When non-tech companies buy IT

Published: 8 Nov 2024
Type: Insight

Generally, there are three categories of information technology buyers: non-technology enterprises, non-IT technology companies and IT technology companies. Each category of IT buyer is very different.

The second category of IT buyers includes telecommunications service providers, medical device manufacturers, robotics companies and non-IT outsourcing service providers.

The third category above includes all levels of IT vendors, including fintech (ie, IT solutions for financial services), enterprise IT-led transformation, enterprise resource planning solution providers, software developers, and IT cloud and outsourcing service providers.

Since most of my tech practice has been devoted to helping non-technology companies buy IT products and services, I am always pleased when technology companies retain me to help them buy their own IT products and services. But there are reasons for that, which non-tech companies might appreciate.

First, technology vendors who have retained me have seen me on the other side of the contract negotiations for a customer that they are trying to sell to. They tell me that it is my approach to contract negotiations that they want emulated for their own IT purchases.

Second, because of (not in spite of) their own vendor contract “nuances”, they do not trust the contracts of other technology vendors — not at all. As tech vendors themselves, they want experienced counsel to merge a healthy “vendor contract paranoia” with commercial pragmatism.

Third, at the risk of sounding like Donald Rumsfeld, in-house counsel at tech companies tend to know what they do not know. To their credit, since their experience is exclusively devoted to selling technology, they have an informed appreciation about what they don’t know when buying technology.

Non-technology buyers of IT goods or services (eg, the public sector, financial services, hospitality, natural resources, shipping and transportation, etc), often don’t fully appreciate what they don’t know about well-crafted IT vendor contracts and related negotiations.

There are exceptions, of course, such as when the enterprise is large enough to have internal IT expertise and leadership, usually in the form of a chief information officer or chief technology officer, or when an enterprise has already been burnt on large tech procurements or transformation projects and lessons have been learnt.

When procuring IT solutions, from data analytics software development to cloud or outsourcing services, some of the key risk management considerations that technology vendors keep in mind, which non-technology buyers might also consider, include:

  • A sceptical due diligence into the vendor and the solution being offered, including know your vendor customer reference checks and related litigation searches
  • Ensure that you have a contract that is consistent with pervasive industry practices, commercial norms and accepted legal practices — regulators are watching
  • Stipulate detailed and complete operational, functional and technical performance specifications, including data formats, interoperability, service-level agreements and key performance indicators
  • Ensure you have remedies for failed SLAs and KPIs, without vendor earn-back (why pay for a service you did not receive?)
  • Contract precondition for reasonable solution acceptance testing by the customer (not the vendor)
  • Regular and frequent performance monitoring activities, including real-time dashboard and periodic reports
  • Stipulate who owns what intellectual property, since customer specifications often contain original works and methods
  • Ensure you have the clear statutory, privacy law, common law and contractual rights to provide the subject data to third-party vendors
  • Ensure the contract complies with all Bermuda laws and regulations, whether related to cybersecurity, privacy law or otherwise (including all compliance flow-downs)
  • Stipulate standard internal dispute escalation and resolution procedures before disputes are allowed to otherwise be litigated, with some exceptions.

As for the third bullet above, it remains widely accepted by lawyers who specialise in commercial technology transactions that the leading cause of IT project failure and litigation, by far, arises from the failure of the parties to share an agreed understanding of what the performance requirements of the IT goods or services contract are.

It makes excellent sense for non-tech companies to put the same quality of diligence into their IT contracts that technology companies do when they buy IT goods and services.

First Published in The Royal Gazette, Legally Speaking column, November 2024

Share
More publications
Appleby-Website-Private-Client-and-Trusts-Practice-1905px-x-1400px
15 Apr 2026

