# Hospital: Insufficient technical and organisational measures to ensure information security

- Type: Enforcement
- Source: Data Protection Authority of Rheinland-Pfalz
- Date: 2019-12-03
- Original: https://www.enforcementtracker.com/ETid-122
- Canonical: https://overview.legal/posts/46237
- Topics: Healthcare, Healthcare, Security, Law Enforcement, Supervisory Authorities

## Summary

The fine is based on several breaches of the GDPR in connection with a patient mix-up at the admission of the patient. This resulted in incorrect invoicing and revealed structural technical and organisational deficits in the hospital's patient management.

## Full text

The fine is based on several breaches of the GDPR in connection with a patient mix-up at the admission of the patient. This resulted in incorrect invoicing and revealed structural technical and organisational deficits in the hospital's patient management.

GDPR Articles: Art. 32 GDPR
Industry: Health Care

---
Generated by overview.legal · https://overview.legal/posts/46237 · 2026-08-22
