While we don't verify specific claims because reviewers' opinions are their own, we may label reviews as "Verified" when we can confirm a business interaction took place. Read more
To protect platform integrity, every review on our platform—verified or not—is screened by our 24/7 automated software. This technology is designed to identify and remove content that breaches our guidelines, including reviews that are not based on a genuine experience. We recognise we may not catch everything, and you can flag anything you think we may have missed. Read more
Company details
Written by the company
Osto is the complete cybersecurity platform for startups. One platform runs your entire security stack, with compliance automation, penetration testing, and AI-powered security questionnaires built in. Most startup founders today end up assembling cybersecurity from five to seven separate vendors: a compliance platform for SOC 2 documentation, a web application firewall, an endpoint protection vendor, a separate Zero Trust solution, a cloud posture tool, an annual penetration testing firm, and a questionnaire response tool. Multiple budgets, multiple dashboards, and none of them connected to each other. Osto replaces this with one platform. The platform covers cloud security including WAF, API protection, and cloud posture management across AWS, Azure, and GCP; application security including SAST, SBOM, software composition analysis, license compliance, and mobile and web app scanning; network security including Zero Trust Network Access and domain filtering; and endpoint security including antimalware, device control, application control, disk encryption, data loss prevention, screen lock, and remote wipe. 20 modules in total, all built in house by the Osto engineering team. Compliance automation runs directly on top of the security stack. Controls are continuously mapped and evidence flows from the security modules into your audit trail, so SOC 2 Type II, ISO 27001, HIPAA, and PCI-DSS readiness becomes live data rather than screenshots collected once a quarter. Vulnerability Assessment and Penetration Testing (VAPT) is delivered by OSCP-certified engineers. The AI Security Q&A module pre-fills enterprise security questionnaires from live platform data, removing weeks of manual response work. Osto is built for startup founders and security teams at companies between 10 and 200 employees, particularly B2B SaaS, fintech, healthtech, and AI-native companies pursuing their first enterprise deals where compliance becomes a gating requirement. Osto is headquartered in San Francisco, California, is SOC 2 Type II compliant and ISO 27001 certified, and is backed by PointOne Capital, GSF, and India Accelerator.
Contact info
28 Geary Street, Suite 650. San Francisco, California, 94109, San Francisco, United States
- +1 6507131763
- business@osto.one
- osto.one
People also looked at
No reviews
This company hasn’t received any reviews yet.
The Trustpilot Experience
Anyone can write a Trustpilot review. People who write reviews have ownership to edit or delete them at any time, and they’ll be displayed as long as an account is active.
Companies can ask for reviews via automatic invitations. Labeled Verified, they’re about genuine experiences.
Learn more about other kinds of reviews.
We use dedicated people and clever technology to safeguard our platform. Find out how we combat fake reviews.
Learn about Trustpilot’s review process.
Here are 8 tips for writing great reviews.
Verification can help ensure real people are writing the reviews you read on Trustpilot.
Offering incentives for reviews or asking for them selectively can bias the TrustScore, which goes against our guidelines.





