News & insights
The latest news, insights, and updates on information & cyber security, privacy, and AI governance from Taylor Baines.
Get the latest threats, vulnerabilities, and legal, standards, and AI updates in your inbox every Monday.
Get our weekly insights by emailUK critical third parties regime comes into force
The Bank of England, PRA and FCA’s regime for critical third parties to the financial sector is now in force.
US Cybersecurity Maturity Model Certification program rule takes effect
The CMMC Program rule is now in effect, establishing the certification framework for US Department of Defense contractors handling controlled information.
Chile’s new personal data protection law is published
Chile publishes Law 21.719, a GDPR-style data protection law that takes effect in December 2026.
Australia passes major Privacy Act reforms
The Privacy and Other Legislation Amendment Act 2024 adds a statutory privacy tort, new OAIC powers and automated decision-making transparency.
EU Cyber Resilience Act enters into force
The CRA introduces mandatory cybersecurity requirements for products with digital elements sold in the EU.
Australia’s Cyber Security Act 2024 receives Royal Assent
Australia’s first standalone cyber security law introduces mandatory ransomware payment reporting and minimum security standards for smart devices.
India’s telecom cyber security rules take effect
India’s Telecom Cyber Security Rules 2024 require six-hour incident reporting and a Chief Telecom Security Officer.
Australia launches PSPF Release 2024
Australia’s Protective Security Policy Framework Release 2024 restructures government security requirements and adds new risk and technology domains.
LinkedIn fined EUR 310m by Irish data protection regulator
Ireland’s Data Protection Commission fines LinkedIn EUR 310 million over how it processed members’ data for behavioural analysis and targeted advertising.
Indonesia’s Personal Data Protection Law takes full effect
Indonesia’s Personal Data Protection Law is now fully effective after a two-year transition period.
NIS2 transposition deadline arrives
EU Member States were required to bring NIS2 into national law by today; Belgium’s NIS2 law applies from 18 October 2024.
Italy’s NIS2 decree comes into force
Italy’s Legislative Decree 138/2024 transposes the NIS2 Directive, extending cyber security obligations across many sectors.