Compliance into the Weeds

Tom Fox
undefined
Jun 28, 2023 • 25min

What is Driving Compliance Engagement at the Board?

The award winning, Compliance into the Weeds is the only weekly podcast which takes a deep dive into a compliance related topic, literally going into the weeds to more fully explore a subject. Looking for some hard-hitting insights on sanctions compliance? Look no further than Compliance into the Weeds! In this episode, co-hosts Tom Fox and Matt Kelly dissect the Navex 2023 State of Risk and Compliance Report. Tom and Matt delve into Navex's annual benchmarking report, which surveyed 1,300 compliance professionals. The report revealed that 53% of respondents described their compliance programs as mature. The speakers question whether the board is driving the conversation or if compliance officers are requesting updates due to potential liability. The report's findings on cybersecurity and privacy concerns, survey results on where compliance should reside in a company, and the importance of having a mature anti-bribery anti-corruption compliance program are all discussed. Tune in to hear more about how compliance officers can address pressing concerns such as cybersecurity breaches and attacks. Key Highlights ·      Navex's benchmark report on compliance programs·      Board-Compliance Officer Relationship & Cybersecurity in Compliance·      Necessity of Dedicated Compliance Committees·      Survey Finds Diverse Views on Compliance Placement in Companies·      The Importance of Anti-Bribery Compliance for Cybersecurity·      Compliance Officer Reporting to CISO Dynamics ResourcesMatt LinkedInBlog Post in Radical ComplianceTom InstagramFacebookYouTubeTwitterLinkedIn Learn more about your ad choices. Visit megaphone.fm/adchoices
undefined
Jun 21, 2023 • 22min

A Material Weaknesses Catastrophe

The award-winning, Compliance into the Weeds is the only weekly podcast that takes a deep dive into a compliance-related topic, literally going into the weeds to more fully explore a subject. Looking for some hard-hitting insights on sanctions compliance? Look no further than Compliance into the Weeds!In this episode, co-hosts Tom Fox and Matt Kelly dissect a disastrous 10k report filed by Ammo Incorporated, exposing the company’s shocking governance and compliance breakdown. The lack of personnel, internal control processes, and proper segregation of duties are just some of the material weaknesses that led to this corporate disaster. The hosts provide insightful lessons on what companies should avoid to maintain internal governance, share tips on approaching remediation, and emphasize the importance of self-awareness among senior management and the board. Tune in to hear how this niche investigative story was uncovered, and how Twitter played a crucial role in the investigation. Don’t miss Compliance into the Weeds – the podcast that will change the way you think about governance and compliance! Key Highlights ·      Material weaknesses in internal governance practices·      Material weaknesses in operations at Ammo·      Challenges with Ammo Inc.'s strategic shift and internal controls·      Remediating Company Failures: Story's Disclosure ResourcesMatt LinkedInBlog Post in Radical ComplianceTom InstagramFacebookYouTubeTwitterLinkedIn Learn more about your ad choices. Visit megaphone.fm/adchoices
undefined
Jun 14, 2023 • 21min

