Listing Thumbnail

    Vanta

     Info
    Sold by: Vanta 
    Deployed on AWS
    Vendor Insights
    Vanta helps thousands of fast-growing companies simplify and centralize compliance and security workflows so they can build trust.

    Overview

    Play video

    Whether you're just starting out or scaling a mature security program, demonstrating strong security practices and building trust with buyers has never been more critical.

    Vanta's Trust Management Platform helps over 6,000 AWS customers, including Atlassian, Modern Health, and Mistral AI, automate compliance, improve visibility, and reduce manual work. Security, GRC, and IT teams use Vanta to:

    • Automate evidence collection across 35+ frameworks, including SOC 2, ISO 27001, HIPAA, PCI DSS, and GDPR
    • Centralize GRC workflows like risk and vendor management
    • Complete security reviews up to 5x faster

    Vanta customers report a 526% ROI over three years, with most seeing payback in just three months. On average, Vanta boosts compliance team productivity by 129%, helping teams do more with less.

    For more complex environments, Vanta supports custom automated tests, built directly in-platform or via the Vanta API, ideal for self-hosted and custom-built systems.

    As the only multi-product vendor in the Trust Management space, Vanta offers not only core compliance automation but also AI-powered Third Party Risk Management and Trust Center solutions.

    Pricing is tiered based on company size and program complexity. Preview pricing for 1-20 employees and more at: vanta.com/pricing. Interested in a private offer via AWS Marketplace? Email awsmarketplace@vanta.com 

    Highlights

    • Built for AWS - not just compatible: As an AWS Security Competency Partner with deep integrations across 40+ AWS services, Vanta gives you full visibility into your cloud security and compliance, and is purpose-built for AWS-native environments.
    • Automated and scalable compliance: Continuously monitor your AWS environment to meet frameworks like SOC 2, ISO 27001, HIPAA, PCI DSS, and GDPR. Vanta automates evidence collection and policy management to reduce manual effort and audit prep time.
    • Security posture, strengthened: Leverage AI-powered monitoring, real-time audit trails, and centralized tools like Trust Center, access reviews, and Vendor Risk Management to stay secure and audit-ready all year round.

    Details

    Sold by

    Delivery method

    Deployed on AWS

    Features and programs

    Vendor Insights

     Info
    Skip the manual risk assessment. Get verified and regularly updated security info on this product with Vendor Insights.
    Security credentials achieved
    (2)

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.

    12-month contract (6)

     Info
    Dimension
    Description
    Cost/12 months
    AWS FTR
    AWS FTR Module
    $7,500.00
    Core Package
    Starting cost for 1-20 employees
    $11,500.00
    Growth Package
    Starting cost for 1-20 employees
    $22,675.00
    Scale Package
    Starting cost for 1-20 employees
    $48,970.00
    Trust Center
    Starting cost for 1-20 employees
    $6,000.00
    Vendor Risk Management
    Up to 50 vendors managed
    $11,200.00

    Vendor refund policy

    Custom pricing options

    Request a private offer to receive a custom quote.

    How can we make this page better?

    We'd like to hear your feedback and ideas on how to improve this page.
    We'd like to hear your feedback and ideas on how to improve this page.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    Software as a Service (SaaS)

    SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.

    Resources

    Support

    Vendor support

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Product comparison

     Info
    Updated weekly

    Accolades

     Info
    Top
    10
    In Monitoring, Security
    Top
    25
    In IT Business Management
    Top
    10
    In Centralized Risk Management

    Customer reviews

     Info
    AI generated sentiment from actual customer reviews on AWS and G2
    Reviews
    Functionality
    Ease of use
    Customer service
    Cost effectiveness
    Positive reviews
    Mixed reviews
    Negative reviews

    Overview

     Info
    AI generated from product descriptions
    Cloud Service Integration
    Deep integration with 40+ AWS services for comprehensive cloud security monitoring
    Compliance Automation
    Automated evidence collection across 35+ security and privacy frameworks including SOC 2, ISO 27001, HIPAA, PCI DSS, and GDPR
    Security Monitoring
    AI-powered continuous monitoring with real-time audit trails and centralized security management tools
    Custom Test Support
    Supports custom automated tests through in-platform configuration and API integration for complex environments
    Risk Management
    Centralized governance, risk, and compliance workflows including vendor risk assessment and access reviews
    Compliance Framework Support
    Supports multiple global security and privacy compliance standards including SOC 2, ISO 27001, HIPAA, GDPR, CCPA, NIST frameworks, CMMC, and PCI DSS
    Cloud Service Integrations
    Provides over 100 automated integrations with cloud services like AWS, Azure, Google Cloud, G Suite, GitHub, Okta, and Slack for continuous evidence collection and infrastructure monitoring
    Machine Learning Questionnaire Processing
    Utilizes machine learning to automate RFP and security questionnaire completion by generating responses based on approved past answers
    Continuous Security Monitoring
    Performs automated tests, continuous infrastructure monitoring, and nonconformity detection across cloud environments
    Risk and Compliance Management
    Offers comprehensive risk management capabilities including personnel and asset inventory, vendor risk management, risk register, and enterprise policy management
    Compliance Framework Support
    Supports continuous monitoring and automation for over 20 compliance standards including SOC 2, ISO 27001, HIPAA, PCI DSS, and GDPR
    Application Integration
    Integrates with over 200 applications and systems for comprehensive security control monitoring
    Cloud Service Compatibility
    Native integration with 45+ AWS services and built on AWS Bedrock AI engine
    Automated Evidence Collection
    Automatically collects compliance evidence and provides continuous security control monitoring
    Risk Management Automation
    Provides continuous automated monitoring with real-time alerts for security control effectiveness and potential compliance deviations

