About

Nieves Casquero

Offensive security specialist based in La Línea de la Concepción, available remotely across Spain.

How I work, and why

Over four years of IT and security experience before specializing in offensive security. That background in support and systems administration gives me an uncommon edge: I understand both how a system breaks and how one is actually kept running day-to-day in a real business.

I'm an active vulnerability hunter on HackerOne and Bugcrowd. That's not a decorative line on my profile: it means I analyze systems with the same mindset as a real attacker, not just the automated tools a generic audit would use.

That same technical rigor is what I bring to every report: a conclusion is only worth something if the methodology behind it is solid and reproducible.

CompTIA A+ CompTIA PenTest+ Master's in Cybersecurity & Ethical Hacking AEPEJU Chartered Expert Witness CiberEstrechoCON 2025 ISO 27037 OWASP Top 10

Verifiable activity

LinkedInNieves Casquero1,027 followers · 500+ connections
Instagram@nieves.casqueroActive
FacebookNieves CasqueroActive
CoverageAll of SpainRemote
Background

From IT support to offensive security

Professional foundation

4+ years in IT and technical support in Gibraltar

Windows systems administration, Active Directory and user support — the foundation that today lets me understand how a business actually works on the inside, not just how to attack it.

Specialization

CompTIA A+ and PenTest+ certifications

Formal transition into offensive security, with internationally recognized certifications as the technical foundation.

Advanced training

Master's in Cybersecurity and Ethical Hacking

Deep dive into pentesting, digital forensics, offensive Active Directory, and web application and API security.

Active bug bounty

Active research on HackerOne and Bugcrowd

Vulnerability reward programs at international companies — continuous research with the same mindset as a real attacker.

Community

Organizer of CiberEstrechoCON 2025

Building a cybersecurity community in the Campo de Gibraltar area, connecting professionals in the field.

Expert witness accreditation

AEPEJU Chartered Member · Party-Appointed IT Expert Witness

Completed expert witness training and became a chartered member of AEPEJU, extending my practice to party-appointed IT expert reports valid in judicial and extrajudicial proceedings.

Now

Expanding specialization in pentesting and offensive security

Continuous training and hands-on practice in labs (DockerLabs and similar environments) to stay current with the latest attack techniques.

How I work

Principles I don't compromise on

🎯

Real attacker mindset

I don't just run an automated scanner. I analyze every system with the same curiosity and persistence I'd apply to a real bug bounty program.

📋

Documented methodology

Every finding and every step of the analysis is backed by traceable evidence, not opinion.

🤝

Jargon-free communication

A perfect technical report that no one in management understands is useless. I always deliver a version that can be read in five minutes too.

⚖️

Technical objectivity

My commitment is to technical truth, not to making the report look good. That's the only way conclusions are actually useful.

💶

Fixed quote

You know what you'll pay before starting. No hidden extra hours, no surprises on the final invoice.

🔒

Real confidentiality

NDA, chain of custody and GDPR protocols applied systematically, not as a box-ticking exercise.

Contact

Let's talk about your case or your business.

First consultation free, by video call or email, no obligation.