PCAOB: Expanding Audit Duties-the Impact and Concerns

The award winning, Compliance into the Weeds is the only weekly podcast which takes a deep dive into a compliance related topic, literally going into the weeds to more fully explore a subject. Looking for some hard-hitting insights on sanctions compliance? Look no further than Compliance into the Weeds! Tom Fox and Matt Kelly are back with another thought-provoking episode discussing the proposed new Audit Standard 2405 by the PCAOB. This new proposal requires auditors to evaluate legal violations and noncompliance that could have a material impact on financial statements. While some people believe this is a good idea, others question the cost and whether audit firms are trained for this task. The discussions covered a range of topics, including internal control evaluations, expanding audit duties, Wells Fargo case study, the potential for increased audit fees, and reporting noncompliance to law enforcement. The hosts urge listeners to read the proposal and provide feedback as the final standard is expected to be approved by the SEC. This is a must-listen for compliance professionals who want to stay up-to-date and think critically on the latest audit news. Key Highlights ·      Auditing Process for Legal and Compliance Issues·      New Standards for Auditors Beyond Financial Reporting·      Expanding PCAOB's Legal Obligations for Auditors·      Expanding Audit Firm Duties: Impact and Concerns·      Commenting on Proposed Audit RuleNotable Quotes:“This seems like a huge expansion of what auditors have done in the past.”“Certainly, for example, a large FCPA violation if you're looking at $1,000,000,000 fine, and that would definitely strike me as material.”“The proposal to expand the duties of audit firms is a dramatic expansion of what they were previously asked to do, and it is unclear whether they are fully equipped to handle this responsibility.”“Internal auditors and compliance officers may also have concerns.”ResourcesMatt LinkedInBlog Post in Radical ComplianceTom InstagramFacebookYouTubeTwitterLinkedIn Learn more about your ad choices. Visit megaphone.fm/adchoices
undefined
Jun 7, 2023 • 22min

Compliance and Middle Managers

The award-winning, Compliance into the Weeds is the only weekly podcast that takes a deep dive into a compliance-related topic, going into the weeds to explore a subject more fully and looking for some hard-hitting insights on sanctions compliance. Look no further than Compliance into the Weeds!Join Tom and Matt as they delve into middle managers' crucial role in fostering a culture of ethics and compliance within organizations. In this episode, the hosts discuss compliance officers' challenges in working with middle managers and share some practical tips on building alliances, teaching soft skills, and developing personal relationships. They also examine the use of incentives and consequence management in promoting compliance and highlight the need for positive incentives for middle managers. Take advantage of this insightful and thought-provoking discussion on enforcing internal controls in a compliance program and learn more about the different ways to ensure compliance in gift travel and entertainment expenses. Tune in now to stay ahead in the world of compliance!Key Highlights: The Role of Middle Managers in Compliance Training Middle Managers on Ethical Leadership Investing in middle managers for ethical conduct Compliance: Incentives and Consequence Management  Notable Quotes:“Compliance officers need to think about because you live and die in the success of your corporate culture, and the middle managers are the custodians of that culture.”“Compliance officers should think about how do I help middle managers. How do I coach them on how to be good leaders?”“Nothing is as significant as that personal touch point.”“If the middle manager either turned a blind eye to the unethical practice or should have known about it but was just so aimless about it and didn't care, should that middle manager suffer consequences along with the frontline employees who committed the offense? And the answer was generally yes.” ResourcesMatt LinkedInBlog Post in Radical ComplianceTom InstagramFacebookYouTubeTwitterLinkedIn Learn more about your ad choices. Visit megaphone.fm/adchoices
undefined
May 24, 2023 • 24min

A Compliance Response on Messaging Apps

The award-winning, Compliance into the Weeds is the only weekly podcast that takes a deep dive into a compliance-related topic, going into the weeds to explore a subject more fully and looking for some hard-hitting insights on sanctions compliance. Look no further than Compliance into the Weeds!Join Tom Fox and Matt Kelly on “Compliance into the Weeds” as they delve into the recent SEC crackdown on messaging apps and improper employee use. The hosts explore the challenges of regulating messaging app use and provide solutions emphasizing the importance of corporate culture and risk management strategies. Hear from experts like the DOJ representative who spoke at Compliance Week 2023 and a defense contractor who offers tech solutions to monitor messaging apps on employees’ phones. With GDPR and FINRA regulations to consider, the podcast presents a comprehensive plan for compliance officers that focuses on effective controls, processes, and consequences for policy infractions. Don’t miss out on this informative podcast highlighting the importance of cultivating relationships with internal audit teams, IT teams, and other control departments to ensure proper compliance measures. Key Highlights:  Risk management of employee messaging app usage Tech solution for monitoring employees’ messaging Corporate Culture Approach to Compliance in Financial Firms Compliance Challenges in Monitoring Employee Communications Building Relationships for Effective Compliance Management  Notable Quotes:“Assess your risks, put a risk management strategy in place, execute that strategy, train your employees, monitor the effectiveness, and remediate as appropriate.”“And the tech company CEO said it is in his mind, People the policies, procedures, people and processes a more culture compliance strategy could work, but you would need to convince employees.”“If they are also violating the policy, that’s bad. And that shows you have a corporate culture problem.”“If it’s corporate culture, how is this any different than any difficult issue we’ve seen in compliance over the past 15 years?”ResourcesMatt LinkedInBlog Post in Radical ComplianceTom InstagramFacebookYouTubeTwitterLinkedIn Learn more about your ad choices. Visit megaphone.fm/adchoices
undefined
May 17, 2023 • 26min

