---
title: Employee Insurance Service Provider fined €900,000
description: On October 31, 2019 UVW was fined €900,000 for failing to comply with article 32 of the General Data Protection Regulation (GDPR).
image: https://blog.strongkey.com/hubfs/1599px-Flag_of_the_Netherlands.svg.png
---

[![Strongkey](https://blog.strongkey.com/hubfs/StrongKey_August2018/Images/STR.Horizontal1_WHITE_TM.png)](https://strongkey.com/)

- SOLUTIONS 
    - Authentication 
          - [FIDO2](https://strongkey.com/fido2-fast-identity-online-v2/)
    - Data Privacy 
          - [CCPA](https://strongkey.com/ccpa-california-consumer-protection-act/)
          - [GDPR](https://strongkey.com/gdpr-general-data-protection/)
    - Healthcare 
          - [HIPAA](https://strongkey.com/healthcare-hipaa-pii-protection/)
    - Payments 
          - [PCI DSS](https://strongkey.com/pci-dss-card-capture-services/)
          - PSD2
- PRODUCTS 
    - [Enterprise Data Security – Tellaro E-Series](https://strongkey.com/products-tellaro-e-enterprise-data-security-solution/)
    - [Mid-Market & PoC Security Solutions – Tellaro T-Series](https://strongkey.com/products-tellaro-t-midmarket-small-business-data-security/)
- ABOUT 
    - [Company](https://strongkey.com/about)
    - [Open Source Declaration](https://strongkey.com/open-source-declaration)
    - [Newsroom](https://blog.strongkey.com/newsroom)
    - [Events](https://www.strongkey.com/events/)
    - [Careers](https://strongkey.com/about/#joinus)
- [BLOG](https://blog.strongkey.com/blog)
- RESOURCES 
    - [Support](https://strongkey.com/support/)
    - [Core Concepts](https://strongkey.com/core-concepts/)
    - [FAQ](https://strongkey.com/faq/)
    - [Library](https://blog.strongkey.com/resources)
- [DEMOS](https://strongkey.com/demos/)
- [CONTACT US](https://strongkey.com/contact-us/)

# Employee Insurance Service Provider fined €900,000

By [Cipher Octopus](https://blog.strongkey.com/gdpr-fines/author/strongkey) December 17, 2019 [GDPR and CCPA](https://blog.strongkey.com/gdpr-fines/tag/gdpr-and-ccpa)

- [No Comments](https://blog.strongkey.com/gdpr-fines/employee-insurance-service-provider-fined#comments-listing)
- <http://www.facebook.com/sharer/sharer.php?u=https://blog.strongkey.com/gdpr-fines/employee-insurance-service-provider-fined> <https://twitter.com/intent/tweet?url=https://blog.strongkey.com/gdpr-fines/employee-insurance-service-provider-fined&text=Employee%20Insurance%20Service%20Provider%20fined%20€900,000> <https://plus.google.com/share?url=https://blog.strongkey.com/gdpr-fines/employee-insurance-service-provider-fined> <https://www.linkedin.com/shareArticle?mini=true&summary=Location%20of%20Reported%20GDPR%20Violation:%20Netherlands%20Articles%20Violated:%20Art.%2032%20GDPR:%20Did%20not%20use%20multi-factor%20authentication%20when%20accessing%20the%20online%20...&url=https://blog.strongkey.com/gdpr-fines/employee-insurance-service-provider-fined> <https://www.pinterest.com/pin/create/link/?description=Location%20of%20Reported%20GDPR%20Violation:%20Netherlands%20Articles%20Violated:%20Art.%2032%20GDPR:%20Did%20not%20use%20multi-factor%20authentication%20when%20accessing%20the%20online%20...&media=&url=https://blog.strongkey.com/gdpr-fines/employee-insurance-service-provider-fined>

#### **Location of Reported GDPR Violation:**

  ![1599px-Flag_of_the_Netherlands.svg](https://blog.strongkey.com/hs-fs/hubfs/1599px-Flag_of_the_Netherlands.svg.png?width=29&name=1599px-Flag_of_the_Netherlands.svg.png) Netherlands

#### **Articles Violated:**

- [Art. 32 GDPR](https://gdpr-info.eu/art-32-gdpr/): *Did not use multi-factor authentication when accessing the online employer portal; security was inadequate. Employers and health and safety services were able to collect and display health data from employees in an absence system.*

*Source: [enforcementtracker.com](http://enforcementtracker.com/)*

- <https://twitter.com/StrongKeyInc>
- <https://www.linkedin.com/company/strongkey/>

©2020 StrongKey. All Rights Reserved.