Panorays
Panorays is a Third-party risk tool. It describes itself as "Third-party cyber risk management platform".
Key facts
- Category
- Third-party risk
- Describes itself as
- Third-party cyber risk management platform
- Headquarters
- New York, New York, United States
- Founded
- 2016
- Pricing
- Contact sales
- Funding
- ~$100M total raised; $42M Series B led by Greenfield Partners
- Website
- panorays.com
- Others in this category
- 5
Identity confirmed
On 2026-09-12 the address above was checked against a primary source and does belong to Panorays. Evidence.
Frameworks Panorays claims
Read from https://panorays.com/platform/regulatory-compliance/ on 2026-09-12. This records what the vendor states, not a certification and not an assessment.
Claims coverage
GDPR, PCI DSS, DORA
Does not claim
SOC 2, ISO 42001, HIPAA, FedRAMP, CMMC, EU AI Act, NIS2. That means the page above does not claim these, not that the product cannot handle them. Ask.
Mentioned, but not as a claim
- NIST CSF / 800-53: the page says continuous monitoring reports findings relevant to 'security standards like NIST, ISO 2700x and PCI DSS' without naming a specific NIST framework
- ISO 27001: same sentence refers to 'ISO 2700x' generically rather than to ISO 27001 coverage
Best fit for
Security and risk teams needing continuous, automated monitoring of third-party cyber risk rather than one-time questionnaires
What stands out
Combines external attack-surface scanning with vendor questionnaire automation into one continuous "Risk DNA" score, rather than treating them as separate tools
Worth knowing
Gartner Peer Insights reviewers say the platform does not explain where its risk findings come from or why a third party was scored a given way, which makes the data hard to validate before acting on it. Reviewers also report a real learning curve during rollout.
About Third-party risk
Assesses and monitors the vendors you buy from, from onboarding due diligence through continuous monitoring. See all 6 in this category.
Questions
- What does Panorays do?
- Panorays is a Third-party risk tool. It describes itself as "Third-party cyber risk management platform". Assesses and monitors the vendors you buy from, from onboarding due diligence through continuous monitoring.
- Who is Panorays best suited for?
- Security and risk teams needing continuous, automated monitoring of third-party cyber risk rather than one-time questionnaires
- What are the alternatives to Panorays?
- This directory lists 5 other Third-party risk tools, including Censinet, Certa, Kollate-it.
Alternatives to Panorays
Sources
Category is our editorial call; the vendor's own wording is above. This entry reflects public information and is not an assessment of the product. How this is built · Disclaimer