Cybersecurity Policy Report, Greek Immigration Authority Fined Over GDPR Violations, (Apr 3, 2024)
The Hellenic Data Protection Authority (HDPA) has published a decision imposing an administrative fine and ordering the Greek Ministry of Immigration and Asylum to comply with the European Union’s General Data Protection Regulation (GDPR) after an investigation by the HDPA revealed violations.
In 2021, the HDPA was made aware that the Greek government was going to develop and install programs to control the reception and accommodation of third-country citizens in islands of the Aegean.
The HDPA investigation found deficient cooperation of the part of the Ministry of Immigration and Asylum as controller of the data acquired by those programs and determined that the required data protection impact assessments carried out by the ministry were materially incomplete and limited in scope and contained “serious omissions regarding the Ministry's compliance with specific provisions of the GDPR regarding the implementation of the disputed systems.”
For the violations, the ministry was fined 175,000 euros ($189,000) and ordered to comply with its GDPR obligations within three months of the order.
News: DataPrivacy DataSecurity GDPR LitigationEnforcement