News & Analysis as of

Risk Assessment Risk Management Enforcement Actions

Ogletree, Deakins, Nash, Smoak & Stewart,...

2025 Enforcement Trends: Risk Analysis Failures at the Center of HHS’s Multimillion-Dollar HIPAA Penalties

In the first five months of 2025, the U.S. Department of Health and Human Services’ (HHS) Office for Civil Rights (OCR) announced it had entered into ten Health Insurance Portability and Accountability Act (HIPAA) resolution...more

Troutman Pepper Locke

Inside New Commerce Tech Restrictions: Mitigation Strategies

Troutman Pepper Locke on

The U.S. Department of Commerce’s Bureau of Industry and Security has issued the final rule that will determine how its Information and Communications Technology and Services regulations will work going forward....more

Ankura

HIPAA Security Risk Analysis – How should regulated entities prepare for the Office for Civil Rights (OCR) Risk Analysis Audit...

Ankura on

Following the Office for Civil Rights (OCR) recent publication of four settlements as part of a new Risk Analysis Audit Initiative. We explore the current regulatory language for Risk Analysis, the proposed language for Risk...more

Paul Hastings LLP

Anti-Money Laundering Enforcement Risk Still Remains for Virtual Asset Services Providers

Paul Hastings LLP on

Despite the Trump administration’s generally favorable stance toward cryptocurrency and blockchain innovation, virtual asset services providers (VASPs) must remain vigilant in complying with anti-money laundering (AML)...more

NAVEX

Risk Assessment – The Most Important and Least Understood Component of an Effective GRC Program

NAVEX on

Among the many crucial elements of effective compliance initiatives (internal reporting programs, policies, procedures, training, supply chain management, M&A, and more) are risk assessments – the intended foundational...more

Arnall Golden Gregory LLP

OCR Announces Fifth Settlement Under Its Risk Analysis Initiative

Background - On March 21, 2025, the U.S. Department of Health and Human Services, Office for Civil Rights (“OCR”) announced a settlement with Health Fitness Corporation (“Health Fitness”), a company that provides wellness...more

Troutman Pepper Locke

Strengthening Compliance: Lessons From the OCC's Consent Order With Patriot Bank — Payments Pros – The Payments Law Podcast

Troutman Pepper Locke on

In this episode of Payments Pros, host Carlin McCrory discusses a recent consent order between Patriot Bank and the Office of the Comptroller of the Currency (OCC) following a $27 million loss. The order addresses unsafe...more

Katten Muchin Rosenman LLP

Turning Up the Heat - Ofcom Ramps Up Pressure for Platforms under the Online Safety Act

From today, online platforms are expected to have risk assessments in place to understand how likely it is for its users to encounter illegal content on their service....more

Foley & Lardner LLP

What Every Multinational Company (Doing Business in Mexico) Should Know About … Mitigating Risks From ATA Scrutiny in a New...

Foley & Lardner LLP on

Mexican cartels dominate large swaths of the Mexico-United States border and the Bajío region (an area encompassing relevant parts of Queretaro, Guanajuato, Aguascalientes, San Luis Potosí, Jalisco, and Michoacán), and they...more

Mitchell, Williams, Selig, Gates & Woodyard,...

SPCC/Clean Water Act Enforcement: U.S. Environmental Protection Agency Complaint Filed Against Seaside, Oregon Petroleum Product...

The United States Environmental Protection Agency (“EPA”) has filed on December 18, 2024, an Administrative Complaint against Jackson & Son Distributors, Inc. dba Jackson and Son Oil (“JS”) alleging a violation of the Clean...more

Shook, Hardy & Bacon L.L.P.

