Skip to content
Enforcement · Italian Data Protection Authority (Garante) EN LLM context A cited markdown file you can paste into your AI assistant (ChatGPT, Claude, a RAG or project knowledge base) to ground it in this document. Contains: this document’s text, its sections with their topics, and the full text of every law provision it applies. Everything links back to its source on overview.legal — legal information, not advice.

Intesa Sanpaolo S.p.A.: Insufficient technical and organisational measures to ensure information security

Italian Data Protection Authority (Garante) fined Intesa Sanpaolo S.p.A.

€31,800,000 Fine
Intesa Sanpaolo S.p.A.
Italy
Art. 5 GDPR Art. 24 GDPR Art. 32 GDPR Art. 34 GDPR
Finance, Insurance and Consulting

We hold a reference to this item, not its text.

enforcementtracker.com Read at the source

Italian Data Protection Authority (Garante) · Mar 26, 2026

How it connects

BA-6S/221/2019 Court upholds €50,000 fine on Sociálna poisťovňa for sending sensitive data by ordinary Sociálna poisťovňa, the social insurance agency (the controller), processes applications for foreign invalidity pensions and forwards related documents to the social insurance… Jun 25, 2025 Integrity and Confidentiality Principle Personal Data Data Breaches
1 As 183/2023-62 Health insurer must disclose aggregated patient treatment data under Free Access to OAKS Consulting s.r.o. (the company) provided consulting services concerning market access conditions for medicinal products and medical devices. Pursuant to the Czech Act on Free… Supreme Administrative Court Aug 4, 2026 Pseudonymization Anonymization Personal Data