Heilsuveru

€81,000

Insufficient technical and organisational measures to ensure information security

Datum odločitve

3. julij 2023

Organ

Icelandic data protection authority ('Persónuvernd')

IS

Sektor

Health Care

Država

IS

Zakon

GDPR

Status

FINAL

Opis

The Icelandic DPA has fined Heilsuveru EUR 81,000. The controller had reported a data breach to the DPA, as two unauthorized persons had managed to view personal data. During its investigation, the DPA found that the controller had failed to implement appropriate technical and organizational measures to protect personal data.

Pravne navedbe

Art. 5 (1)Art. 25Art. 32 (1)

Vprašanja in kršitve

Insufficient technical and organisational measures to ensure information security

Spremljajte novice o uveljavljanju zasebnosti

Spoštujemo vašo zasebnost. Eno e-poštno sporočilo na mesec, brez neželene pošte, odjava kadar koli.