Carmelo Fabrizio Scordino

I'm a senior information security professional with 12+ years of cross-industry experience, built across genuinely different environments: global consulting, systems integration, a major Telco & Tech multinational and two Advisory Boutiques. For the past 4 years I've been working in Strategy & GRC Advisory Boutiques, currently as Associate at Silk Shells Consulting.

Throughout this journey, I've worked with 70+ organizations and C-levels across critical and highly regulated sectors, designing and delivering complex multi-year transformation programs.

Along the way, I discovered that technical excellence alone doesn't drive lasting change, people do: the human and organizational side of security is where programs succeed or fail. This led me to o Business & Executive Coaching (ICF ACC certified), and deeper study of leadership and organizations.

I also hold an Executive Master of Business Administration - EMBA (with a double major in Entrepreneurship, Innovation & Transformation), an Executive Master of Finance and an Executive Master in Sales Strategy, Management and Innovation, an executive program in Leading Business Transformation and a degree in Aerospace Engineering.

I'm also a certified Lead Auditor ISO/IEC 27001, 22301, and 42001.

Today I combine technical depth with business acumen and human insight to help organizations build resilient security postures and leaders navigate complexity with confidence.

I teach AI and security at major italian universities, and I'm a founder and managing partner of two companies.

Information & Cyber Security Areas of expertise

Strategy & Governance

Defining multi-year roadmaps, operating models, and decision rights to raise security posture across the organization.

Developing security frameworks, policies, and governance models aligned to business objectives and risk appetite.

Assessment & Gap Analysis, Audit

Evaluating security posture against policies, standards, and regulations. Defining remediation roadmaps.

Security Architecture & Solutions

Advisory on security architecture design, technology selection, and solution integration. Translating business requirements into effective, sustainable security capabilities without vendor lock-in.

AI Governance

Ethical responsible and secure AI adoption, ISO 42001 compliance, and governance frameworks for artificial intelligence.

Compliance

Navigating regulatory requirements and achieving compliance.

CQI+IRCA Certified (at BSI) Lead Auditor ISMS ISO/IEC 27001:2022, BCMS 22301:2019, AIMS 42001:2023. About to become PECB Certified NIS2 Lead Implementer, and NIST CSF 2.0 Practitioner.

Risk Management

Identifying, assessing, and prioritizing threats, vulnerabilities, and control gaps across the enterprise.

CISO Advisory and CISOaaS

Supporting CISOs, security leaders and organizations with strategic guidance, board-level communication, stakeholder management, and security program oversight. CISO as a Service/Support for organizations without a full-time CISO.

Training & Awareness

High-impact training programs designed around specific objectives. Shaping the learning experience end-to-end: content, language, delivery methods, and channels, tailored to the audience, from boardroom to front line.

Coaching areas of expertise

Business & Executive Coaching

ICF-certified coaching for C-level, executives, managers, and entrepreneurs navigating complexity, transitions, and high-stakes decisions. One-to-one partnerships focused on unlocking potential, sharpening decision-making, and accelerating performance.

Leadership Development & Mentoring

Developing leadership capabilities through structured programs, mentoring, and strategic sparring. I work with emerging and established managers to build self-awareness, strengthen communication, and expand their impact.

Testimonials