News & Analysis as of

Compliance Risk Management Risk Assessment

Compliance programs typically refer to formalized institutional procedures within corporations and organizations to detect, prevent and respond to indvidual and widespread instances of regulatory violations. ... more +
Compliance programs typically refer to formalized institutional procedures within corporations and organizations to detect, prevent and respond to indvidual and widespread instances of regulatory violations.  In response to many corporate scandals evidencing rampant unethical business practices, many nations, including the United States, began passing strict regulatory frameworks aimed at curbing these abuses. Notable pieces of legislation in this area include the U.S. Foreign Corrupt Practices Act (FCPA), Sarbanes-Oxley (SOX), and the U.K. Bribery Act, to name a few. The foregoing statutes and the severe penalties often associated with them form the basis of many modern institutional compliance programs. less -
Miles & Stockbridge P.C.

Despite Reduced Enforcement Risks, Businesses Should Invest in Corporate Compliance

Some early actions by the Trump administration have led corporate legal departments to question the extent to which they need to invest in ethics and compliance at this time, based on a perceived reduction in enforcement...more

Thomas Fox - Compliance Evangelist

Regulatory Ramblings: Episode 68 - Why Geopolitical Risk Matters to Compliance and Legal Staff with Mark Nuttal and Chad Olsen

The hasty U.S. withdrawal from Afghanistan in August 2021 under the Biden administration—and the fallout that followed—along with the Russian invasion of Ukraine in February 2022 and the ongoing war, have created inflationary...more

Ankura

Generative AI Risks: Legal and Compliance Insights - Part 2

Ankura on

The Bottomline: Five Practical Steps for Generative AI Risk Management - As the first line of defense, employees within business operations must own and manage risks related to the business, including risks resulting from...more

K2 Integrity

A Collaborative Approach to Customer Risk Assessment

K2 Integrity on

Unlock a New Era of Customer Risk Assessment - Legacy customer risk rating (CRR) models—built on static KYC data and subjective judgment—are no longer sufficient in a world of dynamic threats and tightening regulatory...more

Thomas Fox - Compliance Evangelist

FCPA Compliance Report: Amanda Carty on a Due Diligence and Risk Management

In this episode of the Diligent Compliance Week 2025 Speaker Preview Podcasts series, Amanda Carty discusses her presentation at Compliance Week 2025, “Going Beyond Due Diligence in Risk Management.” Some of the issues she...more

Society of Corporate Compliance and Ethics...

[Event] Basic Compliance & Ethics Academy - July 7th - 10th, Singapore, Singapore

Ideal for practitioners who want to build strong foundational knowledge of compliance program management and how to apply that knowledge in practice. Attendees will come away better prepared to support, enhance, and manage a...more

Gardner Law

From Paper to Practice: Compliance Policies that Work

Gardner Law on

In the FDA-regulated industry, a compliance program isn’t just a formality—it’s a critical tool for protecting your business, patients, and reputation. Still, too many companies treat compliance policies as static...more

Society of Corporate Compliance and Ethics...

[Event] Basic Compliance & Ethics Academy - June 23rd - 26th, Brussels, Belgium

Ideal for practitioners who want to build strong foundational knowledge of compliance program management and how to apply that knowledge in practice. Attendees will come away better prepared to support, enhance, and manage a...more

Ankura

Remediation Happens: How To Identify, Mitigate and Resolve Related Risks

Ankura on

Remediation occurs for a host of reasons. You may identify remediation risk from internal activities (e.g., an audit, a control break) or external activities (e.g., a complaint, a regulatory exam, a lawsuit). Sometimes a...more

Ankura

HIPAA Security Risk Analysis – How should regulated entities prepare for the Office for Civil Rights (OCR) Risk Analysis Audit...

