External reviews

External reviews are not included in the AWS star rating for the product.
Vanta Review
What do you like best about the product?
The best thing about Vanta is that they have figured out how to organize the entire SOC2 process seamlessly with a set of instructions and steps to perform. This makes the lives of the admin, DevOps and the employees much easier as a manual with a group of steps to follow.
What do you dislike about the product?
Honestly, I don't think so there is anything to dislike about Vanta. The process of getting SOC2 compliant for our organization was pretty good with Vanta. The alerts, updates, support service was pretty efficient. So, overall, no complaints.
What problems is the product solving and how is that benefiting you?
Getting us SOC2 compliant. Organizing and acting as a middle man to what we need to do to get SOC2 compliant. Vanta being a dominant player in the cyber security space provides the value added to being an expert to guide the process.
- Leave a Comment |
- Mark review as helpful
Vanta has been a great service and product to use. It has been very easy to manage and track.
What do you like best about the product?
The ability to be able to see the current status of where all users are. To be able to re-assigned laptops, and setup new users has been seamless. Vanta's customer service is top tier.
What do you dislike about the product?
As of right now I do not have anything that I dislike about the service. On the contrary, the service and product are excellent, and I would recommend to any organization looking to get their SOC compliance.
What problems is the product solving and how is that benefiting you?
Vanta is helping stay on top of our compliance controls, and the monitoring of the users laptops really helps a lot. This allows us to be more productive in that it monitors itself.
Really effective and efficient sales process.
What do you like best about the product?
The letter of intent, makes it easy to open doors.
What do you dislike about the product?
The process post pen test was too long and didn't get back to us fast enough.
What problems is the product solving and how is that benefiting you?
Needed to be soc2 compliant.
Great Platform
What do you like best about the product?
We like the UX/UI, Support, Integrations, and the well thought process behind
What do you dislike about the product?
Nothing much! Works well. The platform serves us well.
What problems is the product solving and how is that benefiting you?
Compliance automation, preparation for compliance audits
Amazing Automation
What do you like best about the product?
Vanta is very useful for automating the compliance process. Compliance can be very difficult to keep track of and keep in order and Vanta keeps it all organized so that the auditor and client understand what is going on.
What do you dislike about the product?
Sometimes they implement new features that may help the client out but can make things a little more difficult for the auditor
What problems is the product solving and how is that benefiting you?
Vanta makes it easier for the auditor to deliver a report to the client so timing. It also benefits me because it allows for a streamlined audit process
First experience with HIPPA
What do you like best about the product?
I introduced a client to Vanta and now we are working through HIPPA compliance together. The platform is guiding our efforts, but it is more work than Vanta made it sound like. I wonder if some of the other services that actually help you meet compliance might have been a better choice for us. While I wish for more ease, Vanta is guiding us through a complicated landscape and I am confident that we will acheive compliance with their help.
What do you dislike about the product?
See above, but it just tells you what you need to fix with no support to fix it.
What problems is the product solving and how is that benefiting you?
See above, but we pursued Vanta to help us aceive HIPPA compliance.
Vanta has made it very easy to understand the scope and requirements of our SOC 2 audit.
What do you like best about the product?
The monitoring that we can enable for our audit is very good.
What do you dislike about the product?
As an Azure customer, we would love to see better integration with DevOps.
What problems is the product solving and how is that benefiting you?
Tracking all our SOC 2 requirements and providing templates is a huge win.
Visionary product, making compliance look like 21st century
What do you like best about the product?
1) Vanta controls (tests), dashboards and alerts are very helpful to "keep us constantly complaint" instead of getting a workload spike when getting closer to an Audit. The Vanta platform gives us quick visibility on any deviations from our controls, so we can fix them on the spot (cheaper) instead of later.
2) The ownership on Alerts allows to split the monitoring of different areas across different people (Example: policies can be monitored by a different person than Infrastructure).
