ABOUT SECALYX
Secalyx Technologies is an independent cybersecurity and compliance advisory practice. We help organizations establish practical security programs, prepare for audits and customer assessments, strengthen governance, and access experienced virtual CISO leadership. Our work is clearly scoped, evidence-based, and designed around what each business can realistically operate and sustain.


Experience Behind Secalyx
Founder & Principal Consultant
Credentials & Advisory Role
Behind his certifications and advisory credentials are more than 25 years building cybersecurity and technology functions from greenfield foundations, and scaling them to meet the expectations of global enterprises, regulated customers, auditors, and boards.
He founded Secalyx Technologies to bring that experience to other organizations, and advises as an independent consultant, vCISO, and security subject-matter expert.
Career at Scale
Over two decades at a global technology firm he built the IT and security infrastructure hands-on, designing it, implementing it, and then running it as the organization scaled. The function grew from two people to more than sixty-five across eight locations, with teams in Bengaluru, Mumbai, Delhi NCR, Pune, and Indore, governing a roughly US$3 million annual technology and security budget supporting 5,000+ users.
He led security and technology programs that supported more than 200 customer-assurance assessments for Fortune 100 and Fortune 500 organizations across BFSI, healthcare, aviation, and other regulated environments. He designed and implemented the information security management system that carried ISO/IEC 27001 through six years of surveillance and recertification, and built the control environment behind SOC 2 Type II attestation.
He is the author of From Risk to Trust, a four-volume work on cybersecurity covering global compliance, governance, and frameworks.
PUBLISHED WORK
From Risk to Trust is a four-volume reference for cybersecurity leaders and practitioners, covering the operating model, risk and controls, assurance, and applied practice.