DPC (Ireland) · 14 March 2022
Bank of Ireland
About: Data breach, Data security
Fine€463,000Violation found
- Regulator
- DPC (Ireland)
- Decided
- 14 March 2022
- Country
- Ireland
- Sector
- Not given
- Regulator’s reference
- DPC Case Reference: IN-19-9-5
- Fino case number
- 2022/IE/010
What happened
The Irish DPA reprimanded and fined Bank of Ireland €463,000 for not reporting a data breach in due time, as well as for not implementing technical and organisational measures to ensure the security of personal data, in violation of Articles 32(1), 33, and 34 GDPR.
Summary from GDPRhub (noyb), written by its volunteers, not by Fino. CC BY-NC-SA 4.0.
Rules involved
- Art. 4Definitions4(12)Read →
- Art. 32Security of processingRead →
- Art. 33Notification of a personal data breach to the supervisory authorityRead →
- Art. 34Communication of a personal data breach to the data subjectRead →
- Data breach
- Data security
Sources
The facts on this page come from the sources above, as they recorded them. Nothing has been estimated or filled in. Not legal advice.
Spotted a mistake? Write to angelillolorenzo@gmail.com and quote 2022/IE/010.