News & Analysis as of

Third-Party Risk Management Compliance

Thomas Fox - Compliance Evangelist

Compliance Tip of the Day: Leveraging AI for Real-Time Third-Party Risk Management

Welcome to “Compliance Tip of the Day,” the podcast where we bring you daily insights and practical advice on navigating the ever-evolving landscape of compliance and regulatory requirements. Whether you’re a seasoned...more

Alston & Bird

Addressing Data Integrity Challenges in Medical Device Submissions

Alston & Bird on

The Food and Drug Administration’s (FDA) recent rejection of all study data from Mid-Link Testing highlights the importance of using reliable, valid data for medical device premarket submissions. Our FDA/Food, Drug & Device...more

Morrison & Foerster LLP

All Your Sale Are Belong to Us - Mitigating IP and Payments Risk in In-Game Economies

As in-game economies evolve, the complexity surrounding virtual goods and services, content creation, and payment structures deepens. As part of this ongoing series on in-game economies, this installment explores issues...more

Integreon

DORA Compliance Part 1: Proactively Meeting DORA Supply Chain Resilience Obligations

Integreon on

Introduction to DORA and its Implications - As of Jan.17, 2025, the European Union’s Digital Operational Resilience Act (DORA) became enforceable. This new regulatory framework significantly impacts financial institutions and...more

Mitratech Holdings, Inc

Red Flags In Your Vendor’s Business Continuity Plan

Ensure your vendors are crisis-ready by recognizing these key indicators of weak continuity planning. The interconnected nature of modern business means that your vendors’ operational resilience can, and frequently does,...more

Lowenstein Sandler LLP

Top AI Risks General Counsels Should Address

Lowenstein Sandler LLP on

Considering the rapid development and deployment of artificial intelligence (AI) in a wide array of applications and business sectors, it can be a daunting task for a company’s General Counsel (GC) to keep pace in identifying...more

A&O Shearman

European Commission rejects draft technical standards on sub-contracting ICT services under Digital Operational Resilience Act

A&O Shearman on

The European Commission has published a letter (dated 21 January 2025) addressed to the Joint Committee of the European Supervisory Authorities (ESAs) rejecting certain draft regulatory technical standards (RTS) the ESAs...more

Walkers

A comprehensive guide to the BMA's proposed new Operational Resilience and Outsourcing Code

Walkers on

In response to the increasing interconnectedness of financial service providers across global networks, the BMA is proposing to implement a new Operational Resilience and Outsourcing Code for regulated entities across all...more

Sheppard Mullin Richter & Hampton LLP

Looking Beyond FedRAMP – Lessons from the U.S. Treasury Cybersecurity Incident

In the ever-evolving world of cybersecurity, even organizations that meet stringent security standards can be victims of sophisticated cyberattacks. A notable example of this is the December 8, 2024 cybersecurity incident...more

Foley & Lardner LLP

President Biden Issues Second Cybersecurity Executive Order

Foley & Lardner LLP on

In light of recent cyberattacks targeting the federal government and United States supply chains, President Biden’s administration has released an Executive Order (the “Order”) in an attempt to modernize and enhance the...more

Ankura

Balancing Agility and Speed with Preparation and Stability: Importance of Governance in a Fintech Startup

Ankura on

In all our work with clients, my evaluation and expectations around compliance readiness come down to one point: Governance. This can mean a variety of things when it comes to a compliance program, but overall, we boil it...more

KPMG Board Leadership Center (BLC)

Oversight of data-related risks

Oversight of data-related risks: From data governance to GenAI and cybersecurity While data governance has been a priority for companies for some time, the explosive growth in the use of generative artificial intelligence...more

Guidepost Solutions LLC

Monitoring Against Whistleblower Retaliation

Guidepost Solutions LLC on

Saves Lives, Prevents Major Crimes, and Accelerates Voluntary Self - Disclosures The U.S. Department of Justice (“DoJ”) recently spotlighted its Whistleblower Awards Program and Voluntary Self Disclosure (“VSDs”)...more

Barnea Jaffa Lande & Co.

Understanding DORA: An Overview of the Digital Operational Resilience Act

The Digital Operational Resilience Act (DORA) is an EU regulatory framework, aimed at enhancing the financial sector’s ability to withstand and recover from ICT (information and communication technology) disruptions....more

Mitratech Holdings, Inc

People and Policy: Building Compliance and Ethics into Your Company’s DNA

It’s not enough to have the right policies in place — you have to embed those policies into the fabric of your organization. In today’s fast-paced and interconnected business world, ensuring compliance and building an...more

NAVEX

What a New SEC Enforcement Sweep Is Really Telling Us

NAVEX on

Attention all compliance officers at large technology companies – have you checked your mail lately? Because you might find a letter from the Securities and Exchange Commission with FCPA risk written all over it....more

NAVEX

SEC Rule or Not, Keep Your Eye on the Climate Change Ball

NAVEX on

The U.S. Securities and Exchange Commission recently announced that its long-awaited greenhouse gas disclosure rule will be delayed yet again, most likely until April 2024. This raises an important question for compliance and...more

Adams & Reese

FDIC Sends Clear Message in Recent Enforcement Action: BaaS/Fintech Partnerships are a High-Risk Compliance Area

Adams & Reese on

Last month, the Federal Deposit Insurance Corporation (“FDIC”) took action against a bank for alleged unsafe or unsound banking practices. This, in and of itself, is not usual or newsworthy. What is unusual and newsworthy,...more

Braumiller Law Group, PLLC

Hot Topics in International Trade - November 2023 - Employee Education in Compliance Training

Employee education supports organizational growth and development. Its benefits are generally well known, but how do you ensure that training, in any form, generates the outcomes and advances you desire? Measuring and...more

Perkins Coie

Ten Considerations for Developing an Effective Generative AI Use Policy

Perkins Coie on

This year’s news has been full of stories about “generative” artificial intelligence (AI) applications. Generative AI tools create code, text, images, and other content in response to text prompts, queries, and other inputs....more

Holland & Knight LLP

U.S. Department of Education Issues New Guidance on Third-Party Servicers

Holland & Knight LLP on

The U.S. Department of Education (Department) published its newest "Dear Colleague Letter" (DCL ID: GEN-23-03) on Feb. 15, 2023, making sweeping changes to the regulation of agreements between institutions of higher education...more

Society of Corporate Compliance and Ethics...

[Webinar] Third Party Due Diligence in LATAM - January 19th, 12:00 pm - 1:30 pm CT

Learning objectives: - The importance of third-party due diligence - Challenges of third-party due diligence in LATAM - How to establish a proper due diligence process: key steps, identifying risk based categories. ...more

Dechert LLP

SEC Adopts Amendments to Rule 17a-4 Electronic Recordkeeping Requirement

Dechert LLP on

The Securities and Exchange Commission on October 12, 2022, adopted amendments to the electronic recordkeeping requirements for broker-dealers, security-based swap dealers (SBSDs), and major security-based swap participants...more

Mitratech Holdings, Inc

ESG Risk Management & TPRM: A Best Practice Approach?

Mitratech Holdings, Inc on

There are few initiatives currently afoot in banking that do not feature Environmental, Social, and Governance (ESG) credentials, either to engage investors and customers or deliver the ESG risk management capabilities that...more

Thomas Fox - Compliance Evangelist

2021 WME Awards: Part 3 – Third Party Risk Management

The Ethisphere 2021 World’s Most Ethical (WME) companies awards and reports are out. Over the next few posts, I will be examining these reports and information. We will look at three reports issued in conjunction with the...more

56 Results
 / 
View per page
Page: of 3

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide