AI Act: Fundamental Rights Impact Assessments (FRIA) – Who, When, Why, and How to Ensure Ethical AI Deployment

ai act fria

The European Union (EU) has positioned itself as a leader in shaping the responsible development and use of Artificial Intelligence (AI) through the landmark AI Act which was approved on 21 May 2024 by the EU Council. Departing from a one-size-fits-all approach, this new legislation prioritises a risk-based framework. It focuses regulatory efforts on AI […]

Read More… from AI Act: Fundamental Rights Impact Assessments (FRIA) – Who, When, Why, and How to Ensure Ethical AI Deployment

Assistance with Internal Audit for ISO 27001:2022

internal audit for iso 27001:2022

Now that we’ve explored the significance of ISO 27001:2022 and the essential documentation required for compliance, let’s delve into the practical aspect of maintaining adherence to this standard. One of the crucial steps in ensuring ongoing compliance with ISO 27001:2022 is conducting internal audits. Internal audits serve as a proactive measure to assess the effectiveness […]

Read More… from Assistance with Internal Audit for ISO 27001:2022

Handling Breaches in Accordance with PIPEDA

breaches pipeda

Ensuring compliance with PIPEDA (Personal Information Protection and Electronic Documents Act) is paramount for any company handling personal data. One of the cornerstones of PIPEDA compliance is having a data breach response procedure in place. Such a procedure serves as a blueprint for companies to effectively address data breaches, ensuring that any potential risks to […]

Read More… from Handling Breaches in Accordance with PIPEDA

Navigating Compliance: GDPR & SOC 2 Compared

framework, regulation, compliance, gdpr, soc 2

What is SOC 2? What are the similarities and differences between it and the GDPR? And does your organisation need to ensure it is compliant with both? The General Data Protection Regulation (GDPR) isn’t the only data protection standard in town. You’ll probably be aware that there are others — some mandatory and others voluntary. […]

Read More… from Navigating Compliance: GDPR & SOC 2 Compared

Important – data transfers outside of the EU

EU representative

If you transfer data outside of the EU,  you now need to ensure that you have completed a risk assessment in addition to the Standard Contractual Clauses you should already have in place. The rules on data transfer changed at the end of July, which means action must be taken now. To help you get […]

Read More… from Important – data transfers outside of the EU