abusesaffiliationarrow-downarrow-leftarrow-rightarrow-upattack-typeburgerchevron-downchevron-leftchevron-rightchevron-upClock iconclosedeletedevelopment-povertydiscriminationdollardownloademailenvironmentexternal-linkfacebookfiltergenderglobegroupshealthC4067174-3DD9-4B9E-AD64-284FDAAE6338@1xinformation-outlineinformationinstagraminvestment-trade-globalisationissueslabourlanguagesShapeCombined Shapeline, chart, up, arrow, graphLinkedInlocationmap-pinminusnewsorganisationotheroverviewpluspreviewArtboard 185profilerefreshIconnewssearchsecurityPathStock downStock steadyStock uptagticktooltiptwitteruniversalityweb

這頁面沒有繁體中文版本,現以English顯示

文章

2025年2月28日

作者:
Mary Kaitany, Knowclick meida (Kenya)

Kenya: Safaricom and Becton Dickinson fined $4000 for unauthorized use of customer ID

“Safaricom Fined Sh250,000 for Unauthorized use of Customer ID”, February 28, 2025

A landmark ruling has seen Safaricom and Becton Dickinson (BD) fined Sh.250,000 each for unlawfully using a customer ID. This case highlights the growing importance of Kenya’s Data Protection Act and its enforcement. The incident reveals gaps in corporate data practices and sets a precedent for accountability. The case arose when Catherine Murithi, an employee of Becton Dickinson (BD), submitted her national ID and personal documents as part of her onboarding process on August 16, 2021. BD requested her to convert her personal Airtel line into a corporate Safaricom number, following company policies. However, after terminating her employment on September 30, 2024, BD shared her ID with Safaricom to transfer the line back to her name—without informing her. Safaricom processed the request without obtaining Murithi’s consent or verifying her authorization. Feeling that this action violated her rights, Murithi filed a complaint with the Office of the Data Protection Commissioner (ODPC)…

Data Commissioner Immaculate Kassait investigated the complaint and found both Safaricom and BD guilty of violating the Data Protection Act. The violations included:

  1. Ignoring Consent Requirements: BD transferred Murithi’s data without her explicit consent.
  2. Lack of Transparency: Safaricom failed to inform her about the data transfer.
  3. Unlawful Data Processing: Both entities mishandled her personal information, infringing on her privacy.

Each company was fined Sh.250,000, totaling to Sh.500,000, signaling the seriousness of data privacy violations. Commissioner Kassait emphasized that organizations must adopt robust data protection measures to avoid such breaches…

隱私資訊

本網站使用 cookie 和其他網絡存儲技術。您可以在下方設置您的隱私選項。您所作的更改將立即生效。

有關我們使用網絡儲存技術的更多資訊,請參閱我們的 數據使用和 Cookie 政策

Strictly necessary storage

ON
OFF

Necessary storage enables core site functionality. This site cannot function without it, so it can only be disabled by changing settings in your browser.

分析cookie

ON
OFF

您瀏覽本網頁時我們將以Google Analytics收集信息。接受此cookie將有助我們理解您的瀏覽資訊,並協助我們改善呈現資訊的方法。所有分析資訊都以匿名方式收集,我們並不能用相關資訊得到您的個人信息。谷歌在所有主要瀏覽器中都提供退出Google Analytics的添加應用程式。

市場營銷cookies

ON
OFF

我們從第三方網站獲得企業責任資訊,當中包括社交媒體和搜尋引擎。這些cookie協助我們理解相關瀏覽數據。

您在此網站上的隱私選項

本網站使用 cookie 和其他網絡儲存技術來增強您在必要核心功能之外的體驗。