OCR Enforcement Activity: Trends and Insights From a Limited Sample

Arecent report put the odds of an asteroid hitting the earth in December 2032 at 3.1%—which is 3,100 times more likely than an organization resolving an enforcement action with the U.S. Department of Health and Human...more

Dentons

Ep. 51 – Building Effective Compliance Committee Agendas

Dentons on

Many healthcare organizations understand the importance of having a Compliance Committee but some struggle to use their committee effectively. The key to ensuring the Compliance Committee is effective is building smart...more

Pillsbury - Consumer Protection Dispatch

UK Online Safety Act: New Obligations for Digital Service Providers Targeting the UK

The UK’s Online Safety Act 2023 (OSA) is a comprehensive piece of legislation designed to regulate social media companies and search services and to increase protections for individuals online. It draws comparisons to the...more

Goodwin

Texas AG Reaches First-of-its-Kind Settlement With Healthcare AI Company Over Hallucination Rate Claims

Goodwin on

In a recent settlement, the Texas attorney general resolved allegations that Pieces Technologies, Inc. (Pieces), a healthcare generative AI company, misrepresented the hallucination rate of its generative AI product to...more

BakerHostetler

It’s Officially Enforcement Season: OCR Announces First Penalty Under New Risk Analysis Initiative

BakerHostetler on

On October 31, 2024, the U.S. Department of Health and Human Services Office for Civil Rights (OCR) embraced the end of Spooky Season by announcing two more ransomware-related enforcement actions. ...more

Society of Corporate Compliance and Ethics...

Corporate compliance with human rights: An overview

Creating value for shareholders has long been considered the primary purpose of corporations, especially within the framework of traditional economic theories. However, this view has evolved significantly over the past few...more

Perkins Coie

UK Online Safety Act: A Look Ahead

Perkins Coie on

Ofcom, the U.K. Online Safety Act (the Act) regulator, released an updated roadmap on the timing of obligations for covered services on October 17, 2024. The Act was passed in October 2023 and introduces new legal obligations...more

Pillsbury Winthrop Shaw Pittman LLP

DOJ Debuts Updates to Its Evaluation of Corporate Compliance Programs Aimed at the Responsible Use of Artificial Intelligence

On September 23, 2024, the U.S. Department of Justice (DOJ) updated its Evaluation of Corporate Compliance Programs (ECCP) guidance to instruct prosecutors on how to evaluate corporate risk related to the management and use...more

K&L Gates LLP

AI, Whistleblowers, and Data Analytics - Updated DOJ Compliance Guidance

K&L Gates LLP on

On 23 September 2024, the DOJ announced another significant round of updates to its Evaluation of Corporate Compliance Programs (ECCP) – the guidance document Department of Justice (DOJ) prosecutors use to evaluate the...more

Guidepost Solutions LLC

Proactive Measures for Corporate Security in an Escalating Threat Environment

Given the heightened terrorism threat level, comparable to that of 9/11, and the recent assassination attempt on former President Trump, it’s crucial for corporate security to prioritize comprehensive preparedness for all...more

J.S. Held

INDEPTH FEATURE: Anti-Money Laundering 2024

J.S. Held on

Could you provide an insight into recent trends shaping financial crime in your country of focus? How great a risk does money laundering in particular now pose to companies? One would likely never imagine compliance as...more

American Conference Institute (ACI)

[Event] Mexico Summit on Anti-Corruption & Compliance Program - March 13th - 14th, Mexico City, Mexico

ACI’s Mexico Summit on Anti-Corruption & Compliance Programs returns on March 13-14, 2024 in Mexico City! Given the uncertainty with the looming Presidential election, as well as increased U.S. enforcement focus on Mexico...more

American Conference Institute (ACI)

[Event] 17th Forum on the Foreign Corrupt Practices Act - January 24th - 25th, Houston, TX

As the most anticipated gathering for the community in Texas and the region, don’t miss out on re-connecting with your peers and more! With the continued focus on FCPA compliance and the anticipated rise in enforcement,...more

American Conference Institute (ACI)

[Event] 40th International Conference on the FCPA - November 28th - 30th, National Harbor, MD

Hosted by American Conference Institute, the 40th International Conference on the FCPA returns for another exciting year with curated programming that shines a global spotlight on anti-corruption compliance challenges,...more

Society of Corporate Compliance and Ethics...

[Event] Regional Compliance & Ethics Conference - November 9th, Dubai, United Arab Emirates

Looking for compliance education and networking in your area? SCCE’s Regional Compliance & Ethics Conferences offer convenient, local compliance education for practitioners across the globe, including updates on the latest...more

62 Results
 / 
View per page
Page: of 3

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide