Enforcement
EN DSK Bank: Insufficient technical and organisational measures to ensure information security
€511,000 fine - Data Protection Commision of Bulgaria (KZLD)
Content
Leakage of personal data due to inadequate technical and organisational measures to ensure the protection of information security. Third parties had access to over 23000 credit records relating to over 33000 bank customers including personal data such as names, citizenships, identification numbers, adresses, copies of identity cards and biometric data.
GDPR Articles: Art. 32 GDPR
Industry: Finance, Insurance and Consulting