{"id":14510,"date":"2026-08-01T00:00:17","date_gmt":"2026-08-01T00:00:17","guid":{"rendered":"https:\/\/viqtor.eu\/le-sous-traitant-au-coeur-des-violations-de-securite\/"},"modified":"2026-08-01T00:00:17","modified_gmt":"2026-08-01T00:00:17","slug":"le-sous-traitant-au-coeur-des-violations-de-securite","status":"publish","type":"post","link":"https:\/\/viqtor.eu\/en\/the-subcontractor-at-the-heart-of-the-security-violations\/","title":{"rendered":"The subcontractor at the heart of the security breaches"},"content":{"rendered":"<p>As we mentioned in a recent news item, the subcontractor is both a central and essential player for many data controllers, and a weak link in the data security chain.<\/p>\n<p>Recent case law, as well as decisions by data protection authorities, have reiterated that the data controller remains on the front line in the event of a data breach occurring at its subcontractor.<\/p>\n<p>However, this does not alter the subcontractor&#039;s own responsibility when targeted by a cyberattack. Their crucial position at the heart of the data systems justifies particularly high standards in terms of organization and responsiveness.<\/p>\n<p>In a scenario published at the end of May on its website, the CNIL draws inspiration from real events to present a practical case and outline the different stages and measures that should be taken by a subcontractor facing a cyberattack.<\/p>\n<p>The Commission stresses the role of two key people in the company, the Chief Information Security Officer (CISO) and the Data Protection Officer (DPO), and their essential responsiveness in the event of reports concerning abnormal activity.<\/p>\n<p>It also highlights the essential role of monitoring tools in detecting such activity (instability, latency, data loss, errors, etc.).<\/p>\n<p>The crisis management team set up by the subcontractor must determine what actions will be taken internally, and by whom. Above all, it must organize a two-pronged response: managing the attack on the subcontractor&#039;s own data, and simultaneously addressing the breach of customer data.<\/p>\n<p>The subcontractor has 72 hours to assess the severity of the situation and the data breaches, and to take several steps:<\/p>\n<ul>\n<li>Notify the CNIL (French Data Protection Authority) of the data breach concerning its own data, and with the agreement of its clients, also concerning the processing carried out on their behalf. Alternatively, the data processor can also support and advise its clients in this notification procedure.<\/li>\n<li>Inform clients of the extent of the breach and its consequences as quickly as possible and supplement this information in real time according to how the situation develops.<\/li>\n<li>Inform the individuals concerned about the compromise of their data, depending on the risks of infringement of their rights and freedoms.<\/li>\n<\/ul>\n<p>With computer systems now subject to very regular attacks, the CNIL insists on the need to be prepared in advance for the occurrence of this type of situation by protecting data (encryption, two-factor authentication, etc.) and by providing an appropriate management procedure.<\/p>\n<p>It is worth remembering that France is one of the countries in the world most affected by security violations, to the point that around fifty senators requested in mid-May the establishment of a parliamentary commission of inquiry on the subject.&nbsp;<\/p>\n<p>Furthermore, while the CNIL was understanding for a time, it now severely sanctions companies that have not taken timely measures that would have allowed them to block or mitigate attacks.<\/p>\n<p><img decoding=\"async\" src=\"https:\/\/viqtor.eu\/wp-content\/uploads\/2026\/08\/france_1780494638494.jpg\" alt=\"French flag\" width=\"140\" height=\"94\"><\/p>\n<h3>In France<\/h3>\n<p><strong>The CNIL published its activity report for the year 2025 in mid-May. <\/strong><\/p>\n<p>The report summarizes a year marked by a sharp increase in complaints and a <strong>record number of data breaches<\/strong>half of which are linked to computer hacking.<\/p>\n<p>The authority conducted 323 checks and issued <strong>83 sanctions<\/strong> for an unprecedented total amount of nearly 487 million euros.<\/p>\n<p>Cybersecurity is now a major priority: in 2026, half of the CNIL&#039;s checks will focus on data security.