Vanta Compliance Management
Unified compliance management workflow combining Vanta's vulnerability tracking, control monitoring, framework oversight, and vendor security reviews. Designed for compliance managers and security engineers managing SOC 2, ISO 27001, HIPAA, PCI DSS, and GDPR programs.
What You Can Do
MCP Tools
list-frameworks
List compliance frameworks (SOC 2, ISO 27001, HIPAA, PCI DSS, GDPR) and their readiness status
list-controls
Query compliance controls with optional framework and status filters to identify gaps
list-failing-controls
Get all FAILING controls to prioritize remediation efforts
list-tests
Query automated compliance test results to identify evidence gaps
list-vulnerabilities
List security vulnerabilities with severity and remediation status filters
list-critical-vulnerabilities
Get all CRITICAL severity open vulnerabilities for immediate remediation
list-vendors
Query third-party vendors and their security review status
create-vendor
Add a new third-party vendor to Vanta for security review tracking
get-vendor
Get detailed information about a specific vendor's security review
update-vendor-review
Update a vendor's risk level or review status after security assessment
list-people
List personnel with security training completion and overdue task status
list-non-compliant-computers
List endpoint devices that are failing compliance checks
list-integrations
List all configured integrations and their connection health
list-documents
List compliance evidence documents uploaded to Vanta