TrustRadius Insights for Vanta are summaries of user sentiment data from TrustRadius reviews and, when necessary, third party data sources.
Pros
Intuitive User Interface: Multiple users have found Vanta's user interface to be intuitive, allowing them to easily navigate and configure their systems for SOC2 compliance.
Responsive Customer Support: Several reviewers have praised the responsiveness of Vanta's customer support team. They appreciated the team's ability to provide guidance throughout the entire process of SOC2 certification, ensuring a smooth experience from start to end.
API-Driven Capabilities: Many users have highly valued Vanta's API-driven capabilities, which offer an effortless way to connect their systems with Vanta's application. This integration allows for seamless data exchange and enhances overall efficiency in achieving SOC2 compliance.
We hired them to help us with SOC (System and Organization Controls) compliance.
Pros
They were supposed to help me create and store documents, but ended up losing them.
Cons
In my opinion, they make it very hard to contact them when you need something.
In my experience, they write their contracts to make it difficult to cancel service.
In my experience, they have no policy for refunds in addition to their [...] contacts.
Likelihood to Recommend
They lost documents, couldn't explain where they went. Then they forced a renewal on me even after being told I would not renew. In my opinion, Buyer Beware With This Company.
We've begun our journey for Soc2 certification. Vanta helped us with any steps required for preparation, contacts, and monitoring. Their customer success is great. The tool works fine and we're reaching the end of our audit period without any trouble. We just did what Vanta suggested we do.
Pros
Soc2 guidance and contacts building.
Well monitoring the infrastructure.
Well monitoring the people requirements.
Cons
Cannot differentiate Heroku review apps.
Vanta agent misses some HD encryption settings.
More than one Google Workspace setup.
Likelihood to Recommend
Vanta is an all-inclusive Soc2 readiness tool. Its customer success support is great. The tool works well and makes the process easy to manage. I cannot imagine handling those steps manually. The success of the process highly depends on the toolset you use and its integration with Vanta. If you use a tool that's not integrated with Vanta the automation would be less powerful.
Vanta has made it much easier than expected to get started with the SOC2 process. They streamline a lot of the confusing pieces and save us valuable time. We had never gone through a SOC2 before, so the help getting started was crucial, as otherwise, it would be hard to keep track of what is involved. My understanding is that they also streamline things on the auditor's side, which made the total price of the SOC2 audit more reasonable than I feared.
Pros
SOC2 compliance tracking
SOC2 outline
SOC2 auditor search process
Cons
Some of the technical integrations are still buggy
Likelihood to Recommend
Vanta seems excellent for startups, but I expect that they would be even more useful at bigger companies. I think it really helps people that haven't done SOC2 before. I also think it would help in monitoring compliance across teams with many users. If the budget is extremely tight, I think it would be possible to save money by not using it.
Fast SOC2 type 2 completion. Needed it done in less than a year. We were able to get there and also reduces our overall cost in engineering and auditing by at least 60%. When using Vanta for a SOC2 audit, it actively monitors things like user management, payroll, and other HR systems, Cloud platforms. For users that also have their day-to-day tasks to complete, this is a huge help
Pros
API driven capabilities offer a very easy way to connect your systems to their application.
It was mostly intuitive to figure out what needed to be configured.
I like how responsive they have been and how they have been able to outline the entire process for us from the start to the end.
Cons
Alerts and employee onboarding and offboarding were not entirely complete when we started using the product.
It would be nice if we could assign policies to specific people in the Vanta app.
Sometimes, refreshing the tests when you make the changes to pass takes a little more time than desired.
Likelihood to Recommend
Vanta provides a lot of actionable tasks to make our system more secure and reliable. It is easy to connect to our services and ingest the signals that create the tasks. The monitoring part also helps by sending a daily digest of new issues the team needs to work on.
The risk management does not take all of the BAU risks of an organisation into account, instead only providing valid output against technical controls or some policy controls.
Vanta does an excellent job automating evidence collection SOC controls by providing integrations with the tools my team uses. They've made it very easy to bootstrap and execute a compliance program without hiring additional staff.
Pros
Integrations with source control and infrastructure providers.
Guidance around what makes a company's policy secure.
Portals that supply our auditors with everything they need to write their reports.
Cons
I'd love to see more options for integrations. ie a Datadog integration that checks on infrastructure monitoring.
Providing a general area for document sharing.
Likelihood to Recommend
Vanta's well suited for a company that's just getting started with its compliance journey and needs some guidance on how to get started.
VU
Verified User
C-Level Executive in Information Technology (11-50 employees)
The Vanta software tool is being used with our Information Technology & Information Security departments to continue our SOC2 compliance after the company-wide SOC2 audit from August to November 2021.
This is helping us address any security concerns before the auditor needs to inquire on a resolution or require an exemption to be implemented.
Pros
SOC2
Ease of Use
Explanation of Steps to Resolve
Cons
Better Explanations.
More Detailed Resolutions.
Allows Greater Auditor Editing of Extraneous Tasks.
Likelihood to Recommend
Great for a small to medium sized business that needs to handle data securely and provide compliance assurance internally as well to its partners, customers, and potential clients. Relatively simple to use and integrate although perhaps too simple for larger more complex businesses with more expansive needs and various SOC2 section compliances.
We are using Vanta as a software solution to accelerate our SOC 2 compliance path. The software and whole team at Vanta have been great at helping enable our compliance path on a rapid trajectory. It would have taken us much longer to get everything together without Vanta's help and we plan on continuing to use it in the future.
Pros
SOC 2
Compliance
Security review
Cons
International background check verification
Seamless connection to audit firms
Changing tests in the middle of a review period
Likelihood to Recommend
Vanta is great for fast-growing software companies that are looking for a rubber stamp of approval of SOC 2. While mostly a useless standard, corporate America for legacy reasons still values the signaling effect and Vanta helps streamline that process.If you are looking for SOC 2, get Vanta setup and stop worrying about SOC 2.
VU
Verified User
C-Level Executive in Product Management (11-50 employees)
Companies looking for HR SaaS products have a checklist of items they need before moving forward. The companies required us to be Soc2 Type 2 and with Vanta it was a breeze. They did and do continuous monitoring of our systems and it truly just makes security and compliance easy. I'm not sure what the process would have been like for Assembly's security team if we had to do it manually or with archaic processes but it would not have been as easy as it was. I'm truly appreciative of Vanta and how amazing of a partner they have been to Assembly!!!!
Pros
Compliance
Security
Partnership
Ongoing support
Cons
They truly do what we needed them to do really well
Likelihood to Recommend
I can't think of a negative but they helped us get Soc2 Type2 complaint easily and with that, it's paid for the cost of Vanta 100x over. It should honestly be a no-brainer for companies who work b2b to get compliant. Think about it this way, if you were to hire 3 engineers to monitor security for you, what would that cost? If you use Vanta, you have a once-a-year fee and you know you are always in compliance!
We use Vanta for our SOCII certification and ongoing compliance.
Pros
Streamlines reporting and compliance
Provides an easy administrative platform for ongoing usage
Made SOCII certification easy
Cons
Add NDA signatures prior to sharing SOCII info in automatically
Likelihood to Recommend
Vanta makes SOCII certification so easy. Team time to manage the process and ongoing maintenance were reduced by at least 80%. This software made SOCII a breeze.