<\/p>\n<p>In parallel, the CNIL continues its missions of supporting companies and also strengthens its awareness-raising actions among the general public, particularly young people.<\/p>\n<p>The report also emphasizes the <strong>rise of artificial intelligence<\/strong>.<\/p>\n<p>The CNIL is preparing to implement the European regulation on AI and is developing tools to regulate its uses.<\/p>\n<p>However, for 2026, the authority has not obtained any new positions, despite its new skills in this area.<\/p>\n<p>On May 26, the CNIL fined Iqvia Operations France 5 million euros, notably for failing to comply with safeguards aimed at limiting risks to individuals in the context of managing health data warehouses.<\/p>\n<p><strong>On May 11, the CNIL launched an action plan relating to connected glasses. <\/strong><\/p>\n<p>The authority emphasizes that these devices, often associated with AI, can lead to near-constant surveillance in public and private spaces.<\/p>\n<p>A survey shows that 67% of French people see it as a risk to their privacy.<\/p>\n<p>The CNIL (French Data Protection Authority) reiterates that their use remains subject to the GDPR, image rights, and the requirement to obtain the consent of individuals filmed or recorded. It announces a European action plan and recommends several best practices to limit intrusive uses.<\/p>\n<p>This communication comes as Meta develops a facial recognition function for its smart glasses, and as Samsung and Google unveiled on May 19 their first glasses under Android XR, connected to the smartphone and integrated with Gemini, which allow voice interactions and permanent contextual capture.<\/p>\n<p>Finally, at the end of May, the CNIL published a guideline to help cloud actors identify their responsibilities with concrete examples.<\/p>\n<p>The NGO <strong>Quadrature du Net<\/strong> published on May 21 an in-depth analysis of the proposed law to ban access to social networks for minors under 15 years of age, the vote on which in Parliament is imminent.<\/p>\n<p>The association points out that, under the guise of protecting minors, the text would impose identity verification on all users, thus generalizing a system previously limited to adult sites.<\/p>\n<p>This obligation would conflict with the GDPR&#039;s principle of data minimization and with the right to anonymous browsing recognized by the Court of Justice of the European Union (CJEU).<\/p>\n<p>On May 27, during the presentation of the draft law on child protection, the Minister of National Education, \u00c9douard Geffray, indicated that staff members who had behaved inappropriately with minors at school would now be placed on a &quot;blacklist&quot;, even in the absence of a criminal conviction.<\/p>\n<p>The question of procedural safeguards and the protection of the data of the persons concerned remains open.<\/p>\n<p>The third-party payment provider <strong>Almerys is once again facing a security breach.<\/strong><\/p>\n<p>On May 24, the Alan health insurance company alerted its members to the data breach that occurred at its subcontractor.<\/p>\n<p>The potentially exposed data includes marital status, social security number, contract number, and coverage dates. Several hundred health insurance companies and millions of social security numbers are believed to be affected.<\/p>\n<p>The incident serves as a reminder that, even in the case of subcontracting, the data controller retains its GDPR obligations regarding security and notification.<\/p>\n<p>In an article published on May 24, 01net reveals the results of an investigation into the <strong>workplace monitoring software<\/strong>.<\/p>\n<p>Researchers intercepted network traffic from nine surveillance platforms, all of which transmit employees&#039; personal data to third parties.<\/p>\n<p>The data transmitted includes employee names, email addresses and activity data.<\/p>\n<p>In total, more than 145 third-party domains receive this information, including Google, Meta, Microsoft, LinkedIn, Yandex and AppLovin.<\/p>\n<p>A third of the tools tested also transmit the precise geolocation of the employee.<\/p>\n<p><img decoding=\"async\" src=\"https:\/\/viqtor.eu\/wp-content\/uploads\/2026\/08\/Europe_1780494688401.jpg\" alt=\"European flag\" width=\"140\" height=\"93\"><\/p>\n<h3>In Europe<\/h3>\n<h4>European institutions and bodies<\/h4>\n<p>The European Commission has published a draft set of guidelines clarifying the <strong>classification of high-risk AI systems<\/strong>, as well as a list of concrete examples, intended to help suppliers and operators determine whether or not their AI system presents a high risk.<\/p>\n<p>Any interested person or organization, including suppliers and developers, businesses and public authorities, as well as academia, research institutes and citizens, are invited to submit their comments before June 23, 2026.<\/p>\n<p>In early May, Google obtained an extension from the European Commission to address issues related to its compliance with the Digital Markets Regulation (DMA).<\/p>\n<p>In a statement to the European authorities, the company argued that the Commission&#039;s proposal to force it, as a &quot;gatekeeper&quot;, to share certain search data with competitors such as OpenAI or alternative search engines, presents a significant risk of re-identification of users.<\/p>\n<p>This position might be considered unusual coming from Google, but it is the subject of intense debate these days.<\/p>\n<p>A study published on April 29 in Media Laws establishes a link between this issue of Article 6(11) of the DMA on data sharing and the debates on the Digital Omnibus concerning the scope of the definition of personal data: \u201cSearch Data, Privacy, and the Limits of Heuristics: A Critical Reading of the EC&#039;s Preliminary Findings against Alphabet\u201d.<\/p>\n<p>While the proposed regulation on <strong>the digital euro<\/strong> As the European Parliament is currently voting on the euro and the Eurosystem is preparing for its issuance by 2029, the CNIL and the German Federal Data Protection Authority published a joint report on May 13 on the data protection challenges of the future digital euro.<\/p>\n<p>The two authorities recall their joint work: the need for a high degree of confidentiality for low-value payments, an &quot;offline&quot; mode without tracking by the ECB and payment service providers, and strict control of authorized purposes (anti-money laundering, fraud prevention).<\/p>\n<p>On May 21, 2026, BEUC, the European Consumer Organisation, together with 29 of its members from 27 countries, filed complaints with the European Commission and the relevant national authorities against Meta, TikTok, and Google, alleging that these companies had failed to take the necessary measures to combat the <strong>proliferation of fraudulent advertisements in the financial sector<\/strong> on their platforms, as required by the European Digital Services Regulation (DSA).<\/p>\n<p>The BEUC investigation documents the massive persistence of fraudulent advertisements (quick loans, fake investments, guaranteed returns), of which 53,% reports were allegedly ignored or rejected by the platforms.<\/p>\n<h4>News from the member countries of the European Union.<\/h4>\n<p>The 2026 report from the &quot;GDPR Enforcement Tracker&quot; by the consulting firm CMS shows that the application of the GDPR has entered a phase of maturity in Europe, with more than <strong>3,000 sanctions recorded since 2018 and a total amount exceeding 6 billion euros. <\/strong><\/p>\n<p>National authorities are now targeting not only digital giants, but also everyday operational issues: transparency, cybersecurity, cookies, employee monitoring, and subcontractor management.<\/p>\n<p>The most frequent violations remain the lack of a clear legal basis, non-compliance with the general principles of the GDPR and security breaches.<\/p>\n<p>The digital platform, online advertising and AI-powered services sectors are under particular scrutiny.<\/p>\n<p>The report also highlights that user complaints and data breaches have become major triggers for investigations.<\/p>\n<p>Finally, despite increasing European coordination, sanctioning practices still vary greatly between countries.<\/p>\n<p>The Belgian Data Protection Authority (APD) has fined a technology company a total of \u20ac176,946.61 for illegally keeping a service provider&#039;s email account active after they left the company and for breaching transparency obligations.<\/p>\n<p>The authority also ordered the company to comply with the service provider&#039;s request for access to provide access logs, then delete personal data and take steps to ensure compliance with regulations in the future.