There are a lot of vendors to choose from for SOC 2 automation. We chose Drata because their team has former auditors and their CEO Adam understands there is much more to SOC 2 than just checking the box for compliance. We decided to use Drata for our...
The real downside of using drata was the fact that Auditors were reluctant to use it. All the evidence was there in the platform and visible for them to use, but they still wanted us to walk them through all of our controls over video chats. This defeated...
A clear and concise list of tests that need to be fixed, and how to remediate
Vanta is only really useful as a utility towards ISO 27001 compliance - it lacks fundamental aspects of the standard for it to be the sole tool to achieve an ISO 27001 certification. Really fundamental and mandatory parts of the standard are lacking, such...
There are a lot of vendors to choose from for SOC 2 automation. We chose Drata because their team has former auditors and their CEO Adam understands there is much more to SOC 2 than just checking the box for compliance. We decided to use Drata for our...
A clear and concise list of tests that need to be fixed, and how to remediate
The real downside of using drata was the fact that Auditors were reluctant to use it. All the evidence was there in the platform and visible for them to use, but they still wanted us to walk them through all of our controls over video chats. This defeated...
Vanta is only really useful as a utility towards ISO 27001 compliance - it lacks fundamental aspects of the standard for it to be the sole tool to achieve an ISO 27001 certification. Really fundamental and mandatory parts of the standard are lacking, such...