Norwegian Supervisory Authority (Datatilsynet) · 20 September 2021
ST. OLAVS HOSPITAL HF
Insufficient technical and organisational measures to ensure information security
Fine€75,600Fine issued
- Regulator
- Norwegian Supervisory Authority (Datatilsynet)
- Decided
- 20 September 2021
- Country
- Norway
- Sector
- Health Care
- Regulator’s reference
- Not recorded
- Fino case number
- 2021/NO/007
What happened
The Norwegian DPA fined St. Olavs Hospital €76,870 (NOK 750,000) for three personal data breaches relating to highly sensitive patient health data under Articles 32, 24, 5(1)(f) and 5(2), as well as §§ 22-23 of the Health Records Act .
Summary from the GDPRhub page for this decision, written by its volunteers, not by Fino. CC BY-NC-SA 4.0.
Rules involved
- Data security
Sources
The facts on this page come from the sources above, as they recorded them. Nothing has been estimated or filled in. Not legal advice.
Spotted a mistake? Write to angelillolorenzo@gmail.com and quote 2021/NO/007.