<\/p>\n<p><strong>The APD also announced on May 16 in the daily newspaper Le Soir that it will now take legal action in certain specific cases of serious violations of the GDPR. <\/strong><\/p>\n<p>The authority received 1,394 complaints in 2025, an increase of 67 % compared to 2024.<\/p>\n<p>The criminal route relies on national provisions adopted pursuant to Article 84 of the GDPR, which authorizes Member States to provide for sanctions, including criminal sanctions, for violations not covered by the administrative fines of Article 83.<\/p>\n<p>The explicit objective is to bypass lengthy appeals to the Market Court, which &quot;sometimes reduces severe fines to 1 euro&quot; and the Court of Justice of the EU, which are used by large digital platforms.<\/p>\n<p>The Dutch DPA imposed a <strong>MLU BV fined 100 million euros for transferring personal data to Russia. <\/strong><\/p>\n<p>MLU is a Netherlands-based company behind the European version of the Yango taxi app.<\/p>\n<p>In Norway and Finland, users use Yango to book taxi rides with affiliated drivers. Yango then transfers the personal data of drivers and customers to companies located in Russia without guaranteeing adequate protection of this data.<\/p>\n<p><strong>Microsoft reportedly provided the US House of Representatives with the names of Dutch officials working for the Dutch Consumers and Markets Authority and the Dutch Data Protection Authority.<\/strong>These agents would participate in the implementation of the DSA.<\/p>\n<p>According to information published by NL Times, Microsoft allegedly shared emails, reports and invitations without anonymizing the names of the officials involved, as required by the US Cloud Act.<\/p>\n<p>The Dutch State Secretary for the Interior said he was concerned about the situation, while indicating he wanted to clarify the exact circumstances of the transmission.<\/p>\n<p>The Spanish Data Protection Agency (APD) considered that the provision by the Ministry of Education and Sports of cloud-based educational services to public schools, using Microsoft as a subcontractor, constituted a violation of the provisions of the GDPR.<\/p>\n<p><img decoding=\"async\" src=\"https:\/\/viqtor.eu\/wp-content\/uploads\/2026\/08\/INTERNATIO_1780494763286.jpg\" alt=\"Flags of the world with a world map next to them\" width=\"150\" height=\"85\"><\/p>\n<h3>Internationally<\/h3>\n<p><strong>In the United Kingdom, parliamentarians are concerned about the National Health Service&#039;s (NHS) decision to grant Palantir access to identifiable patient data.<\/strong> as part of its project to use artificial intelligence &quot;to improve the health system&quot;.<\/p>\n<p>The company would gain access to patient data before it was pseudonymized, despite concerns about &quot;the risk of losing public trust&quot;.<\/p>\n<p>A parliamentary committee asked the government in early June to terminate the contract with the company.<\/p>\n<p>These concerns are echoed by civil society as well as by NHS analysts who have published an open letter highlighting the risks of the project.<\/p>\n<p>In addition to data protection issues, Palantir&#039;s AI system is accused of being ten times slower than the existing system.<\/p>\n<p>In Canada, the Office of the Information and Privacy Commissioner of Ontario publishes <strong>New guidelines on AI-based transcription assistants to help protect patient privacy. <\/strong><\/p>\n<p>&quot;The new CPI guidelines align with the Principles for Responsible Use of Artificial Intelligence, recently published and jointly developed by the Information and Privacy Commissioner of Ontario and the Ontario Human Rights Commission.<\/p>\n<p>These principles emphasize that AI systems, such as AI scribes, must be valid and reliable, secure, privacy-respecting, human rights-compliant, transparent, and accountable.<\/p>\n<p><strong>Republican members of the United States House of Representatives have introduced the &quot;SECURE Data Act&quot; and &quot;GUARD Financial Data Act&quot; bills.<\/strong> aiming to establish a federal data protection framework.<\/p>\n<p>These bills aim to harmonize applicable rules by replacing certain state laws, to limit data collection, and to strengthen consumer access rights.