CASE STUDY
ÉTUDE DE CAS
Despite an exploding compliance footprint, Perk cuts questionnaire time by 50% with Vanta
.webp)
“Now, as a travel and spend management platform, our reimbursement process requires increased regulatory responsibilities. Vanta handles that complexity for us. Without it, we'd easily need two more full-time hires just to stay on top of frameworks.”
TL;DR
- Challenge: Perk's information security team was buried in manual questionnaire responses and audit prep while simultaneously managing an exploding compliance footprint after becoming a regulated financial institution.
- Solution: Perk deployed the Vanta Agent, a Trust Center, custom frameworks, and automated access reviews to unify compliance operations and remove the security team as a bottleneck in the sales process.
- ROI: Questionnaire response time dropped 50%, 49 of 50 questionnaires now resolve without security involvement.
The company
Perk is redefining how businesses manage travel and spend
Perk (formerly TravelPerk) is an intelligent AI-native platform serving businesses that need full visibility and control over travel and spend without the operational overhead of managing disconnected tools. The company entered regulated financial services territory by acquiring a banking entity, which fundamentally raised the stakes for its compliance and security program.
The challenge
From manageable compliance to operational overload
Perk started as a travel management company with a relatively contained compliance scope. That changed quickly after acquiring a banking entity and expanding its capabilities to spend management. The information security team suddenly had to support a much broader and more complex set of frameworks, including SOC 2, ISO 27001, PCI DSS, GDPR/ISO 27701, DORA, and NIS 2—raising both the stakes and the operational burden.
What Perk tried first: What had previously been manageable workflows—security questionnaires, access reviews, and audit preparation—became increasingly time-consuming and difficult to scale. The security team found itself pulled into repetitive, manual work that slowed down both compliance progress and sales cycles.
Perk's pivot point: As framework requirements and questionnaire volume grew, manual processes became a clear bottleneck. Perk needed a way to automate responses, support complex frameworks, and enable sales to self-serve without relying on security.
Why Perk chose Vanta: Perk evaluated several vendors and selected Vanta for its breadth of integrations (including AWS, Okta, and HubSpot), intuitive interface, strong audit mapping, and Trust Center capabilities that could offload work from the security team.
{{quote-2}}
The Vanta impact
Building a scalable, automated compliance engine
Perk implemented Vanta as the centralized system to manage compliance, automate manual work, and remove the security team from day-to-day operational bottlenecks. By integrating directly with core systems like AWS, Okta, and Hibob, Vanta enabled continuous monitoring, streamlined workflows, and greater visibility across frameworks.
Here's how Perk deployed Vanta:
By consolidating compliance operations into Vanta, Perk's information security team can focus on the more complex parts of their role and automate repetitive manual tasks, enhancing speed, accuracy, and overall internal efficiency.
{{quote-3}}
.webp)