PRINCIPAL-LED CYBERSECURITY ADVISORY

Cybersecurity decisions that hold up under scrutiny.

A customer wants your SOC 2 report. DPDP changes your obligations for personal data. A security questionnaire asks how you secure your digital products and customer data. Or you need Fractional CISO leadership to govern AI security and risk.

Secalyx helps you establish the facts, prioritize the gaps, and respond with evidence—not assertion.

Built on 25+ years of hands-on experience running and leading enterprise cybersecurity and technology functions.

Global cybersecurity network visualization - Secalyx Technologies homepage hero
Vikas Khandelwal, Founder & Principal Consultant

The Experience Behind Secalyx

Vikas Khandelwal

Founder & Principal Consultant

He holds CISSP (since 2009), CISM, CRISC, CISA, C|CISO, and CEH, and is a BSI-certified ISO/IEC 27001:2022 Lead Auditor and Lead Implementer.

Across a career spanning 25+ years, he has personally designed, built, and run cybersecurity and IT infrastructure from single-site environments to multi-city operations spanning Bengaluru, Mumbai, Delhi NCR, Pune, Indore, and international sites, supporting 5,000+ users.

He led security and technology programs that supported customer assurance assessments for Fortune 100 and Fortune 500 organizations across BFSI, healthcare, aviation, and other regulated environments. His current advisory work also includes data protection, security framework implementation, AI governance, and Fractional CISO leadership.

OUR APPROACH

How an engagement works

STEP 01

Scope agreed before work starts

Before work begins, we agree the business question, systems in scope, applicable obligations, stakeholders, exclusions, responsibilities, fees, and expected outputs.

STEP 02

Evidence examined directly

We review documentation, configurations, records, and operating practices, and validate our understanding with the people responsible for them.

STEP 03

Findings prioritized for action

Gaps are evaluated by risk, obligation, and business impact—not presented as an undifferentiated checklist. Recommendations include ownership and practical next steps.

STEP 04

Capability stays when we leave

You receive agreed deliverables and an action plan you own. Documentation, evidence, and operating practices are built to remain usable—your next surveillance audit becomes a review, not a reconstruction. Ongoing support is available, not assumed.

What security decision is in front of you?

Tell us the requirement, deadline, or pressure you are dealing with.

or email us at info@secalyx.com