Comparison Overview

MyHeritage

VS

SailPoint

MyHeritage

Ariel Sharon street 3, 4th floor, Or Yehuda, Israel, IL, 6037606
Last Update: 2026-03-29
Between 700 and 749

MyHeritage is the leading global discovery platform for exploring family history. With billions of historical records and family tree profiles, and with sophisticated matching technologies that work across all its assets, MyHeritage allows users to discover their past and empower their future. MyHeritage DNA is one of the world’s largest consumer DNA databases, with 5.4 million customers. MyHeritage is the most popular DNA test and family history service in Europe. Since 2020, MyHeritage is home to the world’s most advanced AI technologies for repairing, enhancing, colorizing, and animating historical photos. Working at MyHeritage means developing pioneering technologies and integrating AI to deliver powerful discoveries to our 104 million users. It also means making a difference in the lives of people all over the world. With a track record of leveraging its staff and expertise to help communities around the world, in April 2020, MyHeritage joined the fight against COVID-19 by building one of the world's largest COVID-19 laboratories to dramatically scale up Israel's testing capabilities and save lives. The MyHeritage Lab was commissioned by Israel’s Ministries of Health and Defense, and to date has processed over 5 million tests. Our 650 employees enjoy a hybrid work model that combines the convenience and flexibility of working from home with the collaborative social environment of our bright, spacious offices. Headquartered in Or Yehuda, we also have offices in Tel Aviv, North America, and Europe. When we’re not working, you can find us enjoying the fully-stocked kitchens, office gym, yoga classes, happy hours, and team-building activities. Visit our careers site for more information about our open positions: http://careers.myheritage.com

NAICS: 5112
NAICS Definition: Software Publishers
Employees: 546
Subsidiaries: 0
12-month incidents
0
Known data breaches
1
Attack type number
1

SailPoint

11200 Four Points Drive, Suite 100, Austin, Texas, US, 78726
Last Update: 2026-04-01
Between 700 and 749

SailPoint equips the modern enterprise to seamlessly manage and secure access to applications and data through the lens of identity – at speed and scale. As a category leader, we continuously reinvent identity security as the foundation of the secure enterprise. SailPoint delivers a unified, intelligent, extensible platform built to defend against today’s dynamic, identity-centric cyber threats while enhancing productivity and efficiency. SailPoint helps many of the world’s most complex, sophisticated enterprises create a secure technology ecosystem that fuels business transformation.

NAICS: 5112
NAICS Definition: Software Publishers
Employees: 3,404
Subsidiaries: 0
12-month incidents
0
Known data breaches
1
Attack type number
1

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/myheritage.jpeg
MyHeritage
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/sailpoint-technologies.jpeg
SailPoint
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
MyHeritage
100%
Compliance Rate
0/4 Standards Verified
SailPoint
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Software Development Industry Average (This Year)

No incidents recorded for MyHeritage in 2026.

Incidents vs Software Development Industry Average (This Year)

No incidents recorded for SailPoint in 2026.

Incident History — MyHeritage (X = Date, Y = Severity)

MyHeritage cyber incidents detection timeline including parent company and subsidiaries

Incident History — SailPoint (X = Date, Y = Severity)

SailPoint cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/myheritage.jpeg
MyHeritage
Incidents

Date Detected: 06/2018
Type:Breach
Blog: Blog
https://images.rankiteo.com/companyimages/sailpoint-technologies.jpeg
SailPoint
Incidents

Date Detected: 10/2025
Type:Breach
Attack Vector: Unsecured AI Agent Privileges, Lack of Identity Governance, Automated System Access Abuse
Motivation: Operational Efficiency Gaps, Lack of Strategic IAM Adoption, Compliance-Only Mindset (25% view IAM as strategic)
Blog: Blog

FAQ

MyHeritage company demonstrates a stronger AI Cybersecurity Score compared to SailPoint company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

MyHeritage and SailPoint have experienced a similar number of publicly disclosed cyber incidents.

In the current year, SailPoint company and MyHeritage company have not reported any cyber incidents.

Neither SailPoint company nor MyHeritage company has reported experiencing a ransomware attack publicly.

Both SailPoint company and MyHeritage company have disclosed experiencing at least one data breach.

Neither SailPoint company nor MyHeritage company has reported experiencing targeted cyberattacks publicly.

Neither MyHeritage company nor SailPoint company has reported experiencing or disclosing vulnerabilities publicly.

Neither MyHeritage nor SailPoint holds any compliance certifications.

Neither company holds any compliance certifications.

Neither MyHeritage company nor SailPoint company has publicly disclosed detailed information about the number of their subsidiaries.

SailPoint company employs more people globally than MyHeritage company, reflecting its scale as a Software Development.

Neither MyHeritage nor SailPoint holds SOC 2 Type 1 certification.

Neither MyHeritage nor SailPoint holds SOC 2 Type 2 certification.

Neither MyHeritage nor SailPoint holds ISO 27001 certification.

Neither MyHeritage nor SailPoint holds PCI DSS certification.

Neither MyHeritage nor SailPoint holds HIPAA certification.

Neither MyHeritage nor SailPoint holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

Hirschmann EagleSDV version 05.4.01 prior to 05.4.02 contains a denial-of-service vulnerability that causes the device to crash during session establishment when using TLS 1.0 or TLS 1.1. Attackers can trigger a crash by initiating TLS connections with these protocol versions to disrupt service availability.

Risk Information
cvss3
Base: 7.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
cvss4
Base: 8.7
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

The stored API keys in temporary browser client is not marked as protected allowing for JavScript console or other errors to allow for extraction of the encryption credentials.

Description

XSS vulnerability in cveInterface.js allows for inject HTML to be passed to display, as cveInterface trusts input from CVE API services

Description

Multiple reflected cross-site scripting (XSS) vulnerabilities in the login.php endpoint of Interzen Consulting S.r.l ZenShare Suite v17.0 allows attackers to execute arbitrary Javascript in the context of the user's browser via a crafted URL injected into the codice_azienda and red_url parameters.

Description

A reflected cross-site scripting (XSS) vulnerability in the login_newpwd.php endpoint of Interzen Consulting S.r.l ZenShare Suite v17.0 allows attackers to execute arbitrary Javascript in the context of the user's browser via a crafted URL injected into the codice_azienda parameter.