Dr. Erdal Ozkaya

CISO & Cybersecurity Executive Bridging Entrepreneurship, Global Enterprise & Public Sector

New York City Metropolitan Area

About

I help organizations scale securely by aligning cybersecurity, business growth, and governance, drawing on 25+ years of leadership across entrepreneurship, global financial services, and the public sector. My career is defined by a rare fusion of three leadership pillars: The Entrepreneur: I founded and scaled an IT/Cybersecurity firm into one of the largest in Australia, achieving a successful exit through acquisition. I understand how to build businesses and drive market adoption, including introducing and growing Kemp Technologies in the Australian market. The Global Executive CISO: I served as CISO at Standard Chartered Bank, responsible for cybersecurity across 23 countries spanning the Middle East, Africa, and Pakistan. My executive leadership also includes CISO roles at Xcitium/Comodo and Secunia, as well as serving as a Trusted Security Architect at Microsoft, where I was recognized with the Circle of Excellence Platinum Club Award. The Academic / Government Leader: I currently serve as Chief Information Security Officer at Morgan State University, applying world-class enterprise security, risk, and governance practices to higher education and public-sector environments. Beyond operational leadership, I am a shareholder and board advisor to cybersecurity firms including Binalyze (backed by Deutsche Bank and Cisco) and Neox Networks. My philosophy is simple: cybersecurity should be a strategic business enabler, not a cost center.

Experience

  • Morgan State University (Baltimore, Maryland, United States · Hybrid)
    • Chief Information Security Officer
      Nov 2025 - Present · 8 mos

      I lead the enterprise security program for Morgan State University, a major R1 research institution. My mandate is to execute a rapid security transformation, establishing a scalable, resilient defense-in-depth strategy against high-impact threats, notably ransomware. I manage the security budget, compliance (FERPA, GLBA), and lead the transformation of a decentralized IT model through strategic governance initiatives.

    • Strategic Security Advisor
      Jul 2025 - Dec 2025 · 6 mos

      Responsible for defining and aligning the organization's long-term security strategy with core business objectives and regulatory requirements. Advised executive leadership (including the Board) on critical cyber risk exposure, resource allocation, and emerging threat landscape. Established governance frameworks, prioritized key security investments, and developed the foundational roadmap that matured the company's information security posture and reduced enterprise risk.

  • Advisor to the Board at NEOX Networks
    Apr 2024 - Apr 2026 · 2 yrs 1 mo

    Focus: Advising on market strategy and technical architecture for high-performance network monitoring and security solutions. Impact: Providing "boots-on-the-ground" executive insights to ensure hardware and software solutions meet the rigorous compliance and visibility standards of Fortune 500 organizations. Ecosystem: Bridging the gap between network visibility and cybersecurity resilience to help organizations detect threats at the packet level.

  • Advisor to the Board at Binalyze
    2018 - Apr 2026 · 8 yrs 4 mos

    Focus: Providing strategic guidance to the leadership team of the world’s fastest Digital Forensics and Incident Response (DFIR) platform. Impact: Leveraging 25+ years of enterprise security experience to help align Binalyze’s product roadmap with the evolving needs of global CISOs and SOC teams. Ecosystem: Contributing to the growth of a venture-backed innovator (supported by Cisco and Deutsche Bank) to redefine automated enterprise forensics.

  • Group Chief Information Security Officer at Xcitium
    Aug 2023 - Jun 2025 · 1 yr 11 mos

    At MAVeCap, I served as the primary architect and guardian of a secure innovation ecosystem (CISO), overseeing the cybersecurity posture for a diverse portfolio of disruptive technology firms, including Xcitium, Comodo, NuFinTech, and NuSec. My mandate focused on establishing a robust security foundation that enabled portfolio companies to innovate with confidence while maintaining rigorous resilience against global cyber threats. Key Strategic Initiatives: Governance & Board Accountability: Developed a comprehensive suite of leading indicator metrics and a board-level risk appetite program. This initiative ensured that C-suite and business leaders operated with 100% transparency and alignment with the organization's risk tolerance. Threat Resilience: Established and directed an elite Cyber Red Team, tasked with modeling advanced adversarial scenarios and providing objective assurance of control efficacy across the portfolio. Crisis & Incident Management: Led all high-stakes incident response and crisis management efforts, providing executive-level guidance to portfolio companies to mitigate operational impact and preserve brand integrity. Security Culture Transformation: Institutionalized a "security-first" framework across the group through the development of specialized awareness programs, empowering personnel to make risk-informed decisions at scale.

  • Chief Cybersecurity Strategist | CISO at Comodo
    Apr 2021 - Jun 2025 · 4 yrs 3 mos

    Architected the global cybersecurity strategy and led the enterprise risk management program for a world leader in endpoint protection. My role dual-tracked between internal organizational resilience and external strategic advisory, ensuring security was a core product differentiator. Core Accomplishments: Regulatory & Compliance Excellence: Successfully spearheaded the transition and certification for ISO 27001, SOC 2 Type 1 & Type 2, and GDPR, establishing a gold standard for data privacy and security. Global Infrastructure & Continuity: Directed business continuity planning and the secure deployment of remote work/BYOD policies across eight international offices, ensuring seamless operations during global shifts in work environments. Strategic Professional Services: Led the Professional Services, Strategic Advisory, and DFIR teams. I provided executive-level guidance to global clients, assisting them in quantifying risk through security scoring and navigating high-stakes breach response. Cloud Transformation: Orchestrated security initiatives across complex multi-cloud environments, ensuring a unified security posture across disparate infrastructures.