3) When it comes the time for an Audit, the heavy lifting for evidence collection is already done (see "constantly compliant" above), and the platform guides us precisely to any gaps, so they're easy to fix.
2) The ownership on Alerts allows to split the monitoring of different areas across different people (Example: policies can be monitored by a different person than Infrastructure).
3) When it comes the time for an Audit, the heavy lifting for evidence collection is already done (see "constantly compliant" above), and the platform guides us precisely to any gaps, so they're easy to fix.
What do you dislike about the product?
The support is responsive and solved 95% of our requests, however for one recurring issue in a Vanta Agent we have been dragging for a few months already.
What problems is the product solving and how is that benefiting you?
The ability to stay compliant and renew certifications like SOC2 or ISO27001 without a major effort across the team at Audit time.
Being a small company is not affordable to dedicate a team (or even an FTE) exclusively to compliance, hence the effort has to be shared across a few people with other main responsibilities. The clarity & simplicity and what needs to get done, is vital to get compliance ownership under control.
The ability to leverage automation and integration with multiple tools, makes Compliance feel more 21st century, as it removes manual effortin evidence collection (which makes Compliance feel 19th century at some companies).
Being a small company is not affordable to dedicate a team (or even an FTE) exclusively to compliance, hence the effort has to be shared across a few people with other main responsibilities. The clarity & simplicity and what needs to get done, is vital to get compliance ownership under control.
The ability to leverage automation and integration with multiple tools, makes Compliance feel more 21st century, as it removes manual effortin evidence collection (which makes Compliance feel 19th century at some companies).
Director of Customer Success
What do you like best about the product?
Vanta made SOC 2 very simple for us. Rather than having to reinvent the wheel, everything is broken down into a set of tests and documents to be completed, making project management super easy. Their team is also very knowledgeable about each requirement, so any doubts we had were quickly taken care of.
What do you dislike about the product?
Two items can be improved in Vanta:
- Tracking of requirements (like encryption) on Linux machines often does not work. As most of our Engineering team uses Linux, we needed to do manual verification and store that info in Google Drive for the auditors. (There is not currently a place to store manual evidence for each Computer in their platform.)
- Since the new design, the number of vulnerabilities for Computers is misleading as it lists any vulnerability, even if that test was disabled.
- Tracking of requirements (like encryption) on Linux machines often does not work. As most of our Engineering team uses Linux, we needed to do manual verification and store that info in Google Drive for the auditors. (There is not currently a place to store manual evidence for each Computer in their platform.)
- Since the new design, the number of vulnerabilities for Computers is misleading as it lists any vulnerability, even if that test was disabled.
What problems is the product solving and how is that benefiting you?
Becoming Soc 2 Type 1 and Type 2 certified is essential to doing more business with enterprise customers in our field. As a small team, this would have been a monumental undertaking without Vanta. Overall, the platform saved us time, and we are now easily passing prospects' security reviews.
Excellent software for SOC 2 compliance, security monitoring and beyond!
What do you like best about the product?
We were getting started on our first SOC 2 compliance effort and growing as an organization - we needed a solution that would (1) give us visibility on active security concerns (2) ensure we were prepared for our audit and (3) save us the hassle of working through multiple spreadsheets and templates. Vanta delivered on all fronts. We've been using them for over a year now and our first-ever audit went very well. Most impressive: Vanta continues to improve the product from customer feedback - so we've been able to move formerly time-consuming security and compliance processes into their software and execute the work there instead... weeks of staff time saved.
What do you dislike about the product?
There are cases where we have to supplement certain forms of tracking like recurring inactive account(s) checks, in other software like Confluence. However, I've seen Vanta accommodate more and more of these types of cases within their software during my time with them.
What problems is the product solving and how is that benefiting you?
Vanta helps us with the problems including: security/vulnerability tracking visibility and due dates, SOC 2 compliance preparation (documents, risk assessments, etc.) and making sure we were hitting our SLA targets for both recurring security checks, and mitigation of security findings (bugs, patches, etc.)
showing 1,491 - 1,500