Maynooth University
€40,000
Insufficient technical and organisational measures to ensure information security
결정 날짜
2024년 11월 22일
권한
Data Protection Authority of Ireland
IE
섹터
Public Sector and Education
국가
IE
법률
GDPR상태
FINAL설명
The Irish DPA has imposed a fine of EUR 40,000 on Maynooth University. The controller failed to implement adequate technical and organisational measures, resulting in an unauthorised third party gaining access to multiple employees' email accounts, which the third party then used for fraudulent purposes.
법적 인용
Art. 5 (1)Art. 32 (1)Art. 33 (1)
문제 및 위반 사항
Insufficient technical and organisational measures to ensure information security