Vanta
VantaExternal reviews
                                
                                2,097 reviews 
                            
                            from
                            
                                
                                    
                                    
                                    
                                    
                                
                            
                                
                                    
                                     and 
                                    
                                    
                                
                            
                        External reviews are not included in the AWS star rating for the product.
Vanta for a team of one
What do you like best about the product?
What I like best about Vanta is how much it simplifies and centralizes our compliance efforts. It’s incredibly user-friendly, and the integrations (especially with M365, Slack, and our endpoint security tools) make evidence collection practically automatic. The policy templates, risk management module, and access reviews save me hours every month. And I really appreciate how easy it is to assign tasks and keep leadership in the loop with dashboards and exports.
What do you dislike about the product?
There’s very little I dislike about Vanta, but if I had to name something, it would be the limitations around customizing certain modules. For example, some fields in the risk register or vendor security reviews are a bit rigid . it would be great to tailor them more to our specific workflows. Also, when assigning tasks to others, I wish there were more flexibility in tracking partial progress or clarifying ownership when multiple people are involved.
One other thing, I’d love the option to run both Vanta’s security training for contractors and a separate, internal training program for our full-time staff. Right now, it feels a bit either/or, and we’d benefit from being able to customize training delivery by user type.
One other thing, I’d love the option to run both Vanta’s security training for contractors and a separate, internal training program for our full-time staff. Right now, it feels a bit either/or, and we’d benefit from being able to customize training delivery by user type.
What problems is the product solving and how is that benefiting you?
Vanta is helping me build and manage our compliance program from the ground up. As someone going through this process for the first time, it’s made everything feel achievable — from setting up policies and assigning training to conducting access reviews and risk assessments.
It removes the guesswork, automates a ton of the evidence collection, and keeps everything organized in one place. It’s also made it really easy to show progress to leadership and stay on top of what needs to be done next. Vanta has been a huge confidence booster throughout the SOC 2 process.
                        
                            It removes the guesswork, automates a ton of the evidence collection, and keeps everything organized in one place. It’s also made it really easy to show progress to leadership and stay on top of what needs to be done next. Vanta has been a huge confidence booster throughout the SOC 2 process.
Vanta - Streamlining our ISMS
What do you like best about the product?
It provides a centralised location for our ISMS which enables us to comply with different information security frameworks such as ISO 27001 and SOC 2.
What do you dislike about the product?
Unfortunately Vanta doesn't provide us with the functionality to house everything from our ISMS within Vanta. There are still things we need to store outside of Vanta within Spreadsheets. Eventually, we want to house our full ISMS within Vanta.
What problems is the product solving and how is that benefiting you?
Vanta is solving the challenge of maintaining continuous, demonstrable security compliance in a scalable and efficient way. Traditionally, achieving certifications like SOC 2 or ISO 27001 involved manual processes, fragmented documentation, and time-consuming security questionnaires. Vanta replaces this with an automated compliance platform that integrates with our systems, enabling real-time monitoring and evidence collection.
                        
                            Vanta makes SOC audits simple
What do you like best about the product?
I like that Vanta guides you on how to remediate necessary gaps. It's also a very easy to use tool that stays on top of tasks that need to be completed. It makes for a smooth and easy process.
What do you dislike about the product?
When I remove a user, I am not always certain that my reason for removing them will be acceptable. It would be nice if I were given a warning or set of circumstance to consider to determine whether I am making the right (and compliant) decision.
What problems is the product solving and how is that benefiting you?
It's helping us complete our SOC audit, and it's been particularly helpful to my peers who are foreign to the process.
                        
                            Very good for the audit
What do you like best about the product?
It is much easier to track how ready we are for audit and a lot of templates.
What do you dislike about the product?
Not all controls were actual in Vanta for ISO 27001, so you always need to double-check it.
What problems is the product solving and how is that benefiting you?
Easie for audit ISO 27001 and SOC2
                        
                            Near perfect compliance automation solution
What do you like best about the product?
What’s most helpful about Vanta is the seamless integration it has with the CSPs and all of our security solutions. That goes a long way into automating evidence collection and test completion.
What do you dislike about the product?
A little bit of the downside is with the exporting options. Being able to export reports to better analyze in detail.
What problems is the product solving and how is that benefiting you?
Solidifying our Security and streamlining our processes while achieving SOC 2.
                        
                            Vanta is Great!
What do you like best about the product?
I really love the integrations and automated tests that Vanta provides! They make it really easy to quickly identify what's wrong, and they give super specific instructions to fix it. The tests also give immediate feedback when you successfully remediate the test.
What do you dislike about the product?
The non automated (document) tests are sometimes a little confusing and hard to figure out what is wanted from you. I would love it if they had a form-based input system that automatically generates the documents according to a spec, so you always know that your document covers everything necessary.
What problems is the product solving and how is that benefiting you?
We're pursuing SOC2 compliance and vanta is helping a lot!
                        
