

Compliance into the Weeds
Tom Fox
What happens when two compliance aficionados get together to talk all things compliance, risk management and ERM? You get Tom Fox, the Voice of Compliance and Matt Kelly, the Coolest Guy in Compliance, going into the weeds of a topic each week. Each week, you can take a deep dive with two of the top writers, thinkers and prognosticators in compliance.
Episodes
Mentioned books

Mar 25, 2026 • 27min
Balt and TradeStation: Lessons for the Compliance Professional
The award-winning Compliance into the Weeds is the only weekly podcast that takes a deep dive into a compliance-related topic, literally going into the weeds to explore it more fully. Looking for some hard-hitting insights on compliance? Look no further than Compliance into the Weeds! In this episode of Compliance into the Weeds, Tom Fox and Matt Kelly look at the Declination awarded to Balt SAS and the OFAC enforcement action involving TradeStation.
First, they review a Corporate Enforcement Policy declination for French medical-equipment company BAL SAS and the company’s U.S. subsidiary after self-disclosing, cooperating and remediating misconduct involving a U.S. subsidiary executive and a Belgian consultant allegedly funneling about $600,000 in bribes to a French public hospital official using sham consulting agreements, invoices, and poor documentation; BAL disgorged about $1.21 million in profit on roughly $1.68 million in revenue and disclosed while its internal investigation was still ongoing, raising timing and high-margin red-flag issues.
Second, they cover OFAC’s $1.1 million settlement with TradeStation for accidentally disabling sanctions-screening controls for nearly a year, enabling hundreds of transactions from Iran, Syria, and Crimea; despite having layered tools on paper, IT changes and lapsed subscriptions undermined those controls, underscoring the need for ongoing monitoring, testing, and auditing.
Key highlights:
Balt FCPA Case
Disclosure Timing
Profit Margin Red Flags
Controls and France Angle
TradeStation Overview
How Screening Failed
Monitoring and Accountability
Costs and OFAC Lessons
Resources:
Matt in Radical Compliance
Tom in the FCPA Compliance Report
Tom
Instagram
Facebook
YouTube
Twitter
LinkedIn
A multi-award-winning podcast, Compliance into the Weeds was most recently honored as one of the Top 25 Regulatory Compliance Podcasts, a Top 10 Business Law Podcast, and a Top 12 Risk Management Podcast. Compliance into the Weeds has been conferred a Davey, a Communicator Award, and a W3 Award, all for podcast excellence. Learn more about your ad choices. Visit megaphone.fm/adchoices

Mar 18, 2026 • 20min
McKinsey’s Lilli AI Hack: What It Signals for AI Governance, Security and Disclosure
The award winning, Compliance into the Weeds is the only weekly podcast which takes a deep dive into a compliance related topic, literally going into the weeds to more fully explore a subject. Looking for some hard-hitting insights on compliance? Look no further than Compliance into the Weeds! In this episode of Compliance into the Weeds, Tom Fox and Matt Kelly look the recent hack of McKinsey’s AI tool Lilli.
Tom and Matt discuss a Financial Times report that a white-hat hacker, Paul Price of one-person firm Code Wall, exploited flaws in McKinsey’s internal AI tool “Lilli” to access millions of internal chat messages, view sensitive client-related file names, and see the model weights used to train the system; McKinsey patched the vulnerabilities after disclosure. They argue the incident highlights emerging AI risks beyond traditional cybersecurity, including AI agents autonomously scouting for targets, the possibility of attackers altering models to change outputs and create hard-to-detect “drift,” and confusion over who inside organizations owns AI security and governance. The episode also explores the messy, inconsistent disclosure landscape for AI-related incidents and urges compliance and GRC leaders to slow AI adoption, pressure-test systems, clarify accountability, ensure kill-switch/manual fallback capabilities, and consider reputational fallout.
Key Highlights
· McKinsey AI Hack Overview
· Three Big Implications
· Model Drift and Tampering
· GRC Playbook for AI Risk
· Accountability and Kill Switches
Resources
Matt in Radical Compliance
Tom
Instagram
Facebook
YouTube
Twitter
LinkedIn
A multi-award winning podcast, Compliance into the Weeds was most recently honored as one of a Top 25 Regulatory Compliance Podcast and a Top 10 Business Law Podcast, and a Top 12 Risk Management Podcast. Compliance into the Weeds has been conferred a Davey, Communicator and w3 Award, all for podcast excellence. Learn more about your ad choices. Visit megaphone.fm/adchoices

