Istituti ospedalieri bergamaschi

€45,000

Insufficient technical and organisational measures to ensure information security

Fecha de la decisión

11 de febrero de 2021

Autoridad

Italian Data Protection Authority (Garante)

IT

Sector

Health Care

País

IT

Ley

GDPR

Estado

FINAL

Descripción

The Italian DPA (Garante) has imposed a fine of EUR 45,000 on Istituti ospedalieri bergamaschi. The DPA initiated an investigation against the controller after it reported a data breach to the DPA. A patient had mistakenly received medical records and clinical documentation from seven other patients in his digital medical record.

Citas legales

Art. 5 (1)Art. 9Art. 32

Problemas e infracciones

Insufficient technical and organisational measures to ensure information security

Manténgase al día sobre la aplicación de las normas de protección de la intimidad

Respetamos su intimidad. Un correo electrónico al mes, sin spam, darse de baja en cualquier momento.