Details:

Summary The Spanish DPA has imposed a fine on UNIQLO EUROPE, LTD, SUCURSAL EN ESPAÑA. An individual who provided services to the controller filed a complaint with the DPA due to the fact that, after requesting their payslip, they received a document containing their payslip and those of 446 employees. The document revealed data such as name, surname and bank account number of the data subjects. During its investigation, the DPA found that the controller failed to implement appropriate technical and organizational measures to protect personal data in order to prevent such an incident. The original fine of EUR 450,000 was reduced to EUR 270,000 due to immediate payment and admission of responsibility.
Link: link
Related articles:  Art. 5 (1) f) GDPR, Art. 32 GDPR
Type: Non-compliance with general data processing principles
Fine: EUR 270,000
Sector Employment

 

All data is based on The CMS’s Law GDPR Enforcement Tracker Source: https://www.enforcementtracker.com/

Tags: case law