NTT Data Italia S.P.A

€800,000

Insufficient fulfilment of data breach notification obligations

Karar Tarihi

8 Şubat 2024

Otorite

Italian Data Protection Authority (Garante)

IT

Sektör

Industry and Commerce

Ülke

IT

Hukuk

GDPR

Durum

FINAL

Açıklama

The Italian DPA has imposed a fine of EUR 800,000 on NTT Data Italia S.P.A. The fine is related to the fine imposed on UniCredit (ETid-2227). UniCredit had contracted NTT to carry out vulnerability analyses and penetration tests. During its investigation, the DPA found that NTT had not notified UniCredit of a data breach in a timely manner. In addition, NTT had contracted another company to carry out vulnerability assessments and penetration tests without prior authorization from the bank as the data controller.

Yasal Atıflar

Art. 28 (2)Art. 33 (2)

Sorunlar & İhlaller

Insufficient fulfilment of data breach notification obligations

Gizlilik Uygulamasından Haberdar Olun

Gizliliğinize saygı duyuyoruz. Ayda bir e-posta, spam yok, istediğiniz zaman abonelikten çıkın.