Spain Spain

Banco Bilbao Vizcaya Argentaria S.L.

48,000 €

GDPR enforcement action by Spanish Data Protection Authority (aepd) on 2022-11-11.

Rank · Sector
#132
of 322 in Finance, Insurance and Consulting
Rank · Spain
#243
of 1,075
Rank · All fines
#755
of 3,050

Case details

Authority
Spanish Data Protection Authority (aepd)
Date
2022-11-11
Controller / Processor
Banco Bilbao Vizcaya Argentaria S.L.
Sector
Finance, Insurance and Consulting
Quoted Articles
Art. 5 (1) f) GDPR, Art. 32 GDPR
Type of violation
Non-compliance with general data processing principles

Summary

The Spanish DPA has imposed a fine on Banco Bilbao Vizcaya Argentaria, S.A.. An individual had filed a complaint with the DPA due to requesting information on one of their accounts and then receiving contract information from a third party. The DPA found that the unauthorized disclosure of third-party data was due to inadequate technical and organizational measures at the bank. The original fine of EUR 80,000 was reduced to EUR 48,000 due to voluntary payment and admission of responsibility.

Open original source Links to the regulator's original publication or another source.

Related fines