Poste Vita S.p.a.
€80,000
Insufficient technical and organisational measures to ensure information security
תאריך ההחלטה
10 ביולי 2025
סמכות
Italian Data Protection Authority (Garante)
IT
סקטור
Finance, Insurance and Consulting
מדינה
IT
חוק
GDPRסטטוס
FINALתיאור
The Italian DPA has imposed a fine on Poste Vita S.p.a. The controller failed to implement adequate technical and organisational measures to ensure data security. This resulted in a third party successfully tricking an employee into forwarding sensitive personal data, which was then used against the data subject.
ציטוטים משפטיים
Art. 5 (1)Art. 33 (1)
בעיות והפרות
Insufficient technical and organisational measures to ensure information security