The UK's upcoming Cyber Security and Resilience Bill (CSRB) transforms cyber security from an IT best practice into a board-level legal obligation, significantly updating the 2018 ... more
2025 has been a pivotal year for data privacy enforcement in the U.S. The period of preparation and grace periods has ended, and regulators are now actively enforcing these new la... more
MODPA imposes unique and absolute restrictions on how Sensitive Data can be handled. Sensitive Data is broadly defined to include: Racial/ethnic origin, religious beliefs, sex lif... more
Washington's My Health My Data Act (MHMDA) is a stringent new privacy law with global reach, impacting any organization that targets Washington consumers. The article provides a st... more
This article provides a strategic comparison of the data protection laws in the UAE, Saudi Arabia (KSA), and Egypt for global organizations. It highlights that the UAE's law is fle... more
2025 marked a critical turning point for US data privacy, as new comprehensive laws in Delaware, New Jersey, Iowa, New Hampshire, and Nebraska took effect. This article from Formit... more
The article guides global organizations through the complex "patchwork" of US state data privacy laws, which, unlike the EU's GDPR, lack a single federal standard. It focuses on th... more
This article provides a comprehensive guide for global organisations on the Asia-Pacific Economic Cooperation (APEC) Privacy Framework. It explains the crucial difference between t... more
The article explains the APEC Privacy Framework, a critical, principles-based system for global organizations doing business in the Asia-Pacific region. Unlike the mandatory GDPR, ... more
This article explains why robust vendor assessments are critical for data protection, stating that a breach from a third party is a direct reflection—and liability—for your busines... more