Latest Publications

Share:

Data in the Balance: Political Influence on EU-U.S. Data Transfers

In politically uncertain times, is your organisation’s data transfer compliance unquestionable? The EU-U.S. Data Privacy Framework (DPF) serves as a useful mechanism for transatlantic data transfers, and it can assist...more

The EU’s Digital Operational Resilience Act Comes Into Effect

The European Union’s Digital Operational Resilience Act (DORA) came into effect on January 17, 2025. DORA aims to harmonise rules concerning the provision of information and communication technology (ICT) services to...more

Reporting Requirements Under the European Sustainability Reporting Standards

Organisations are facing a new era of nonfinancial reporting with the European Union’s Corporate Sustainability Reporting Directive (CSRD), now in effect. CSRD reporting is standardised through the European Sustainability...more

Employment Rights Bill Is Laid Before UK Parliament: What Employers Need to Know

The new Labour government has set out its plans for reforming the labour market in its Employment Rights Bill just within the first one hundred days in office. This volume of change was initially set out in the Labour...more

Supply Chain Attacks in the UK: Reducing Risk and Preparing for Upcoming Legal Changes

Effective information security is no longer just dependent on an organisation’s own internal cybersecurity controls. The UK Information Commissioner’s Office (ICO) highlights that third-party service providers are processing...more

International Data Transfers Remain Under EU and UK Regulatory Scrutiny

Organisations that make international transfers of personal data have undergone significant challenges and changes over the last few years. With the invalidation of the Privacy Shield agreement in 2020 and the introduction of...more

The EU’s NIS2 Directive: Covered Entities, Compliance Monitoring, Risk Management, Incident Reporting, and Penalties

In response to the increasing number of cyberattacks and the acceleration of digital transformation across sectors, the European Union has revised and improved its Network and Information Security (NIS) Directive. The...more

European Union Digital Services Act: New Regulations Apply

The European Union Digital Services Act (DSA) now applies to all digital “intermediary services” that provide users with access to online goods, services, and content. The DSA took effect on November 16, 2022, and regulates a...more

EU Agrees on Groundbreaking AI Act: A Potential Model for AI Regulation?

On December 8, 2023, European Union policymakers brokered a deal on a broad law to regulate the development and use of artificial intelligence (AI) in the European Union....more

UK Online Safety Act: What Does It Mean for Your Business?

The United Kingdom’s Online Safety Bill has recently received royal assent and become law as the Online Safety Act (OSA)....more

European Parliament’s Leading Committees Vote to Approve AI Act

The world’s first artificial intelligence (AI) regulatory framework is “a step closer” to becoming law, the European Parliament recently announced. Following the European Commission’s 2021 draft proposal, a draft negotiating...more

The U.S. and EU Announce an “Agreement in Principle” to Replace the EU-U.S. Privacy Shield Framework: What Employers Need to Know

On March 25, 2022, the European Union (EU) announced that the United States and the EU had reached an agreement in principle to replace the EU-U.S Privacy Shield framework, which the European Court of Justice (CJEU) struck...more

England Moves to Plan B of its COVID-19 Response: What Does This Mean for Employers?

Amid concerns surrounding the rapid rise in COVID-19 omicron cases, the UK government recently implemented Plan B measures in England. Here is a summary of the implications of these measures for employers...more

UK Government’s Consultation on Data Protection and Privacy: Information Commissioner’s Office Issues Response

The Information Commissioner’s Office (ICO) recently released its response to the UK government consultation, ‘Data: A new direction’. The consultation was conducted by the Department for Digital, Culture, Media and Sport...more

EU-UK Trade and Cooperation Agreement Provides a Grace Period for Free Flow of Personal Data

After the political and constitutional upheaval of the last four years that has been Brexit, a trade deal - the EU-UK Trade and Cooperation Agreement - was finally reached between the United Kingdom (UK) and the European...more

EU-U.S. Privacy Shield Invalid: European Court of Justice Highlights Obligations for Companies Using Standard Contractual Clauses

The Court of Justice of the European Union (CJEU) recently declared that the EU-U.S. Privacy Shield is invalid because it does not provide an adequate level of protection for the transfer of personal data from the European...more

European Court of Justice Declares the EU-U.S. Privacy Shield Invalid and Provides Additional Obligations on Companies Using...

On July 16, 2020, the Court of Justice of the European Union (CJEU) announced its judgment in the so-called Schrems II case (Case C-311/18), declaring that the EU-U.S. Privacy Shield is invalid because it does not provide an...more

U.S. and Global Employee Data Privacy FAQs

An employer’s response to COVID-19 involves numerous privacy issues. Below are some answers to frequently asked questions (FAQs) about these issues within the United States and globally, based on laws such as the Americans...more

Maintaining Employees’ Privacy During a Public Health Crisis

As coronavirus disease 2019 (COVID-19) continues to spread, employers have been trying to strike a balance between safety and privacy as they apply their own policies and attempt to follow laws such as the General Data...more

A GDPR Update for Employers, Part III: Preparing Required Data Protection Impact Assessments

Much has happened since the European Union (EU) General Data Protection Regulation (GDPR) went into effect on May 25, 2018. Many EU countries have enacted national legislation to implement and expand the requirements of the...more

A GDPR Update for Employers, Part I: Determining Whether Your Organization’s HR Data Processing Is Covered

Much has happened since the European Union (EU) General Data Protection Regulation (GDPR) went into effect on May 25, 2018. Many EU countries have enacted national legislation to implement and expand the requirements of the...more

Working Party Confirms That Employers of All Sizes Must Maintain Article 30 Records of Processing for Human Resources Data

On April 19, 2018, the Article 29 Working Party (Working Party), which is comprised of representatives from the data protection authorities in each of the 28 European Union (EU) member states, issued a position paper stating...more

47 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide