About
Profile
I work in cybersecurity as a Chief Information Security Officer (CISO), Cyber Threat Intelligence specialist, Ph.D. researcher, lecturer, and community contributor.
My work brings together three areas that are often treated separately: security governance, operational threat intelligence, and academic research. I am particularly interested in ransomware and cybercrime ecosystems, dark web intelligence, security operations, vulnerability management, AI governance, and the way technical findings can support better business and risk decisions.
I currently serve as Chief Information Security Officer for Würth Italia Group Entities, where I work on cybersecurity strategy, governance, regulatory readiness, risk management, and secure digital transformation.
Professional Focus
My current work includes:
- Cybersecurity strategy and multi-year security roadmaps.
- NIS2 readiness, governance, risk management, supply-chain security, incident handling, and executive reporting.
- AI governance and secure adoption of AI services in the context of the EU AI Act.
- Integration of Cyber Threat Intelligence with SIEM operations, threat hunting, incident response, and intelligence-driven detection.
- Risk-based vulnerability and attack surface management, using business exposure, CVSS, EPSS, remediation priorities, and operational context.
- Security awareness and communication for technical and non-technical audiences.
Areas of Expertise
Cyber Threat Intelligence
Threat actor profiling, ransomware intelligence, IoC/IoA lifecycle management, MITRE ATT&CK mapping, intelligence analysis, and decision support.
Governance, Risk & Compliance
NIS2, ISO/IEC 27001, cyber risk assessment, supplier risk, control maturity, and executive reporting.
Security Operations & Incident Response
SIEM, threat hunting, detection workflows, investigation, triage, escalation, and response coordination.
Dark Web & Cybercrime Intelligence
Underground monitoring, Data Leak Sites, credential exposure, cybercriminal ecosystems, and adversarial communities.
Ransomware Research
Ransomware groups, RaaS models, extortion strategies, affiliate dynamics, disclosure patterns, and ecosystem resilience.
Attack Surface & Vulnerability Management
External exposure analysis, OSINT/CLOSINT enrichment, vulnerability prioritization, and remediation governance.
Detection Engineering
IBM QRadar, correlation logic, intelligence enrichment, IoC integration, and behavioral detection.
AI Governance
EU AI Act alignment, AI risk classification, AI DPIA, model monitoring, auditability, and third-party AI risk.
Teaching & Mentoring
University teaching, professional training, thesis supervision, cybersecurity awareness, and executive communication.
Research & Academic Activity
I am a Ph.D. Researcher in Cyber Threat Intelligence at the University of Sannio. My research focuses on the evolution and structural resilience of the ransomware economy, using empirical and data-driven methods to study threat actors, extortion models, disclosure patterns, and observable cybercriminal activity.
My research interests include:
- Cyber Threat Intelligence methodologies and intelligence lifecycle models.
- Ransomware ecosystems and cybercriminal business models.
- Dark web intelligence and Data Leak Site monitoring.
- Threat actor profiling and attack pattern reconstruction.
- Data-driven and machine-learning-assisted approaches to threat analysis.
- The relationship between technical exposure, organizational risk, sector, and geography.
I also serve as Cultore della materia at the University of Sannio, contributing to teaching, thesis supervision, and applied cybersecurity research.
For a more detailed overview, see the Research page.
Teaching & Academic Supervision
I teach in academic and professional cybersecurity programs, with a focus on connecting theory with real operational scenarios.
My current and past activities include:
- Industry Lecturer – Master’s in Cybersecurity and Privacy, University of Rome Tor Vergata, covering Cyber Threat Intelligence, ransomware, dark web intelligence, MITRE ATT&CK, threat hunting, and intelligence-driven incident response.
- Lecturer and Ph.D. Researcher – University of Sannio, working on CTI, ransomware analysis, dark web monitoring, and intelligence-led security.
- Cultore della materia – University of Sannio, supporting academic activities and thesis work in cybersecurity and Cyber Threat Intelligence.
- Cyber Security Instructor – IUSI Corporate University, with courses on cybersecurity, CTI, incident response, applied threat analysis, and offensive security fundamentals.
- Thesis and internship supervision on CTI platforms, attack surface analysis, ransomware, adversary simulation, dark web monitoring, and security awareness.
A complete overview is available on the Teaching page.
Community & Public Dissemination
Red Hot Cyber & DarkLab
I am Head of DarkLab, the Cyber Threat Intelligence team of Red Hot Cyber. The team works on threat intelligence dissemination, dark web and cybercrime monitoring, adversary analysis, and public cybersecurity awareness.
Digital Club
I am a Cyber Mentor for Digital Club, contributing to initiatives on cybersecurity leadership, communication, professional exchange, and executive-level cyber awareness.
IBM X-Force Exchange
During my time at IBM as a Cyber Security Architect and Senior Threat Intelligence Analyst, I contributed to IBM X-Force Exchange through intelligence-sharing, IoC collection, enrichment, and detection-oriented activities.
Certifications & Recognition
Selected certifications and professional recognitions include:
- Certified Chief Information Security Officer (CCISO) – EC-Council
- Certified Ethical Hacker (CEH) – EC-Council
- Certified Threat Intelligence Analyst (CTIA) – EC-Council
- Certified Incident Handler – EC-Council
- IBM QRadar SIEM Foundation and Advanced certifications
- EC-Council Beta Tester
1st Place – CINI Smart City University Challenge (I-CiTies, 2020) with the City Shield project developed by the University of Sannio team
- NetCom Group and CINI Smart City University Challenge reference
See also the Certifications page.
Professional Experience
2023–Present · Chief Information Security Officer
Würth Italia Group Entities
Cybersecurity strategy, NIS2, GRC, AI governance, CTI-led operations, vulnerability management, and secure transformation.
2021–2023 · Cyber Security Architect & Senior Threat Intelligence Analyst
IBM
Cyber Threat Intelligence, IBM QRadar SIEM, dark web analysis, IoC enrichment, detection logic, X-Force Exchange contributions, and reporting.
2019–2021 · Cyber Security Engineer & SOC Analyst
Yoroi
SOC operations, incident response, threat hunting, monitoring, and operational security.
2022–2024 · Cyber Security Instructor
IUSI Corporate University
Cybersecurity training, CTI, incident response, practical labs, and mentoring.
Core Competencies
- Cybersecurity Strategy & Executive Security Leadership
- Cyber Threat Intelligence & Dark Web Analysis
- Ransomware Ecosystems & Cybercrime Research
- Security Governance, NIS2 & ISO/IEC 27001
- AI Governance & Secure AI Adoption
- Incident Response, SOC Operations & Threat Hunting
- Detection Engineering, SIEM & IBM QRadar
- Vulnerability Management & Attack Surface Intelligence
- OSINT/CLOSINT Collection & Intelligence Correlation
- Teaching, Mentoring, Awareness & Public Speaking
Professional Perspective
I see cybersecurity as a discipline that has to work at more than one level at the same time. Technical depth matters, but it has to be connected to risk, governance, people, and business priorities.
That is the perspective I try to bring to my professional work, research, teaching, and public speaking: understand the threat, put it in context, and turn it into something that can support a decision.