President of the Zgierz District Court

€2,200

Insufficient technical and organisational measures to ensure information security

결정 날짜

2021년 8월 13일

권한

Polish National Personal Data Protection Office (UODO)

PL

섹터

Public Sector and Education

국가

PL

법률

GDPR

상태

FINAL

설명

The Polish DPA (UODO) has imposed a fine of EUR 2,200 on the president of the Zgierz District Court. The president had reported a data breach involving the loss of an unencrypted USB stick by a probation officer. The data medium stored the data of 400 persons under probation supervision. The lost and at the same time unsecured data carrier has not yet been found, so that unauthorized persons could still have access to the personal data it contained. The president had assumed that the duty to secure the data did not lie with himself, but with the respective probation officers who had these data in use. However, the DPA found that the president himself should have secured the USB sticks.

법적 인용

Art. 5 (1)Art. 25 (1)Art. 32 (1)

문제 및 위반 사항

Insufficient technical and organisational measures to ensure information security

개인정보 보호 정책 시행에 대한 최신 정보

당사는 사용자의 개인정보를 존중합니다. 한 달에 한 번, 스팸 없이, 언제든지 구독을 취소할 수 있습니다.