
CEO of Actainfo & Data Protection Officer
The professional activity operates at the intersection of technology, data protection, digital governance, and applied artificial intelligence, with a focus on structured and regulated environments.
The profile combines legal expertise and technical implementation, developed through long-term work in privacy consulting, data protection, and digital systems applied to public administration and enterprise contexts. Since 2003, the activity has included continuous involvement in data protection and compliance processes, evolving into formal roles as Data Protection Officer (DPO) from 2018, with responsibility for GDPR frameworks, risk assessment, and organizational accountability.
Alongside data protection, the work extends to the analysis and design of software systems for digital services and administrative procedures, particularly within public sector environments. This includes digital administration processes, document management, and long-term digital preservation, with specific expertise in the conservation of electronic records and compliant data infrastructures.
The profile also integrates activities in communication and training, including roles as a web reporter within registered digital media environments, and as a trainer and training designer, supporting organizations in developing operational capabilities in regulatory and technological domains.
Recent developments include the application of artificial intelligence in both operational and strategic contexts, with certified activities in AI-driven digital marketing and as an AI trainer, focusing on the selection and structuring of training data for machine learning models.
The professional path led to the foundation of Actainfo Srl, where the role of CEO and Founder is combined with direct involvement in system design and governance. The company operates in cloud SaaS solutions, digital services, public administration support, cybersecurity, privacy, and artificial intelligence, within a framework aligned with European standards and national certifications, including AGID, ACN, ISO 9001, ISO 27001, ISO 27017, ISO 27018, and CSA STAR.
The overall approach is based on integrating compliance, technology, and operational processes into coherent systems, capable of managing complexity and ensuring long-term consistency and scalability.
The path developed through continuous exposure to complex environments where technical and regulatory dimensions are tightly connected. Early work focused on understanding how systems behave under real constraints, particularly in relation to data flows and compliance requirements.
Over time, the activity evolved toward the design and supervision of structured frameworks, supporting organizations in translating regulatory obligations into operational processes. This progression led to a more integrated role, combining legal, technical, and organizational perspectives.
The activity involves direct work with public administrations, companies, and structured organizations, supporting the management and evolution of compliance and digital systems.
This includes the analysis of data flows, identification of risks, and definition of operational structures aligned with regulatory requirements. The work is carried out in environments where accountability, documentation, and process consistency are essential.
The role of Data Protection Officer is performed on an ongoing basis, supporting organizations in ensuring alignment with GDPR and related regulations.
Activities include supervision of data protection frameworks, evaluation of processing risks, definition of internal policies, and coordination with both technical teams and management. The role also involves supporting organizations during audits, inspections, and interactions with supervisory authorities.
Compliance is approached as an integrated process, embedded within daily operations rather than managed as a separate function.
The work extends to the design of governance and compliance systems, where legal requirements, internal processes, and technical infrastructures are aligned within a unified structure.
This includes defining data governance models, integrating compliance controls into workflows, and ensuring consistency across systems and organizational levels. The objective is to reduce fragmentation and build environments capable of sustaining regulatory and operational complexity over time.
Advisory and training activities are focused on enabling organizations to understand and apply regulatory and digital frameworks within their daily operations.
This includes working directly with teams to translate requirements into procedures, supporting audits and internal processes, and building long-term autonomy in compliance management.
The approach is practical and continuous, aligned with structured training environments designed for digital and regulatory domains.
Actainfo originates from the need to manage compliance, technology, and operations within a unified framework.
It reflects an approach developed through direct experience, where legal expertise and technical implementation converge to build structured, scalable systems aligned with European standards.
Rather than a standalone initiative, it represents the operational evolution of a system-oriented methodology.
Current work is focused on the integration of artificial intelligence within governance and compliance systems, particularly in public administration and regulated sectors.
Artificial intelligence is evaluated and implemented with attention to GDPR principles, risk management, and accountability, ensuring that automation remains aligned with legal and operational requirements.
The role of Data Protection Officer remains central in assessing the impact of emerging technologies, supporting organizations in maintaining compliance while adopting new systems.
The broader objective is to move toward structured, scalable infrastructures where compliance, technology, and decision-making processes are fully integrated.
Active as Web Reporter (WREP Media Company, Berlin) within registered digital media environments.