News & insights
The latest news, insights, and updates on information & cyber security, privacy, and AI governance from Taylor Baines.
EU renews UK adequacy decisions until 2031
The European Commission has renewed its adequacy decisions for the UK, so personal data can continue to flow freely from the EU.
Germany’s NIS2 Implementation Act comes into force
Germany’s NIS2 Implementation Act takes effect, significantly expanding the number of organisations subject to cyber security duties.
Wyser’s ISMS recertified
Wyser has successfully completed its first ISO 27001 recertification.
Amended SEC Regulation S-P compliance deadline arrives for larger firms
Larger US broker-dealers, investment advisers and funds must now have incident response programmes and notify affected customers within 30 days.
India notifies the DPDP Rules 2025
India notifies its Digital Personal Data Protection Rules, starting a phased implementation with most obligations applying from May 2027.
Cyber Security and Resilience Bill introduced to Parliament
The UK Government has introduced legislation to modernise and expand the NIS Regulations.
Taiwan promulgates major Personal Data Protection Act amendments
Taiwan’s amended Personal Data Protection Act establishes an independent commission and strengthens breach reporting.
CMMC requirements begin appearing in US defence contracts
The DFARS rule implementing CMMC takes effect, allowing US Department of Defense contracts to require CMMC status as a condition of award.
Egypt issues data protection executive regulations
Egypt issues the Executive Regulations to its Personal Data Protection Law, starting a one-year transition.
Singapore’s Cybersecurity Act amendments take effect
Singapore’s amended Cybersecurity Act extends oversight to virtual and third-party-owned Critical Information Infrastructure.
ISO/IEC 27001:2013 certificates expire today
The three-year transition to ISO/IEC 27001:2022 has ended; certificates against the 2013 edition are no longer valid.
CyFun 2025: Belgium’s CyberFundamentals framework updated
The CCB has published CyFun 2025, with more emphasis on supply chain and operational technology security.