Shoosmiths has partnered with The Legal 500 as exclusive expert contributing editors and authors across two of their latest Country Comparative guides. These global guides provide detailed information and insight into practice-area-focused laws and regulations in various jurisdictions., and provide an excellent platform to highlight our Technology sector globally, focusing on key areas such as AI, Blockchain & Digital Assets, Connected Tech, Tech Corporate Lifecycle, and Fintech ...
One of the structural principles of the new data protection law is the principle of lawfulness and fairness, which requires that all processing has an appropriate legal basis. Those responsible for managing databases that have been organized prior to the entry into force of the new Data Protection Law will face a great challenge: the adaptation of their databases to the new regulation, which will clearly mean a race against time ...
The National Cybersecurity Coordination, a unit of the Undersecretary of the Interior responsible for coordinating the actions of public agencies in cybersecurity and recommending to the President of the Republic policies, laws, regulations, protocols and standards in this area, recently put two of a series of regulations required by Law No. 21,663 Framework on Cybersecurity up for public consultation ...
The data breach at controversial dating site Ashley Madison exposed 36m users in 2015. It heralded a new age of global data protection laws, but could it happen again? A recent Netflix documentary is retelling the story of the mass data breach in 2015 affecting up to 36 million users of the Ashley Madison website. A decade ago, the Canadian site’s USP was already proving controversial: catering for happily married people looking for a discreet affair ...
Cyber reporting requirements for Bermuda insurers, insurance managers and insurance intermediaries following the CrowdStrike faulty software update Key reporting obligations Prompt notification Bermuda insurers, insurance managers and insurance intermediaries (including brokers, agents and insurance marketplace providers) (each, a "Registered Person") must forthwith notify the BMA upon coming to the knowledge, or having a reason to believe, that a cyber reporting event has occurred ...
****Dear Ladies and Gentlemen!**** The authorities in Russia and the rest of the world have recently been paying more and more attention to data protection issues ...
On July 24, 2024, the joint committee approved what should be the final draft of the bill that amends Chilean Data Protection Law N° 19,628 (the “Law”). After this stage, the draft of the Law needs to be approved by both the Senate and the Chamber of Deputies. Upon approval, it will be sent to the President of the Republic for presidential approval and eventually will be subject to review by the Constitutional Court ...
Effective July 29, 2024, the Federal Trade Commission (“FTC”) has issued a final rule that expands the scope of its existing Health Breach Notification Rule (“HBNR”) to include health and wellness applications (“apps”) typically associated with wearable technologies such as smart watches ...
The EU’s much-anticipated AI Act has finally reached the statute book, with the legislation due to formally enter into force in early August. The arrival of the legislation represents a genuinely momentous shift in the focus of regulation of AI and its associated technologies, stepping away from the line of thinking that AI is just another category of software which should be subject to the same laws, standards and regulation as other, similar technologies ...
On June 28, 2024, Exempt Resolution No. 1,160 of May 31, 2024 was published in the Official Gazette, which approved the “Technical Guideline of the Public Health Institute that establishes the requirements for the application for modifications to the sanitary registration of biological products (M-MOBI)” ...
On July 5, 2024, the Financial Market Commission (“CMF”) updated its "Frequently Asked Questions" document related to General Rule No. 502 (“NCG 502”). The NCG 502 regulates the registration, authorization, and obligations of financial service providers under Law No. 21.521, known as the "Fintech Law ...
Roskomnadzor (Russian Data Protection Authority) plans to make it easier for personal data subjects to revoke consent to the processing of personal data Roskomnadzor proposes making it possible to ****revoke consent**** to the processing of personal data “in one click” ...
In this article we look at some of the key factors that influenced deal term trends through analysing the many transactions Shoosmiths advised on over the last year. For the third successive year Shoosmiths remained the UK’s most active law firm advising on mergers and acquisitions (according to Experian MarketIQ), acting on over 400 deals worth over £7bn in 2023 ...
A podcast series that explores privacy themes within some of the most well-known movies. In this episode, William Moore and Paula Kelly return to the Wizarding World to once again discuss the Harry Potter films. Whether you are a film buff, a privacy advocate, or simply curious about the intersection of storytelling and privacy, take a journey with us as we explore how the big screen tackles privacy ...
Malta has been a forerunner in regulating digital assets with the introduction of the Virtual Financial Assets Act, Chapter 590 of the Laws of Malta (the “VFA Act”) back in 2018. Following its approval in 2022 and publication in 2023, Regulation (EU) 2023/1114 of the European Parliament and Council on markets in crypto-assets (“MiCAR”) has an 18-month window to become fully enforceable by 30th December 2024 ...
Ban on foreign information security services from “unfriendly” jurisdictions Decree No. 250 of the Russian President dated 1 May 2022 “On Additional Measures to Ensure the Information Security of the Russian Federation” previously imposed restrictions on the ****use of foreign information security means**** ...
The Board concluded that the NDPA does not have authority to impose coercive fines in ongoing cross-border cases. Only in exceptional cases may concerned data protection authorities, such as the NDPA, adopt provisional measures until three months on its own territory. The GDPR sets out that national powers, such as coercive fines, shall not impair the effective powers of the cooperation and consistency mechanism ...
The Automated Vehicles Act (the Act) outlines the safety requirements that manufacturers and operators of automated vehicles will need to meet in order to deploy their goods and services on UK roads. In this article Ben Gardner outlines the key safety areas that will need to be considered ...
Bill Gates said in a blog post: “The development of AI is as fundamental as the creation of the microprocessor, the personal computer, the Internet, and the mobile phone. It will change the way people work, learn, travel, get health care, and communicate with each other. Entire industries will reorient around it. Businesses will distinguish themselves by how well they use it ...
Shoosmiths’ FinTech partner, Luke Stubbs, was a speaker at the recent FinTech Week London Conference, participating in a panel discussion focused on international payments. FinTech Week London reflects the City's role as a FinTech hub and comprises a week of events culminating in a major conference, which Shoosmiths was proud to sponsor ...
As we have previously commented, once COVID came along force majeure became, understandably, a hot topic but case law on the subject was light. We are now however starting to see a trickle of cases emerging which consider force majeure. In RTI Ltd v MUR Shipping BV however, the Supreme Court has now handed down a significant judgment that clarifies the rights and obligations of contracting parties under a force majeure clause ([2024] UKSC 18) ...
The ‘Digital Operational Resilience Act’ or “DORA” (Regulation (EU) 2022/2554) shall be enhancing and improving Information and Communications Technology (‘ICT’) operational risk requirements across various financial sectors. Subsequently, it imposes obligations on a vast array of different financial entities, as well as certain ICT service providers that assist such financial entities ...
June 18, 2024 By: Anne Marie Ellis Buchalter can assist by providing you with recommendations for testing laboratories, detailed analysis of state and federal PFAS regulations, create compliance programs tailored to meet regulatory requirements, assist in the preparation of necessary documentation including certificates of compliance, review and draft supplier contracts to include PFAS compliance and liability provisions, review your product lines, work with suppliers to understand PFAS usage,
The Automated Vehicles Act (the Act) outlines how liability will be allocated when an automated vehicle commits a driving offence or is involved in an accident, together with certain information disclosure requirements to support regulatory investigations. In this article Ben Gardner outlines the key issues surrounding liability that will need to be considered ...
Manufacturers of internet or network connectable products for the UK market are now required to implement minimum security standards to protect such products from cyber-attacks. Importers and distributors are also impacted by these requirements ...