Data Breach
Security Measures against Data Breaches
The organizational and technical measures mentioned in the Regulation are the cornerstone of the discipline: they concern both the most appropriately technical measures (such as authentication credentials, authorization profiling system, encryption, antivirus and back up etc.) and the organizational ones (such as contractual regulation of relationships with those data processors, confidentiality constraints and instructions given to individuals who work on data, policies and records of processing, etc.). One of the interaction profiles of organizational and technical measures with the security system is to protect and respond to personal data breaches.
Personal Data Breach
Sanction for Sensitive Data Breach
Infringement related to the processing of sensitive data (Article 9) is sanctioned with administrative fines of «up to 20 000 000 EUR, or in the case of an undertaking, up to 4 % of the total worldwide annual turnover of the preceding financial year, whichever is higher» (Article 83.5).