Purpose trusts: Bermuda’s answer to modern asset structuring

Purpose trusts represent a notable development in modern trust law, particularly within offshore financial jurisdictions such as Bermuda. Unlike traditional private trusts, which are established for the benefit of identifiable beneficiaries, purpose trusts are created to achieve specific objectives or purposes. Historically, common law jurisdictions were reluctant to recognise such arrangements due to the absence of beneficiaries capable of enforcing the trust. However, legislative reforms in Bermuda have significantly expanded the scope of trust law by expressly validating noncharitable purpose trusts. Through the enactment of the Trusts (Special Provisions) Act 1989 (‘the 1989 Act’), Bermuda introduced a statutory framework that allows trusts to exist for defined purposes, provided certain legal requirements are satisfied. This innovation has made Bermuda a leading jurisdiction for the establishment of purpose trusts, particularly in the fields of international finance, corporate structuring and private wealth management. This article examines the legal foundations of purpose trusts under Bermuda law, focusing on their historical development, statutory framework, requirements for validity, enforcement mechanisms and practical applications.

Website-Code-Bermuda-1
10 Apr 2026

Bermuda Regulatory Update – Economic Substance Amendment Act 2026

On 31 March 2026, the Economic Substance Amendment Act 2026 and the Economic Substance Amendment Regulations 2026 (together, the “2026 Amendments”) came into force, enacting changes to the Economic Substance Act 2018 (“ES Act”) and Economic Substance Regulations 2018.

ICLG Fintech 21 cover
10 Apr 2026

Digital asset developments and Bermuda’s regulatory readiness

While frightening to some, “finance bros” and “tech bros” are now wearing the same gilets as traditional finance products and structures are being infused with digital asset adaptation.

Appleby-Website-Insurance-and-Reinsurance
1 Apr 2026

Q1’26 Suggests Cat Bond Issuance Could Reach $20bn Again, Private ILS & Sidecar Surge to Continue

It’s been an exceptionally busy start to the year for the catastrophe bond sector, with Q1’26 officially becoming the second highest Q1 on record in terms of total catastrophe bond issuance, which indicates that 2026 could end up reaching the $20 billion+ milestone once again, Brad Adderley, Managing Partner at law firm Appleby has said.

Trust Disputes
27 Mar 2026

Privy Council decision in X Trusts – redefining the role of the protector

On 19 March 2026, the Judicial Committee of the Privy Council (JCPC) delivered its long-awaited judgment regarding the role of a fiduciary protector in the administration of a trust (A and 6 others (Appellants) v C and 13 others (Respondents) [2026] UKPC 11, on appeal from the Court of Appeal of Bermuda). The decision of the JCPC was unanimous, with the judgment being given by Lords Briggs and Richards.

Appleby-Website-Insurance-and-Reinsurance
26 Mar 2026

Latin American risks and the Bermuda market

Bermuda’s decades-long efforts to welcome Latin American risks to the island’s re/insurance market have borne fruit in the form of the many LatAm captive insurers that have become domiciled here.

Appleby-Website-Insurance-and-Reinsurance
24 Mar 2026

Navigating Bermuda’s New Recovery Planning Requirements: A Roadmap for Commercial Insurers

On 20 March 2026, the Bermuda Monetary Authority (BMA) issued an updated Guidance Note for Recovery Planning Requirements (Guidance Note). The Guidance Note assists Bermuda commercial insurers’ compliance with the obligations set out in the Insurance (Prudential Standards) (Recovery Plan) Rules 2024 (Rules), which became operative on 1 May 2025.

Appleby-Website-Private-Client-and-Trusts-Practice-1905px-x-1400px
13 Mar 2026

A will trust can keep a home in the family

In Bermuda, a family homestead represents more than financial value; it embodies ancestral heritage and housing security.

Appleby-Website-Employment-and-Immigration
12 Mar 2026

Privacy at Work: What PIPA Means for Bermuda Employers

The Personal Information Protection Act 2016 (PIPA), which came into force on 1 January 2025, represents Bermuda’s first comprehensive date protection regime. The legislation regulates the collection, use, disclosure and storage of personal information with the objective of protecting individuals’ privacy while allowing organisations to use data in a responsible and transparent manner. PIPA applies broadly to organisations operating in Bermuda, including employers. As a result, the employment relationship is one of the contexts in which the practical impact of PIPA is the most significant. Employers routinely process large volumes of personal information relating to employees and job applicants, and PIPA imposes obligations that affect recruitment, workplace monitoring, record-keeping, and disciplinary processes.