Adriano Angelo Rossi

Senior Business Developer

Milan, Lombardy, Italy

About

I am the Senior Business Developer at BSD LEGAL, a Milan-based boutique law firm specialized in digital compliance, privacy, NIS2, AI Act and cybersecurity. With over 30 years of experience in sales, marketing and executive management, I bring a unique combination of business acumen and legal expertise. After leading sales and marketing teams at C-level, I built a second career in data protection – serving as Regional Privacy Lead at Adecco (covering 14 countries) and GDPR senior consultant for Vodafone – where I developed a deep understanding of privacy, compliance, and data-driven business processes. Today, my mission is to: 🔹 Build and nurture high-value relationships with General Counsel, Legal Directors and C-level executives. 🔹 Qualify and prioritize opportunities to ensure our Partners focus on strategic prospects. 🔹 Represent BSD LEGAL at conferences, networking events and industry initiatives, strengthening our brand visibility. 🔹 Support client success by connecting them with tailor-made legal solutions for privacy, cybersecurity and regulatory compliance. I am passionate about helping companies turn compliance into a competitive advantage, driving growth through a proactive, business-oriented approach to legal challenges. 📩 Let’s connect: I’m always open to conversations with forward-thinking professionals seeking innovative ways to manage risk and achieve compliance excellence.

Experience

  • Senior Business Developer at BSD Consulting
    Oct 2025 - Present · 10 mos

    As Senior Business Developer at BSD CONSULTING – a boutique consulting firm specializing in digital compliance, privacy, NIS2, AI Act and cybersecurity – I am responsible for designing and executing the firm’s business development strategy, strengthening its market positioning, and building long-term client relationships. Key responsibilities include: - Acting as the first point of contact for prospective clients, clearly introducing BSD CONSULTING’s value proposition and tailored legal solutions. - Qualifying and prioritizing incoming leads, ensuring that Partners engage primarily with high-potential opportunities. - Expanding the firm’s network through structured outreach, conferences, industry events, and targeted relationship-building. - Maintaining a healthy, high-quality sales pipeline and providing regular strategic feedback to the Board on market trends and lead quality. - Supporting Partners in nurturing strategic accounts and consolidating relationships with key clients over time. - Representing BSD CONSULTING externally as an ambassador at seminars, workshops, and networking events. This role allows me to combine three key strengths: - 30+ years of experience in sales, marketing, and business strategy, including C-level leadership roles. - Strong expertise in privacy and data protection, gained as Local and Regional Privacy Lead at Adecco and as GDPR senior consultant for Vodafone. - A proven ability to create value through relationship-building, market insight, and commercially driven legal advisory. My mission is to position BSD CONSULTING as a trusted partner for medium-to-large enterprises seeking top-tier, tailor-made legal services in privacy, cybersecurity, and regulatory compliance.

  • Assistenza al prossimo at Career Break
    Dec 2024 - Sep 2025 · 10 mos

    I have been actively taking care of someone in my family for a few months

  • Regional Privacy Lead – Italy, Eastern Europe & MENA at Adecco Group AG - Adecco Italia holding di partecipazione e servizi spa
    Feb 2021 - Nov 2024 · 3 yrs 10 mos

    As Regional Privacy Lead, my main task is the coordination and support of LPLs (Local Privacy Leads) in 12 countries in my region (Poland, Czech Rep, Italy, Hungary, Slovenia, Serbia, Romania, Bulgaria, Greece, Turkey, Middle East - Uae, Tunisia) Selection, hiring process (with HR) and induction of new LPLs are also among my duties. I manage 12 countries on behalf of, and under supervision of, the global DPO, to whom I report regularly as the first line of reporting, implementing the global strategy on the ground. I proactively detect issues and noncompliances in the region and discuss them regularly with the global DPO, and then define with it new strategies and remediations. I actively participate both as a speaker and organizer, in global monthly calls, in the global privacy meetings (in presence throughout Europe) and in live/online events, involving more than 60 countries. In addition to those mentioned above, my duties also include: - to prepare materials and supports for initial training of LPLs - to share common issues, best practices and possible “actions to simplify” at the regional level - to consolidate the teamwork for the LPLs of the Region - to prepare an “easy and clear” doc to show and share implementation status in each country, including corrective actions - to define remediation plans for each country in accordance with global DPO - to provide support in GDPR audit and related remediation plan - actions, at regional/cluster/local levels, to improve adoption of the "new initiatives" policy; - actions, at any levels, to improve adoption of OneTrust platform, modules and functionalities, including specific trainings for LPLs - to verify the actual implementation of retention periods in the region; - to promote active cooperation between GDPR teams and IT/SEC - to define a privacy framework for non-GDPR countries (i.e. Turkey, UAE, Serbia, Tunisia) - to manage handover to the incoming LPL Italy - to discuss training needs for the teams

  • Local privacy lead - Italy at Adecco Italia holding di partecipazione e servizi spa
    Feb 2019 - Dec 2020 · 1 yr 11 mos

    As Local Privacy Lead of Italy, I was responsible for overall privacy compliance of the country, one of the most important worldwide, including 9 legal entities, >2’800 staff employee and > 50’000 associates. Initially (March 2019) I also lead the Italian privacy office establishment project, which did not yet exist at that time. In less than nine months, the new structure was operational, with myself as Local Privacy Lead and leader + 3 privacy specialized lawyers in the team. The office was managing an impressive volume of tasks, from registry of records to data subject rights requests, from incidents management to suppliers’ data protection questionnaires, and so on. In particular, among others, I was managing the following items: - Creation/updating of Register of processing activities - Opening, reviewing, approval of privacy questionnaires for suppliers - Opening, reviewing, approval of new initiatives’ questionnaires - Execution of local DPIAs / review of DPIAs shared at global level - Daily Support to local business (i.e. privacy related questions, client’s data requests, etc.) - meetings with internal stakeholders and external prospects/clients/suppliers - Supplier/Client contracts’ review including Data Processing Agreement - Receive, monitor, answer data subjects’ access requests (DSAR) - Managing of privacy audits: internal or external (by clients) - Manage incidents & data breaches (investigation, internal documentation, notifications, evidence, communications, etc.) - Managing Data Protection Authorities inspections/requests - Writing/translation/localization of policies and procedures - websites’ privacy compliance management (privacy notices, cookie banners, cookie policy) - Design/writing/translation of privacy trainings - Execution of privacy training sessions - Execution of Data Breach Management training sessions - Managing of privacy ambassadors’ meetings - Expert use of OneTrust for various tasks (registry, DSAR, assessments, etc.)

  • GDPR Senior Consultant - European GDPR Implementation Team at Vodafone - via BIP Business Integration Partners for telecommunications operator
    Sep 2017 - Jan 2019 · 1 yr 5 mos

    - As a GDPR Expert and Data Protection Officer - DPO ISO 17024 certified, I am a member of the international team in charge of implementing the GDPR at the customer (Vodafone) site and worldwide. - Particularly critical and complex operating areas such as GDC (Group Data Center) and TDO (Technical Delivery & Operations), distributed among 4 legal entities and multiple data centers across Italy, Germany, England and Ireland, are subject to the implementation. - The project includes the study, design and complete implementation of all what is necessary to bring the company to be perfectly "compliant" by the end of May 2018 (goal successfully achieved). - The activities cover, at wide range, all areas and all phases, from the identification of personal data processing to the security requirements checks, from the documentation verification to the implementation of the concepts of privacy by design and privacy by default, from the design of the Data Breach procedures to their actual implementation and testing. - The international dimension and the company complexity make the project particularly formative and challenging. Business or sector: telecommunications.