Home

Some companies that have chosen us

Privacy Officer and Privacy Consultant
CDP Scheme according to ISO/IEC 17024:2012
European Privacy Auditor
ISDP©10003 Certification Scheme according to ISO/IEC 17065:2012
Auditor
According to standard UNI 11697:2017
Lead Auditor ISO/IEC 27001:2022
According to standard ISO/IEC 17024:2012
Data Protection Officer
According to standard ISO/IEC 17024:2012
Anti-Bribery Lead Auditor Expert
According to standard ISO/IEC 17024:2012
ICT Security Manager
According to standard UNI 11506:2017
IT Service Management (ITSM)
According to the ITIL Foundation
Ethical Hacker (CEH)
According to the EC-Council
Network Defender (CND)
According to the EC-Council
Computer Hacking Forensics Investigator (CHFI)
According to the EC-Council
Penetration Testing Professional (CPENT)
According to the EC-Council

Professional qualifications

Stay up-to-date with world news!

Select your topics of interest:

News

Home / News
/
ITALIAN SUPERVISORY AUTHORITY§: Photos of a facelift on social media: sanctioned a surgeon. Clear images of a patient on the doctor’s profile

ITALIAN SUPERVISORY AUTHORITY§: Photos of a facelift on social media: sanctioned a surgeon. Clear images of a patient on the doctor’s profile

fine of 20 thousand euros was imposed by the Privacy Guarantor on a surgeon for having published on his Instagram profile the photos of a patient before and after a face lift, moreover, without having acquired consent to the dissemination of the images. The Authority intervened following the complaint of the patient who complained about the publication, on the doctor’s social profile, of photos that portrayed her in a recognizable way during the operation.

During the investigation, the doctor stated that the images had been taken for internal use and that the publication was due to a misunderstanding related to the management of consents between the various professionals involved in the intervention. Justification deemed insufficient by the Guarantor who declared the processing of the patient’s health data unlawful, as it was carried out outside the purposes of treatment in violation of privacy legislation.

In determining the sanction, the Guarantor took into account the sensitive nature of the personal data disclosed and the particular context in which the violation occurred, in which the complainant’s legitimate expectation of confidentiality and privacy was high, also in consideration of the professional and fiduciary relationship with the doctor.

https://www.garanteprivacy.it/home/docweb/-/docweb-display/docweb/10095854

Recommended to you

Advanced Research