McDonald’s Hit with a €4 Million GDPR Fine: How Secure Are Your Vendors?

mcdonalds McDonald's Hit with a €4 Million GDPR Fine: How Secure Are Your Vendors? Ihr externer Datenschutzbeauftragter in Berlin | sofortdatenschutz.de

The Polish Data Protection Authority (UODO) has fined McDonald’s Poland nearly €4 million (16.9 million PLN). The reason: a chain of security failures that led to a major data breach involving employee information. This case is a textbook example of how data protection responsibility can’t simply be outsourced to third-party vendors and why fundamental GDPR … Read more

What’s the Cost of Ignoring Basic Security Measures?

mfa What’s the Cost of Ignoring Basic Security Measures? Ihr externer Datenschutzbeauftragter in Berlin | sofortdatenschutz.de

Can ignoring fundamental security measures like multi-factor authentication (MFA) lead to a multi-million euro fine? The Estonian Data Protection Inspectorate (AKI) has answered this question with a resounding “Yes,” imposing a €3 million fine on the pharmaceutical wholesaler Allium UPI. The case is a stark warning for any company that processes customer data, demonstrating that … Read more

Is there a general obligation for end-to-end encryption for public authorities in Germany when transmitting data?

29 Is there a general obligation for end-to-end encryption for public authorities in Germany when transmitting data? Ihr externer Datenschutzbeauftragter in Berlin | sofortdatenschutz.de

The Higher Administrative Court (OVG) of Münster has addressed the question of whether public authorities are generally required to use end-to-end encryption when transmitting personal data. What was the case about? A plaintiff demanded that a public authority transmit personal data exclusively using end-to-end encryption. He argued that transport encryption alone (e.g., TLS) did not … Read more