About Osto
Osto is a protection-first, all-in-one cybersecurity platform that makes startups enterprise-ready in minutes - securing cloud, apps, APIs, devices, and data with real enforcement, no security engineer required.
Role Overview
We’re looking for a Head of VAPT & Compliance Services who will own end-to-end delivery of our security services arm - from understanding customer requirements to scoping, pricing, execution, and final delivery.
You won’t be doing the assessments yourself, but you must be strong enough technically to guide teams, define scope, review quality , and ensure smooth project completion.
This role is senior, customer-facing, operational, and will grow into Head of Security Services as we scale.
What You’ll Do
- Own delivery of all VAPT & compliance engagements (scoping → proposal → execution → closure).
- Act as the primary client partner for requirements, timelines, and quality.
- Manage internal / external security partners to ensure flawless delivery.
- Build processes, frameworks, and documentation for scalable service delivery.
- Drive continuous improvement, reporting, and customer satisfaction.
- Work with product team to build VAPT tool.
What You Bring
4–7 years in VAPT, security services delivery, or compliance programs.Strong understanding of security assessments & certification workflows.Excellent client communication, ownership, and execution discipline.Ability to build and scale a services function as we grow.Why Osto
Lead and shape the entire security services org from day zero.Work directly with founders; high visibility and ownership.Build a premium services engine supporting a fast-scaling cybersecurity product company.