For more information about plan types and capabilities, see Vanta's pricing page
Framework Scoping in Vanta helps admins streamline compliance by customizing and managing what people, assets, and integrations apply to different frameworks. This helps reduce audit cost and risk, supports scaling to multiple frameworks, and allows detailed monitoring of more assets across your organization.
Benefits of Using Framework Scoping
Cost Efficiency: Reduces audit costs and risk by auditing only relevant assets.
Scalability: Enables seamless management and scaling of compliance across multiple frameworks.
Enhanced Monitoring: Focuses your monitoring and compliance efforts on the assets that matter most, while enabling monitoring of more organizational assets that are out of scope for audits.
How to Use Framework Scoping
View Integrations, Assets, and People by Framework
Go to the Frameworks page.
Select the desired framework.
Navigate to the Scope page.
Configure Integrations & Assets in Scope
Toggle integrations: Switch integrations off to remove an entire system and its assets from the scope.
Granular adjustments: Click Configure scope to specify individual accounts and their assets to exclude from your scope.
Exclude New Assets from Scope
Navigate to the Scope tab of your selected framework.
Click Configure scope next to the integration you want to adjust.
Deselect any new assets or accounts you wish to exclude from the scope.
Confirm your selection to apply the changes.
View Asset Scope
Visit the Inventory pages to see a clear overview of the scoped assets relevant to each framework.
Configure Employee Groups and People Scope
Select the relevant employee groups or specific individuals to include or exclude.
Go to the People page to view and manage the scope of personnel.
Create Audits with Scoped Assets
When creating audits, select your framework and no further action is needed, as audits will automatically filter assets according to your scope.
Managing Test Segments by Framework
View Test Segment Mappings
Navigate to the Tests page.
Review the frameworks each test is mapped to.
Identify indicated scope segments (e.g., GDPR, SOC2, custom frameworks).
Check the status (passing or failing) of each test segment.
Drill Down into Test Segment Details
Click on a specific test segment to access detailed information.
Review the status of individual test entities.
Examine specific scope details for each entity.
Filter Tests by Framework
Use available filter options to focus your view on specific frameworks.
Quickly manage test segments tailored to your compliance needs.
Review Test History by Segment
Access historical test data segmented by framework.
Ensure audit clarity by providing auditors access only to the relevant test segment history.