Skip to content

menu

Data Protection Report logo
Current Page:HomeAboutContact
Search
Close
Compliance and risk managementRegulatory responseData breachCybersecurity
View topics Archives
Subscribe

Data Protection Report

Data protection legal insight at the speed of technology

Happy e-Discovery Day

Photo of David Kessler (US)Photo of Andrea D'Ambra (US)Photo of Susana Medeiros (US)Photo of Ellen Blanchard (US)
By David Kessler (US), Andrea D'Ambra (US), Susana Medeiros (US) & Ellen Blanchard (US) on December 4, 2025

Happy e-Discovery Day! On December 4, 2025, legal professionals around the globe will unite to celebrate e-Discovery Day, a day where we honor the pivotal 2006 amendments to the Federal Rules of Civil Procedure (FRCP) that marked a turning point…

Subscribe to Data Protection Report

Subscribe to this publication

UK Cyber Security and Resilience Bill – new obligations for the data centre sector

Photo of Marcus Evans (UK)Photo of Rosie Nance
By Marcus Evans (UK) & Rosie Nance on December 3, 2025

This blog post includes headline points on new obligations for the data centre sector proposed under the Cyber Security and Resilience Bill, and existing obligations under the NIS Regulations. 

Continue reading

NIS Regulations Keeling Schedule for the Cyber Security and Resilience Bill – changes to the UK’s cyber security law

Photo of Marcus Evans (UK)Photo of Rosie Nance
By Marcus Evans (UK) & Rosie Nance on December 3, 2025

The Cyber Security and Resilience Bill proposes changes to the UK’s NIS Regulations. Without a ‘Keeling Schedule’ marking up the amendments, these can be difficult to track. We have prepared a mark-up reflecting the proposed changes.

Continue reading

Service provider outages test customer resiliency

Photo of Annmarie Giblin (US)Photo of Susan Ross (US)
By Annmarie Giblin (US) & Susan Ross (US) on November 26, 2025

On November 18, 2025, companies had another opportunity to test their resiliency when connectivity and security provider Cloudflare had an outage of about four hours, which resulted in several popular websites going offline while others managed to provide some services…

Update: CISA 2015 is reauthorized until January 2026

Photo of Will Daugherty (US)Photo of Remi Gambino (US)
By Will Daugherty (US) & Remi Gambino (US) on November 13, 2025

The Cybersecurity Information Sharing Act of 2015 (CISA 2015) has been temporarily reauthorized as part of the broader legislation passed on November 12, 2025, to reopen the federal government. Under the appropriation legislation, CISA 2015 is now reauthorized until January…

Changes to EU and UK data protection law – a tale of two GDPRs?

Photo of Marcus Evans (UK)Photo of Rosie Nance
By Marcus Evans (UK) & Rosie Nance on November 12, 2025

The EU Commission recently held a call for evidence on “simplification” of legislation in the data, cybersecurity, and AI space, ahead of a “Digital Omnibus” Act.  These changes look to make the EU’s digital rulebook more innovation-friendly, supporting the Commission’s…

California tightens data breach notification timelines, imposes 30-day notice requirement

Photo of Annmarie Giblin (US)Photo of Susana Medeiros (US)
By Annmarie Giblin (US) & Susana Medeiros (US) on November 5, 2025

California recently signed into law Senate Bill No. 446, which amends its data breach notification law, Section 1798.82 of the Civil Code, to require covered companies to notify affected California residents within 30 calendar days of discovery of the data…

NYDFS releases guidance on third-party service provider risks

Photo of David Kessler (US)Photo of Susan Ross (US)
By David Kessler (US) & Susan Ross (US) on October 30, 2025

On October 21, 2025, the New York Department of Financial Services (NYDFS) issued guidance to help licensees comply with its cybersecurity regulation.  The non-exclusive checklists may be of interest to companies not licensed by NYDFS and even those not…

Happy Cyber Awareness Month

Photo of Chris Cwalina (US)Photo of Will Daugherty (US)
By Chris Cwalina (US) & Will Daugherty (US) on October 14, 2025

Happy October and Cyber Awareness Month! While October ends with ghosts and goblins and other scary monsters for Halloween, the entire month of October is dedicated to raising awareness of cyber security and preventing (and if necessary responding to) cyber…

Italy’s Law No. 132/2025 on Artificial Intelligence

Photo of Francesco GelmettiPhoto of Salvatore Iannitti (IT)
By Francesco Gelmetti & Salvatore Iannitti (IT) on October 8, 2025

On September 23, 2025, Italy adopted Law no. 132/2025 on Artificial Intelligence (AI). The law will enter into force on 10 October 2025 and aims, inter alia, to complement the Regulation EU 2024/1689 (EU AI Act).

Continue reading

Post navigation

Older Posts 
The latest from our blog network
Norton Rose Blog Network
Financial Institutions Legal Snapshot

Event insurance only extends to activities or operations of the event (Canada)

December 5, 2025
Global Regulation Tomorrow

FCA reaches agreement to lift the freeze on the bond CTP contract award

December 4, 2025
Global Regulation Tomorrow

Commission proposes legislative package aimed at market integration and EU-level supervision

December 4, 2025
Global Regulation Tomorrow

Commission updates list of high-risk countries to strengthen international fight against financial crime

December 4, 2025
Global Workplace Insider

Conflict in whistleblowing protections – Court of Appeal invites a review of s.47B protection from whistleblowing detriment.

December 4, 2025
Global Regulation Tomorrow

FCA letter to the Treasury Select Committee: handling of information ahead of the Autumn Budget 2025

December 4, 2025
Global Regulation Tomorrow

HMT publishes G7 Fundamental Elements of Collective Cyber Incident Response and Recovery in the Financial Sector

December 4, 2025
Global Regulation Tomorrow

Let’s talk asset management: Episode 22 - FCA multi-firm review of consolidation in the financial advice and wealth management sector

December 4, 2025
Global Regulation Tomorrow

Property (Digital Assets etc) Act 2025

December 4, 2025
View the Norton Rose blog network

Data Protection Report

Facebook Twitter RSS LinkedIn YouTube
Published by
Norton Rose Fulbright LLP logo
DisclaimerPrivacy policy

About

More than a news source, the Data Protection Report provides thought leadership on emerging privacy, data protection and cybersecurity issues, and helps its readers proactively address risks and anticipate next steps in this crucial emerging field.

Read more

Topics

Archives

Copyright © 2025, Norton Rose Fulbright LLP. All rights reserved.