Employee Insurance Service Provider fined €900,000

Written by Cipher Octopus | Dec 17, 2019 3:29:26 PM

Location of Reported GDPR Violation:

   Netherlands

Articles Violated:

  • Art. 32 GDPR: Did not use multi-factor authentication when accessing the online employer portal; security was inadequate. Employers and health and safety services were able to collect and display health data from employees in an absence system.

Source: enforcementtracker.com