About

About

Profile

I work in cybersecurity as a Chief Information Security Officer (CISO), Cyber Threat Intelligence specialist, Ph.D. researcher, lecturer, and community contributor.

My work brings together three areas that are often treated separately: security governance, operational threat intelligence, and academic research. I am particularly interested in ransomware and cybercrime ecosystems, dark web intelligence, security operations, vulnerability management, AI governance, and the way technical findings can support better business and risk decisions.

I currently serve as Chief Information Security Officer for Würth Italia Group Entities, where I work on cybersecurity strategy, governance, regulatory readiness, risk management, and secure digital transformation.


Professional Focus

My current work includes:

  • Cybersecurity strategy and multi-year security roadmaps.
  • NIS2 readiness, governance, risk management, supply-chain security, incident handling, and executive reporting.
  • AI governance and secure adoption of AI services in the context of the EU AI Act.
  • Integration of Cyber Threat Intelligence with SIEM operations, threat hunting, incident response, and intelligence-driven detection.
  • Risk-based vulnerability and attack surface management, using business exposure, CVSS, EPSS, remediation priorities, and operational context.
  • Security awareness and communication for technical and non-technical audiences.

Areas of Expertise

Cyber Threat Intelligence

Threat actor profiling, ransomware intelligence, IoC/IoA lifecycle management, MITRE ATT&CK mapping, intelligence analysis, and decision support.

Governance, Risk & Compliance

NIS2, ISO/IEC 27001, cyber risk assessment, supplier risk, control maturity, and executive reporting.

Security Operations & Incident Response

SIEM, threat hunting, detection workflows, investigation, triage, escalation, and response coordination.

Dark Web & Cybercrime Intelligence

Underground monitoring, Data Leak Sites, credential exposure, cybercriminal ecosystems, and adversarial communities.

Ransomware Research

Ransomware groups, RaaS models, extortion strategies, affiliate dynamics, disclosure patterns, and ecosystem resilience.

Attack Surface & Vulnerability Management

External exposure analysis, OSINT/CLOSINT enrichment, vulnerability prioritization, and remediation governance.

Detection Engineering

IBM QRadar, correlation logic, intelligence enrichment, IoC integration, and behavioral detection.

AI Governance

EU AI Act alignment, AI risk classification, AI DPIA, model monitoring, auditability, and third-party AI risk.

Teaching & Mentoring

University teaching, professional training, thesis supervision, cybersecurity awareness, and executive communication.


Research & Academic Activity

I am a Ph.D. Researcher in Cyber Threat Intelligence at the University of Sannio. My research focuses on the evolution and structural resilience of the ransomware economy, using empirical and data-driven methods to study threat actors, extortion models, disclosure patterns, and observable cybercriminal activity.

My research interests include:

  • Cyber Threat Intelligence methodologies and intelligence lifecycle models.
  • Ransomware ecosystems and cybercriminal business models.
  • Dark web intelligence and Data Leak Site monitoring.
  • Threat actor profiling and attack pattern reconstruction.
  • Data-driven and machine-learning-assisted approaches to threat analysis.
  • The relationship between technical exposure, organizational risk, sector, and geography.

I also serve as Cultore della materia at the University of Sannio, contributing to teaching, thesis supervision, and applied cybersecurity research.

For a more detailed overview, see the Research page.


Teaching & Academic Supervision

I teach in academic and professional cybersecurity programs, with a focus on connecting theory with real operational scenarios.

My current and past activities include:

  • Industry Lecturer – Master’s in Cybersecurity and Privacy, University of Rome Tor Vergata, covering Cyber Threat Intelligence, ransomware, dark web intelligence, MITRE ATT&CK, threat hunting, and intelligence-driven incident response.
  • Lecturer and Ph.D. Researcher – University of Sannio, working on CTI, ransomware analysis, dark web monitoring, and intelligence-led security.
  • Cultore della materia – University of Sannio, supporting academic activities and thesis work in cybersecurity and Cyber Threat Intelligence.
  • Cyber Security Instructor – IUSI Corporate University, with courses on cybersecurity, CTI, incident response, applied threat analysis, and offensive security fundamentals.
  • Thesis and internship supervision on CTI platforms, attack surface analysis, ransomware, adversary simulation, dark web monitoring, and security awareness.

A complete overview is available on the Teaching page.


Community & Public Dissemination

Red Hot Cyber & DarkLab

I am Head of DarkLab, the Cyber Threat Intelligence team of Red Hot Cyber. The team works on threat intelligence dissemination, dark web and cybercrime monitoring, adversary analysis, and public cybersecurity awareness.

Digital Club

I am a Cyber Mentor for Digital Club, contributing to initiatives on cybersecurity leadership, communication, professional exchange, and executive-level cyber awareness.

IBM X-Force Exchange

During my time at IBM as a Cyber Security Architect and Senior Threat Intelligence Analyst, I contributed to IBM X-Force Exchange through intelligence-sharing, IoC collection, enrichment, and detection-oriented activities.


Certifications & Recognition

Selected certifications and professional recognitions include:

  • Certified Chief Information Security Officer (CCISO) – EC-Council
  • Certified Ethical Hacker (CEH) – EC-Council
  • Certified Threat Intelligence Analyst (CTIA) – EC-Council
  • Certified Incident Handler – EC-Council
  • IBM QRadar SIEM Foundation and Advanced certifications
  • EC-Council Beta Tester
  • 1st Place – CINI Smart City University Challenge (I-CiTies, 2020) with the City Shield project developed by the University of Sannio team

  • NetCom Group and CINI Smart City University Challenge reference

See also the Certifications page.


Professional Experience

2023–Present · Chief Information Security Officer

Würth Italia Group Entities

Cybersecurity strategy, NIS2, GRC, AI governance, CTI-led operations, vulnerability management, and secure transformation.

2021–2023 · Cyber Security Architect & Senior Threat Intelligence Analyst

IBM

Cyber Threat Intelligence, IBM QRadar SIEM, dark web analysis, IoC enrichment, detection logic, X-Force Exchange contributions, and reporting.

2019–2021 · Cyber Security Engineer & SOC Analyst

Yoroi

SOC operations, incident response, threat hunting, monitoring, and operational security.

2022–2024 · Cyber Security Instructor

IUSI Corporate University

Cybersecurity training, CTI, incident response, practical labs, and mentoring.


Core Competencies

  • Cybersecurity Strategy & Executive Security Leadership
  • Cyber Threat Intelligence & Dark Web Analysis
  • Ransomware Ecosystems & Cybercrime Research
  • Security Governance, NIS2 & ISO/IEC 27001
  • AI Governance & Secure AI Adoption
  • Incident Response, SOC Operations & Threat Hunting
  • Detection Engineering, SIEM & IBM QRadar
  • Vulnerability Management & Attack Surface Intelligence
  • OSINT/CLOSINT Collection & Intelligence Correlation
  • Teaching, Mentoring, Awareness & Public Speaking

Professional Perspective

I see cybersecurity as a discipline that has to work at more than one level at the same time. Technical depth matters, but it has to be connected to risk, governance, people, and business priorities.

That is the perspective I try to bring to my professional work, research, teaching, and public speaking: understand the threat, put it in context, and turn it into something that can support a decision.