Fintech

The entry of digital into the world of financial and commercial transactions represents a progressive revolution not only for innovative banking, financial, insurance institutions and start-ups, but also for companies and individuals.
 
Our multidisciplinary team, also supported by technical professionals, offers highly specialized advice to operate and interact in all the ramifications of blockchain, distributed ledger technology (DLT), brokerage of payments, structured finance transactions such as ICO and equity and crowdfunding. We provide assistance for the regulation of fintech platforms and for the regulation and management of privacy, cybersecurity, big data, artificial intelligence and digital identity.

In evidenza

The Italian Data Protection Authority issued a 600.000 euro fine to UniCredit.

The Italian Data Protection Authority has heavily sanctioned a leading Italian credit institution in connection with a series of shortcomings in the implementation of minimum security measures discovered after a personal data breach suffered by the bank’s IT systems between 2016 and 2017 and subsequently notified to the authority.

Data breach: accidental dissemination of whistleblowers’ data.

Rome’s University “La Sapienza” ended up in the Italian Data Protection Authority’s sights after having notified a violation of personal data as required by art. 33 of the Regulations. Such violation concerned the disclosure of personal data processed through the University’s platform used for the management of offence reports by employees and third parties within the whistleblowing regime. Following the notification breach, the Authority initiated investigations. Violations of the measures provided in the Regulations for the protection of personal data were ascertained, with particular emphasis to the provisions relating to the current security measures in force.

Data breach management: what arises from the 2019 sweep results.

The Global Privacy Enforcement Network’s annual survey focused on the management of data breaches by public and private entities; the 2019 sweep survey involved 16 Authorities for the processing of personal data, including the Italian one. The investigation has taken into account various aspects of the management of a data breach, including how the reports/notifications and the implementation of the counter-measurements to prevent the repetition of the breach were managed.  The Study revealed that only a few entities have an in-depth knowledge of data breach management.