S.C. PRIMONET RO S.R.L.
€20,000
Insufficient technical and organisational measures to ensure information security
Decision Date
25 de setembro de 2025
Authority
Romanian National Supervisory Authority for Personal Data Processing (ANSPDCP)
RO
Sector
Industry and Commerce
Country
RO
Law
GDPRStatus
FINALDescription
The Romanian DPA has imposed a fine of EUR 20,000 on S.C. PRIMONET RO S.R.L. The controller failed to implement adequate technical and organisational measures to ensure data security. This resulted in a cyber attack that compromised the bank details of customers and caused financial losses.
Legal Citations
Art. 32 (1)
Issues & Violations
Insufficient technical and organisational measures to ensure information security