Vanta Vindicates as a Small to Medium Sized Business SOC2 Tool
Updated March 29, 2022

Vanta Vindicates as a Small to Medium Sized Business SOC2 Tool

Michael Martin, PMP CASP | TrustRadius Reviewer
Score 9 out of 10
Vetted Review
Verified User

Overall Satisfaction with Vanta

The Vanta software tool is being used with our Information Technology & Information Security departments to continue our SOC2 compliance after the company-wide SOC2 audit from August to November 2021.

This is helping us address any security concerns before the auditor needs to inquire on a resolution or require an exemption to be implemented.
  • SOC2
  • Ease of Use
  • Explanation of Steps to Resolve
  • Better Explanations.
  • More Detailed Resolutions.
  • Allows Greater Auditor Editing of Extraneous Tasks.
  • Clarity of compliance.
  • Dashboard of tasks.
  • Ease of Use
  • Will allow the company to attract more partners and clients.
  • Spotlight on deeper security needs
  • Provides better organization of assets
Both were SOC2 focused while Vanta seemed to allow deeper examination and expansion beyond SOC2

Do you think Vanta delivers good value for the price?

Yes

Are you happy with Vanta's feature set?

Yes

Did Vanta live up to sales and marketing promises?

Yes

Did implementation of Vanta go as expected?

Yes

Would you buy Vanta again?

Yes

Great for a small to medium sized business that needs to handle data securely and provide compliance assurance internally as well to its partners, customers, and potential clients. Relatively simple to use and integrate although perhaps too simple for larger more complex businesses with more expansive needs and various SOC2 section compliances.

Vanta Feature Ratings

Common repository of GRC items
8
Risk management
7
Integration with Corporate Performance Management (CPM) systems
6
GRC policy management
8
Incident management
7

Using Vanta

  • SOC2 Compliance
  • Security Training
  • Inventory Management
  • Inventory Management
  • Training Organization
  • Alert Management
  • Compliance beyond SOC2
  • Document Management
  • Project Management
Great to maintain for our SOC2 compliance and further compliance evolutions

Evaluating Vanta and Competitors

  • Price
  • Product Features
  • Product Usability
  • Product Reputation
Great value for need we have
Better integration with Salesforce and 365 as well Meraki

Vanta Implementation

Pretty seemless and did it almost entirely myself
Change management was a small part of the implementation and was well-handled - Communications between departments
  • Which integrations were critical
  • Identifying the needed resources
  • If we needed consultation

Vanta Training

  • Online training
  • in-person training
  • no training
Pretty straight forward
Straight Forward

Configuring Vanta

Configuration is based on the integrations
Integration of as much of your tools as possible
No - there is no facility to customize the interface
No - we have not done any custom code

Vanta Support

Direct support and replies in a timely manner to tickets submitted
ProsCons
Quick Resolution
Good followup
Knowledgeable team
Problems get solved
Quick Initial Response
None
No, it is pretty self sufficient and support comes in when needed
Yes - Took some time but seems to have been addressed as the product grows
Adding features based on our setup

Using Vanta

Pretty intuitive and great integrations
ProsCons
Like to use
Relatively simple
Easy to use
Technical support not required
Well integrated
Consistent
Quick to learn
Feel confident using
Familiar
None
  • Integrations
  • Compliance Checks
  • Resolutions
  • Lag time in agent rediscovery
  • No Salesforce or Meraki integration
  • Finding certain sections

Vanta Reliability

Works as intended
Fast although the agent may take some time to reping on checks

Integrating Vanta

  • 365
  • AWS
  • ClickUp
  • GitHub
Very easy
  • Salesforce
  • Rackspace
  • Teams
Unknown
  • File import/export
  • Single Signon
Add Salesforce and Meraki

Upgrading Vanta

Yes - No issues
  • Further Integrations
  • Better Organization
  • More Information
  • More Integrations
  • Improved Discoverability
  • Better Categorization