The Information Commissioner's Office ("ICO") has issued a reprimand to a recruitment company for infringements of Article 5(1)(f) and 32(1)(b) of the UK GDPR. The action was taken because the company failed to implement adequate security measures, resulting in personal data in the form of 12,000 records belonging to 3,000 workers being publicly accessible without requiring authentication. The inadequacy of the security measures resulted in compromised confidentiality and security of the processing in this particular case.