Michalsons

About Michalsons

These blog entries are written in collaboration with Michalsons and attorneys who are the subject matter experts in their respective focus areas. Our attorneys specialise in various fields of law and provide commercially effective and practical advice. Read more about our people...

Advanced Computer Software Group enforcement action | Ransomware

The Information Commissioner’s Office (ICO) has fined Advanced Computer Software Group Ltd (ACSG) £3.07 million following a ransomware incident that exposed the personal data of 79,404 people. The ICO found that ACSG failed to implement adequate security measures, leaving [...]

Influencer Contracts: Know the tips and tricks

Learn essential tips and tricks to protect your interests when entering into influencer contracts with brands. Are you an influencer or content creator? Have you ever had a brand present a contract to you? Have you read the influencer contract? [...]

By |2025-06-09T12:47:07+02:00March 25th, 2025|Categories: Contracts, Digital Entertainment Law, Social Media Law|

Nigerian data controller and processor registration

As Nigeria keeps stepping up its data protection game, companies looking to do business there must stay on top of what’s required under the Nigeria Data Protection Act (NDPA) 2023. One key thing to know is that under the NDPA, [...]

By |2025-03-26T09:30:00+02:00March 25th, 2025|Categories: POPI and Data Protection|Tags: , , |

Information regulator annual performance plan for 2025 to 2026 APP

The information regulator has presented its draft annual performance plan (regulator APP) for 1 April 2025 to 31 March 2026. It has presented them in different formats to different audiences. For example, the regulator held a stakeholder engagement on 5 [...]

Do you need to register as a Cryptography Provider?

You need to register as a cryptography provider if you provide encryption-related products and services or electronic-signature-related offerings. Cryptography and encryption present a challenge to security-conscious governments in that it allows you to conceal your message content from the authorities. [...]

By |2025-03-20T11:30:32+02:00March 5th, 2025|Categories: IT Law|Tags: , , , , |

Joint Standard on Cybersecurity and Cyber Resilience Requirements

The Joint Standard on Cybersecurity and Cyber Resilience Requirements sets the minimum standards for financial institutions to implement best practices and processes to identify and guard against cybersecurity and cyber resilience risks. The Financial Sector Conduct Authority (FSCA) and the [...]

By |2026-05-06T09:39:25+02:00February 24th, 2025|Categories: Cybersecurity Law|Tags: , , |

Access to Information Manual | Draft or review

Do you need an Access to Information manual? What is it anyway? The Promotion of Access to Information Act (PAIA) says that all public and private bodies in South Africa need to create a manual that contains, amongst other things: [...]

By |2025-09-09T20:13:45+02:00February 18th, 2025|Categories: Access to Information|Tags: , |

PAIA compliance assessments by information regulator

South Africa’s Information Regulator conducts PAIA compliance assessments on public and private bodies in terms of section 77H of the Promotion of Access to Information Act (PAIA). PAIA plays a crucial role in an organisation's transparency and accountability to the [...]