• HOME
  • CATEGORIES

    • CATEGORIES

    • Browse All Categories
  • FOR VENDORS

    • FOR VENDORS

    • Log In to Vendor Portal
    • Get Started
  • REVIEWS

    • REVIEWS

    • Write a Review
    • Product Reviews
    • Vendor Directory
    • Product Comparisons
  • GARTNER PEER COMMUNITY™
  • GARTNER.COM
  • Community GuidelinesListing GuidelinesBrowse VendorsRules of EngagementFAQPrivacyTerms of Service
    ©2026 Gartner, Inc. and/or its affiliates.
    All rights reserved.
  • Categories

    • Loading categories...

      Browse All Categories

      Loading markets...

  • For Vendors

    • Log In to Vendor Portal 

    • Get Started 

  • Write a Review

Join / Sign In
  1. Home
  2. /
  3. Vanta
Logo of Vanta

Vanta

byVanta
in
4.4
Market Presence: IT Risk Management, Compliance Monitoring Solutions

Overview

Product Information on Vanta

Updated 21st March 2025

What is Vanta?

Vanta’s Trust Management Platform helps organizations identify, assess, and manage IT security risks through automation and continuous monitoring. Over 10,000 teams rely on Vanta to streamline IT risk assessments, maintain compliance with 35+ security frameworks, and improve visibility into risk exposure. By centralizing IT risk management processes, Vanta enables Security, GRC, and IT professionals to reduce operational overhead, improve efficiency, and strengthen their security posture.

Vanta Pricing

Vanta Product Images

Program Overview
Program Overview
Risk Management
Risk Management
Controls
Controls

Overall experience with Vanta

Chief Information Security Officer
<50M USD, Software
FAVORABLE

“Fast, clear, measurable path to security baselines and continuous compliance management”

5.0
Jul 11, 2025
Great product, excellent support from both the sales & success teams. I have a huge, short-interval challenge, and Vanta met me where I was -- lots of 'over-and-above' help, and reasonableness in negoitations. Got what I paid for, and then some.
VP, IT Security and Risk Management
50M - 250M USD, Software
CRITICAL

“Vanta is a useful product, but still immature with limitations (e.g. risk management)”

3.0
Jul 8, 2025
Vanta has a product with good potential - overall, there are definitely some benefits to implementing it. That said, there are still some notable immaturities and shortfalls in the product (some of which may seem surprising for a fully fledged GRC tool). It is certainly not (in my opinion) the absolute gamechanger that it is advertised/sold as, but if you review the product carefully against your needs and understand its limitations (and achieve an appropriate price) then it can still be a valuable tool. The support has been reasonably good overall. The initial pricing and early negotiations were extremely inflated, but after some hard pushing, we arrived at a more reasonable price point.

About Company

Company Description

Updated 7th July 2025

Vanta is an AI trust management platform that helps organizations manage trust, risk, and compliance programs within a single system. The platform supports fast audit readiness and ongoing compliance across more than 35 frameworks, including SOC 2, ISO 27001, HIPAA, and others. Vanta uses AI and automation to streamline evidence collection, continuous monitoring, security reviews, and vendor risk management for companies of all sizes.

Company Details

Updated 7th July 2025
Company type
Private
Year Founded
2018
Head office location
San Francisco, United States
Number of employees
501 - 1000
Website
https://vanta.com

Do You Manage Peer Insights at Vanta?

Access Vendor Portal to update and manage your profile.

Key Insights

A Snapshot of What Matters - Based on Validated User Reviews

Reviewer Insights for: Vanta
Performance of Vanta Across Market Features

Vanta Likes & Dislikes

Like

Workspaces (exactly what we needed). Remediation instructions (a true differentiator, over competitors) Vendor Management (closed a gap, strong early use case of AI)

Like

The tool is well structured to organise your security program between various frameworks. The AI tooling so far is also useful, and the trust centre feature is also nice to have.

Like

Auditability, efficiencies, and integrations for continuous control monitoring.

Dislike

User Access Reviews has promise, but disappoints at present. Need help making it work for us

Dislike

The risk management module has a number of immaturities and limitations. For example, current risk (where you are today) is automatically calculated by Vanta and it is not possible to produce this score yourself. It's a very basic calculation method, where the risk score goes from the inherent to residual score only once all assigned controls are passing. It goes from 'zero to hero' just like that, which is often not an accurate reflection of your real, current risk score. It cannot take into account control effectiveness, or the difference between compliant vs secure.

