Romania Romania

Romanian Post National Company

2,000 €

GDPR enforcement action by Romanian National Supervisory Authority for Personal Data Processing (ANSPDCP) on 2020-07-30.

Rank · Sector
#147
of 165 in Transportation and Energy
Rank · Romania
#167
of 283
Rank · All fines
#2,225
of 3,042

Case details

Authority
Romanian National Supervisory Authority for Personal Data Processing (ANSPDCP)
Date
2020-07-30
Controller / Processor
Romanian Post National Company
Sector
Transportation and Energy
Quoted Articles
Art. 32 GDPR
Type of violation
Insufficient technical and organisational measures to ensure information security

Summary

Processing of personal data, namely the telephone numbers and e-mail addresses of 81 data subjects, by the Romanian Post as data controller, failing appropriate technical and organisational measures, such as pseudonymisation.

Open original source Links to the regulator's original publication or another source.

Related fines