Mar 11, 2026 • 19min
Carrots and Sticks in Washington: Antitrust Whistleblowers and an FCPA SOL Extension
Washington signals are shifting: new antitrust whistleblower incentives and tougher individual prosecutions are changing corporate timelines. Lawmakers are pushing to extend the FCPA statute of limitations for past conduct. The discussion links enforcement pressure with incentives for self-reporting, culture, prompt investigations, and stronger compliance programs.

Mar 4, 2026 • 23min
SDNY’s New Declination Policy: Crime Categories, Cooperation, and Compliance Implications
The award-winning Compliance into the Weeds is the only weekly podcast that takes a deep dive into a compliance-related topic, literally going into the weeds to explore it more fully. Looking for some hard-hitting insights on compliance? Look no further than Compliance into the Weeds! In this episode of Compliance into the Weeds, Tom Fox and Matt Kelly look at the recently announced new Southern District of New York standard for Declinations.
They look at SDNY U.S. Attorney Jay Clayton’s newly released self-disclosure/cooperation/declination policy and its implications for corporate compliance. While the core elements, prompt voluntary disclosure, cooperation, remediation, and restitution, mirror existing DOJ expectations, they highlight a significant change: SDNY now treats “aggravated circumstances” as certain categories of crimes that are categorically ineligible for declinations, including foreign corruption/FCPA, sanctions evasion, terrorism, sex trafficking with minors, smuggling, drug cartels, and forced labor, rather than focusing on offense traits such as senior management involvement or recidivism. They note potential inconsistencies with DOJ’s corporate enforcement approach, uncertainty about disclosure timing despite references to promptness and pre-investigation disclosure, broad discretion in enforcement, and the risk of forum shopping.
Key highlights:
Why SDNY Declinations Matter
Clayton Policy Key Changes
Aggravated Circumstances Redefined
FCPA Carve Out Confusion
Timing and Disclosure Pressure
Cooperation Restitution Disgorgement
Resources:
Matt in Radical Compliance
Tom in the FCPA Compliance and Ethics Blog
Tom
Instagram
Facebook
YouTube
Twitter
LinkedIn
A multi-award-winning podcast, Compliance into the Weeds was most recently honored as one of the Top 25 Regulatory Compliance Podcasts, a Top 10 Business Law Podcast, and a Top 12 Risk Management Podcast. Compliance into the Weeds has been conferred a Davey, a Communicator Award, and a W3 Award, all for podcast excellence. Learn more about your ad choices. Visit megaphone.fm/adchoices

Feb 25, 2026 • 24min
FCPA Trial Rarity: Charles Hobson Convicted
The award-winning Compliance into the Weeds is the only weekly podcast that takes a deep dive into a compliance-related topic, literally going into the weeds to explore it more fully. Looking for some hard-hitting insights on compliance? Look no further than Compliance into the Weeds! In this episode of Compliance into the Weeds, Tom Fox and Matt Kelly look at the recent conviction of Charles ‘Hunter” Hobson for FCPA violations.
Former Corsa Coal senior sales executive Charles Hunter Hobson was found guilty in Pennsylvania of helping arrange roughly $4.8 million in bribes to officials tied to a state-owned Egyptian coal company, using an intermediary, to secure about $143 million in contracts. Also, Hobson allegedly pocketed about $200,000. Tom and Matt Hobson’s unsuccessful “dog bite” defenses. They also discuss tensions between corporate and individual accountability, the practical reality that companies may cooperate and “turn on” individuals, and that individuals can also expose companies by cooperating with prosecutors. Finally, they speculate on why DOJ pursued trial amid shifting enforcement signals, referencing other recent FCPA matters (Millicom DPA, Smartmatic indictment) and past DOJ trial losses, and conclude that the best approach is to avoid bribery and avoid being the “last man standing.”
Key highlights:
Hobson Case Overview
Dog Bite Defense Breakdown
Payment Red Flags
Declinations and Individual Risk
Why Go to Trial?
Resources
Matt in Radical Compliance
Tom
Instagram
Facebook
YouTube
Twitter
LinkedIn
A multi-award-winning podcast, Compliance into the Weeds was most recently honored as one of the Top 25 Regulatory Compliance Podcasts, a Top 10 Business Law Podcast, and a Top 12 Risk Management Podcast. Compliance into the Weeds has been conferred a Davey, a Communicator Award, and a W3 Award, all for podcast excellence. Learn more about your ad choices. Visit megaphone.fm/adchoices

