Skip to content
Nicola Dibitetto
Let’s talk

info@nicoladibitetto.it+39 379 366 0243

Stop for a moment… and let me help you put things in order

My name is Nicola Dibitetto and I am an Enterprise Architect. My job is to connect a company’s strategic goals with its IT systems and its operational processes.

Who I work with
Freelance professionals, SMEs and larger companies
Where I am
Bari, or wherever you need me to be

What I do

Processes, security, artificial intelligence

  1. Area I

    Process & IT Governance

    Processes described, requests in order of priority, suppliers answering what is actually needed

    Go to the area
  2. Area II

    Cyber Security & Risk

    Risks mapped, rules written down, continuity planned before it is needed

    Go to the area
  3. Area III

    AI Advisory

    AI where it really pays off, with clear rules and a trial before scaling up

    Go to the area

Situations

The problem rarely shows up under its real name

It usually takes the shape of one of these sentences. If you recognise one, that is the place to start.

  1. “The ERP is there, but part of the work still goes through spreadsheets and manual steps”

    Usually the system no longer mirrors the way people work

    PG.02Digitalisation and ERP systems
  2. “Requests to IT pile up and nobody can say what comes first”

    A priority criterion shared by those who ask and those who deliver is missing

    PG.03IT demand management
  3. “The supplier delivers, but we only find out about time and cost after the fact”

    You need someone who tracks progress, costs and quality of service

    PG.05IT service governance
  4. “The data is there, yet decisions are still taken on gut feeling”

    There are too many indicators, or they arrive late, or nobody chose them

    PG.04Data analysis and decision support
  5. “On cyber security we do whatever comes up, whenever it comes up”

    Before any solution, you need to know where the company is really exposed

    CS.01Cyber Risk & Maturity Assessment
  6. “If the systems stop tomorrow, we have no idea how long we would be down”

    There is no continuity plan, or there is one that nobody has ever tested

    CS.03Business Continuity & Incident Readiness
  7. “AI is already used in the company, but nobody has decided how”

    The tools came in before the rules

    AI.02Rules, risks and compliance in the use of AI
  8. “We are told we should do something with AI, but it is not clear what”

    You need to understand where it pays off, and also where it does not

    AI.01Understanding where AI really helps

Areas of work

Three areas, one way of working

Each service has a code you can refer to when you write to me. For each area: the problem we start from, how I step in, what you get out of it.

Area I

Process & IT Governance

I improve business processes and help keep digital systems under control, so that IT tools and suppliers answer the real needs of the company.

The problem

Processes that have grown layer upon layer, ERP systems only half used, IT requests with no order of priority, suppliers that are hard to govern

The approach

I map how work is done today together with the people who do it, turn needs into clear requests for suppliers and set priorities, indicators and review points

The value

A counterpart who speaks both the language of the business and that of the systems, and who brings method without weighing work down

The possible outcome

Processes described and redesigned, a single list of IT requests ordered by priority, reports that decision-makers can actually read

All the details of the area

Area II

Cyber Security & Risk

I help companies make cyber security part of the way they work and of their digitalisation projects, with attention to risk and to regulatory compliance.

The problem

Security is dealt with in episodes: after an incident, on the eve of an audit, when a customer asks for it

The approach

I start from the critical processes and their exposure to risk, then build rules, roles and controls the organisation can actually sustain

The value

Data and business continuity protected without slowing down everyday work

The possible outcome

A risk map, written policies and procedures, continuity and recovery plans, security requirements built into projects and contracts

All the details of the area

Area III

AI Advisory

I help companies use artificial intelligence where it is really needed, with clear rules and without improvisation. I do not push any particular tool.

The problem

The pressure to “do something with AI” arrives before anyone has understood where it pays off, and in the meantime tools enter the company without rules

The approach

I start from work processes, not from tools: I test on a limited activity, measure the results and only then tell you whether it is worth extending

The value

A vendor-independent view on what is worthwhile, how to introduce it and how to keep it under control over time

The possible outcome

Use cases ordered by priority, written rules of use, a reasoned choice of tools, a pilot with its numbers

All the details of the area

Method

Five steps, always in the same order

The method is the same in every area. The tools change, the order does not: from the business goal to processes, from technology to rules, through to results.

Every step leaves something in writing. It is what makes it possible, months later, to reconstruct why a decision was taken.

  1. Business

    The goal first

    What must change, for whom and with what expected benefit. Until that is answered, any technical choice is premature.

    Formalised needs and expected benefits

  2. Processes

    How work is really done

    I reconstruct the process as it is today together with the people who run it, identify what does not work and design how it should work.

    As-is situation, issues, redesigned process

  3. Technology

    The tool in its place

    Only at this point do I talk about ERP systems, integrations or artificial intelligence: clear requests for suppliers and, where it makes sense, a pilot before extending.

    Requirements, alternatives compared, outcome of the pilot

  4. Governance

    Rules that hold

    Who decides, who is accountable, with which priorities and which controls. It applies to IT requests, to security and to the use of AI.

    Priorities, roles, rules of use, service levels

  5. Results

    The numbers, at the end

    A few indicators, chosen at the start and checked at the end, say whether the work has paid off and whether to extend it, correct it or stop.

    Indicators, reports, next steps