Information Security Advisor jobs in Delhi at CryptoMize are open on a rolling, always-hiring basis — security engagements keep needing the counsel layer between raw technical findings and the decisions clients actually make. This is a full-time, permanent position with immediate joining, based at our New Delhi HQ. An Information Security Advisor here reports into the security leadership and delivers information and cyber security assurance and compliance across the spectrum of services the agency runs — risk frameworks, policy, metrics, and the awareness programs that make both stick. Below is the complete job description — the advisory responsibilities, the requirements, the seniority path, and the selection process.
LOCATION New Delhi (HQ)
EMPLOYMENT Full-time · Permanent
AVAILABILITY Immediate · Rolling intake
COMPENSATION Discussed at screening
TRACKS ON THIS DESK25
CRAFT SKILLS NAMED11
TOOLS & SYSTEMS4
PATH STAGES4
01
01The actual work
What will you actually do as a Information Security Advisor at CryptoMize?
01
Drive improvement to security levels through the identification of risks and the implementation of mitigating strategies — advice that ends in deployed controls, not binders
02
Apply and maintain security policy across client engagements — the rulebook kept current as the threat and regulatory landscape moves
03
Maintain the information security risk assessment framework and the risk register it runs on — live documents, not annual rituals
04
Run a cyber security metrics dashboard and recommend the actions arising from its output — the instrumentation leadership steers by
05
Participate in the wider security awareness program: creating ideas and content, providing orientation and educational programs, and the ongoing communication that keeps awareness from decaying
06
Support the security manager in discharging accountabilities, working across the myriad information and cyber security topics client engagements generate
07
Translate between worlds — the technical findings of analysts and researchers become risk language executives can decide on
ROLE RESPONSIBILITIES
As an Information Security Advisor at CryptoMize you will deliver information and cyber security assurance and compliance across the spectrum of services the agency offers its clients — identifying risks, implementing mitigating strategies, and maintaining the policies each engagement operates under. The seat is the counsel layer: where technical findings become decisions.
The risk framework is a standing duty: the assessment methodology and its register are maintained as live instruments, and the cyber security metrics dashboard is kept honest enough that the actions recommended from its output hold up under scrutiny. Advisors here are the reason a client’s security posture is knowable at any moment, not discoverable after an incident.
The awareness mandate is equally real: creating ideas and content for the security awareness program, providing orientation and education, and carrying the ongoing communication that keeps human risk from quietly regrowing after every training cycle. The advisor who treats awareness as infrastructure is the one promoted first.
02
02Capability profile
What skills and tools does a Information Security Advisor need?
astro-island,astro-slot,astro-static-slot{display:contents}
Craft skills11 Tools & systems4 Offer standards4
Risk identification and mitigation strategy designSecurity policy application and maintenanceRisk assessment framework ownership and risk register disciplineSecurity metrics instrumentation and interpretationCompliance and assurance across IT service spectraSecurity awareness program content and deliveryClient-facing advisory communication — technical risk in executive languageRegulatory literacy across the jurisdictions client engagements touchStructured documentation disciplineCross-team collaboration with analysts, engineers, and engagement leadsDiscretion with client security postures (non-negotiable)
GRC platforms for framework and register managementRisk heat-mapping and BI dashboardsISO 27001 and SOC 2 control librariesSIEM telemetry outputs (Splunk-class) for metrics grounding
Depth of demonstrated skill in the specific role disciplineClassification and scope of the client engagement the role supportsUrgency and time-sensitivity of active project requirementsTrack record built across CryptoMize engagements
Also known as: security risk advisor jobs · grc advisor vacancy · cybersecurity consultant openings · security compliance advisor jobs
03
03Seniority ladder
Information Security Advisor — seniority path at CryptoMize
Advisors advance by the quality of the security decisions their counsel produces, not tenure. The ladder below is how the security function is organized.
Information Security Advisor
Owns risk and policy advisory on assigned engagements — frameworks, registers, metrics, and awareness.
1/4
Senior Security Advisor
Carries the flagship security engagements, arbitrates risk acceptances, and mentors advisors beneath.
2/4
Security Governance Lead
Owns the agency-wide governance stack — policy architecture, compliance posture, and the metrics framework itself.
3/4
CISO track
The executive route: advisors who take the security leadership seat, owning posture and accountability across the portfolio.
4/4
04
04The engagement surface
CryptoMize work a Information Security Advisor touches
Every role plugs into live engagements across the five Penta-P domains — these are the services your work feeds.
Information Security Advisor · Job Opening
This seat plugs into 7 live CryptoMize services across the five Penta-P domains — the work below is where yours lands.
7 SERVICESPENTA-P
Security Consultancy
Cybersecurity Policy
Information Security Program
Cybersecurity
Information Security
Governance Support
Regulatory Framework
WHAT DOES INFORMATION SECURITY ADVISOR COMPENSATION DEPEND ON?
Compensation is discussed during screening — never a fixed public figure, because it varies per person and per engagement. It depends on:
# OFFER CONSTRUCTION FACTOR
01 Depth of demonstrated skill in the specific role discipline
02 Classification and scope of the client engagement the role supports
03 Urgency and time-sensitivity of active project requirements
04 Track record built across CryptoMize engagements