BlogProduct updates
March 22, 2026

New in Vanta | March 2026

Written by
Amulya Uppala
Reviewed by
No items found.

Accelerating security solutions for small businesses 

Tagore offers strategic services to small businesses. 

A partnership that can scale 

Tagore prioritized finding a managed compliance partner with an established product, dedicated support team, and rapid release rate.

Standing out from competitors

Tagore's partnership with Vanta enhances its strategic focus and deepens client value, creating differentiation in a competitive market.

This past month, the Vanta team launched new features to help you:

  • Generate complete SSP packages for federal frameworks without manual documentation
  • Unlock deeper automation and visibility with new and enhanced integrations
  • Turn customer obligations into clear, trackable commitments
  • Evaluate vendors across multiple risk domains with faster, more flexible assessments

Generate SSP packages for federal frameworks

Preparing for federal audits often involves creating a time-consuming  System Security Plan (SSP). These documents can span hundreds of pages, requiring teams to manually write, format, and compile detailed descriptions of their system and controls.

With SSP generation, Vanta removes that manual burden.

Vanta now enables teams to generate SSP packages that meet FedRAMP and CMMC requirements directly within the platform. Using a structured template and guided workflow, you can input required information, and produce a complete SSP without starting from scratch. The SSP is generated in a standardized template with all necessary attachments and appendices and is stored in Vanta for easy management.

Currently available to any customers who have purchased a federal framework. 

Unlock more automation with our  integrations

Vanta has introduced several new integrations and key enhancements to existing ones, all in an effort to deliver greater visibility and deeper automation for our customers. 

New integrations now available:

  • Microsoft Entra and Microsoft Intune (GCC High): Enabling users of Microsoft’s GCC High environments to securely connect to Vanta to automate evidence collection and unlock continuous controls monitoring. These integrations enable device management and monitoring via Microsoft Intune (GCC High), and continuous synchronization of users, groups, and vendor applications between Entra ID (GCC High) and Vanta.
  • Miradore: Enabling users to continuously monitor device posture and security policy adherence, verify that only compliant devices have access to organizational resources, and validate device compliance status as reported by Miradore.
  • Splunk (Cloud): Enabling users to monitor and manage personnel access to Splunk (Cloud), ensure that only active employees retain access to company systems, and simplify access reviews to support compliance requirements.

We’ve also released a key enhancement to Vanta’s Linear integration, allowing users to link existing Linear tickets to Vanta Documents, enabling attachments uploaded to Linear tickets to automatically appear in Vanta as recommended evidence. This change ensures Vanta users can see ticket status and synced attachments in the platform, while stakeholders can contribute their work in Linear.

Currently available on all Vanta plans.

Turn customer obligations into actionable, trackable commitments

Customer Commitments helps you centralize, track, and act on every obligation your team has made, without digging through contracts when it matters most. Contracts are automatically ingested from your contract management system like Ironclad, key obligations are extracted and then structured into searchable, actionable data via the Vanta AI Agent.

Quickly understand who needs to be notified, by when, and why, whether you’re responding to an incident, preparing for an audit, or heading into a renewal. With real-time visibility and alerts, teams can move from reactive contract reviews to proactive trust management, ensuring every promise is delivered, every time.

Currently available as an add-on to all plans.

Evaluate vendors across every risk domain

Third-party risk isn’t just about security. Today, teams are responsible for evaluating vendors across multiple risk domains like privacy, legal, AI, and ESG. 

With Vanta’s Multiple Assessments, teams can run and manage assessments concurrently within a single vendor lifecycle event, like procurement or renewal. Instead of forcing every evaluation into a one-size-fits-all security review, teams can assign domain-specific assessments to the right owners, collect tailored evidence and questionnaires, and bring everything together into a single, unified view enabling faster decisions. 

The result? Faster assessments, clearer ownership, and a more complete picture of vendor risk, without slowing down the business.

Currently available for all TPRM + Continuous Monitoring customers.

Try it for yourself!

Log in to your Vanta account to try out these new features today. If you’re not a Vanta customer and want to learn more, request a demo.

As always, we welcome your feedback. Let us know what you think by reaching out to your Customer Success Manager and stay in the loop on Vanta news on LinkedIn.

Access Review Stage Content / Functionality
Across all stages
  • Easily create and save a new access review at a point in time
  • View detailed audit evidence of historical access reviews
Setup access review procedures
  • Define a global access review procedure that stakeholders can follow, ensuring consistency and mitigation of human error in reviews
  • Set your access review frequency (monthly, quarterly, etc.) and working period/deadlines
Consolidate account access data from systems
  • Integrate systems using dozens of pre-built integrations, or “connectors”. System account and HRIS data is pulled into Vanta.
  • Upcoming integrations include Zoom and Intercom (account access), and Personio (HRIS)
  • Upload access files from non-integrated systems
  • View and select systems in-scope for the review
Review, approve, and deny user access
  • Select the appropriate systems reviewer and due date
  • Get automatic notifications and reminders to systems reviewer of deadlines
  • Automatic flagging of “risky” employee accounts that have been terminated or switched departments
  • Intuitive interface to see all accounts with access, account accept/deny buttons, and notes section
  • Track progress of individual systems access reviews and see accounts that need to be removed or have access modified
  • Bulk sort, filter, and alter accounts based on account roles and employee title
Assign remediation tasks to system owners
  • Built-in remediation workflow for reviewers to request access changes and for admin to view and manage requests
  • Optional task tracker integration to create tickets for any access changes and provide visibility to the status of tickets and remediation
Verify changes to access
  • Focused view of accounts flagged for access changes for easy tracking and management
  • Automated evidence of remediation completion displayed for integrated systems
  • Manual evidence of remediation can be uploaded for non-integrated systems
Report and re-evaluate results
  • Auditor can log into Vanta to see history of all completed access reviews
  • Internals can see status of reviews in progress and also historical review detail
FEATURED VANTA RESOURCE

The ultimate guide to scaling your compliance program

Learn how to scale, manage, and optimize alongside your business goals.