Committee

€2,500

Insufficient technical and organisational measures to ensure information security

Határozat dátuma

2024. április 24.

Hatóság

Polish National Personal Data Protection Office (UODO)

PL

Szektor

Individuals and Private Associations

Ország

PL

Törvény

GDPR

Állapot

FINAL

Leírás

The Polish DPA has imposed a fine of EUR 2,500 on a committee. The controller had collected signatures in favor of a legislative initiative and later stored the signature lists unprotected in a church, which led to the sensitive data of the signatories not being sufficiently protected against loss, disclosure etc. During its investigation, the DPA found that the controller had failed to take appropriate technical and organizational measures to protect personal data.

Jogi hivatkozások

Art. 5 (1)Art. 5 (2)Art. 25 (1)Art. 32 (1)

Kérdések és jogsértések

Insufficient technical and organisational measures to ensure information security

Maradjon naprakész az adatvédelem érvényesítésével kapcsolatban

Tiszteletben tartjuk a magánéletét. Havonta egy e-mail, nincs spam, bármikor leiratkozhat.