Italy’s Data Protection Authority fines IQVIA €7 million over data protection breach
Italy's data protection authority has fined IQVIA Solutions Italy €7 million after finding that health data belonging to roughly one million patients of 800 family doctors was not properly anonymized, in violation of data protection rules.
Why this matters: Patient health data is about as sensitive as it gets. When a company claims data is anonymous but regulators find it is not, that gap matters enormously. Real anonymization is hard, and the healthcare analytics industry often moves fast past that difficulty. One million patients did not choose to have their records processed by a commercial data firm. The fine signals that calling data anonymous is not enough. You have to prove it.
Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance · AI governance · General readers · Policy
This summary is AI-assisted and may contain errors. It is an original briefing to help you gauge significance quickly — not a reproduction of the source. Always read the linked original before relying on it. See our methodology.