EU

On Jan. 17, 2025, EU Regulation 2022/2554 on digital operational resilience for the financial sector (DORA) became applicable in the EU.

DORA focusses on risk management and resilience testing, with a strong focus on vendor risk management, incident management and reporting, and resilience testing of key systems.

DORA applies to financial institutions that are authorized

The EU Digital Operational Resilience Act (DORA) takes effect Jan. 17, 2025, and will impact EU financial institutions and their providers of technology-related services (ICT Third Party Service Providers). This webinar will provide a practical overview of the obligations that will apply to both in-scope financial institutions and ICT Third Party Service Providers and explore current

The European Data Protection Board (EDPB) has recently (re)positioned itself on several controversial topics and published three new guidelines and opinions. Although not legally binding, they do have a significant influence on proceedings before the supervisory authorities and courts. This GT Alert discusses the EDPB’s new guidelines and their implications for companies dealing with personal

On Aug. 1, 2024, the EU Artificial Intelligence Act (AI Act) entered into force and will gradually take effect over the next 36 months. This marks not only the end of yet another legislative saga within the European Union but also the beginning of a new era in AI regulation. The AI Act creates an

Greenberg Traurig Germany, LLP is strengthening its Data Protection Practice with new Partner Philip Radlanski. Radlanski joins from Morrison Foerster, where he helped shape ground-breaking projects and proceedings in Berlin and New York over the past eight years.

As Europe’s data protection laws expand beyond the EU, and data protection authorities take more rigorous

Greenberg Traurig Data Privacy & Cybersecurity Shareholders Dr. Viola Bensinger and Carsten Kociok will present the CLE webinar, “The EU Data Act: data sharing, interoperability and other obligations for providers of cloud services and other data processing services,” on Thursday, May 2, 2024.

This webinar will guide participants through the regulatory landscape of the

On 13 March 2024, the European Parliament adopted the AI Act. Since the EU Commission presented its first draft almost three years ago, the use of AI and general purpose AI models has increased significantly. Hence, the regulatory proposal was (and still is) the subject of hefty debate.

Continue reading the full GT Alert.

The EU’s General Data Protection Regulation (GDPR) applies to two types of entities – “controllers” and “processors.” 

A “controller” refers to an entity that “determines the purposes and means” of how personal information will be processed.[1] Determining the “means” of processing refers to deciding “how” information will be processed.[2] That does not necessitate