PrivacySignal
Enforcement

Italy fines IQVIA $7.8 million for patient data privacy violations

SC Media · · International · Enforcement

Italy's data protection authority has fined IQVIA, a global health data and analytics company, approximately $7.8 million for violating patient privacy rules. The fine relates to how the company handled personal health data.

Why this matters: IQVIA is not a hospital or a pharmacy. It is a data company that makes its business collecting and analyzing patient information at scale. That is a meaningful distinction. People do not hand their health data to firms like this directly, and most have no idea their records are part of a commercial pipeline. A fine this size signals that regulators are willing to go after the middlemen, not just the providers. Health data is among the most sensitive information a person has. The companies profiting from it need to be held to the same standard as the ones who collected it in the first place.

Who should care: Lawyers · Privacy officers · Compliance · Healthcare professionals · General readers · Policy

This summary is AI-assisted and may contain errors. It is an original briefing to help you gauge significance quickly — not a reproduction of the source. Always read the linked original before relying on it. See our methodology.

Analysis

All analysis →

Weekly Editorial Analysis from Experts and Editors

The Attacker Did Not Need to Sleep

Spain received its first reported personal-data breach carried out by an AI agent. The techniques were familiar. The speed and autonomy were not.

· 4 min read Read →

Related stories

Enforcement
A ANews · · International

US closes review of US airlines' data privacy without seeking penalties

U.S. regulators have closed a review of domestic airlines' data privacy practices without pursuing any penalties against the carriers. The outcome means airlines faced scrutiny but no formal consequences for how they handle passenger data.

Who should care: Lawyers · Privacy officers · Compliance · General readers · Policy

#enforcement#privacy Read original →
Enforcement
R Reuters · · International

Catholic diocese sues US government seeking clergy access to detainees

A Catholic diocese has filed a lawsuit against the federal government, seeking to secure clergy access to immigration detainees. The suit challenges what the diocese says are barriers preventing religious ministers from reaching people held in detention facilities.

Who should care: Lawyers · Privacy officers · Compliance

#enforcement Read original →
Enforcement
BleepingComputer · · International

IQVIA fined $7.8 million for failing to properly anonymize health data

Italy's data protection authority fined IQVIA €7 million after finding that the company's anonymization practices were inadequate, leaving roughly one million patients at risk of being re-identified from their health data.

Who should care: Lawyers · Privacy officers · Compliance · Healthcare professionals · AI governance · General readers · Policy

#enforcement#healthcare#gdpr#privacy Read original →
Enforcement
DataBreaches.net · · International

South Korea’s President Lee Jae Myung orders thorough probe into data breaches at local banks

South Korean President Lee Jae Myung has ordered a formal investigation into a recent series of data breaches at financial and public institutions, amid growing concern about AI-powered cyberattacks targeting the sector.

Who should care: Lawyers · Privacy officers · Compliance · AI governance · Administrators · General readers · Policy

#enforcement#ai-governance#ai Read original →
Enforcement
C CT Mirror · · International

Data privacy lawsuit, subsidies for childcare staff: CT politics news

A data privacy lawsuit is among the political stories making news in Connecticut, alongside a separate measure involving subsidies for childcare workers. Details on the parties, claims, and current status of the lawsuit were not provided.

Who should care: Lawyers · Privacy officers · Compliance · General readers · Policy

#enforcement#privacy Read original →