Maynooth University
€40,000
Insufficient technical and organisational measures to ensure information security
Ημερομηνία απόφασης
22 Νοεμβρίου 2024
Αρχή
Data Protection Authority of Ireland
IE
Τομέας
Public Sector and Education
Χώρα
IE
Νόμος
GDPRΚατάσταση
FINALΠεριγραφή
The Irish DPA has imposed a fine of EUR 40,000 on Maynooth University. The controller failed to implement adequate technical and organisational measures, resulting in an unauthorised third party gaining access to multiple employees' email accounts, which the third party then used for fraudulent purposes.
Νομικές παραπομπές
Art. 5 (1)Art. 32 (1)Art. 33 (1)
Θέματα & Παραβάσεις
Insufficient technical and organisational measures to ensure information security