<\/p>\n<p>On May 8, 2026, the California Attorney General announced a record $12.75 million settlement with General Motors (GM) to end allegations that GM illegally sold location and driving behavior data of California citizens without proper notification or consent, violating, among other things, the data minimization and purpose limitation principles of the California Consumer Privacy Act (CCPA).<\/p>\n<p><strong>Anthropic announced on May 22nd its Glasswing project, stating that its cybersecurity-specialized AI model, Mythos, has identified more than 10,000 vulnerabilities in widely used open source software and projects. <\/strong><\/p>\n<p>According to the company, AI significantly improves the speed and efficiency of vulnerability research, with a detection rate considered high.<\/p>\n<p>However, this capability creates a new challenge for the software ecosystem: maintainers and security teams must deal with an increasing volume of reports and fix vulnerabilities faster.<\/p>\n<p>Beyond the technical feat, the subject highlights the evolution of cybersecurity towards increased automation of vulnerability detection, with their rapid correction remaining the main factor in risk reduction.<\/p>","protected":false},"excerpt":{"rendered":"<p>Nous l\u2019\u00e9voquions dans une r\u00e9cente actualit\u00e9, le sous-traitant est \u00e0 la fois un acteur central et incontournable pour de nombreux responsables de traitement, et un maillon faible dans la cha\u00eene de s\u00e9curit\u00e9 des donn\u00e9es. La jurisprudence r\u00e9cente, tout comme les d\u00e9cisions des autorit\u00e9s de protection des donn\u00e9es, ont rappel\u00e9 que le responsable de traitement reste [&hellip;]<\/p>","protected":false},"author":1,"featured_media":14506,"comment_status":"","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[35],"tags":[],"class_list":["post-14510","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-veille-juridique"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v23.6 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Le sous-traitant au c\u0153ur des violations de s\u00e9curit\u00e9 - Viqtor<\/title>\n<meta name=\"description\" content=\"Le sous-traitant au c\u0153ur des violations de s\u00e9curit\u00e9 - Viqtor\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/viqtor.eu\/en\/the-subcontractor-at-the-heart-of-the-security-violations\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Le sous-traitant au c\u0153ur des violations de s\u00e9curit\u00e9 - Viqtor\" \/>\n<meta property=\"og:description\" content=\"Le sous-traitant au c\u0153ur des violations de s\u00e9curit\u00e9 - Viqtor\" \/>\n<meta property=\"og:url\" content=\"https:\/\/viqtor.eu\/en\/the-subcontractor-at-the-heart-of-the-security-violations\/\" \/>\n<meta property=\"og:site_name\" content=\"Viqtor\" \/>\n<meta property=\"article:published_time\" content=\"2026-08-01T00:00:17+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/viqtor.eu\/wp-content\/uploads\/2026\/04\/widget-viqtor.png\" \/>\n<meta name=\"author\" content=\"Bruno\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Bruno\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"16 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/viqtor.eu\/le-sous-traitant-au-coeur-des-violations-de-securite\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/viqtor.eu\/le-sous-traitant-au-coeur-des-violations-de-securite\/\"},\"author\":{\"name\":\"Bruno\",\"@id\":\"https:\/\/viqtor.eu\/#\/schema\/person\/3dbd9cc82a28f6cf1695c92eda0099ad\"},\"headline\":\"Le sous-traitant au c\u0153ur des violations de s\u00e9curit\u00e9\",\"datePublished\":\"2026-08-01T00:00:17+00:00\",\"dateModified\":\"2026-08-01T00:00:17+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/viqtor.eu\/le-sous-traitant-au-coeur-des-violations-de-securite\/\"},\"wordCount\":3191,\"publisher\":{\"@id\":\"https:\/\/viqtor.eu\/#organization\"},\"image\":{\"@id\":\"https:\/\/viqtor.eu\/le-sous-traitant-au-coeur-des-violations-de-securite\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/viqtor.eu\/wp-content\/uploads\/2026\/08\/veille-juridique-95_1781685245092.jpg\",\"articleSection\":[\"Veille juridique\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/viqtor.eu\/le-sous-traitant-au-coeur-des-violations-de-securite\/\",\"url\":\"https:\/\/viqtor.eu\/le-sous-traitant-au-coeur-des-violations-de-securite\/\",\"name\":\"Le