News & insights
The latest news, insights, and updates on information & cyber security, privacy, and AI governance from Taylor Baines.
Computer Misuse Act reform announced in the King’s Speech
The Government will legislate for a statutory defence for legitimate security research under the Computer Misuse Act 1990.
New Zealand’s new indirect collection notification rule takes effect
New Zealand’s new IPP3A requires notification when personal information is collected indirectly from third parties.
Launching our new AI governance services: ISO/IEC 42001 and NIST AI RMF
Taylor Baines Ltd launches AI governance consulting and auditing services based on ISO/IEC 42001 and the NIST AI Risk Management Framework.
Cyber Essentials update: the Danzell question set
Stricter Cyber Essentials requirements apply from today, with MFA failures and unpatched critical vulnerabilities now resulting in automatic failure.
Amended COPPA Rule compliance deadline arrives in the US
Online services directed at US children under 13 must now comply with the amended COPPA Rule, including written security programmes and retention policies.
US 42 CFR Part 2 compliance deadline arrives
US rules on substance use disorder treatment records now align more closely with HIPAA, adding breach notification and civil penalties.
Data (Use and Access) Act: main data protection changes commence
The main UK GDPR, DPA 2018 and PECR changes made by the Data (Use and Access) Act 2025 take effect today.
New client: causaLens
causaLens has appointed Taylor Baines Ltd to provide ISO 27001 internal audit and consulting services.
Vietnam’s Personal Data Protection Law comes into force
Vietnam’s Personal Data Protection Law No. 91/2025/QH15 takes effect, replacing Decree 13/2023.
Hong Kong’s critical infrastructure cyber security law takes effect
Hong Kong’s first cyber security law now requires designated critical infrastructure operators to manage cyber risks and report incidents.
Texas and Illinois AI laws take effect
The Texas Responsible AI Governance Act and Illinois’ AI-in-employment law both come into force, adding to US state AI regulation.
New California rules on cybersecurity audits, risk assessments, and automated decisions take effect
New CCPA regulations on cybersecurity audits, risk assessments and automated decision-making technology come into force in California.