Trends

EU Parliament faces scrutiny following data breach complaints

NOYB alleges that the EUParliament failed to protect employee personal data, calling for enforcement from the EU Data Protection Supervisor.

EU-0823

Headline

NOYB alleges that the EUParliament failed to protect employee personal data, calling for enforcement from the EU Data Protection Supervisor.

Context

OUR TAKE This incident is a major breach in data protection measures at key EU institutions. The potential exposure of sensitive employee information raises concerns about the effectiveness of current cybersecurity protocols. It is clear that the European Parliament must quickly address these gaps to restore trust and comply with the GDPR. –Lily,Yang, BTW reporter Austrian advocacy group NOYB has filed two complaints against the European Parliament with the EU privacy body. The group, led by privacy activist Max Schrems, claims that Parliament failed to adequately protect employees’ personal data after a breach on its recruitment platform exposed sensitive information of more than 8,000 staff members.

Evidence

Pending intelligence enrichment.

Analysis

It is worrying that the breach was reported to staff in May, but the cause was apparently still unknown months later. NOYB data protection lawyer Lorea Mendiguren said EU institutions have repeatedly experienced cybersecurity incidents in the past year. Given that parliamentary employees are likely to be targeted by criminals, Parliament has an obligation to ensure that appropriate security measures are in place. NOYB stressed that Parliament must comply with the GDPR and urged European data protection supervisors to take enforcement action, including possible fines, in response to repeated cybersecurity failures. Also read: EU approves law to boost domestic green tech production Also read: Google and Australia team up for cybersecurity boost

Key Points

  • NOYB alleges that the European Parliament failed to protect employee personal data adequately, violating GDPR.
  • The organisation calls for enforcement from the European Data Protection Supervisor following repeated cybersecurity issues within EU institutions.

Actions

Pending intelligence enrichment.

Author

Lily Yang (l.yang@btw.media)· author profile pending