News & Analysis as of

Supply Chain Third-Party

Society of Corporate Compliance and Ethics...

Third-party due diligence: Are supplier questionnaire(s) the answer?

Numerous laws (U.K. Bribery Act guidance document, German Supply Chain Act, Foreign Corrupt Practices Act resource guide, OECD Due Diligence Guidance for Responsible Supply Chains of Minerals from Conflict-Affected and...more

NAVEX

SEC Rule or Not, Keep Your Eye on the Climate Change Ball

NAVEX on

The U.S. Securities and Exchange Commission recently announced that its long-awaited greenhouse gas disclosure rule will be delayed yet again, most likely until April 2024. This raises an important question for compliance and...more

Foley & Lardner LLP

What Every Multinational Company Should Know About . . . Implementing an International Compliance Program (Part II)

Foley & Lardner LLP on

In our prior update (published November 29), we provided the first five steps in our twelve-step program for international compliance. These steps are intended to help companies identify international regulatory risk inherent...more

Jackson Lewis P.C.

Cyber Safety Review Board Issues Compelling Report about Lapsus$, MFA Vulnerabilities, and Helpful Recommendations

Jackson Lewis P.C. on

The Cyber Safety Review Board (Board) issued a report entitled, Review of the Attacks Associates with Lapsus$ and Related Threat Groups (Report), released by the Department of Homeland Security on August 10, 2023. The Report...more

Sheppard Mullin Richter & Hampton LLP

Federal Government Outlines New Security and Attestation Requirements for Software

Per Executive Order 14028, Improving the Nation’s Cybersecurity, the Office of Management and Budget (OMB) issued a memorandum on September 14, 2022 requiring federal agencies to only use software from software producers that...more

Dunlap Bennett & Ludwig PLLC

Supply Chain Vulnerability in the Healthcare Industry

The healthcare industry possesses invaluable data in the forms of patient health information, personal identifying information, and payment card information. The industry is a treasure trove of information to be exploited by...more

American Conference Institute (ACI)

[Event] Canadian Forum on Global Economic Sanctions - September 22nd - 23rd, Toronto, ON, Canada

The Canadian Institute’s 7th Annual Canadian Forum on Global Economic Sanctions returns to Toronto in-person and via livestream on September 22-23! Join a Canadian and international faculty of government of officials,...more

Foley Hoag LLP

Next Up: Uniform Licensure Standards for Wholesalers and Third-Party Logistics Providers

Foley Hoag LLP on

Key Takeaways: ▪️ FDA has published a proposed rule proposing national licensing standards for prescription drug wholesale distributors and third-party logistics providers as well as standards for third-party accreditation...more

Lowenstein Sandler LLP

Effective and Efficient Pre-Transaction FCPA Diligence: How to Leverage Compliance and ESG to Avoid Buyer’s Remorse and Other...

Lowenstein Sandler LLP on

The arduous process of FCPA compliance requires risk teams to digest and cross-reference a morass of information – from internal data analysis to human representatives collecting interviews on the ground. Diligence failures...more

Dorsey & Whitney LLP

President Biden Signs New Law Requiring U.S. Blockage of All Imports Made Wholly or Partly in Xinjiang, China

Dorsey & Whitney LLP on

President Biden signed into law on December 23 legislation that will, for the first time, require U.S. Customs and Border Protection (“CBP”) to detain all imports that are made wholly or partly in the Xinjiang Uyghur...more

Foley & Lardner LLP

CMMC 2.0 Brings Increased Flexibility — and Increased Risks — for Contractors

Foley & Lardner LLP on

Defense contractors and their subcontractors and supply chains that have been preparing for the challenge of complying with the Cybersecurity Maturity Model Certification (CMMC) recently received some welcome news from the...more

Mitratech Holdings, Inc

Using Integrated TPRM to Get Ahead of the Global Supply Chain Crisis

Mitratech Holdings, Inc on

Barely a day goes without a new story about the crisis in the global supply chain emerging. As the various parts of the world and different industry sectors recover from the pandemic at different speeds, we see the value –...more

Mitratech Holdings, Inc

ESG Risk Management & TPRM: A Best Practice Approach?

