Maynooth University
€40,000
Insufficient technical and organisational measures to ensure information security
Datum odločitve
22. november 2024
Organ
Data Protection Authority of Ireland
IE
Sektor
Public Sector and Education
Država
IE
Zakon
GDPRStatus
FINALOpis
The Irish DPA has imposed a fine of EUR 40,000 on Maynooth University. The controller failed to implement adequate technical and organisational measures, resulting in an unauthorised third party gaining access to multiple employees' email accounts, which the third party then used for fraudulent purposes.
Pravne navedbe
Art. 5 (1)Art. 32 (1)Art. 33 (1)
Vprašanja in kršitve
Insufficient technical and organisational measures to ensure information security