• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Skip to secondary sidebar

Alston & Bird Privacy, Cyber & Data Strategy Blog

  • Home
  • Services
  • Events
  • Contacts

Paul Greaves

Attorney Paul Greaves

About Paul Greaves

Paul Greaves advises on all aspects of privacy, cyber, and data law across a diverse range of clients - from global technology firms to life sciences startups expanding into Europe. His extensive experience includes advising on EU and UK GDPR compliance projects, cross-border data transfers, and personal data breaches.

[Read Bio]

European Commission Publishes New Guidelines and Code of Practice on GenAI Transparency

July 24, 2026 By Alice Portnoy, Wim Nauwelaerts and Paul Greaves

On July 20, 2026, the European Commission (EC) published new Guidelines on Transparency of AI-Generated Content to complement the Code of Practice on Transparency of AI-Generated Content it released on June 10, 2026. The materials arrive just weeks before the AI Act’s transparency obligations take effect on August 2, 2026, and give businesses clearer direction […]

Filed Under: Artificial Intelligence (AI)

EU Regulators Outline GDPR Requirements for AI Web Scraping

July 21, 2026 By Paul Greaves, Wim Nauwelaerts and Alice Portnoy

On July 8, 2026, the European Data Protection Board (“EDPB”), the body that coordinates the EU’s national data protection authorities, published its first draft of Guidelines 03/2026 on web scraping in the context of generative AI (the “Guidelines”). The Guidelines address practical compliance challenges for companies that develop AI models or systems and scrape personal […]

Filed Under: Artificial Intelligence (AI), European Privacy & Cybersecurity, Privacy & Cyber Regulatory Enforcement Tagged With: Artificial Intelligence, EU Data Protection, EU Privacy, EU Regulation, European Union (EU)

European Commission Publishes Draft Guidelines on Classification of High-Risk AI Systems Under the EU AI Act

May 21, 2026 By Alice Portnoy, Wim Nauwelaerts and Paul Greaves

On May 19, 2026, the European Commission (EC) published draft guidance on how to determine whether an AI system qualifies as a high-risk AI system (HRAIS) under the EU’s Regulation 2024/1689 on artificial intelligence (AI Act). The draft reflects input from stakeholders and EU Member States through the EU AI Board and represents the most […]

Filed Under: Artificial Intelligence (AI)

Secure Connectivity for Operational Technology—UK NCSC Publishes New Guidance

April 21, 2026 By Hanna Hewitt, Kelly Hagedorn and Paul Greaves

The UK National Cyber Security Centre (NCSC) published guidance to help organisations design, secure, and manage Operational Technology (OT) environments. It sets out eight core principles to improve resilience, reduce exposure, and support secure architectural decision‑making. The NCSC positions these as goals rather than minimum requirements, and operators of essential services (including those within scope […]

Filed Under: AI Cybersecurity & Privacy, Board Governance & Cyber Risk Management, European Privacy & Cybersecurity Tagged With: Cybersecurity, National Cyber Security Centre, UK Cybersecurity

European Commission Publishes Guidance For Companies Implementing the EU Cyber Resilience Act

January 29, 2026 By Paul Greaves, Kelly Hagedorn and Wim Nauwelaerts

On December 3, 2025, the European Commission published its first set of technical FAQs on the EU Cyber Resilience Act (‘CRA’). The CRA is an EU-wide law which lays down cybersecurity requirements for ‘products with digital elements’ (‘PDEs’), including IoT devices, hardware components, and certain software.  It becomes fully applicable on December 11, 2027, with […]

Filed Under: Board Governance & Cyber Risk Management, European Privacy & Cybersecurity, Privacy & Cyber Regulatory Enforcement Tagged With: Cybersecurity, EU Privacy, EU Regulation

  • Page 1
  • Page 2
  • Page 3
  • Interim pages omitted …
  • Page 9
  • Go to Next Page »

Primary Sidebar

This blog is a service of Alston & Bird’s Privacy, Cyber & Data Strategy team and focuses on key data privacy and data security issues.


Receive email notifications when new posts are added.

Receive email notifications when new posts are added.


RANSOMWARE FUSION CENTER
Click here to request access

THE DIGITAL DOWNLOAD
Click here to see the editions

PRIVACY & CYBER EVENTS
Click here to see upcoming and past events

PRIVACY & CYBER MAILINGS
Click here to sign up


Secondary Sidebar

Categories

Recent Posts

  • European Commission Publishes New Guidelines and Code of Practice on GenAI Transparency
  • CMMC Phase II is Suspended, but Defense Contractors’ Cybersecurity Obligations are Not
  • EU Regulators Outline GDPR Requirements for AI Web Scraping
  • The White House’s Gold Eagle Initiative Signals a New Phase in AI Enabled Cyber Defense
  • DROP Is Coming Due: What California’s Delete Act Means for Data Brokers in August
Copyright © 2026 · Alston & Bird · All Rights Reserved. Privacy.