Vanta

RATING:

4.7

(19)

About Vanta

Vanta simplifies the complex and expensive process of becoming SOC 2, ISO 27001, HIPAA, PCI, or GDPR compliant – so you can establish trust with your customers and focus on growing your business. The Vanta platform has read-only integrations with the most popular cloud services, identity providers, task trackers, and more to automatically gather evidence for security audits. Vanta runs checks on these systems every hour to ensure they are set up properly and remain compliant over time. With Vanta, your security audit has never been easier. Take advantage of Vanta Seamless Audit, where you’ll be matched with an independent, five-star rated auditor, or select an auditor yourself from our preferred parter network. Vanta's 40+ audit partners are trained on the platform...

Vanta Pricing

Please contact Vanta directly for pricing information.

Starting price: 

$1.00 

Free trial: 

Available

Free version: 

Not Available

Vanta helps companies scale security practices and automate compliance for the industry’s most sought after standards - SOC 2, ISO 27001, HIPAA, PCI DSS, GDPR, and CCPA.
Slide 1 of 5

Vanta Reviews

Overall Rating

4.7

Ratings Breakdown

Secondary Ratings

Ease-of-use

4.5

Customer Support

4.5

Value for money

4.5

Functionality

4.5

Most Helpful Reviews for Vanta

1 - 5 of 19 Reviews

User Profile

Konstantin

Verified reviewer

Financial Services, 201-500 employees

Used daily for less than 2 years

Review Source: Capterra
This review was submitted organically. No incentive was offered

OVERALL RATING:

5

EASE OF USE

5

VALUE FOR MONEY

5

CUSTOMER SUPPORT

5

FUNCTIONALITY

5

Reviewed November 2023

Great GRC instrument

PROS

Policy creation and management. Toons of integration and automated tests. Very cool integrated vulnerability management.

CONS

Risk management can be more flexible. We started the new approach to risk assessment and can’t use internal risk management instrument so we made it in excel :-)

Reasons for switching to Vanta

Lack of integration and automation in tugboat

User Profile

Chris

Verified reviewer

Marketing and Advertising, 11-50 employees

Used daily for less than 2 years

Review Source: Capterra
This review was submitted organically. No incentive was offered

OVERALL RATING:

4

EASE OF USE

4

VALUE FOR MONEY

4

CUSTOMER SUPPORT

5

FUNCTIONALITY

4

Reviewed October 2020

Compliance simplified

Very good. We have been able to formalize our internal security programs and successfully completed our SOC2 audit. The Vanta team has always been very responsive to our needs, soliciting feedback and promptly answering questions (no matter how basic) and guiding is in the right direction.

PROS

We love that Vanta has made it easy for us to develop a comprehensive InfoSec program and helped us prepare for our SOC2 audit. Onboarding was straightforward and the continuous monitoring ensures ongoing compliance. The product integrates with most of the software we use day-to-day and has saved a lot of time.

CONS

There are some areas of the UI which are a bit rough around the edges and non-intuitive, I chalk this up to Vanta being a relatively new product. It has improved a lot since we became a customer and specific areas such as the employees onboarding/off-boarding flows show that the team is constantly iterating and responsive to user feedback. In addition, I would love to see more automation in the product - we are a smaller company without a dedicated IT team. Vanta does a great job of alerting us to issues, but being able to help us take steps to remediate would be much appreciated.

Reason for choosing Vanta

Vanta came up through a personal recommendation. We liked the team a lot and the sales process was simple and straightforward, it gave us a great view into the product and the thinking behind it.

Joel

Accounting, 2-10 employees

Used monthly for less than 12 months

Review Source: Capterra
This review was submitted organically. No incentive was offered

OVERALL RATING:

1

EASE OF USE

1

VALUE FOR MONEY

1

CUSTOMER SUPPORT

1

FUNCTIONALITY

1

Reviewed March 2024

BUYER BEWARE

This business charged my card for a second year without permission and after being told I would not renew. They took thousands of dollars. I needed to do a chargeback after they refused to return the money even though I notified them same day they were previously told I would not renew. It turns out they have a clause in their contact that says you need to notify them 30 days in advance of renewal. Well, guess what? I did! Still, it's a stupid clause that they use, clearly, to force clients to renew who don't realize such a clause exists. Buyer beware with this shady organization. I wouldn't recommend them to anyone, except maybe someone I didn't like.

PROS

The software seemed easy to use - at first, until some of my documents disappeared without explanation.

CONS

They lost documents, and weren't able to explain to me satisfactorily where they went. This caused me to question renewal. I notified them I wouldn't renew without a good explanation, which I never got. Also, they make very difficult to reach them when you have a problem. At the time of this writing, no phone numbers in any email signatures, not on the web site either. You're forced into their process, and if they choose not to answer you via their web form, good luck. It's a black box at that point.

Barbara

Financial Services, 11-50 employees

Used daily for less than 12 months

Review Source: Capterra
This review was submitted organically. No incentive was offered

OVERALL RATING:

5

EASE OF USE

4

VALUE FOR MONEY

4

CUSTOMER SUPPORT

5

FUNCTIONALITY

4

Reviewed October 2023

Essential for Compliance

We needed to get SOC 2 audit ready and were only progressing slowly with the manual approach. As it turned out that manual preamble was useful because when we started using Vanta, we understood the terminology and understood what was wanted.

PROS

Vanta enabled us to move our compliance (SOC 2, and next PCI) projects forward in an organized and monitored manner. After struggling manually with SOC 2 requirements with a major accounting firm, we got to audit readiness in half a year and felt confident going into our audit.

CONS

There is definitely a learning curve, and I am sure the system has useful features that I have not encountered yet. That is not really a negative, though.

Reason for choosing Vanta

3 main reasons: 1. Vanta's integration with an audit firm. We could connect with an audit firm through Vanta, rather than just working from a list. 2. The price was actually the most reasonable. 3. They offer modules for other frameworks we want to work on going forward.

David

Computer Software, 11-50 employees

Used daily for less than 12 months

Review Source: Capterra
This review was submitted organically. No incentive was offered

OVERALL RATING:

5

EASE OF USE

4

VALUE FOR MONEY

5

CUSTOMER SUPPORT

4

FUNCTIONALITY

4

Reviewed October 2020

Smooth and seamless SOC2 preparation

We needed to get a SOC2 audit completed quickly to satisfy a customer need. Most "traditional" audit shops told us it would take 12 - 15 months. With the automation features, customer support, and auditor integration, we were done end-to-end (from signing up with Vanta to receiving our SOC2 report) in just over 5 months. Very smooth process from beginning to end - went almost exactly as advertised during the sales process - that's rare and unexpected these days.

PROS

User interface was intuitive - provided a clear "checklist" approach for actions to take and problems to resolve. Vanta Agent (for our laptops and (virtual) servers at AWS) is very useful to ensure continuous oversight of what's on the machine and when it needs to be updated. Working with our auditor to get our first SOC2 was also seamless and painless - the auditor plugged right into our Vanta instance and downloaded/monitored everything remotely - no need for screen shots or sending lots of documentation.

CONS

Would have been nice to have more integrations with some of our existing tools (monday.com, AWS Code Commit, etc.) to make the process even more automated. The automated policy generator is nice for filling holes in an existing policy suite, but isn't great if you have to make a lot of customizations to it as the "automated" part breaks down once you edit it offline. Two minor things in an overall great experience.