ING Bank NV Amsterdam Sucursala București – €20,000 Fine (Romania, 2022)

€20,000Autoritatea Națională de Supraveghere a Prelucrării Datelor cu Caracter Personal21 November 2022Romania
final
Fine

General GDPR enforcement action

This case relates to broader data protection obligations, not specifically to cookie or consent banner compliance. It is not included in cookie statistics or the Risk Calculator.

ING Bank in Romania was fined €20,000 for not securing customer data, which led to unauthorized access and transactions. This case is important because it shows how crucial it is for banks to protect personal data to prevent fraud.

What happened

ING Bank failed to secure customer data, allowing unauthorized access and transactions.

Who was affected

Customers of ING Bank whose personal and financial data were accessed without permission.

What the authority found

The Romanian DPA determined that ING Bank did not have adequate security measures in place to protect personal data, violating GDPR standards.

Why this matters

This fine highlights the importance of strong data security measures in the banking sector to prevent unauthorized access and protect customer information. It serves as a warning to financial institutions to review and strengthen their data protection practices.

GDPR Articles Cited

Art. 32(1) GDPR
Full Legal Summary
Detailed

The Romanian DPA has imposed a fine of EUR 20,000 on ING Bank NV Amsterdam Sucursala București. The bank had reported a data breach to the DPA pursuant to Art. 33 GDPR. Several personal data of customers, such as ID card data, bank data, bank card data, etc., were accessed and disclosed without authorization. This resulted in payment transactions being carried out by unauthorized third parties. During its investigation, the DPA found that the bank had failed to implement adequate technical and organizational measures to protect personal data, which allowed the unauthorized access.

Details

Fine Date

21 November 2022

Authority

Autoritatea Națională de Supraveghere a Prelucrării Datelor cu Caracter Personal

Fine Amount

€20,000

Enforcement Tracker ID

ETid-1500

About this data

Data: CMS GDPR Enforcement Tracker
Licensed under CC BY-NC-SA 4.0
AI-verified and classified

Cite as: Cookie Fines. ING Bank NV Amsterdam Sucursala București - Romania (2022). Retrieved from cookiefines.eu

Report Inaccuracy

Last updated: