AEGEAN MARINE PETROLEUM FINED €150,000

RETURN TO MAIN BLOG


Aegean Marine Petroleum Network Inc. did not adequately notify individuals that their personal information would be processed and stored on company servers. The firm also neglected to implement essential technical safeguards to protect this data and did not separate the data from the operational software on the servers. Consequently, entities outside of the Aegean Marine Petroleum Group were able to access the servers and the personal data stored there, which they then extracted.

  • Country: Greece
  • Regulatory Authority: Hellenic Data Protection Authority (HDPA)
  • Penalty: €150,000
  • Entity Penalized: Aegean Marine Petroleum Network Inc.
  • Regulations Breached: Articles 5, 6, and 32 of the General Data Protection Regulation (GDPR)
  • Type of Violation: Non-compliance with data processing standards