Data processing agreement in SIEM and security operations
Without a published DPA you cannot review the contract before you talk to sales.
3 of 17 vendors we measured here publish it, that is 18%. Last checked 2026-09-03.
18% here against 12% across every category we measure. SIEM and security operations sits above the overall share for this criterion.
Back to Data processing agreement across all categories, or to SIEM and security operations.
Published
Published and readable without a login.
No data processing agreement found.
We reached at least one address for each of these vendors and none of them carried it. That is what we found at the addresses we checked, on the date we checked them, and not a statement about what the vendor has.
| Vendor | What we found |
|---|---|
| Anvilogic | 8 addresses checked |
| Arctic Wolf | 8 addresses checked |
| Blumira | 8 addresses checked |
| Corelight | 8 addresses checked |
| Cybereason | 8 addresses checked |
| Devo | 8 addresses checked |
| Exabeam | 8 addresses checked |
| Filigran | 8 addresses checked |
| Gigamon | 8 addresses checked |
| Hunters | 8 addresses checked |
| Huntress | 8 addresses checked |
| Red Canary | 8 addresses checked |
| Stellar Cyber | 8 addresses checked |
| Todyl | 8 addresses checked |
Not measured
We could not look at these, or their robots.txt asks us not to. That says something about our measurement, not about them, and they are left out of the percentage above.
| Vendor | What we found |
|---|---|
| ExtraHop | The vendor’s robots.txt excludes us from at least one of these addresses, so this was not measured. |
Found something we missed? Tell us and the next run picks it up.