Carmelo Fabrizio Scordino

I'm a senior information security professional with 12+ years of cross-industry experience. I started at a Global Consulting Firm, then moved into a Systems Integrator, followed by a Telco & Tech Multinational Company where I was part of the Security Center of Expertise. For the past 4 years I've been working in GRC & Strategy Advisory Boutiques. Throughout this journey, I've worked with 70+ organizations and C-levels across critical and highly regulated sectors, designing and delivering complex multi-year transformation programs.

Along the way, I discovered that technical excellence alone doesn't drive lasting change, people do. This led me to o Business & Executive Coaching (ICF ACC certified), an Executive Master of Business Administration (EMBA), and a path of continuous learning. Today I combine technical depth with business acumen and human insight to help organizations build resilient security postures and leaders navigate complexity with confidence.

Information & Cyber Security Areas of expertise

Strategy & Governance

Defining multi-year roadmaps, operating models, and decision rights to raise security posture across the organization.

Developing security frameworks, policies, and governance models aligned to business objectives and risk appetite.

Assessment & Gap Analysis

Evaluating security posture against policies, standards, and regulations. Defining remediation roadmaps.

Security Architecture & Solutions

Advisory on security architecture design, technology selection, and solution integration. Translating business requirements into effective, sustainable security capabilities without vendor lock-in.

AI Governance

Ethical responsible and secure AI adoption, ISO 42001 compliance, and governance frameworks for artificial intelligence.

Compliance

Navigating regulatory requirements and achieving compliance.

CQI+IRCA Certified (at BSI) Lead Auditor ISMS ISO/IEC 27001:2022, BCMS 22301:2019, AIMS 42001:2023. About to become PECB Certified NIS2 Lead Implementer, and NIST CSF 2.0 Practitioner.

Risk Management

Identifying, assessing, and prioritizing threats, vulnerabilities, and control gaps across the enterprise.

CISO Advisory

Supporting CISOs and security leaders with strategic guidance, board-level communication, stakeholder management, and security program oversight. CISO as a Service/Support for organizations without a full-time CISO.

Training & Awareness

High-impact training programs designed around specific objectives. Shaping the learning experience end-to-end: content, language, delivery methods, and channels, tailored to the audience, from boardroom to front line.

Coaching areas of expertise

Business & Executive Coaching

ICF-certified coaching for C-level, executives, managers, and entrepreneurs navigating complexity, transitions, and high-stakes decisions. One-to-one partnerships focused on unlocking potential, sharpening decision-making, and accelerating performance.

Leadership Development & Mentoring

Developing leadership capabilities through structured programs, mentoring, and strategic sparring. I work with emerging and established managers to build self-awareness, strengthen communication, and expand their impact.

Testimonials

Resume

12 Years of Experience

Experience

2026 - current
Silk Shells Consulting

Associate

Leading a team of advisors within an Advisory Boutique focused on high-end, vendor-agnostic security consulting. Security strategy, risk advisory, governance, and CISO services for clients across critical infrastructure, financial services, and regulated industries. End-to-end accountability: from shaping the approach to delivering results.

2026 - current
RightSide

Managing Partner

Founder, Managing Partner and Executive Coach of a Business & Executive Coaching Boutique.

2025 - 2026
Neverhack Southern Europe

Information Security Advisory Business Manager

Full P&L ownership for many different critical and high-regulated industries. Business development, team performance, and end-to-end project delivery. Advisory focus on governance, risk, compliance, cybersecurity strategy, and AI governance. Supporting CISOs with security roadmaps, third-party risk, crisis management, and regulatory alignment (NIS2, NIST CSF, ISO 27001/22301/42001).

2023 - 2025
Neverhack Southern Europe

Information Security Advisory Manager

Senior professional with extensive experience in strategic consulting within the Information & Cyber Security domain. Supporting the Global Head of Advisory in overseeing department operations, leading business development activities, and managing a talented team of advisors for areas of my responsibility.
Supporting clients in designing their strategic security pathways and prioritizing their Governance, Risk, and Compliance initiatives.

2019 - 2023

Senior Cyber Security CoE Consultant, Security Architect

In charge at Security Center of Expertise (S-CoE) and Product Development Squad.
I gained extensive experience in design and project management in the GRC, SecOps, Network & Infrastructure, Architecture Design, Awareness & Cyber Culture, Human Factors domains for national and multinational clients and Critical Service Operators.
Designed and integrated network and perimeter architectures and infrastructures, access-control systems, segmentation and Zero Trust, ensuring resilience, scalability, and compliance.

2018 - 2019
Italtel

Cyber Security Technical Solution Engineer

Responsible for product and services offering development (Security Operations and Consulting).
Responsible for development and pre-sales objectives

2016 - 2018

Strategy & Risk Analyst

Vulnerability Management & Incident Management Team Leader in a Banking SOC.

2014 - 2016

Aerospace Safety Risk Analyst

Aerospace Engineer implementing Safety Management Systems for Airlines and Airport Operators.

Education

2021 - 2023
Polimi Graduate School of Management (Politecnico di Milano)

Executive Masters of Business Administration

Business and General Management with a double major: 1) Entrepreneurship 2) Innovation & Transformation.
Business School accreditation: EQUIS, AMBA & BGA, EOCCS, ASFOR, AACSB
110/110 (GPA 3.9)

2025 - 2026
Polimi Graduate School of Management (Politecnico di Milano)

Executive Master of Finance

2024 - 2025
Polimi Graduate School of Management (Politecnico di Milano)

Executive Master of Sales Strategy, Management & Innovation

2024
Polimi Graduate School of Management (Politecnico di Milano)

Executive Program Leading Business Transformation

2025 - 2026
Polimi Graduate School of Management (Politecnico di Milano)

Executive Program Leading by Coaching

2025 - 2026
Polimi Graduate School of Management (Politecnico di Milano)

Executive Program Philosophy for Management

2023
Yucan Innovation Design

Master of Business & Innovation Coaching for Executives

The course aims to train professional ICF-accredited Executive Coaches in serving CxO.

2020 - 2021
ThePower Business School

International MBA

2019 - 2026
Politecnico di Milano

Aerospace Engineering

Licenses and Certifications

2025

ACC ICF

International Coaching Federation

2025

Nova Talent Member

Nova

2024

McKinsey Forward Program

McKinsey & Company

2024

CQI and IRCA Certified AIMS Lead Auditor ISO/IEC 42001:2023

BSI

2024

CQI and IRCA Certified BCMS Lead Auditor ISO/IEC 22301:2019

BSI

2023

CQI and IRCA Certified ISMS Lead Auditor ISO/IEC 27001:2022

BSI

2023

Innovation & Business Transformation

Polimi GSOM

2023

Azure Fundamentals

Microsoft

2022

NSE 1, NSE 2, NSE 3

Fortinet

2019

Advanced Security Architecture

CISCO

2019

Core Network Services Competency (CNS)

Infoblox

2019

Security Competency

Infoblox

2019

Sales Security Accreditation

Infoblox

2018

Network Visibility and Segmentation

CISCO

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Ut elit tellus, luctus nec ullamcorper mattis, pulvinar dapibus leo.

Contact

Get in Touch

+39 3482692884

Torino, Milano

carmelo.f.scordino@gmail.com

Freelance Available