ING Bank NV Amsterdam Sucursala București – €3,000 Fine (Romania, 2023)

€3,000Autoritatea Națională de Supraveghere a Prelucrării Datelor cu Caracter Personal18 July 2023Romania
final
Fine

General GDPR enforcement action

This case relates to broader data protection obligations, not specifically to cookie or consent banner compliance. It is not included in cookie statistics or the Risk Calculator.

ING Bank NV Amsterdam Sucursala București was fined for not protecting customer data properly, which led to a data breach. This is significant because it shows that financial institutions must take strong measures to safeguard personal information. Companies should enhance their security practices to prevent similar incidents.

What happened

ING Bank failed to implement adequate security measures, resulting in a data breach through unauthorized transmission of customer data.

Who was affected

Customers whose personal data was disclosed due to the breach.

What the authority found

The Romanian DPA found that ING Bank did not take sufficient technical and organizational steps to protect personal data, violating GDPR requirements.

Why this matters

This case emphasizes the importance of robust data security measures for all businesses. It sets a precedent that companies can be held accountable for failing to protect customer information.

GDPR Articles Cited

Art. 32(1)(b) GDPR
Art. 32(2) GDPR
Full Legal Summary
Detailed

The Romanian DPA has imposed a fine of EUR 3,000 on ING Bank NV Amsterdam Sucursala București. The bank had reported a data breach to the DPA pursuant to Art. 33 GDPR. In the course of its investigation, the DPA found that a pdf file had been unauthorizedly transmitted via Whats-App. This led to the unauthorized disclosure of numerous customer data. According to the DPA, the bank had failed to implement adequate technical and organizational measures to protect personal data, which allowed such an incident to occur.

Details

Fine Date

18 July 2023

Authority

Autoritatea Națională de Supraveghere a Prelucrării Datelor cu Caracter Personal

Fine Amount

€3,000

Enforcement Tracker ID

ETid-1968

About this data

Data: CMS GDPR Enforcement Tracker
Licensed under CC BY-NC-SA 4.0
AI-verified and classified

Cite as: Cookie Fines. ING Bank NV Amsterdam Sucursala București - Romania (2023). Retrieved from cookiefines.eu

Report Inaccuracy

Last updated: