Vanta
VantaExternal reviews
2,339 reviews
from
and
External reviews are not included in the AWS star rating for the product.
Vanta cut months off our SOC 2 prep by automating evidence across our AWS + SaaS stack
What do you like best about the product?
Vanta turns compliance into an ongoing workflow instead of a yearly fire drill. The integrations pull real evidence from AWS, Okta, GitHub, and endpoint tools so we see gaps early and assign owners. The task views, policy templates, and auditor export packs saved us huge effort during SOC 2 prep. Customer success has also been responsive when we onboard new environments.
What do you dislike about the product?
The device and app inventory isn’t always accurate—especially Macs reported through Intune—so we still chase manual evidence (e.g., confirming 1Password installs). Customizing or suppressing certain tests for edge cases can be clunky, and mapping bespoke customer controls sometimes needs support help.
Copy #2 (noise + scale):
Copy #2 (noise + scale):
What problems is the product solving and how is that benefiting you?
Vanta automates compliance monitoring across our AWS accounts, GitHub repos, Okta, and endpoint devices. It removes the manual effort of gathering evidence for SOC 2 by continuously checking controls and surfacing gaps. This saves us weeks of work during audits and helps us stay secure year-round.
Helpful Compliance Support for a Growing Startup
What do you like best about the product?
The automated tests save time and the integrations help us stay on top of what needs attention without a lot of manual effort. The Security Center is also a nice way to share our compliance posture externally.
What do you dislike about the product?
Although Vanta supports audit partnerships, the collaboration between Vanta and third-party auditors could be more integrated. There’s still a good amount of back and forth outside the platform.
What problems is the product solving and how is that benefiting you?
As a lean startup, we don’t have a dedicated security team, so having a central dashboard to manage access reviews, monitor integrations, and track policy compliance has been a huge timesaver. It also gives us confidence when engaging with customers or auditors, knowing we have a clear and ongoing compliance posture.
Amazing
What do you like best about the product?
Vanta is very Ease of Use, implementation is very user friendly, Its customer support is also great, Integration part is ease
What do you dislike about the product?
It is comparatively costly also when signed up the code typing part did not show up.
What problems is the product solving and how is that benefiting you?
It keeps track of all the security issues and so I don't have to bother that.
Using Vanta for 3 years for compliace, SOC2 and ISMS
What do you like best about the product?
What I like best about Vanta is how it streamlines compliance and audit prep without requiring deep expertise. It is user friendly
What do you dislike about the product?
sometimes the Vanta gives false positive that the screenlock is not enabled on the device though it has the screen lock enabled for 60 mins.. but its rare.
What problems is the product solving and how is that benefiting you?
We are able to work on soc2 compliance and once it is ready we can onboard external auditors easily.
we can track the devices and their compliace status also integrates with MDM.
especially around SOC 2, ISO 27001, and HIPAA. Before using Vanta, our audit prep involved scattered documentation, spreadsheets, and back-and-forth with auditors.
we can track the devices and their compliace status also integrates with MDM.
especially around SOC 2, ISO 27001, and HIPAA. Before using Vanta, our audit prep involved scattered documentation, spreadsheets, and back-and-forth with auditors.
Vanta is essential to our compliance plan
What do you like best about the product?
Teleporting us from small business to enterprise grade compliance policies and procedures, given our very small team.
What do you dislike about the product?
It would be great to be able to view documents in review rather than having to edit them.
What problems is the product solving and how is that benefiting you?
We need SOC2 and ISO certification to win certain customers.
Efficiently managing SOC 2 compliance and third-party assessments with Vanta
What do you like best about the product?
I use Vanta every day to maintain SOC 2 controls and keep track of ongoing tests in one centralised dashboard. The Customer Trust section is particularly valuable for consolidating and automating responses to third-party questionnaires. Moreover, the AI-driven question-answer feature not only provides detailed answers but also cites the relevant documented evidence, which makes the entire third-party risk assessment process remarkably quick and efficient.
What do you dislike about the product?
Occasionally the web interface can be slow to load—especially when applying filters to search results—which can momentarily disrupt my workflow. However, these minor performance issues do not outweigh the substantial compliance-management benefits Vanta delivers overall.