Dislike

There are a lot of gaps with reporting from automated tests. For example, we have continuous monitoring for all the ISO27001/SOC2 controls for the cloud, but currently you can only view by the overall tests, and not pull reports by which associated products/subscriptions are failing the most overall. You only see the overall control failure.

Top Vanta Alternatives

Logo of Archer IT & Security Risk Management
1. Archer IT & Security Risk Management
4.2
(170 Ratings)
Logo of OneTrust Tech Risk & Compliance
2. OneTrust Tech Risk & Compliance
4.2
(101 Ratings)
Logo of Diligent One Platform
3. Diligent One Platform
4.3
(92 Ratings)
View All Alternatives

Peer Discussions

Vanta Reviews and Ratings

Showing data for 27 ratings and reviews for IT Risk Management market. View all 66 ratings and reviews across markets for a complete picture.

4.4

(27 Ratings)

Rating Distribution

5 Star
63%
4 Star
22%
3 Star
7%
2 Star
4%
1 Star
4%
Why ratings and reviews count differ?

Customer Experience

Evaluation & Contracting

4.1

Integration & Deployment

4.2

Service & Support

4.4

Product Capabilities

4.1

Filter Reviews
Sort By:
Most helpful
Last 12 Months
Star Rating
Reviewer Type
Reviewer's Company Size
Reviewer's Industry
Reviewer's Region
Reviewer's Job Function
  • VP, IT Security and Risk Management
    50M-1B USD
    Software
    Review Source

    Vanta is a useful product, but still immature with limitations (e.g. risk management)

    3.0
    Jul 8, 2025
    Vanta has a product with good potential - overall, there are definitely some benefits to implementing it. That said, there are still some notable immaturities and shortfalls in the product (some of which may seem surprising for a fully fledged GRC tool). It is certainly not (in my opinion) the absolute gamechanger that it is advertised/sold as, but if you review the product carefully against your needs and understand its limitations (and achieve an appropriate price) then it can still be a valuable tool. The support has been reasonably good overall. The initial pricing and early negotiations were extremely inflated, but after some hard pushing, we arrived at a more reasonable price point.
  • Chief Information Security Officer
    <50M USD
    Software
    Review Source

    Fast, clear, measurable path to security baselines and continuous compliance management

    5.0
    Jul 11, 2025
    Great product, excellent support from both the sales & success teams. I have a huge, short-interval challenge, and Vanta met me where I was -- lots of 'over-and-above' help, and reasonableness in negoitations. Got what I paid for, and then some.
  • Manager, IT Security and Risk Management
    50M-1B USD
    Software
    Review Source

    Robust Auditability and Control Monitoring Hindered by Reporting Gaps in Platform

    5.0
    Jul 1, 2025
    This is the best GRC platform I have come across yet in my 11 years in the industry. There are still a lot of improvements to be had with reporting and the VRM module but overall the integrations for continuous control monitoring are a great value add to the business.
  • CISO
    50M-1B USD
    Services (non-Government)
    Review Source

    A big time saver

    4.0
    Jul 1, 2025
    We got Vanta to organise our ISO 27001 framework controls, to help us get going with Vendor Risk Management as well as automate answers to security questionnaires. All this worked well. However, the controls automation integrations are limited to the big players and so if you have something more bespoke or on-premises the integration is to either manually upload or work with Vanta API which doesn’t fully cover the UI functionality.
  • Site Reliability Engineer
    50M-1B USD
    IT Services
    Review Source

    Comprehensive Test Coverage and Customizable Tasks Highlighted in Overall Usage Experience

    5.0
    Jun 30, 2025
    Product largely works as advertised, and the technical support was excellent.
Showing Result 1-5 of 27

Recommended Gartner Research

  • Critical Capabilities for IT Risk Management
  • Magic Quadrant for IT Risk Management

Gartner Peer Insights content consists of the opinions of individual end users based on their own experiences, and should not be construed as statements of fact, nor do they represent the views of Gartner or its affiliates. Gartner does not endorse any vendor, product or service depicted in this content nor makes any warranties, expressed or implied, with respect to this content, about its accuracy or completeness, including any warranties of merchantability or fitness for a particular purpose.

This site is protected by hCaptcha and its Privacy Policy and Terms of Use apply.


Software reviews and ratings for EMMS, BI, CRM, MDM, analytics, security and other platforms - Peer Insights by Gartner
Community GuidelinesListing GuidelinesBrowse VendorsRules of EngagementFAQsPrivacyTerms of Use

©2026 Gartner, Inc. and/or its affiliates.

All rights reserved.