Medijobs Platform SRL

€5,000

Insufficient technical and organisational measures to ensure information security

Datum rozhodnutí

8. února 2023

Úřad

Romanian National Supervisory Authority for Personal Data Processing (ANSPDCP)

RO

Sektor

Industry and Commerce

Země

RO

Právo

GDPR

Stav

FINAL

Popis

The Romanian DPA has imposed a fine of EUR 5,000 on Medijobs Platform SRL. The controller had informed the DPA about a data breach according to Art. 33 GDPR. Unauthorized third parties had succeeded in accessing the IT infrastructure of the controller and had downloaded, deleted and transferred personal data of applicants such as name, e-mail address, professional history, marital status, etc.. The DPA found that the controller had failed to implement adequate technical and organizational measures to protect personal data, which ultimately also contributed to the data breach.

Právní citace

Art. 32 (1)

Problémy a porušení

Insufficient technical and organisational measures to ensure information security

Aktualizujte informace o prosazování ochrany osobních údajů

Respektujeme vaše soukromí. Jeden e-mail měsíčně, žádný spam, kdykoli se můžete odhlásit.