Medstar S.R.L.

€2,000

Insufficient technical and organisational measures to ensure information security

Lēmuma datums

2025. gada 20. februāris

Iestāde

Romanian National Supervisory Authority for Personal Data Processing (ANSPDCP)

RO

Nozare

Health Care

Valsts

RO

Likums

GDPR

Statuss

FINAL

Apraksts

The Romanian DPA imposed a fine of EUR 2,000 on Medstar S.R.L. The controller had mistakenly sent a patient's health data via unsecured email to another patient. The DPA found that the controller had failed to implement appropriate technical and organizational measures to protect personal data and prevent such an incident.

Juridiskās atsauces

Art. 32

Jautājumi un pārkāpumi

Insufficient technical and organisational measures to ensure information security

Atjauniniet informāciju par konfidencialitātes ieviešanu

Mēs respektējam jūsu konfidencialitāti. Viens e-pasts mēnesī, bez surogātpasta, jebkurā laikā varat atteikties no abonēšanas.