ECIJA, a leading firm in legal innovation: references in Data Privacy and TMT according to Legal 500
ECIJA has been nominated for Law Firm of the Year in two key categories of the Legal 500 ranking: Data Privacy and Data Protection and TMT in Spain.
In addition to this collective achievement, several of our professionals have received individual nominations, reflecting the talent, leadership, and strategic vision of those who are part of our team:
Daniel López has been nominated for Next Generation Partner of the Year in Data Privacy and Data Protection, highlighting his excellent track record in advising on privacy, cybersecurity, and technological regulation.
Teresa Pereyra has also been nominated for Next Generation Partner of the Year in Data Privacy and Data Protection, a recognition that solidifies her role in driving innovative data protection strategies for national and international clients.
In the practice of TMT, Alejandro Touriño, Managing Partner of ECIJA, has received the nomination for Lawyer of the Year. A recognition of his leadership and vision in the field of digital economy and technology applied to law.
Likewise, Cristina Villasante has been nominated for Next Generation Partner of the Year in TMT, reaffirming her position as one of the most promising and strategic young lawyers in the sector.
Check the full ranking here.
Related insights
Royal Decree 723/2026, published on 15 September 2026 and applicable from 5 October, substantially expands the obligations of employers to provide information about working conditions, which requires amendments to contracts, to informational annexes, and to internal hiring procedures.
The appointment of Gómez de Enterría expands ECIJA’s capabilities in employment law and strengthens the firm’s position in advising large companies on transformation, negotiation and organisational restructuring processes.
Sonke Lund, a partner at ECIJA in Barcelona, analyses in Expansión the legal framework that already governs the sale and use of humanoid robots in Spain, ranging from the European AI Act to regulations on products, civil liability and data protection.
ECIJA’s Privacy and Cybersecurity Department analyses the new obligations regarding the reporting of vulnerabilities and serious incidents imposed by the CRA Regulation with effect from 11 September 2026, as well as the key clarifications published by the European Commission.