Australia passes major Privacy Act reforms
The Privacy and Other Legislation Amendment Act 2024 adds a statutory privacy tort, new OAIC powers and automated decision-making transparency.
Insights for Asia, including India, and for Australia, New Zealand, and the Pacific.
The Privacy and Other Legislation Amendment Act 2024 adds a statutory privacy tort, new OAIC powers and automated decision-making transparency.
Australia’s first standalone cyber security law introduces mandatory ransomware payment reporting and minimum security standards for smart devices.
India’s Telecom Cyber Security Rules 2024 require six-hour incident reporting and a Chief Telecom Security Officer.
Australia’s Protective Security Policy Framework Release 2024 restructures government security requirements and adds new risk and technology domains.
Indonesia’s Personal Data Protection Law is now fully effective after a two-year transition period.
Japan’s Financial Services Agency publishes guidelines setting cyber security expectations for financial institutions.
Australia’s amended Defence Trade Controls Act introduces AUKUS licence exemptions and new controls on supplies and services.
Malaysia’s Cyber Security Act 2024 takes effect, imposing duties on National Critical Information Infrastructure entities.
India’s securities regulator SEBI issues CSCRF, standardising cyber security controls across regulated entities.
Korea’s Financial Services Commission announces a phased roadmap easing network separation rules to allow cloud, SaaS and generative AI use.
The Reserve Bank of India’s Master Direction on IT governance, risk, controls and assurance practices is now in effect.
Japan now requires medical device manufacturers to follow JIS T 81001-5-1 for secure software development.