sous-traitant au c\u0153ur des violations de s\u00e9curit\u00e9 - Viqtor\",\"isPartOf\":{\"@id\":\"https:\/\/viqtor.eu\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/viqtor.eu\/le-sous-traitant-au-coeur-des-violations-de-securite\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/viqtor.eu\/le-sous-traitant-au-coeur-des-violations-de-securite\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/viqtor.eu\/wp-content\/uploads\/2026\/08\/veille-juridique-95_1781685245092.jpg\",\"datePublished\":\"2026-08-01T00:00:17+00:00\",\"dateModified\":\"2026-08-01T00:00:17+00:00\",\"description\":\"Le sous-traitant au c\u0153ur des violations de s\u00e9curit\u00e9 - Viqtor\",\"breadcrumb\":{\"@id\":\"https:\/\/viqtor.eu\/le-sous-traitant-au-coeur-des-violations-de-securite\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/viqtor.eu\/le-sous-traitant-au-coeur-des-violations-de-securite\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/viqtor.eu\/le-sous-traitant-au-coeur-des-violations-de-securite\/#primaryimage\",\"url\":\"https:\/\/viqtor.eu\/wp-content\/uploads\/2026\/08\/veille-juridique-95_1781685245092.jpg\",\"contentUrl\":\"https:\/\/viqtor.eu\/wp-content\/uploads\/2026\/08\/veille-juridique-95_1781685245092.jpg\",\"width\":800,\"height\":600},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/viqtor.eu\/le-sous-traitant-au-coeur-des-violations-de-securite\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Accueil\",\"item\":\"https:\/\/viqtor.eu\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Le sous-traitant au c\u0153ur des violations de s\u00e9curit\u00e9\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/viqtor.eu\/#website\",\"url\":\"https:\/\/viqtor.eu\/\",\"name\":\"Viqtor\",\"description\":\"Faites du RGPD une opportunit\u00e9 pour votre entreprise.\",\"publisher\":{\"@id\":\"https:\/\/viqtor.eu\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/viqtor.eu\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/viqtor.eu\/#organization\",\"name\":\"viqtor.eu\",\"url\":\"https:\/\/viqtor.eu\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/viqtor.eu\/#\/schema\/logo\/image\/\",\"url\":\"\",\"contentUrl\":\"\",\"caption\":\"viqtor.eu\"},\"image\":{\"@id\":\"https:\/\/viqtor.eu\/#\/schema\/logo\/image\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\/\/viqtor.eu\/#\/schema\/person\/3dbd9cc82a28f6cf1695c92eda0099ad\",\"name\":\"Bruno\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/viqtor.eu\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/e5a596f9489de15bfe046e97fb771f63589b601ca7e81ccc2bb9a23582f441a3?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/e5a596f9489de15bfe046e97fb771f63589b601ca7e81ccc2bb9a23582f441a3?s=96&d=mm&r=g\",\"caption\":\"Bruno\"},\"sameAs\":[\"https:\/\/exciting-panini.13-37-234-21.plesk.page\"],\"url\":\"https:\/\/viqtor.eu\/en\/author\/mouad_zxum2ebi\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Le sous-traitant au c\u0153ur des violations de s\u00e9curit\u00e9 - Viqtor","description":"Le sous-traitant au c\u0153ur des violations de s\u00e9curit\u00e9 - Viqtor","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/viqtor.eu\/en\/the-subcontractor-at-the-heart-of-the-security-violations\/","og_locale":"en_US","og_type":"article","og_title":"Le sous-traitant au c\u0153ur des violations de s\u00e9curit\u00e9 - Viqtor","og_description":"Le sous-traitant au c\u0153ur des violations de s\u00e9curit\u00e9 - Viqtor","og_url":"https:\/\/viqtor.eu\/en\/the-subcontractor-at-the-heart-of-the-security-violations\/","og_site_name":"Viqtor","article_published_time":"2026-08-01T00:00:17+00:00","og_image":[{"url":"https:\/\/viqtor.eu\/wp-content\/uploads\/2026\/04\/widget-viqtor.png"}],"author":"Bruno","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Bruno","Est. reading time":"16 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/viqtor.eu\/le-sous-traitant-au-coeur-des-violations-de-securite\/#article","isPartOf":{"@id":"https:\/\/viqtor.eu\/le-sous-traitant-au-coeur-des-violations-de-securite\/"},"author":{"name":"Bruno","@id":"https:\/\/viqtor.eu\/#\/schema\/person\/3dbd9cc82a28f6cf1695c92eda0099ad"},"headline":"Le sous-traitant au c\u0153ur des violations de