    Security credentials

     Info
    Validated by AWS Marketplace
    FedRAMP
    GDPR
    HIPAA
    ISO/IEC 27001
    PCI DSS
    SOC 2 Type 2
    -
    -
    -
    -
    No security profile
    -
    -
    -
    -

    Contract

     Info
    Standard contract
    No
    No
    No

    Customer reviews

    Ratings and reviews

     Info
    5
    2 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    100%
    0%
    0%
    0%
    0%
    2 AWS reviews
    |
    1810 external reviews
    External reviews are sourced from G2  and are not included in the star rating for this product.
    Mental Health Care

    Makes HIPAA compliance easier than I could have imagined

    Reviewed on Jun 06, 2025
    Review provided by G2
    What do you like best about the product?
    As an Engineering leader, Vanta makes it easy to figure out which Tests I need to take action on, why they're important, and exactly how to fix them. It really goes above and beyond.
    What do you dislike about the product?
    There's really nothing I can say that I dislike about Vanta.
    What problems is the product solving and how is that benefiting you?
    HIPAA compliance
    Information Technology and Services

    A good compliance and automation platform.

    Reviewed on Jun 04, 2025
    Review provided by G2
    What do you like best about the product?
    Integration, Automation, Risk Register..
    What do you dislike about the product?
    I do not have anything to mention here..
    What problems is the product solving and how is that benefiting you?
    Vanta has a integration facility which automatically controls many of the controls. The best part is evidence automation.
    Edson C.

    Practical platform to follow trainings and internal policies

    Reviewed on Jun 03, 2025
    Review provided by G2
    What do you like best about the product?
    Navigation is simple and straightforward, which greatly facilitates quick access to mandatory training and security and compliance policies. The clean and objective interface helps focus on the content without distractions. Easy implementation and good customer support. Our team uses it whenever there is an update in internal policy. Easy integration.
    What do you dislike about the product?
    The mobile experience can still improve. Some pages take a long time to load or do not adjust well to the phone screen, which can make access difficult outside of the desktop. Additionally, it would be interesting to have an option to save or export completion certificates directly from the platform.
    What problems is the product solving and how is that benefiting you?
    The greatest benefit is the centralization of mandatory content in one place, with clear notifications about deadlines and pending tasks. This ensures that all employees are aligned with the company's compliance requirements. Additionally, tracking the confirmation of reading and completion of training is very easy.
    Computer Software

    Derived no value from product and they forced us to continue our contract for full 2 years anyway.

    Reviewed on Jun 03, 2025
    Review provided by G2
    What do you like best about the product?
    There was nothing good about Vanta at all.
    What do you dislike about the product?
    They have the worst customer service I've ever experienced.
    What problems is the product solving and how is that benefiting you?
    Vanta was initially going to help us solve SOC 2 compliance but we ended up not needing it nor deriving value and they still forced us to pay a 2 year contract for almost $18,000.00.
    Biotechnology

    Makes sense of the chaos

    Reviewed on Jun 02, 2025
    Review provided by G2
    What do you like best about the product?
    Vanta keeps everything clear and organized in the ever-changing world of compliance. I love how visual it is and how it lets you focus on taking smaller bites out of compliance without feeling overwhelmed. I feel I can trust Vanta (and their audit partners) to keep abreast of the latest demands of all of the various compliance frameworks. That alone is worth it to me (but it does lots of other great stuff too)! I also like how easily it integrates with Google's Enterprise Suite.
    What do you dislike about the product?
    The only real downside I can think of is the cost. We're a small-ish company, and although I'd love to buy all of Vanta's features, frameworks, and such, we've had to pick and choose because of the price point. I absolutely think it's worth it, but some aspects feel a little out of reach for our current budget.
    What problems is the product solving and how is that benefiting you?
    Keeping organized and abreast of the ever-changing world of compliance and regulations.
    View all reviews