About Lucia
Spanish
Native or bilingual
English
Fluent
Portuguese
Conversational
Experience
- FreelanceData Privacy, Tech Policy & GRC ConsultantJanuary 2025 - Today (1 year and 6 months)Madrid, Spain● Cross-border privacy & compliance: DSARs, DPIAs, data mapping, GDPR/CCPA/LGPD/PIPL & regulator engagement.● GRC & Cybersecurity: NIS2, DORA, ISO 27001 & COBIT; risk registers & incident-response planning.● AI Ethics & Tech Policy: EU AI Act and Digital Markets Act regulatory alignment, governance impact assessments, data-access transparency analysis, and policy advisory for digital platform ecosystems.
- BASF Digital SolutionsCybersecurity Governance, Risk & Compliance ManagerJanuary 2024 - February 2025 (1 year and 1 month)Madrid, Spain● Built and monitored cyber risk frameworks aligned with ISO 27001, NIST CSF, and CMMC.● Defined KPIs, dashboards, and maturity models for global IT/OT systems.● Led compliance audits, remediation plans, and internal control automation.● Coordinated third-party risk initiatives and executive-level reporting.
- BASF Digital SolutionsGlobal Data Privacy SpecialistJune 2021 - December 2023 (2 years and 6 months)Madrid, Spain● Managed privacy compliance in 20+ countries, including DPIAs, TIAs, and vendor assessments.● Reviewed SCCs, data processing agreements, and global consent management.● Delivered internal privacy training and incident response documentation.● Embedded privacy-by-design with product, IT, and legal teams.● Advised digital product teams on Privacy-by-Design in customer-facing platforms, supporting DPIAs and controller/processor role allocation.
Recommendations
Be the first to recommend Lucia
Help this freelancer shine by sharing your experience working together.
These freelancer profiles also match your criteria
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4
Education
- Master of Public ManagementPotsdam University2016Master of Public Management
- Master in Government & Public AdministrationOrtega y Gasset & UIMP2015Master in Government & Public Administration
Certifications
- CISM (Certified Information Security Manager)ISACA2024
- CIPM (Certified Information Privacy Manager)IAPP2022