Mitratech Holdings, Inc on

There are few initiatives currently afoot in banking that do not feature Environmental, Social, and Governance (ESG) credentials, either to engage investors and customers or deliver the ESG risk management capabilities that...more

Thomas Fox - Compliance Evangelist

Exiger TRADES Framework: Part 2-Assess Current Risks and Determine Mitigations

Exiger has developed the TRADES Framework, a conceptual, strategic and practical guide for Third-Party and Supply Chain Risk Management designed by Exiger to help organizations achieve supply chain resiliency and optimize...more

Lowenstein Sandler LLP

Rising Supply Chain Risk Requires Proactive Management

Lowenstein Sandler LLP on

As the roughly 18,000 organizations, government agencies and educational institutions continue to recover from last year’s SolarWinds nation-state attack, one of the biggest takeaways from this event is that organizations...more

American Conference Institute (ACI)

[Virtual Event] U.S. Export & Reexport Compliance For Canadian Operations - January 26th - 27th, 9:00 am - 5:00 pm EST

For a whole decade, ACI’s U.S. Export & Reexport Compliance for Canadian Operations conference continues to stand apart as the only practical, comprehensive event of its kind for the export compliance community in Canada. ...more

Society of Corporate Compliance and Ethics...

Updated guidance document reflects new perspectives on compliance programs

Report on Supply Chain Compliance 3, no. 14 (July 23, 2020)  - The United States Department of Justice (DOJ) released an update to its guidance document, Evaluation of Corporate Compliance Programs, which is based on...more

Perkins Coie

DoD’s Cybersecurity Verification Regime: New Details Emerge Related to Third-Party Auditor Training and Accreditation

Perkins Coie on

A key area of focus in the Department of Defense’s (DoD) gradual rollout of its Cybersecurity Maturity Model Certification (CMMC) is the training and accreditation of third-party assessors that will be responsible for...more

Pillsbury Winthrop Shaw Pittman LLP

Slavery in Supply Chains: CBP Petitions Raise New Forced Labor Compliance Risks

Third-party petitions seeking to ban the importation of goods made with forced labor may affect global supply chains. Petitions are being filed with U.S. Custom and Border Protection seeking to ban the importation into the...more

Foley & Lardner LLP

Best Practices for Customers Structuring Directed-Buy Arrangements

Foley & Lardner LLP on

This article explores the following topics: (1) What is a directed-buy arrangement? (2) What significant issues exist for a customer in a directed-buy arrangement? and (3) What are the best practices for a customer entering...more

Thomas Fox - Compliance Evangelist

FCPA COMPLIANCE REPORT-EPISODE 337, JAMES GELLERT ON ASSESSING 3RD PARTY FINANCIAL HEALTH FOR COMPLIANCE

In this episode, I visit with James Gellert, CEO of RapidRatings, a company which uses a financial dialogue to determine third party supplier health and viability. Gellert explains what supply chain resilience is and how...more

The Volkov Law Group

Dig a Little Deeper: The Importance of Beneficial Ownership

The Volkov Law Group on

Companies interact with a large number of entities in the outside world – customers, third party intermediaries and vendors and suppliers to name the most significant ones. These relationships are the lifeblood of a company....more

Thomas Fox - Compliance Evangelist

FCPA Compliance and Ethics Report-Episode 169-the First Mailbag Issue

In this inaugural Mailbag Episode, I field questions from an earlier podcast on the training of third parties under the FCPA. ...more

Thomas Fox - Compliance Evangelist

Supply Chain as a Source of Compliance Innovation

On this day we celebrate the greatest upset in the history of the NCAA Basketball Tournament, when Villanova beat Georgetown for the 1985 national championship. Georgetown was the defending national champion and had beaten...more

Pillsbury - Global Sourcing Practice

Subcontracting in the Cloud

The rise of cloud computing services and the privacy/security issues involved have been much discussed. But when customers procure cloud-based services, a critical "behind the scenes" issue is often overlooked: is the cloud...more

25 Results
 / 
View per page
Page: of 1

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide