Compliance Integrations

Automatically push security findings to your compliance platform. No manual evidence collection.

How it works

AttackerView integrates with compliance platforms to automatically deliver vulnerability scan results as compliance evidence. When a scan completes or Watchtower detects changes, your compliance platform gets updated with the latest findings.

Your SOC 2, ISO 27001, PCI DSS (supporting evidence), and HIPAA evidence stays current without anyone copying screenshots or uploading PDFs. Auditors see real-time vulnerability data linked to the controls they care about.

You can connect integrations in Settings. Requires a Watchtower plan or higher.

What gets synced

Both integrations send the same core data, formatted for each platform:

  • Open findings with title, severity, evidence, and remediation links
  • Severity levels (critical, high, medium, low) — Vanta also maps to numeric CVSS 0-10 scores
  • Compliance control mappings for SOC 2, ISO 27001, PCI DSS (supporting evidence), and HIPAA
  • Deep links back to AttackerView for each finding's full detail and remediation guidance

When a finding is fixed, it's automatically removed from your compliance platform on the next sync. No manual cleanup needed.

Supported frameworks

AttackerView maps each finding to relevant compliance controls across four frameworks:

FrameworkExample controls
SOC 2CC6.1, CC6.6, CC6.7, CC7.1, CC7.2
ISO 27001A.5.14, A.8.8, A.8.9, A.8.24
PCI DSS4.2.1, 6.2.4, 6.3.3
HIPAA164.312(a)(1), 164.312(e)(1)

These mappings are built into every finding. Your compliance platform receives them automatically.

Available integrations

Quick comparison

VantaDrata
Auth methodOAuth (no keys to manage)API key
Sync frequencyEvery few minutes (background)Initial sync on connect, then on scan completion
Sync scopeAll domains + findings (full state)Per domain (after each scan)
Auto-created testsYes (~32 tests)No (maps to existing controls)
SLA trackingBuilt-in (Vanta calculates)Via Drata's control monitoring
Regional supportGlobal (single endpoint)US, EU, APAC

You can connect both at the same time. Each operates independently.

Tips

  • Enable Watchtower on your domains so compliance evidence stays fresh between manual scans.
  • Use the compliance evidence report for a point-in-time snapshot that's useful alongside live integrations.
  • If you downgrade from a paid plan, integrations are paused (not deleted). Re-upgrading re-enables them.
  • Integration errors are shown in Settings. If a sync fails, AttackerView retries on the next cycle.