Vodafone Romania S.A.

€15,000

Insufficient technical and organisational measures to ensure information security

Karar Tarihi

20 Ocak 2025

Otorite

Romanian National Supervisory Authority for Personal Data Processing (ANSPDCP)

RO

Sektör

Media, Telecoms and Broadcasting

Ülke

RO

Hukuk

GDPR

Durum

FINAL

Açıklama

The Romanian DPA has imposed a fine of EUR 15,000 on Vodafone Romania S.A. Personal data such as names, email addresses and customer numbers were repeatedly disclosed due to inadequate security measures, e.g. the unauthorized sending of invoice details or incorrect use of the “BCC” function. During its investigation, the DPA found that the controller had failed to implement appropriate technical and organizational measures to protect personal data.

Yasal Atıflar

Art. 32 (1)Art. 32 (4)

Sorunlar & İhlaller

Insufficient technical and organisational measures to ensure information security

Gizlilik Uygulamasından Haberdar Olun

Gizliliğinize saygı duyuyoruz. Ayda bir e-posta, spam yok, istediğiniz zaman abonelikten çıkın.