CV
Cybersecurity Engineer with 4+ years across cloud security, incident response and compliance. Built security programs from scratch, JIT IAM for 140+ engineers, SIEM deployment, 100+ vulnerabilities remediated and PCI DSS implementation across SaaS and enterprise environments.
Experience
Associate Security Engineer, Phorest Salon Software
- Identified IAM privilege risks across the organisation and engineered a Just in Time (JIT) integration, eliminating standing permissions for 140+ engineers and reducing breach blast radius company-wide.
- Built a SIEM from scratch, defining 60+ detection rules and ingestion pipelines establishing centralised real-time threat detection across the organisation for the first time.
- Drove end to end remediation of 100+ critical vulnerabilities over 12 months, reducing exploitable attack surface by coordinating fixes across 5+ engineering teams.
- Contributed to PCI DSS compliance implementation across 15+ in-scope systems, handling technical controls, evidence collection and gap remediation.
- Embedded automated misconfiguration detection into 10+ CI/CD pipelines (GitHub Actions) and Terraform IaC, preventing security issues from reaching production.
Cybersecurity Analyst, NTT DATA
- Responded to 30+ security incidents over 18 months, containing active intrusions and minimising client impact through timely triage and mitigation.
- Monitored live environments across 5+ enterprise clients via SIEM, IDPS, WAF and patch management, maintaining continuous threat visibility.
- Applied NIST CSF, MITRE ATT&CK, OWASP TOP10 and Diamond Model to investigate 50+ vulnerabilities, delivering actionable threat intelligence to client security teams.
- Led ISO 27001 audits covering 100+ controls across HIPAA, DORA, eIDAS2, GLBA, PCI DSS, GDPR and NIS2 for a major European bank.
Digital Advisor, Italian American Chamber of Commerce – Chicago
- Built a custom CRM adopted by 30+ member companies, boosting customer retention by 500% within 6 months.
- Developed a members-only web portal with dynamic statistics, improving service value for 50+ active members.
Education
Master's in Cyber Risk Strategy & Governance
Bocconi University & Polytechnic of Milan
Thesis: Optimizing Threat Intelligence: A Strategic Framework for an Enhanced Cybersecurity Posture
Bachelor's in Management & Economics
Bocconi University
Thesis: Threats, investments and performances of Italian companies in cyber security during 2020
Skills
Jira · Incident Response · ISO 27001 · Terraform · AWS · Docker · MITRE ATT&CK · JIT/PAM · Python · Go
Certifications
CompTIA Security+ · AWS Security Specialty (in progress)
Languages
English – Fluent · Italian – Native