The National Cybersecurity Agency (Agenzia per la Cybersicurezza Nazionale, ACN) of Italy has released comprehensive guidelines for entities required to perform a registration under the NIS 2 Directive.
The Italian data protection authority (Garante) recently sanctioned a company for accessing employees' company email after the end of employment in violation of the principles of lawfulness, minimization and limitation of data retention, as well as labor law regulations on remote control in Italy.
The headlines in the legal sphere have been dominated by developments in California's approach to artificial intelligence legislation with an AI law that was vetoed and copyright related obligations that were introduced.
The recent European Court of Justice (ECJ) Advocate General's opinion in case C-203/22 is an important development in addressing how companies using artificial intelligence (AI) can balance automated decision transparency with the protection of trade secrets, while complying with the requirements of the GDPR.
