Datatilsynet (Denmark) · 12 May 2022
Syddansk Universitet
About: Data security
FineNo fine
- Regulator
- Datatilsynet (Denmark)
- Decided
- 12 May 2022
- Country
- Denmark
- Sector
- Not given
- Regulator’s reference
- 2021-442-13989
- Fino case number
- 2022/DK/020
What happened
The Danish DPA also issued a reprimand against the Syddansk Universitet for violating security requirements under Article 32 GDPR by accidentally making 400 personal files accessible to more than 7,000 employees for a period of two weeks. The university also had no access log to check who accessed the information during that time period.
Summary from GDPRhub (noyb), written by its volunteers, not by Fino. CC BY-NC-SA 4.0.
Rules involved
- Data security
Sources
The facts on this page come from the sources above, as they recorded them. Nothing has been estimated or filled in. Not legal advice.
Spotted a mistake? Write to angelillolorenzo@gmail.com and quote 2022/DK/020.