Grant Thornton Baltic announced on 1 April that it has proposed considering the partial privatisation of the Estonian Information System Authority (RIA) and, in cooperation, creating a new information system, MinuKüTS. The aim is to help companies finally understand which cybersecurity and information security requirements actually apply to them and what obligations they must fulfil.
Dividend taxation in Estonia from 2025: when and how to distribute dividends and when tax-free redistribution is possible.
This AI assistant helps assess whether an employment contract complies with applicable labour law and identifies potential risk areas. It is suitable for anyone who wants to perform an initial review of an employment contract document (in PDF or Word), detect shortcomings, and reduce legal risks before using or signing the contract.
Grant Thornton Baltic audited the acquisition report prepared by Eesti Energia AS, the main shareholder of Enefit Green AS, for the acquisition of shares belonging to minority shareholders.
The 21st of May brought us sorrowful news: Aivar Kangust, former partner and sworn auditor at Grant Thornton Baltic, has passed away and embarked on the path of eternity.
In this article, we’ll explore how attackers are misusing trusted technologies - like OAuth and DKIM (more on these in a moment) - and why everyone should be cautious when a message or application requests access to user accounts.
From 1 July 2025 the standard VAT rate will be 24%.
Kristjan Järve and Madis Laas discussed the necessity of the recently published guidelines by the Tax and Customs Board and the process of their preparation in the show "Kasvukursil".
Lithuania is planning a comprehensive tax reform for 2026 aimed at strengthening national defense funding and supporting economic development. Grant Thornton Lithuania tax specialist Vykintas Valiulis has prepared a detailed overview on the topic.
When outsourcing accounting services, you can be sure that the work won't be left undone in case the accountant falls ill or goes on vacation.
The field of information security seems like a labyrinth full of abbreviations lately: NIS2, DORA, ISO 27001, E-ITS, SOC 2. Therefore, I will briefly advise on how to navigate information security regulations, standards, audits, and certifications.
On 26 February 2025, the European Commission (EC) released a new package of proposals (the Omnibus) to amend some key pillars of the European Green Deal. The overall goal of the Omnibus is to reduce reporting burdens, particularly for smaller and mid-sized entities, and increase efficiency in sustainability reporting.
New regulations have come into effect or will soon come into effect in Estonia, which will impose a range of information security obligations on various sectors. Entrepreneurs are struggling to understand where to start and which direction to go.
In recent months, there has been much discussion about reducing the reporting burden of sustainability for companies and the European Commission's desire to simplify reporting.
The Estonian information security standard (E-ITS) is an Estonian-language standard compatible with the Estonian legal system and developed for ensuring protection for business processes and information systems used for fulfilling public functions.
We are already three months into 2025. Establishing a whistleblower channel has been obligatory for all companies with more than 50 employees for exactly that long – a requirement that stems from the Whistleblower Protection Act.
On 26 February, the European Commission released significant proposals for easing the European Union’s sustainability rules. Called the Omnibus Package, the proposals covers the Corporate Sustainability Reporting Directive (CSRD), the Corporate Sustainability Due Diligence Directive (CSDDD) and EU Taxonomy regulations.
This International Women’s Day, we shine the spotlight on our newest female leaders—this season, Grant Thornton Baltic’s Estonian office welcomed three new women partners. How did Gaily Kuusik, Terje Liiv, and Anni Vaiksaar reach senior management, and what unique values do they believe women can bring to leadership?
The Digital Operational Resilience Act (DORA), which came into effect on January 17 this year, aims to prevent cyber threats and reduce the impact of incidents on businesses and the broader European financial sector.