Ankura on

Following the Office for Civil Rights (OCR) recent publication of four settlements as part of a new Risk Analysis Audit Initiative. We explore the current regulatory language for Risk Analysis, the proposed language for Risk...more

The Volkov Law Group

Episode 364 -- Five Strategies to Mitigate a New Risk Environment

The Volkov Law Group on

What do you do when the headlines shift faster than your risk matrix can keep up? In this episode, Michael Volkov dives into the challenge of adapting compliance programs in the face of volatile and fast-changing global...more

NAVEX

Preparing for the Compliance Challenges of Agentic AI

NAVEX on

Artificial intelligence keeps improving at all sorts of things – including how to challenge corporate ethics and compliance programs. Even while you may still be struggling to tame the risks of generative AI, its more...more

K2 Integrity

AI-Driven Risk Assessment: Enhancing Financial Crime Compliance And Internal Audit

K2 Integrity on

In an era of increasingly sophisticated financial crimes and evolving regulatory, compliance, and internal audit needs, financial institutions must continuously refine their risk assessment strategies. Traditional methods,...more

Mitratech Holdings, Inc

The Vendor Onboarding Process: Keys to Success

What Is Vendor Onboarding? Vendor onboarding is the process of establishing a company as an approved provider of technology, goods, or services to your organization. It’s also an essential early step in the vendor risk...more

ArentFox Schiff

In-House Counsel Should Advise Their Companies to Assess the Political Risks of Their Business Decisions

ArentFox Schiff on

Right now, much about the world is uncertain. Risks posed by political changes dominate the headlines and also weigh heavily on many decisions made by businesses, their advisors, and their stakeholders....more

Sheppard Mullin Richter & Hampton LLP

FedRAMP 20x – Major Overhaul Announced to Streamline the Security Authorization Process for Government Cloud Offerings

On March 24, 2025, the Federal Risk and Authorization Management Program (“FedRAMP”) announced a major overhaul of the program, which is being called “FedRAMP 20x.” The FedRAMP 20x announcement stated there are no immediate...more

NAVEX

Risk Assessment – The Most Important and Least Understood Component of an Effective GRC Program

NAVEX on

Among the many crucial elements of effective compliance initiatives (internal reporting programs, policies, procedures, training, supply chain management, M&A, and more) are risk assessments – the intended foundational...more

NAVEX

Business resiliency needs to take centerstage if you want to keep pace with cyber threats and supply chain disruptions

NAVEX on

2024 was a year of numerous and notable cybersecurity failures – although, to be fair, most years are now marred by numerous and notable cybersecurity failures. That’s no longer anything special. What makes 2024 interesting...more

K2 Integrity

Navigating AI Governance and Security in the Age of Generative AI

K2 Integrity on

On 26 March 2025, K2 Integrity hosted a webinar discussing generative AI, its associated risks, governance strategies, and the future trajectory of AI adoption. The webinar featured Jason Straight, senior managing director...more

TNG Consulting

Building Confidence Through Deliberate Processes 

TNG Consulting on

I had the incredible opportunity to attend the first-ever ATIXA and NABITA joint Winter Symposium in Henderson, NV. It was an inspiring gathering where Title IX, behavioral intervention, and threat assessment professionals...more

NAVEX

Five Questions to Ask About Navigating ‘Deregulatory Compliance’

NAVEX on

For many years, corporate compliance officers have followed a certain natural process. First, regulators adopt a new rule, then you decipher how the arrival of that new rule might require changes to your policies, procedures...more

The Volkov Law Group

Riding the Wave to Navigate Volatile Risks

The Volkov Law Group on

Chief compliance officers are adjusting a new, risk world, where top risks include export controls, sanctions, and immigration enforcement. At the same time, some risks remain — third-party risks, conflict of interest, fair...more

Mitratech Holdings, Inc

IT/DR Plan Spring Cleaning: How to Replace Outdated Policies

Ready to ditch outdated guidelines and adopt a fresh take on your IT Disaster Recovery plans? Spring is the season of renewal, making it the perfect time to refresh not only physical spaces but also strategies and...more

Society of Corporate Compliance and Ethics...

[Event] Basic Compliance & Ethics Academy - April 28th - May 1st, Las Vegas, NV

Ideal for practitioners who want to build strong foundational knowledge of compliance program management and how to apply that knowledge in practice. Attendees will come away better prepared to support, enhance, and manage a...more

Thomas Fox - Compliance Evangelist

Compliance and AI: Ali Khan on Implementing AI Risk Management Systems

What is the role of Artificial Intelligence in compliance? What about Machine Learning? Are you using ChatGPT? We will explore these three questions in this cutting-edge podcast series, Compliance and AI, hosted by Tom Fox,...more

484 Results
 / 
View per page
Page: of 20

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide