Maynooth University
€40,000
Insufficient technical and organisational measures to ensure information security
Date de décision
22 novembre 2024
Autorité
Data Protection Authority of Ireland
IE
Secteur
Public Sector and Education
Pays
IE
Droit
GDPRStatut
FINALDescription
The Irish DPA has imposed a fine of EUR 40,000 on Maynooth University. The controller failed to implement adequate technical and organisational measures, resulting in an unauthorised third party gaining access to multiple employees' email accounts, which the third party then used for fraudulent purposes.
Citations légales
Art. 5 (1)Art. 32 (1)Art. 33 (1)
Questions et violations
Insufficient technical and organisational measures to ensure information security