On 19 October 2020 the Federal Council's Cyber Committee adopted a report on the advancement of the 2018-2022 national strategy for the protection of Switzerland against cyber risks (2018-2022 NCS) and its gradual implementation. The report focuses mainly on the progress made in supporting small and medium-sized enterprises (SMEs) and promoting research and training ...
What will UK data protection look like after Brexit 2.0 on 31 December 2020? Regime 1: the 'UK GDPR': the UK's new bespoke version together with the Data Protection Act 2018 The UK GDPR will be the UK data protection regime based on the 'EU GDPR' (see below) ...
The HHS Office for the National Coordinator of Health Information Technology issued an interim final rule on October 29, 2020, extending the compliance date for the information blocking rule under the 21st Century Cures Act to April 5, 2021 ...
While public attention focused on the federal and state elections, Michigan voters made an important decision—they adopted Proposal 20-2, which amended Michigan’s Constitution to extend its protection from unreasonable searches and seizures to electronic data and communications ...
During recent years, we have been accumulating our experience of advising clients on data protection issues, that companies face when doing their business in Russia. Many of our clients do their business in other CIS countries as well and usually face quite similar issues there. However, the level of regulation and, more importantly, enforcement, in different jurisdictions of the post-Soviet Union territory, varies significantly ...
In this newsletter you will find a selection of the main legal news related to the fintech and digital banking market in Argentina. 3.0 transfers New open and interoperable model for instant payments As we anticipated in previous bulletins, the Central Bank (BCRA) completely updated the system of immediate electronic payments existing until now, taking it to a much more ambitious, interoperable and open model, which aims to interconnect bank accounts and accounts on an equal footing ...
We have recently discovered growing interest in implementation of diversity and inclusion (“D&I”) programs by companies operating in Russia. D&I programs imply processing of new categories of employee personal data and new purpose of data processing. For this, Russian Labour laws do not provide for any requirement nor regulation for implementation of D&I programs ...
The Privacy Commissioners of Canada, Alberta and British Columbia issued a joint investigation report, finding that Cadillac Fairview did not obtain adequate consent for the collection of digital images of faces through facial recognition technology (Anonymous Video Analytics) installed in wayfinding directories in some of their Canadian shopping malls ...
On 25 September 2020 Parliament approved new regulations for Blockchain and Distributed Ledger Technology (DLT).(1) The goal of this new legal framework is to further establish and increase Switzerland's reputation as a leading, innovative and sustainable location for fintech and DLT companies. DLT framework DLT allows shared data management and, in particular, shared accounting among participants that do not know or do not trust each other's identity ...
Introduction On 16 October 2020 the government reinforced the urgent measures to limit the further spread of COVID-19. Teleworking is no longer highly recommended, but has become the standard for all employees whose roles allow for telework. Yet, the new rule is less far-reaching than that in place during the first lockdown in March 2020, as an exception now applies when the continuity of business operations, activities and services does not allow for teleworking ...
On 25 September 2020 Parliament approved the final draft of the revised Data Protection Act (rev-DPA).(1) The rev-DPA is expected to enter into force in 2022. However, it is subject to a facultative referendum and the corresponding ordinance will be adapted accordingly – thus, the rev-DPA is still a work in progress ...
On July 10, 2020, the Office of Compliance Inspections and Examinations (OCIE) released a Risk Alert highlighting the dangers of ransomware to SEC-registered entities, including investment advisers. The Risk Alert is a response to a marked uptick in both the prevalence and sophistication of ransomware attacks in recent months. Ransomware is a type of malware used by criminals to gain control of your or your firm’s confidential information and customer data ...
In response to the ongoing disruption caused by COVID-19, OCIE issued a Risk Alert on Aug. 12, 2020. In the Risk Alert, OCIE makes various observations and recommendations which fall into six different categories: (1) protection of investors’ assets; (2) supervision of personnel; (3) practices relating to fees, expenses, and financial transactions; (4) investment fraud; (5) business continuity; and (6) the protection of investor and other sensitive information ...
OCIE’s most recent Risk Alert, published Sept. 15, 2020, address another cybersecurity issue, this time highlighting the dangers of “credential stuffing.” Credential stuffing is a method of cyberattack that uses compromised client login credentials and can lead to loss of customer assets and the disclosure of confidential or other personal information. Hackers will obtain groups or lists of usernames, email addresses, and their passwords from sellers on the dark web ...
AELEX is the exclusive contributor to the Nigerian Chapter of The Legal 500 (Legalease): Franchise and Licensing Country Comparative Guides. The country specific Guide provides a pragmatic overview of how businesses can set up franchises and also license their technology and intellectual property rights in Nigeria. The Guide was authored by our Davidson Oturu,Tiwalola Osazuwa and Kofoworola Oyegunle. Please click here to read the Guide ...
Law 58/2020 of 31 August implements into Portuguese law Directive (EU) 2018/843 of the European Parliament and of the Council of 30 May 2018 on the prevention of the use of the financial system for the purposes of money laundering or terrorist financing. It enshrines in the Portuguese legal framework a first approach to the regulation of entities that engage in activities with virtual assets ...
The electronic commerce industry is expected to expand by five to seven percent in the coming years while the streaming services business is also expected to exponentially grow, with more and more Filipinos opting to do their transactions online, as well as accessing Internet-based content and entertainment. Philippine authorities are inevitably focusing their regulatory gaze on these enterprises. A ...
The functioning of the World Wide Web is in many ways dependent on the use of hyperlinks. Many of those hyperlinks refer to works protected by copyright. In his recent Opinion, Advocate General Szpunar has considered which kinds of hyperlinks should be regarded as a communication to the public that require the copyright holder’s prior authorisation ...
What Happened: The US warns victims of ransomware and companies facilitating ransomware payments of potential Office of Foreign Assets Control (“OFAC”) violations in light of rising ransomware attacks. The Bottom Line: Individuals and companies risk potential civil penalties based on strict liability if a ransomware payment involves a person or entity on OFAC’s Specially Designated Nationals and Blocked Persons List (“SDN List”) ...
The COVID-19 pandemic has been not only causing major social upheaval but disrupting business development and the economy as well. Nevertheless, since last March, we have seen many developments and new projects involving self-driving vehicles (SDV). Here is an overview ...
Part 2 of this series is about data protection. In case of questions, please contact Zoltán Balázs Kovács. How do you secure data in the home office environment? What policies should be in place to secure data and devices? What does a data breach mean? Employers must comply with the principle of accountability and demonstrate compliance (including by way of applying proper internal policies). This is important also from the perspective of data security ...
An app that has captivated Generation Z with the ability to create and share videos has been dragged into the US-China power struggle, becoming its latest flashpoint. The current social media darling, TikTok, boasts 800 million active users. Reports value it at up to US$50 billion (S$68.4 billion). Considering that its Beijing-based app maker launched it worldwide only two years ago, that represents huge growth ...
THE POSITION BEFORE THE SEC STATEMENT The Security and Exchange Commission of Nigeria (the “SEC” or the “Commission”) on 14 September 2020, released their Statement on Digital Assets and their Classification and Treatment (the “Statement”) pursuant to the powers conferred on it by the Investment and Securities Act 2007[1](“ISA”) ...
Part 1 of this series discusses labour law and labour safety issues. What is it that has changed regarding home office and teleworking because of Covid-19? What can we expect in the future? How can employers prepare for the “new normal” and how can employees manage things from their side? Before Covid-19, teleworking and working from home in Hungary represented a percentage of 1.2 among employees aged between 15-64, according to Eurostat ...