design Platform · Malaga, Spain
Application security, bug bounty management, cloud security assessments, and internal security tooling development.
Vulnerability Manager
Major Telecom Operator · Madrid, Spain
Owned end-to-end vulnerability management, integrated SAST/DAST into CI/CD pipelines, led secure design reviews for AWS projects.
Senior Cybersecurity Consultant
Boutique Cybersecurity Consultancy · Madrid, Spain
Penetration testing, mentoring junior professionals, developing Master Director Plans based on ISO 27001.
Offensive Security Pentester
Global IT Consultancy · Madrid, Spain
Pentesting web, mobile, API and desktop apps. Designed CTF exercises for Red Team training and adversarial simulation.
Cybersecurity & Infrastructure Engineer
Defense & Aerospace Technology · Madrid, Spain
Identity management consulting (SAML), secure email infrastructure, authentication and federation best practices.
Certifications
Industry-recognized credentials that validate deep technical expertise
OSCP
Offensive Security Certified Professional
Offensive Security
CAPen
Certified AppSec Pentester
The SecOps Group
C-AI/MLPen
Certified AI/ML Pentester
The SecOps Group
AWS SA
AWS Solutions Architect Associate
Amazon Web Services
AWS Security
AWS Certified Security Specialty
Amazon Web Services
LFCS
Linux Foundation Certified System Administrator
Linux Foundation
ITIL 4
ITIL 4 Foundation
Axelos
Skills & Tools
Security Testing
Application Security
Cloud & DevOps
Languages & Frameworks
Platforms
AI & Automation
Speaking & Community
Active contributor to the cybersecurity community
Cybercamp (INCIBE)
Speaker at Cybercamp, one of Spain's largest cybersecurity conferences organized by INCIBE.
Navaja Negra
Speaker at Navaja Negra, a renowned Spanish security conference focused on offensive security research.
Intigriti Bug Bounty
Active bug bounty researcher on Intigriti, contributing to the security of major platforms.
CTF Competitions
Regular participant in CTF competitions, maintaining sharp offensive security skills.
Let's Secure Your Organization
Ready to strengthen your security posture? Get in touch for a free initial consultation.
Or reach me directly at
julioxus@gmail.com