About
Security leader · CISSP · Builder of security programs from zero
I build security programs from zero inside technical organizations — programs that engineering teams actually run, not policy documents that sit in a shared drive.
Ten years in cybersecurity, starting hands-on. Eight of them inside incident response at Sucuri and GoDaddy: thousands of compromised sites per year, malware analysis at scale, forensic work on e-commerce credit card skimmers. That work taught me to think like an attacker before thinking like a defender, and to recognize the gap between security theater and security practice.
Most recently, I was Head of Security at Patchstack, where I built the entire internal security function from zero: secure development lifecycle, threat modeling embedded in engineering, ISO 27001 and SOC 2 readiness, vendor risk, incident response, security culture. Patchstack is the global #1 CNA in 2023 and 2025, ahead of GitHub and Kernel.org — a ranking earned by the research team I previously led as Data & Research Lead. The technology was never the hard part. The organizational negotiation was.
CISSP. Computer Science Engineer (ULPGC), with formal academic grounding in AI — neural networks, genetic algorithms, automata. 25+ international conference talks across Europe and Japan. Head of Technology, ISC2 Spain Chapter. Based in Valencia.
Credentials
- CISSP — Certified Information Systems Security Professional Verify ↗
- Computer Science Engineer
Formal training in AI — neural networks, genetic algorithms, automata.
Speaking
25+ international conference appearances on web security, vulnerability intelligence, CMS security, and security culture. Selected venues: WordCamp Europe, WordCamp Tokyo, WordCamp Osaka, WordCamp Vienna, WordCamp Geneva, WordCamp Greece, WordCamp Taiwan, WordSesh EMEA. Featured in podcasts, webinars, and interviews across multiple regions.
View talks archive on WordPress.tv →Service
-
Head of Technology
ISC2 Spain Chapter
Board role
Since Jan 2025
Publications
-
Evolutionary Computation Applied to Urban Traffic Optimization. In Advances in Evolutionary Algorithms. IN-TECH. ISBN 978-3-902613-32-5.
Book Chapter -
Simulation Times vs. Network Size in a Genetic Algorithm Based Urban Traffic Optimization Architecture. International Conference on Genetic and Evolutionary Methods (GEM).
Conference Paper
For event organizers & press
One-liner
Builds security programs from zero. 10+ years in cybersecurity, came up through incident response. CISSP. 25+ international talks.
Short bio (~70 words)
Nestor Angulo de Ugarte is a security leader with over a decade in cybersecurity. Most recently he was Head of Security at Patchstack — a vulnerability intelligence company ranked #1 CNA globally in 2023 and 2025 — where he built the internal security program from zero. Before Patchstack he spent eight years in incident response at Sucuri and GoDaddy, handling thousands of web compromises annually with a specialization in e-commerce malware. CISSP, Computer Science Engineer, and Head of Technology at the ISC2 Spain Chapter. 25+ international talks across Europe and Japan.
Speaker photo
Minimum 1500px on the long side. For event programs, slides, and press coverage.