Vanta achieves AWS Security Competency
BlogProduct updates
September 11, 2024

Vanta continues AWS momentum with Security Competency achievement

Written by
Natalie Hurd
Sr. Technical PMM
Gavin Matthews
Reviewed by
No items found.

Accelerating security solutions for small businesses 

Tagore offers strategic services to small businesses. 

A partnership that can scale 

Tagore prioritized finding a managed compliance partner with an established product, dedicated support team, and rapid release rate.

Standing out from competitors

Tagore's partnership with Vanta enhances its strategic focus and deepens client value, creating differentiation in a competitive market.

Vanta has achieved the Amazon Web Services (AWS) Security Competency status. This designation recognizes that Vanta excels at providing deep AWS technical expertise and integrations that help customers achieve their cloud security and compliance goals.

Over half of Vanta’s 8,000+ customers leverage AWS. Achieving the AWS Security Competency reinforces our continual commitment to delivering deeply automated, integrated product experiences. Monitoring more than 43 million vulnerabilities and 14 million assets globally, Vanta aims to help our customers maintain the security and compliance of their cloud infrastructure at scale. 

Vanta’s commitment to security and putting our customers first

In order to obtain Security Competency status with AWS, we participated in a thorough and rigorous evaluation that ensured Vanta adheres to AWS’ security best practices. By achieving this status, Vanta aims to prove our commitment to security, ensuring we deliver secure products and experiences to our customers. 

Security Competency partners demonstrate secure and efficient connections to customer AWS environments, deep introspection and monitoring of a wide range of AWS resources, and crucially help customers seamlessly manage compliance across their AWS organizations and accounts. 

“Achieving our Security Competency proves that Vanta is an ideal partner for any company using AWS. Competency is a clear sign that Vanta integrates easily to any environment and pulls the right data to assess and maintain posture and compliance.”
- Jadee Hanson, Chief Information Security Officer, Vanta

Additionally, Vanta’s rich integrations to 350+ other tools including version control systems, identity protection providers, human resource information systems, and more means that customers can manage compliance at scale all in one place.

Deep integrations across a breadth of AWS resources 

With Vanta, AWS customers have access to a market-leading integration that supports over 40 resource types like AWS CloudTrail, AWS EKS Clusters, Amazon Inspector Vulnerability Scanning, and more. This integration powers over 100 automated tests that continuously collect evidence for audits, and validate the status of your security and compliance controls. This continuous controls monitoring saves significant amounts of time in audits, and allows you to shift left and address problems earlier.

“With Vanta’s continuous monitoring, rather than checking things once a year and frantically scrambling to fix them, we can deal with issues as they arise.”
- Michael Pearce, Head of Information Security & Compliance, Peak

Vanta’s AWS tests go far beyond the basics to continuously monitor and highlight areas of non-compliance and potential security misconfigurations. For example, Vanta provides pre-built automated tests that check for your alignment against the CIS Amazon EKS Benchmark, alerting you to configuration issues and providing remediation guidance so you can improve your security posture quickly and easily—and long before an audit.

“It’s almost like having an [internal] auditor full-time on the team, just constantly auditing our business, and that’s super helpful for us.”
- Daryl Pinkal, Chief Technology Officer, Clozd

Scaling AWS Investment

We’re proud to continue expanding our relationship with AWS by obtaining the Security Competency. Our deepening partnership with AWS is a key step towards delivering valuable cloud security and compliance functionality for our thousands of mutual customers, and we are excited to continue this momentum to ensure security-minded companies are successful on their journey to proving trust.

Vanta’s achievement of the AWS Security Competency status demonstrates our commitment to helping customers quickly and easily achieve their cloud security and compliance goals. Purchase Vanta directly or through AWS Marketplace via Private Offer or CPPO. Find us at AWS re:Invent in December. Book a demo to learn more.

Access Review Stage Content / Functionality
Across all stages
  • Easily create and save a new access review at a point in time
  • View detailed audit evidence of historical access reviews
Setup access review procedures
  • Define a global access review procedure that stakeholders can follow, ensuring consistency and mitigation of human error in reviews
  • Set your access review frequency (monthly, quarterly, etc.) and working period/deadlines
Consolidate account access data from systems
  • Integrate systems using dozens of pre-built integrations, or “connectors”. System account and HRIS data is pulled into Vanta.
  • Upcoming integrations include Zoom and Intercom (account access), and Personio (HRIS)
  • Upload access files from non-integrated systems
  • View and select systems in-scope for the review
Review, approve, and deny user access
  • Select the appropriate systems reviewer and due date
  • Get automatic notifications and reminders to systems reviewer of deadlines
  • Automatic flagging of “risky” employee accounts that have been terminated or switched departments
  • Intuitive interface to see all accounts with access, account accept/deny buttons, and notes section
  • Track progress of individual systems access reviews and see accounts that need to be removed or have access modified
  • Bulk sort, filter, and alter accounts based on account roles and employee title
Assign remediation tasks to system owners
  • Built-in remediation workflow for reviewers to request access changes and for admin to view and manage requests
  • Optional task tracker integration to create tickets for any access changes and provide visibility to the status of tickets and remediation
Verify changes to access
  • Focused view of accounts flagged for access changes for easy tracking and management
  • Automated evidence of remediation completion displayed for integrated systems
  • Manual evidence of remediation can be uploaded for non-integrated systems
Report and re-evaluate results
  • Auditor can log into Vanta to see history of all completed access reviews
  • Internals can see status of reviews in progress and also historical review detail
FEATURED VANTA RESOURCE

The ultimate guide to scaling your compliance program

Learn how to scale, manage, and optimize alongside your business goals.