Heilsuveru
€81,000
Insufficient technical and organisational measures to ensure information security
תאריך ההחלטה
3 ביולי 2023
סמכות
Icelandic data protection authority ('Persónuvernd')
IS
סקטור
Health Care
מדינה
IS
חוק
GDPRסטטוס
FINALתיאור
The Icelandic DPA has fined Heilsuveru EUR 81,000. The controller had reported a data breach to the DPA, as two unauthorized persons had managed to view personal data. During its investigation, the DPA found that the controller had failed to implement appropriate technical and organizational measures to protect personal data.
ציטוטים משפטיים
Art. 5 (1)Art. 25Art. 32 (1)
בעיות והפרות
Insufficient technical and organisational measures to ensure information security