Unita Turism Holding S.A.
€5,000
Insufficient technical and organisational measures to ensure information security
Date de décision
9 septembre 2025
Autorité
Romanian National Supervisory Authority for Personal Data Processing (ANSPDCP)
RO
Secteur
Employment
Pays
RO
Droit
GDPRStatut
FINALDescription
The Romanian DPA has imposed a fine of EUR 5,000 on Unita Turism Holding S.A. The controller did not implement adequate technical and organisational measures to ensure cybersecurity, resulting in a successful cyberattack.
Citations légales
Art. 32 (1)
Questions et violations
Insufficient technical and organisational measures to ensure information security