Third-Party Risk

News & Analysis as of

New Guidance from the DOJ on Your Compliance Program

The U.S. Department of Justice (DOJ), Criminal Division, Fraud Section, recently released new guidance associated with its Guide to the U.S. Foreign Corrupt Practices Act. The guidance, entitled Evaluation of Corporate...more

Cybersecurity Threats for Treasury & Payment Management Systems Report Released

Pactera Technologies N.A., Inc. [www.Pactera.com] has released the report “Cybersecurity Threats for Treasury & Payment Management Systems: Six Things you Should Know to Manage Them.” It is easy to understand and pertinent,...more

Vendor Management Programs – Putting Together Your Dream Team

Insurance professionals are the recipients of added pressures to streamline processes in an effort to maximize results. Nowhere is this more palpable than in Latin American where the way “it is has always been done”...more

Risk in Compliance Week: Part II – Risk Assessments

I continue my exploration of risk in compliance by focusing today on risk assessments. However, before we get there, I wanted to pay tribute to one of the most well-known characters from television, Della Street, who was...more

Judged by the Company You Keep

Earlier this month news broke that the venerable British automaker Rolls-Royce had settled an international prosecution alleging that the company’s third-party intermediaries bribed local officials in Asia. The company agreed...more

FCPA Recidivists: Zimmer Biomet (Part I of II)

The drug and medical device industries have been taking it on the FCPA chin for years. The risk factors in the international marketplace are significant – healthcare professionals are normally government employees; government...more

Although Delayed, New York's Aggressive Cybersecurity Law Expected to Affect Financial Services and Insurance Firms

The regulatory environment for cybersecurity is rapidly changing, and state legislatures are not waiting for Congress to act. On December 28, 2016, the New York State Department of Financial Services ("NYDFS") revised a...more

Trends from 2016 Record FCPA Enforcement Year (Part II of III)

No matter how you cut it – this was a big year in FCPA enforcement. Not just because of the large enforcement actions but the scope and depth of enforcement, remediation and compliance program demands....more

Being the “Necessary Evil” is so 2016: It’s Time for Ethics & Compliance to Rebrand Itself

As part of our culture assessments, NAVEX Global’s Advisory Services team has led more than 1,300 in-person focus groups with employees at all levels, in many countries and from every industry. We’ve heard candid comments...more

What Hotels Should Prepare for When Integrating Augmented Reality Games at Their Destinations

The future has arrived, and it has a strange sense of humor. Pokémon Go — an “augmented reality” game that requires players to travel to real world locations to capture imaginary monsters through apps on their mobile devices...more

Top 10 Ethics & Compliance Predictions and Recommendations for 2017

Once again it’s time for our annual review of trends and events that will impact your Ethics and Compliance (E&C) program in the year ahead. This year presents a unique challenge. We are preparing our predictions...more

Prepare for Compliance with General Data Protection Regulation Checklist

The Irish Data Protection Commissioner (DPC) has issued a 12-step checklist of actions companies can take now to better prepare for compliance with the General Data Protection Regulation (GDPR), the new EU privacy regulation...more

Group-Level Accountability for Third-Party Risk: Why It’s So Hard

Of the wide range of challenges that compliance officers face with third parties, my favorite is: who “owns” third-party risk management? The truth is that different people within the enterprise feel different types of pain...more

Coordinating Third Party Due Diligence and Procurement

Third party risk management is easily one of the most challenging risks for compliance officers. With all the attention and hype surrounding third party risk, companies have marshaled attention and resources to mitigate the...more

Third-Party Risk Programs Should Focus on Offense, not Defense

Just 43 percent of organizations surveyed in NAVEX Global’s 2016 Ethics & Compliance Third Party Risk Management Report said they evaluated third parties before engaging with them—down from 68 percent in 2015....more

Infusing Your Compliance Program with Business Ethics

It is important to remember that companies are required to implement an ethics and compliance program. Ethics should not ever be a segregated issue carved off from a compliance program. They walk hand-in-hand, and reinforce...more

If Things Have to Be Risky for Your Third-Party Risk Management Program to be Valuable, You’re Doing It Wrong.

Seventy-five percent of respondents in the 2016 Ethics & Compliance Third Party Risk Management Benchmark Report rejected at least one third party as a business partner last year because of high risk factors identified in due...more

Due Diligence Basics – Beneficial Ownership

I hate to be the harbinger of bad news; that is against my nature; I am naturally an optimistic person. As I always say, there are solutions to every problem....more

Volkov on the Evolving Standards for Compliance Programs

Sometimes I get inspired when writing blog posts and sometimes I get on a roll. It is a bit of both this week and today, as previously this week, I have focused on Department of Justice (DOJ) pronouncements on their view of...more

New York Department of Financial Services Proposes Cybersecurity Regulation

On September 13, 2016, New York Governor Andrew Cuomo announced that the New York Department of Financial Services (the “DFS”) proposed a regulation that would require banks, insurance companies, and other financial services...more

Guidelines for Third-Party Vendor Management Programs

Third-party service providers present difficult and unique privacy and cybersecurity challenges. Vendor management is important throughout the life of your relationship with your vendors. Vendor diligence starts during the...more

Lessons Learned from Embraer $205 Million FCPA Settlement (Part II of II)

The Embraer FCPA settlement action contains a number of important lessons learned and compliance reminders. In several significant respects, the Embraer case confirms in several areas why proactive compliance programs are...more

What You Must Know about New York’s Proposed Cybersecurity Regulation for the Banking, Insurance, and Financial Services Sectors

Recently, New York’s Department of Financial Services released its long-awaited proposed cybersecurity regulation, which promises to deliver sweeping protections to consumers and financial institutions alike. The proposed...more

UK ICO Offers Guidance on Privacy Notices Under the GDPR and the UK Data Protection Act

In an anticipated guidance, the United Kingdom's Information Commissioner's Office (ICO) updated its code of practice for privacy notices titled Privacy notices, transparency and control (the Code). Significantly, the ICO has...more

[Webinar] 2016 Ethics & Compliance Virtual Conference - Harnessing the Business Value of an Ethical Culture - November 15th,...

Join professionals in ethics and compliance, human resources, legal, audit and training for the annual 2016 Ethics & Compliance Virtual Conference! Learn strategies to help you build a better governed, more risk-aware, and...more

200 Results
|
View per page
Page: of 8
Cybersecurity

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:

Sign up to create your digest using LinkedIn*

*By using the service, you signify your acceptance of JD Supra's Privacy Policy.

Already signed up? Log in here

*With LinkedIn, you don't need to create a separate login to manage your free JD Supra account, and we can make suggestions based on your needs and interests. We will not post anything on LinkedIn in your name. Or, sign up using your email address.
×