News & Insights

We are your first port of call for the latest news, analysis and background information on data protection, data strategy and IT security. We keep you informed with editorially prepared news and interesting facts. Subscribe directly to our newsletter and never miss a thing again.

08.04.2026

The Cyber Resilience Act: The first reporting obligations will apply from September 2026

Many companies are not planning to comply with the Cyber Resilience Act until 2027. However, one key obligation will come into force earlier: from 11 September 2026, manufacturers will be required to report actively exploited vulnerabilities and serious security incidents within short timeframes. Those who have not put processes in place for this will quickly find themselves under pressure.

Read more …

02.04.2026

EDPB study on the right to erasure: why article 17 GDPR often becomes a practical challenge

In a Europe-wide audit, the EDPB investigated how organisations implement the right to erasure in practice. The findings revealed that many of the issues stem from processes, deadlines, backups and unclear responsibilities rather than the wording of the law itself.

Read more …

23.09.2025

Accountability under the GDPR: Six measures for compliance

A key aspect of the General Data Protection Regulation (GDPR) is the accountability requirement set out in Article 5(2). In this article, we address the most important questions. While this provision establishes the basis for transparent and responsible conduct by data processors, it also poses significant challenges for organisations.

Read more …

10.09.2025

Cybersecurity for industrial systems: Strategically preparing for the Cyber Resilience Act

The requirements for operators and manufacturers of networked industrial systems are constantly increasing. The Cyber Resilience Act (CRA) is the first time that the European Union has established a binding legal framework for the cybersecurity of digital products. Meanwhile, ISO/IEC 62443 remains the internationally recognised standard for securing industrial automation and control systems (IACS). Our consulting services help companies effectively integrate these requirements.

Read more …

25.08.2025

Five steps to systematic AI governance: Using AI in a legally compliant manner

The regulation of artificial intelligence is gaining momentum, which has immediate implications for companies. Those who wish to use AI safely and legally in the future will require more than technical expertise; they will also need to adopt a systematic governance approach.

Read more …