Summary
Overview
Work History
Education
Skills
sections.external_links.name
Languages
Timeline
Generic
Antonio Strano

Antonio Strano

Milan,Italy

Summary

As experienced Compliance and Data Protection Manager, I bring a wealth of robust and extensive practical experience, particularly within TLC contexts.

My expertise encompasses crafting comprehensive Data Protection frameworks, including GDPR compliance, conducting thorough data protection reviews, executing security assessments, and leading training initiatives.

My objective is to foster a culture that recognises information as a valuable asset, thereby driving business growth while ensuring the governance necessary to mitigate potential risks.

Overview

30
30
years of professional experience
3
3
years of post-secondary education

Work History

Digital Compliance Manager

Electrolux Group
Milano, Italia
10.2024 - 02.2025
  • Guarantee the application of the cybersecurity and data protection regulations and standards
  • Cooperate with the Group functions in reviewing the company policies related to digital compliance such as a security-by-design and privacy-by-design
  • Evaluate risks associated with digital processes and technologies and coordinate the related assessment in the organization
  • Ensure compliance with data protection principles and privacy laws
  • Participate in external regulatory organizations and lobbying associations such as APPLiA in Europe, AHAM in North America to coordinate proper tracking and advocacy on behalf of Electrolux for digital matters

Cyber Risk & Compliance Coordinator

Sky Italia
Milan, Italy
09.2021 - 10.2024
  • I'm leading the Cyber Risk & Compliance Team reporting directly to the CISO and under the Cyber Security function, with the following mission and responsibilities:
  • Define and verify the adequacy of the Compliance and Data Protection technical measures
  • Guarantee the correct execution of the data processing, in line with the Local and Global data protection and security principles
  • Act as a subject matter expert and as a link between the overall company functions/departments, the Data Protection Officer and its Data Protection Team with a supportive cross functional approach
  • Manage the whole Cyber Risk management process
  • Collaborate with the SKY Group structures to conduct risk assessments and directing risk monitoring plans and any related remediation

Data Protection & Information Security Manager

Sky Italia
Milan, Italy
08.2020 - 08.2021
  • Give a proactive contribution to guarantee the company GDPR compliance and governance
  • Ensure compliance between all the organization's processes and workflows to the main international standards and regulations (SOX sect
  • 404, SAO, GDPR, PCI etc.) and support Sky Group Risk, Controls and Assurance
  • Design, set up and execute a framework of IT General Controls (ITGC) and perform internal audits (test of design / test of effectiveness), acting as second line of defense to guarantee the Technology Compliance
  • Identify potential areas of vulnerability in terms of data protection and recommend all the corrective actions to avoid or deal with similar situations in the future

Data Protection Manager

Vodafone
Milano
06.2012 - 08.2020
  • I've had an active role in the implementation of the GDPR in Vodafone Italy working closely with all the main local and global functions (in particular Legal and Group Privacy)
  • Guarantee Vodafone Italy Data Protection and Compliance while achieving corporate goals
  • Guarantee that all Vodafone products & services respects all Italian and European data protection and Privacy Laws, best practices of Security and Vodafone internal procedures
  • Manage the balance with Privacy and New frontiers (IoT, Big Data)
  • Work closely with all Vodafone Depts to plan regularly Security Audits
  • Create, define, and update corporate security and privacy policies, best practices, and compliance procedures

North East Italy Security Coordinator

Vodafone
12.2007 - 06.2012
  • Full responsibility of the Security of North East Italy
  • Due to the importance of the role I've managed challenging issues at different levels of difficulty (from internal security to national crimes or earthquakes)
  • I've contributed at the roll out of a web based system that Vodafone exposes to the national Law Enforcements Agencies and gives the possibility to submit requests (monitoring of customers data traffic, lawful interception, etc) without using fax and allowing the complete tracking of the request from both company and LEA's side
  • I've managed various types of internal frauds in different scenarios (dealers, employees,..) and some of them have been closed with people arrested or dismissed
  • I've guaranteed the security of almost 600 colleagues based in the 2 main call centers, 4 main offices and 5 main Vodafone flagships of my Region
  • I had a team of 6 people and my main responsibilities can be resumed as follows: Regional Security (protection of NE Italy Vodafone members and assets), Manage all relations with NE Italy Law Enforcements Agencies, Company intelligence

Physical Security Specialist

Vodafone
09.2005 - 12.2007
  • Fundamental role in a company with several offices and data centers (one of the main three based in Europe is in Milan) distributed in the whole Italian country
  • My main task was to evaluate and implement the best active and passive protections for all Vodafone premises in Italy and to guarantee their continuous improvement with the best level of technology available
  • I've contributed to build the Vodafone National Security Operations Center in Milan both from a technological and physical security pow and different flagships across the nation

Security Specialist - LEA mngmt

Vodafone
04.1998 - 09.2005
  • Experience that has put the basis of my security background
  • The main responsibilities was to ensure and deliver to the Italian Law Enforcements Agencies all the obligatory services required by the Law (monitoring of customers data traffic, lawful interception, etc)
  • The issues managed were complex and not standardized and required a strong knowledge of the Italian Judicial system and its own peculiarities both with a passion for results and helping LEA's to achieve their goals
  • Due to the information managed this role in TLC companies requires high levels of confidentiality and seriousness and a full knowledge of the technology involved

Fraud Analyst

Vodafone
Milan Area
06.1996 - 04.1998
  • Company Overview: Vodafone was a start up in Italy
  • I contributed to the Fraud strategy definition and define guidelines and monitoring plans in order to identify, prevent and mitigate malicious events and other potential threats affecting the new business that was beginning, which may occur through the usage of product and services
  • Vodafone was a start up in Italy

Company Start UP

Vodafone
Milan Area
05.1995 - 04.1996
  • Company Overview: Vodafone Italy start up
  • Vodafone Italy start up
  • Tracked market trends, influencing product development decisions.

Education

Graduated - Economics

Università Cattolica del Sacro Cuore
Milan
09.2003 - 09.2006

Skills

  • Data Protection
  • Regulation & Compliance
  • Information Security
  • Risk management
  • Compliance reporting
  • Audit procedures
  • Legal interpretation
  • Project management

sections.external_links.name

Languages

English
Fluent
Spanish
Intermediate

Timeline

Digital Compliance Manager

Electrolux Group
10.2024 - 02.2025

Cyber Risk & Compliance Coordinator

Sky Italia
09.2021 - 10.2024

Data Protection & Information Security Manager

Sky Italia
08.2020 - 08.2021

Data Protection Manager

Vodafone
06.2012 - 08.2020

North East Italy Security Coordinator

Vodafone
12.2007 - 06.2012

Physical Security Specialist

Vodafone
09.2005 - 12.2007

Graduated - Economics

Università Cattolica del Sacro Cuore
09.2003 - 09.2006

Security Specialist - LEA mngmt

Vodafone
04.1998 - 09.2005

Fraud Analyst

Vodafone
06.1996 - 04.1998

Company Start UP

Vodafone
05.1995 - 04.1996
Antonio Strano