Covid 19 Test Lab

€100,000

Insufficient technical and organisational measures to ensure information security

Fecha de la decisión

6 de junio de 2024

Autoridad

Austrian Data Protection Authority (dsb)

AT

Sector

Health Care

País

AT

Ley

GDPR

Estado

FINAL

Descripción

The Austrian DPA has imposed a fine of EUR 100,000 on a Covid 19 test lab. The controller failed to implement sufficient technical and organisational measures, resulting in a data breach. Furthermore, the controller refused to inform the data subjects of the breach. The DPA also found that the controller processed certain data without a sufficient legal basis, used a processor without the necessary contract, failed to designate a suitable DPO, and failed to report the designation to the DPA.

Citas legales

Art. 9Art. 5 (1)Art. 28 (3)Art. 32Art. 34

Problemas e infracciones

Insufficient technical and organisational measures to ensure information security

Manténgase al día sobre la aplicación de las normas de protección de la intimidad

Respetamos su intimidad. Un correo electrónico al mes, sin spam, darse de baja en cualquier momento.