s\u00e9curit\u00e9","datePublished":"2026-08-01T00:00:17+00:00","dateModified":"2026-08-01T00:00:17+00:00","mainEntityOfPage":{"@id":"https:\/\/viqtor.eu\/le-sous-traitant-au-coeur-des-violations-de-securite\/"},"wordCount":3191,"publisher":{"@id":"https:\/\/viqtor.eu\/#organization"},"image":{"@id":"https:\/\/viqtor.eu\/le-sous-traitant-au-coeur-des-violations-de-securite\/#primaryimage"},"thumbnailUrl":"https:\/\/viqtor.eu\/wp-content\/uploads\/2026\/08\/veille-juridique-95_1781685245092.jpg","articleSection":["Veille juridique"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/viqtor.eu\/le-sous-traitant-au-coeur-des-violations-de-securite\/","url":"https:\/\/viqtor.eu\/le-sous-traitant-au-coeur-des-violations-de-securite\/","name":"Le sous-traitant au c\u0153ur des violations de s\u00e9curit\u00e9 - Viqtor","isPartOf":{"@id":"https:\/\/viqtor.eu\/#website"},"primaryImageOfPage":{"@id":"https:\/\/viqtor.eu\/le-sous-traitant-au-coeur-des-violations-de-securite\/#primaryimage"},"image":{"@id":"https:\/\/viqtor.eu\/le-sous-traitant-au-coeur-des-violations-de-securite\/#primaryimage"},"thumbnailUrl":"https:\/\/viqtor.eu\/wp-content\/uploads\/2026\/08\/veille-juridique-95_1781685245092.jpg","datePublished":"2026-08-01T00:00:17+00:00","dateModified":"2026-08-01T00:00:17+00:00","description":"Le sous-traitant au c\u0153ur des violations de s\u00e9curit\u00e9 - Viqtor","breadcrumb":{"@id":"https:\/\/viqtor.eu\/le-sous-traitant-au-coeur-des-violations-de-securite\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/viqtor.eu\/le-sous-traitant-au-coeur-des-violations-de-securite\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/viqtor.eu\/le-sous-traitant-au-coeur-des-violations-de-securite\/#primaryimage","url":"https:\/\/viqtor.eu\/wp-content\/uploads\/2026\/08\/veille-juridique-95_1781685245092.jpg","contentUrl":"https:\/\/viqtor.eu\/wp-content\/uploads\/2026\/08\/veille-juridique-95_1781685245092.jpg","width":800,"height":600},{"@type":"BreadcrumbList","@id":"https:\/\/viqtor.eu\/le-sous-traitant-au-coeur-des-violations-de-securite\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Accueil","item":"https:\/\/viqtor.eu\/"},{"@type":"ListItem","position":2,"name":"Le sous-traitant au c\u0153ur des violations de s\u00e9curit\u00e9"}]},{"@type":"WebSite","@id":"https:\/\/viqtor.eu\/#website","url":"https:\/\/viqtor.eu\/","name":"Viqtor","description":"Faites du RGPD une opportunit\u00e9 pour votre entreprise.","publisher":{"@id":"https:\/\/viqtor.eu\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/viqtor.eu\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/viqtor.eu\/#organization","name":"viqtor.eu","url":"https:\/\/viqtor.eu\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/viqtor.eu\/#\/schema\/logo\/image\/","url":"","contentUrl":"","caption":"viqtor.eu"},"image":{"@id":"https:\/\/viqtor.eu\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/viqtor.eu\/#\/schema\/person\/3dbd9cc82a28f6cf1695c92eda0099ad","name":"Bruno","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/viqtor.eu\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/e5a596f9489de15bfe046e97fb771f63589b601ca7e81ccc2bb9a23582f441a3?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/e5a596f9489de15bfe046e97fb771f63589b601ca7e81ccc2bb9a23582f441a3?s=96&d=mm&r=g","caption":"Bruno"},"sameAs":["https:\/\/exciting-panini.13-37-234-21.plesk.page"],"url":"https:\/\/viqtor.eu\/en\/author\/mouad_zxum2ebi\/"}]}},"_links":{"self":[{"href":"https:\/\/viqtor.eu\/en\/wp-json\/wp\/v2\/posts\/14510","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/viqtor.eu\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/viqtor.eu\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/viqtor.eu\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/viqtor.eu\/en\/wp-json\/wp\/v2\/comments?post=14510"}],"version-history":[{"count":0,"href":"https:\/\/viqtor.eu\/en\/wp-json\/wp\/v2\/posts\/14510\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/viqtor.eu\/en\/wp-json\/wp\/v2\/media\/14506"}],"wp:attachment":[{"href":"https:\/\/viqtor.eu\/en\/wp-json\/wp\/v2\/media?parent=14510"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/viqtor.eu\/en\/wp-json\/wp\/v2\/categories?post=14510"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/viqtor.eu\/en\/wp-json\/wp\/v2\/tags?post=14510"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}