Fino

Datatilsynet (Denmark) · 12 May 2022

Syddansk Universitet

About: Data security

FineNo fine
Regulator
Datatilsynet (Denmark)
Decided
12 May 2022
Country
Denmark
Sector
Not given
Regulator’s reference
2021-442-13989
Fino case number
2022/DK/020
Export as PDF

What happened

The Danish DPA also issued a reprimand against the Syddansk Universitet for violating security requirements under Article 32 GDPR by accidentally making 400 personal files accessible to more than 7,000 employees for a period of two weeks. The university also had no access log to check who accessed the information during that time period.

Summary from GDPRhub (noyb), written by its volunteers, not by Fino. CC BY-NC-SA 4.0.

Rules involved

  • Data security

Sources

The facts on this page come from the sources above, as they recorded them. Nothing has been estimated or filled in. Not legal advice.

Spotted a mistake? Write to angelillolorenzo@gmail.com and quote 2022/DK/020.