Maynooth University
€40,000
Insufficient technical and organisational measures to ensure information security
Fecha de la decisión
22 de noviembre de 2024
Autoridad
Data Protection Authority of Ireland
IE
Sector
Public Sector and Education
País
IE
Ley
GDPREstado
FINALDescripción
The Irish DPA has imposed a fine of EUR 40,000 on Maynooth University. The controller failed to implement adequate technical and organisational measures, resulting in an unauthorised third party gaining access to multiple employees' email accounts, which the third party then used for fraudulent purposes.
Citas legales
Art. 5 (1)Art. 32 (1)Art. 33 (1)
Problemas e infracciones
Insufficient technical and organisational measures to ensure information security