                            Easy to use and straight forward platform
What do you like best about the product?
Easy to use and straight forward platform
What do you dislike about the product?
I think some of it is not intuitive on where I can find things
What problems is the product solving and how is that benefiting you?
Organizing and workflows for security compliance for our company
                        
                            An excellent compliance automation and a clean interface
What do you like best about the product?
What I really love about Vanta is how it combines so many powerful features into one easy-to-use tool. You've got continuous monitoring working in the background, which is a huge relief—it means we're always ready for an audit. Plus, it supports multiple frameworks like SOC 2 and ISO 27001, so we can handle everything from a single spot. It's all presented in a super clean and intuitive interface that makes a stressful process feel simple. And it really helps that it can be integrated with a great number of platforms and systems
What do you dislike about the product?
I find that some minor aspects of the platform's user experience can be challenging(this is a very particular thing). For example, the filters sometimes don't work as expected, either showing more or less information than they should. The UI for complex filtering also isn't the most efficient. Furthermore, the Support team frequently changes recently released features, which means we have to constantly adapt to new workflows and learn how they want things to be done.
What problems is the product solving and how is that benefiting you?
The platform has really cut down on our internal workload for vendor management and is now a key part of our alert system, letting us monitor multiple platforms from one central spot. This has saved us a ton of time and ensures we're always ready for audits with way less effort.
                        
                            How Vanta Powers Our Security and Compliance Program
What do you like best about the product?
Vanta has been a key tool in strengthening and maintaining our security and compliance program. It provides a comprehensive, effective, and reliable approach to managing controls, giving us full visibility and traceability over all critical aspects of our information security practices.
We use Vanta both to centrally manage policies — including tracking who has reviewed and accepted them — and to run automated tests across our infrastructure through integrations with the core services we use. This ensures continuous alignment with industry frameworks such as GDPR and ISO 27001, streamlining audit readiness and confirming that our controls remain consistently enforced and up to date.
One of Vanta’s greatest strengths is how easy it is to use, implement, and configure. The onboarding process is straightforward, with intuitive guidance that helps teams quickly integrate their existing tools and systems. Its user-friendly interface makes it simple to navigate compliance requirements, track progress, and address issues without needing deep technical expertise. This ease of use significantly reduces the time and effort typically required to launch and maintain a security and compliance program.
We use Vanta both to centrally manage policies — including tracking who has reviewed and accepted them — and to run automated tests across our infrastructure through integrations with the core services we use. This ensures continuous alignment with industry frameworks such as GDPR and ISO 27001, streamlining audit readiness and confirming that our controls remain consistently enforced and up to date.
One of Vanta’s greatest strengths is how easy it is to use, implement, and configure. The onboarding process is straightforward, with intuitive guidance that helps teams quickly integrate their existing tools and systems. Its user-friendly interface makes it simple to navigate compliance requirements, track progress, and address issues without needing deep technical expertise. This ease of use significantly reduces the time and effort typically required to launch and maintain a security and compliance program.
What do you dislike about the product?
One drawback of Vanta is that, despite its strong automation capabilities, certain controls still require manual validation or repetitive evidence uploads, especially for more customized or nuanced cases.
What problems is the product solving and how is that benefiting you?
Vanta is solving the challenge of maintaining continuous security and compliance in a dynamic and fast-paced environment. It helps us automate evidence collection, monitor key controls, and enforce policy acceptance across the organization, significantly reducing the manual overhead typically associated with audit preparation and compliance tracking. This not only improves our operational efficiency but also increases our confidence in meeting frameworks like ISO 27001 and GDPR.
                        
                            Vanta has allowed my team to massively scale compliance, security, and risk management!
What do you like best about the product?
Incredible automation, scalability, integrations, and beautiful design! Vanta is easy to implement and use, has great customer service, and scales with our needs!
What do you dislike about the product?
Some of the integrations are not as helpful as desired.
What problems is the product solving and how is that benefiting you?
As a thrilled Vanta customer, I can’t rave enough about how it’s transformed our compliance and security game! Vanta solves the headache of manual, time-sucking compliance processes for certifications like SOC 2 and ISO 27001 by automating up to 90% of the work—think evidence collection, policy management, and real-time monitoring. The platform also streamlines vendor reviews with its AI-powered Trust Center, slashing hours off questionnaire responses, and keeps our security posture rock-solid with continuous risk assessments. This has saved us countless hours and costs (easily hundreds of thousands annually), letting us focus on growth while confidently closing bigger deals with compliance-backed trust. Vanta’s intuitive tools and integrations have made audits a breeze and empowered our team to embrace a security-first culture. It’s a game-changer that’s boosted our efficiency, credibility, and peace of mind!
                        
                            
                    
            showing 181 - 190