loader from loading.io

The Data (Use and Access) Act 2025 - What it means for your organisation

VinciWorks

Release Date: 09/10/2025

The Data (Use and Access) Act 2025 - What it means for your organisation show art The Data (Use and Access) Act 2025 - What it means for your organisation

VinciWorks

The Data (Use and Access) Act 2025 (DUAA) has brought the most significant changes to UK data protection since UK GDPR came into force. While it doesn’t replace GDPR, the DPA 2018, or PECR, the DUAA reshapes how organisations process personal data, handle subject access, manage cookies, and apply legitimate interests. In this episode, we share highlights from our live webinar, where VinciWorks experts explained how these reforms affect compliance strategies. From broad consent in scientific research and recognised legitimate interests, to expanded cookie exemptions, stricter rules for...

info_outline
Failure to prevent fraud: What businesses need to know show art Failure to prevent fraud: What businesses need to know

VinciWorks

On 1 September 2025, the UK’s compliance rules changed with the introduction of the failure to prevent fraud offence under the Economic Crime and Corporate Transparency Act (ECCTA). In this episode, we share highlights from our expert-led webinar, covering what this new offence means for businesses, how to implement “reasonable procedures,” and the steps organisations must take to reduce fraud risks. From lessons learned under bribery and tax evasion laws to new risks for senior managers and guidance from the Serious Fraud Office, this episode gives you the practical insights needed to...

info_outline
GDPR - Seven years on show art GDPR - Seven years on

VinciWorks

It’s been seven years since the EU’s General Data Protection Regulation (GDPR) came into force, and its impact has only grown. With over €1 billion in fines issued in the past year alone, it's clear that regulators are scrutinising businesses of all sizes, and enforcement is ramping up. In this episode, we examine how GDPR is shaping global data privacy despite legal pushback, regulatory divergence, and the rising complexity brought on by AI. Here’s what we’ll cover: Recent GDPR fines and enforcement trends - real case studies, real lessons Global influence: How GDPR is inspiring...

info_outline
AI compliance and  ethical practices show art AI compliance and ethical practices

VinciWorks

AI is no longer just hype; it’s here, powerful, and already reshaping how organisations operate. But with that power comes legal and ethical responsibility. This episode explores how businesses can harness AI while staying within the law and public trust. From the EU AI Act to GDPR and the emerging frameworks in the UK and US, we unpack what compliance looks like in an AI-driven world. Here’s what we cover: The latest AI compliance frameworks and global regulations How to embed ethical principles into your AI systems Spotting and mitigating risks like bias and discrimination Building...

info_outline
Health and safety and the Employment Rights Bill show art Health and safety and the Employment Rights Bill

VinciWorks

Are you ready for the Employment Rights Bill? What it means for health & safety in 2025 New year, new compliance challenges. The forthcoming Employment Rights Bill is set to reshape the health and safety (H&S) landscape, placing greater legal responsibility on employers to protect their workforce. In this episode, we dive into the major H&S implications of the Bill and what it means for your organisation. From enhanced reporting duties to new employer obligations, our experts break down the legal shifts and share practical strategies to stay compliant and mitigate workplace risks....

info_outline
Managing bribery and corruption risks show art Managing bribery and corruption risks

VinciWorks

Bribery and corruption remain major risks for businesses worldwide, with enforcement agencies ramping up scrutiny and penalties for non-compliance. Without strong anti-bribery policies, companies face financial, legal, and reputational fallout. One of the most effective (yet often overlooked) ways to mitigate bribery risks? A robust gifts and hospitality reporting framework. In this episode, we’ll explore how businesses can enhance transparency and accountability to protect themselves from bribery risks. From real-world case studies of bribery scandals to practical compliance strategies, our...

info_outline
The transatlantic trade wars and the UK show art The transatlantic trade wars and the UK

VinciWorks

Rising trade tensions between the US and the rest of the world are creating uncertainty for businesses. With tariffs already imposed on Canada, Mexico, and China—and threats looming over the EU and UK—the global regulatory landscape is shifting fast. Beyond economic disruptions, we’re also witnessing growing conflicts in data regulation, sanctions policies, and corporate compliance standards, from bribery laws to DEI initiatives. What does this mean for businesses trying to stay compliant and competitive in 2025? In this episode, our compliance experts break down the latest developments...

info_outline
The culture wars at work - Managing protected beliefs under the UK Equality Act show art The culture wars at work - Managing protected beliefs under the UK Equality Act

VinciWorks

Employers today face increasingly complex challenges when managing a diverse workforce, especially when it comes to balancing protected beliefs under the UK Equality Act 2010. One of the most debated and legally significant issues is how to navigate conflicts between employees who hold gender-critical beliefs and transgender employees. Recent legal cases have highlighted the importance of understanding the law, implementing fair policies, and fostering an inclusive work environment. In this episode, we team up with employment law experts from Worknest to explore how organisations can manage...

info_outline
Proliferation financing and sanctions compliance in a changing world show art Proliferation financing and sanctions compliance in a changing world

VinciWorks

Sanctions are evolving at an unprecedented pace, with global instability making compliance more complex than ever. What was once a lower priority for some organisations is now a critical area of risk—where even a minor misstep can lead to severe penalties. In this episode, our experts unpack recent shifts in US, UK, and EU sanctions policies, particularly regarding Russia, Iran, and the Middle East. We’ll explore the political and economic drivers behind these changes and provide practical guidance on how businesses can navigate this high-risk landscape. Key topics include: The purpose of...

info_outline
Navigating the Data (Use and Access) Bill – Preparing for the UK’s GDPR changes show art Navigating the Data (Use and Access) Bill – Preparing for the UK’s GDPR changes

VinciWorks

The Data (Use and Access) Bill (DUAB) is set to transform data protection and privacy in the UK, bringing major updates to UK GDPR and the Data Protection Act 2018. These changes will impact how businesses manage data access, automate decision-making, and comply with evolving regulatory requirements. In this episode, our compliance experts break down the key provisions of DUAB, explore its potential impact on businesses, and share practical steps to help you stay ahead of the changes. Key topics include: What’s changing? A deep dive into DUAB’s impact on data processing, subject access...

info_outline
 
More Episodes

The Data (Use and Access) Act 2025 (DUAA) has brought the most significant changes to UK data protection since UK GDPR came into force. While it doesn’t replace GDPR, the DPA 2018, or PECR, the DUAA reshapes how organisations process personal data, handle subject access, manage cookies, and apply legitimate interests.

In this episode, we share highlights from our live webinar, where VinciWorks experts explained how these reforms affect compliance strategies. From broad consent in scientific research and recognised legitimate interests, to expanded cookie exemptions, stricter rules for children’s services, and higher PECR fines, the DUAA introduces both opportunities and risks.

Listen in to learn:

  • What the DUAA changes — and what stays the same

  • Updates to subject access rights and proportionality

  • Cookie rules, soft opt-in for charities, and tougher PECR fines

  • Automated decision-making and AI compliance under the DUAA

  • The new “data protection test” for international transfers

  • Practical steps to future-proof your compliance framework

This episode is essential listening for data protection officers, compliance professionals, and legal teams preparing for the future of UK data protection.