Vanta
VantaExternal reviews
2,110 reviews
from
and
External reviews are not included in the AWS star rating for the product.
Helpful tool for navigating complex requirements
What do you like best about the product?
A clear and concise list of tests that need to be fixed, and how to remediate
What do you dislike about the product?
Some fixing instructions are outdated, difficult to understand how to set a default owner for new failing tests by resource type
What problems is the product solving and how is that benefiting you?
Getting a SOC2 certificate
Efficient Compliance and Security Monitoring
What do you like best about the product?
Vanta simplifies compliance by automating many of the processes needed for SOC 2, ISO 27001, and other certifications. The platform is user-friendly, and the real-time monitoring helps ensure our security policies are consistently enforced. Their integration options with tools we already use make the onboarding process smoother.
What do you dislike about the product?
Some features can feel a bit complex initially, especially for teams without dedicated compliance experience, but their support team is always responsive and helpful.
What problems is the product solving and how is that benefiting you?
Automating many of the processes needed for SOC 2.
Central repo for SOC2
What do you like best about the product?
As someone without complete understanding of all the necessary SOC2 activities, having them all visible and centralized in one place is helpful.
What do you dislike about the product?
Lagging nags for controls -- if we onboard or offboard someone I inevitably have a digest notification telling me I need to act on something that's either already done or part of someone else's process; it would be ideal for there to be some SLA for these controls to reduce noise.
Specific controls for AppSec are lacking; Dependabot integration seems to be built into the product but there are hardly any integrations with ASPM products like Codacy.
Specific controls for AppSec are lacking; Dependabot integration seems to be built into the product but there are hardly any integrations with ASPM products like Codacy.
What problems is the product solving and how is that benefiting you?
SOC2 compliance processes
SOC2 is much easier than it used to be
What do you like best about the product?
Vanta basically pioneered the idea of making it possible for startups to get SOC2 compliance, by giving you an opinionated checklist and software to help you get through it. I appreciate the integrations and that they help you engage with your auditor and track your progress.
What do you dislike about the product?
To some extent it feels like just checking boxes rather than making sure you're actually set up to succeed, and it's easy to get "stuck". We wasted our first year because it turned out no customers really needed SOC2 from us. So only do this when you're ready to commit the time—it's still a lot of work even with Vanta.
What problems is the product solving and how is that benefiting you?
Monitoring our software to make sure all the settings are configured right; helping us engage with auditors.
Good. But not great.
What do you like best about the product?
I really like the automations and integrations. I do not need to work hard to get where I need to go.
What do you dislike about the product?
- If you are not using AWS and Github, the platform doesn't look like it was built for you. You will require large changes to default content. In particular the policies, where there is a helpful policy builder (the automation is excellent) but the content that acutally needs to be changed is the catering for AWS etc. Also the automation breaks down, because as soon as you need to edit the policy, you exit the helpful automation tool and then you are left to manually do things...
- There are 'help' sessions that I can book, and I booked one, only to realise that there are no support/help sessions that are in my timezone. 1am is pretty rough to go to one.
- There are 'help' sessions that I can book, and I booked one, only to realise that there are no support/help sessions that are in my timezone. 1am is pretty rough to go to one.
What problems is the product solving and how is that benefiting you?
Vanta is solving the manual management process and helping keep good habits to also meet compliance requirements.
Expensive but has great potential
What do you like best about the product?
Integrations with all our key platforms and systems
What do you dislike about the product?
High cost means building initial business case was a challenge
What problems is the product solving and how is that benefiting you?
Automated compliance monitoring for ISO 27001, saving time for internal compliance and audit
Good solution for getting SOC2 Compliant
What do you like best about the product?
It's all comprised on the same place and we have guidelines on what needs to be done.
What do you dislike about the product?
It's quite a lot of work and some of the guideance we received towards Vanta partners was not completely clear.
What problems is the product solving and how is that benefiting you?
We need to get SOC2 Type 2 Compliant and do not currently have a dedicated person or team for this purpose.
Easy to use, with some quirks
What do you like best about the product?
Vanta makes it incredibly easy to maintain our compliance requirments. I like some of the easy-to-use deployment features, like being integrated with our MDM software so that new employees can easily download the Vanta agent and go through security training.
The website itself is also generally fast, responsive, and has never been down in 2+ years of using.
The website itself is also generally fast, responsive, and has never been down in 2+ years of using.
What do you dislike about the product?
Some of the tasks for offboarding feel overly complicated or restrictive, such as if we have a departing employee whose accounts needs to remain active for a small period of time.
What problems is the product solving and how is that benefiting you?
Vanta makes it easy to prove our compliance frameworks to our customers. It can help avoid long, complicated InfoSec review and allows to easily show customers that we take seriously their data.
Vanta review
What do you like best about the product?
People are great to work with and respond to inquiries. Contract negotiation process went very smoothly.
What do you dislike about the product?
Vanta requires more manual use and is not as automated as we thought. The software needs to be updated to be more user friendly and have more automation to be of more value to clients.
What problems is the product solving and how is that benefiting you?
Security Compliance, Vendor Management, Vendor Security and Privacy Assessment
SOC2 For Beginners
What do you like best about the product?
Keeps me organized with ALL the SOC2 compliance needs all year round
What do you dislike about the product?
Sometimes not the must clear instructions
What problems is the product solving and how is that benefiting you?
Vanta is the only thing that tracks SOC2 compliance needs. We do not have a legal team or even an IT team - so Vanta acts as an extension of our team to help take care of this important compliance need.
showing 51 - 60