Feb 18, 2026 • 20min
Truth Stranger the Fiction: Binance, Iran, Crypto and Compliance
The award-winning Compliance into the Weeds is the only weekly podcast that takes a deep dive into a compliance-related topic, literally going into the weeds to explore it more fully. Looking for some hard-hitting insights on compliance? Look no further than Compliance into the Weeds! In this episode of Compliance into the Weeds, Tom Fox and Matt Kelly look at recent reporting on Binance that raises questions about the effectiveness of its compliance program, monitorships, and executive attitudes toward compliance.
They recap Binance’s 2023 resolution of U.S. criminal and civil matters involving money laundering and sanctions evasion. They discuss the Fortune article, which reported that Binance continued to route funds through its platform to the Iranian government in 2024 and into 2025. They highlight Mr. Zou’s public response on X, suggesting that if investigators found misconduct, it implied they failed to prevent it, which the hosts criticize as a misunderstanding that business units own risk and that compliance’s role is to provide systems, channels, oversight, and escalation rather than “prevent” all misconduct.
Key highlights:
Truth Stranger Than Fiction in Compliance
Binance’s 2023 Guilty Plea, $4.3B Penalty & Two Monitorships
Compliance Team Fallout: Investigators Fired & CCO on the Move
‘If You Found It, You Failed’: Why CEOs Misunderstand Compliance
Iran as the Red Line: Plea Agreement Breach, Politics, and Corruption Risk
Will Anyone Enforce This? Rule of Law Questions and What Comes Next
Resources:
Matt in Radical Compliance
Tom
Instagram
Facebook
YouTube
Twitter
LinkedIn
A multi-award-winning podcast, Compliance into the Weeds was most recently honored as one of the Top 25 Regulatory Compliance Podcasts, a Top 10 Business Law Podcast, and a Top 12 Risk Management Podcast. Compliance into the Weeds has been conferred a Davey, a Communicator Award, and a W3 Award, all for podcast excellence. Learn more about your ad choices. Visit megaphone.fm/adchoices

Feb 11, 2026 • 28min
NPAs, Escalation and Ethics in Competing
The award-winning Compliance into the Weeds is the only weekly podcast that takes a deep dive into a compliance-related topic, literally going into the weeds to explore it more fully. Looking for some hard-hitting insights on compliance? Look no further than Compliance into the Weeds! In this episode of Compliance into the Weeds, Tom Fox and Matt Kelly look at three recent stories to draw compliance lessons for the future.
They discuss significant developments in compliance, focusing on Jay Clayton’s recent speech regarding FCPA enforcement and the implications for companies. They also analyze a case involving the termination of compliance officers at Scotiabank for failing to escalate concerns about insider trading. The conversation concludes with a reflection on athlete decision-making in the context of injuries and the lessons for corporate compliance practices.
Key highlights:
Jay Clayton’s Speech and White Collar Crime Prosecution
Compliance Officers and Escalation Failures at Scotiabank
Ethics in Sports: Decision-Making and Compliance Lessons
Resources:
Matt in Radical Compliance
Tom
Instagram
Facebook
YouTube
Twitter
LinkedIn
A multi-award-winning podcast, Compliance into the Weeds was most recently honored as one of the Top 25 Regulatory Compliance Podcasts, a Top 10 Business Law Podcast, and a Top 12 Risk Management Podcast. Compliance into the Weeds has been conferred a Davey, a Communicator Award, and a W3 Award, all for podcast excellence. Learn more about your ad choices. Visit megaphone.fm/adchoices

