ESTUDIOS EUROPEOS DE POSTGRADO Y EMPRESA, S.L. – €3,000 Fine (Spain, 2022)
General GDPR enforcement action
This case relates to broader data protection obligations, not specifically to cookie or consent banner compliance. It is not included in cookie statistics or the Risk Calculator.
A Spanish company was fined €3,000 for not securing email accounts properly, allowing an employee to access another's emails. This breach shows the importance of implementing strong technical measures to protect personal data. Businesses must ensure their systems are configured correctly to prevent unauthorized access.
What happened
An employee accessed another's email account due to improper configuration by the company.
Who was affected
An employee who was mistakenly given access to another employee's email account.
What the authority found
The Spanish DPA fined the company for failing to implement adequate technical measures to secure email accounts.
Why this matters
This fine serves as a reminder that companies must ensure their IT systems are properly configured to protect personal data. It's crucial to regularly review and update security measures to prevent unauthorized access.
GDPR Articles Cited
The Spanish DPA has imposed a fine of EUR 3,000 on ESTUDIOS EUROPEOS DE POSTGRADO Y EMPRESA, S.L.. An employee had filed a complaint with the DPA. The employee stated that she had been given access to a company email account when she was hired. However, upon accessing the account, she discovered that the email account was not actually her account, but rather the email account of another employee. Thus, she was able to access all emails sent and received by the other employee. During its investigation, the DPA determined that the controller had not properly configured the account and had therefore breached its duty to implement appropriate technical and organizational measures to protect personal data.
Related Enforcement Actions (0)
No other enforcement actions found for ESTUDIOS EUROPEOS DE POSTGRADO Y EMPRESA, S.L. in ES
This is the only recorded action for this entity in this jurisdiction.
Details
Fine Date
29 July 2022
Authority
Agencia Española de Protección de Datos
Fine Amount
€3,000
Enforcement Tracker ID
ETid-1324
About this data
Cite as: Cookie Fines. ESTUDIOS EUROPEOS DE POSTGRADO Y EMPRESA, S.L. - Spain (2022). Retrieved from cookiefines.eu
Last updated: