Imperum
Autonomous SOC
Company
News
LEGAL · DPA

Data Processing Agreement

How Imperum processes personal data on behalf of your organization, with the security, governance, and audit standards a modern SOC requires, in accordance with the GDPR and applicable data protection laws.

Last updated · May 6, 2025GDPR-alignedGoverned by Dutch law
Version
2025.05
Effective
May 6, 2025
Parties
Imperum & Customer
Jurisdiction
Netherlands

This Data Processing Agreement ("Agreement") forms part of the overall agreement between Imperum B.V. ("Imperum") and the Customer ("you" or "Customer") regarding the processing of personal data in connection with the use of the Imperum Software.

By engaging with the Software and Services, you agree to the terms of this Agreement.

SECTION 01

Definitions

The following terms carry the meanings set out below wherever they appear in this Agreement.

Personal Data
Any information relating to an identified or identifiable individual, as defined under applicable data protection laws, including the GDPR.
Data Subject
The individual to whom the personal data relates.
Controller
The entity that determines the purposes and means of processing personal data.
Processor
The entity that processes personal data on behalf of the Controller.
Subprocessor
Any third-party entity engaged by the Processor to process personal data on its behalf.
Processing
Any operation performed on personal data, whether or not automated, such as collection, storage, use, or deletion.
Data Protection Laws
The applicable laws and regulations relating to the processing of personal data, including but not limited to the GDPR.

SECTION 02

Purpose of data processing

Imperum will process personal data solely to provide and support the Software and Services, as instructed by the Customer. Imperum acts as a Processor and does not use Customer personal data for any independent purpose.

SECTION 03

Obligations of Imperum

In its role as Processor, Imperum commits to the following obligations.

  • Process personal data only in accordance with the Customer's instructions.
  • Implement appropriate security measures to protect the data.
  • Assist the Customer with data subject requests.
  • Notify the Customer of any data breaches without undue delay.

SECTION 04

Subprocessors

Imperum may use subprocessors to assist in providing the Software and Services. Any subprocessors will be engaged in accordance with the applicable data protection laws, under written terms that impose data protection obligations consistent with those set out in this Agreement.

SECTION 05

Data subject rights

Imperum will assist the Customer in responding to data subject requests, such as for access, correction, or deletion of personal data.

SECTION 06

Data security

Imperum will implement technical and organizational measures to protect personal data from unauthorized access, disclosure, alteration, or destruction.

SECTION 07

Data transfers

If personal data is transferred outside the European Economic Area (EEA), such transfers will be carried out in compliance with applicable data protection laws.

SECTION 08

Termination

Upon termination of the services, Imperum will return or delete all personal data as requested by the Customer.

SECTION 09

Governing law

This Agreement is governed by the laws of the Kingdom of the Netherlands.

SECTION 10

Contact information

For questions about this Agreement, please reach out to our privacy team.

Imperum privacy team

Imperum B.V. · Teleport Towers, Kingsfordweg 151, 1043 GR, Amsterdam, NL

info@imperum.io

By using Imperum's Software and Services, you acknowledge that you have read, understood, and agree to this Data Processing Agreement.

Ready to get started?

See Imperum in action

Discover how our AI-powered SecOps platform can transform your security operations. Our team is ready to walk you through a personalized demo.

Contact us