Feb 4, 2026 • 28min
The Reality of AI Adoption in Corporate Compliance
The award-winning Compliance into the Weeds is the only weekly podcast that takes a deep dive into a compliance-related topic, literally going into the weeds to explore it more fully. Looking for some hard-hitting insights on compliance? Look no further than Compliance into the Weeds! In this episode of Compliance into the Weeds, Tom Fox and Matt Kelly examine three recent surveys that examine the real-world impact of AI adoption in corporate environments.
Recording from Alexandria, Virginia, where Matt is attending a conference on ethical governance of AI, Matt and Tom discuss the differing perceptions of AI’s benefits between senior executives and other employees. They explore findings from PWC, Section, and Workday surveys, uncovering a significant gap in AI’s perceived value. The discussion highlights the challenges of integrating AI, the significant rework required by employees, and the struggle to build trust in AI tools. They also debate whether enterprise-scale AI deployment or incremental, point-specific adoption is the best path forward.
Key highlights:
Conference on Ethical AI Governance
Reality Checks on AI Adoption
AI Rework and Employee Training Concerns
Trust Issues with AI
Resources:
Matt in Radical Compliance
Tom
Instagram
Facebook
YouTube
Twitter
LinkedIn
A multi-award-winning podcast, Compliance into the Weeds was most recently honored as one of the Top 25 Regulatory Compliance Podcasts, a Top 10 Business Law Podcast, and a Top 12 Risk Management Podcast. Compliance into the Weeds has been conferred a Davey, a Communicator Award, and a W3 Award, all for podcast excellence. Learn more about your ad choices. Visit megaphone.fm/adchoices

Jan 28, 2026 • 26min
The Essence of Leadership and Why Donald Trump Is Not a Role Model
The award-winning Compliance into the Weeds is the only weekly podcast that takes a deep dive into a compliance-related topic, literally going into the weeds to explore it more fully. Looking for some hard-hitting insights on compliance? Look no further than Compliance into the Weeds! In this episode of #ComplianceintotheWeeds, Tom Fox, and Matt Kelly look at the leadership failures from Donald Trump and his administration after the killing of Alex Pretti last weekend. This episode has significant editorial commentary.
Matt and Tom critically examine the behavior and leadership failings of Donald Trump and his Administration in the wake of the shooting of Alex Pretti and argue that his approach is far from exemplary for CEOs or business leaders. The discussion highlights the essence of effective leadership as the ability to instill trust and direction, contrasting this with Trump's history of questionable business acumen and the allegations of his disastrous lying to the American people. The takeaway is that true leadership involves integrity, trustworthiness, and the ability to inspire and guide employees toward a common goal, traits that Trump is argued to lack.
Key highlights:
Comparing CEOs to Donald Trump
Crisis of hyper-transparency
Corporate responses. Were they enough or a first step?
Leadership and Trust
Resources:
Matt in Radical Compliance
Tom
Instagram
Facebook
YouTube
Twitter
LinkedIn
A multi-award-winning podcast, Compliance into the Weeds was most recently honored as one of the Top 25 Regulatory Compliance Podcasts, a Top 10 Business Law Podcast, and a Top 12 Risk Management Podcast. Compliance into the Weeds has been conferred a Davey, a Communicator Award, and a W3 Award, all for podcast excellence. Learn more about your ad choices. Visit megaphone.fm/adchoices

8 snips
Jan 21, 2026 • 24min
Addressing Retaliation Against Compliance Officers: Strategies and Insights
A deep dive into retaliation risks faced by compliance officers and real-world patterns that raise personal exposure. They explore why ongoing communication with senior leaders can defuse conflicts. Practical tactics for building executive relationships, preemptive remediation, and scenario-based training are discussed. The conversation frames compliance drills like cybersecurity exercises to win board buy-in.