What problems is the product solving and how is that benefiting you?
Vanta helps us stay continuously compliant with SOC 2 by automating control monitoring and centralising evidence collection. It also simplifies third-party risk assessments through AI-generated responses backed by documented proof, saving time and improving accuracy.
Very secure and reliable.
What do you like best about the product?
Easy to install, and for the team to understand.
What do you dislike about the product?
Not very clear about what information is collected.
What problems is the product solving and how is that benefiting you?
Is making sure all of my devices are under compliance.
Transformative compliance tool, though setting it up takes patience !
What do you like best about the product?
Vanta makes compliance feel achievable and less overwhelming. I love that it auto collects evidence from tools like AWS and Gmail, turning what used to take weeks into a few days, and the policy builder is a lifesaver .The automatic control mapping and real time monitoring are smooth and help me stay consistently audit ready.
What do you dislike about the product?
Integration problems can trip me up—like only being able to connect one HRIS account, which left half our staff untracked for a while. Also, the initial onboarding felt a bit overwhelming with lots to configure, and the vulnerability management UI could be more intuitive.
What problems is the product solving and how is that benefiting you?
Vanta has been super helpful for preparing a SOC 2 audit meant endless spreadsheets and chasing teammates. Now it automatically gathers evidence, monitors continuously, and guides control implementation. All in one dashboard ,that shifted to real time compliance slashed our prep time and boosted confidence.
Compliance Made Simple, Visibility Made Powerful
What do you like best about the product?
What I like best about Vanta is how it turns the traditionally complex and resource-heavy process of compliance into something structured, visible, and manageable. The automated monitoring across systems, integrations with tools we already use, and real-time alerts mean we don’t just tick compliance boxes, we actually improve security posture day-to-day.
Vanta doesn’t just help us prepare for audits; it helps us build better operational discipline. The central dashboard gives clear visibility into risks, gaps, and progress, making it much easier to drive accountability and continuous improvement across the team.
Vanta doesn’t just help us prepare for audits; it helps us build better operational discipline. The central dashboard gives clear visibility into risks, gaps, and progress, making it much easier to drive accountability and continuous improvement across the team.
What do you dislike about the product?
Sometimes loading times can be a little slow.
What problems is the product solving and how is that benefiting you?
Vanta is solving the problem of fragmented, manual, and often overwhelming compliance management. Before Vanta, tracking audit readiness, security controls, and policy adherence was time-consuming and heavily reliant on spreadsheets, screenshots, and scattered documentation.
With Vanta, we now have a centralised platform that automates evidence collection, monitors key systems continuously, and highlights risks in real time. This dramatically reduces the time and effort needed to maintain SOC 2 compliance and helps us stay audit-ready without the last-minute scramble.
With Vanta, we now have a centralised platform that automates evidence collection, monitors key systems continuously, and highlights risks in real time. This dramatically reduces the time and effort needed to maintain SOC 2 compliance and helps us stay audit-ready without the last-minute scramble.
Vanta took the stress out of SOC2 Management!
What do you like best about the product?
The best thing about Vanta for me has been how much manual effort it replaced. Before using it, I was switching between spreadsheets and chasing teammates for audit evidence. Now, I connect our tools—Google Workspace, AWS, Jira, everything—and Vanta continuously pulls data and checks controls automatically. It saves me hours each week. I also really like that it gives me a live view of our compliance status instead of a scramble at audit time. Their prebuilt policies and templates helped us get our SOC 2 done way faster than expected.
What do you dislike about the product?
Some parts of the dashboard can be a bit slow or clunky, especially when reviewing access controls .
What problems is the product solving and how is that benefiting you?
It completely changed how I handle compliance. I no longer have to dig through old docs or rely on memory to prove what we’re doing. Vanta automates evidence collection and highlights what’s missing in real-time. When we went through our first SOC 2 audit, the auditor barely asked us for anything because Vanta already had it organized. It made the entire audit process smoother, and we even closed it ahead of schedule. Onboarding vendors is easier now too—there’s a whole vendor management flow that saves me back-and-forth emails.
showing 521 - 530