COSO Fraud Risk Management Framework

The award-winning, Compliance into the Weeds is the only weekly podcast that takes a deep dive into a compliance-related topic, going into the weeds to explore a subject more fully and looking for some hard-hitting insights on sanctions compliance. Look no further than Compliance into the Weeds!Get ready to dive into the fraud risk management and prevention world with Compliance into the Weeds, hosted by Tom Fox and Matt Kelly. In this episode, they break down the recently released fraud risk framework by COSO and the Association of Certified Fraud Examiners and how it’s necessary for today’s cyber-based fraud and cryptocurrency. They stress the importance of data analytics and internal hotlines to prevent fraud and that all employees need to be trained to detect and prevent fraud in their industry. The hosts also discuss how financial reporting controls may not always detect fraud and how anti-fraud controls are essential. With the rise of new types of fraud like ESG and greenwashing, the hosts recommend the fraud risk report for audit and compliance professionals to stay informed about risks swirling around corporations today. Take advantage of this informative and fascinating podcast. Tune in to Compliance into the Weeds now. Key Highlights:·      Fraud Risk Management: COSO Report 2nd Edition·      Effective Fraud Prevention Training for Employees·      Importance of Anti-Fraud Controls in Fighting Fraud·      COSO Fraud Risk Guidance and the Fraud PentagonNotable Quotes:“But when you think about it, we have a lot of external factors, such as the rise of cryptocurrency, which is riddled with fraud and corruption risk. New methods of cyber-based fraud, which didn’t exist, say, 2016, the 2010s before that. Rise of ransomware in particular, which wasn’t quite a big thing back then that it is all over the place now.”“Most frauds, you the risk management function, you might never catch them. By looking for them, you’ll have to depend on somebody else coming to you from the enterprise, say, I think this person over here is doing something sketchy.”“Fraud is having a moment. And fraud risk is on the forefront of many people’s minds from many different areas.”“We need to do better at finding ways to assess and understand your fraud risk and then implementing new controls as necessary to push that risk down to acceptable levels.”ResourcesMatt LinkedInBlog Post in Radical ComplianceTom InstagramFacebookYouTubeTwitterLinkedIn Learn more about your ad choices. Visit megaphone.fm/adchoices
undefined
May 10, 2023 • 26min

ComEd 2023 Compliance Report

The award winning, Compliance into the Weeds is the only weekly podcast which takes a deep dive into a compliance related topic, literally going into the weeds to more fully explore a subject. Looking to stay updated on compliance and ethics? Look no further than Compliance into the Weeds, with co-hosts Tom Fox and Matt Kelly! Looking to stay updated on compliance and ethics? Tune in to the Compliance into the Weeds podcast with hosts. In this episode, they tackle the corruption scandal involving ComEd and its parent Exelon, and highlight the progress made in their compliance program reforms. With the release of their second public progress report, compliance and corporate executives can learn from changing ComEd's company culture and supply chain overhaul. The podcast also dives into integrating compliance concerns into HR processes and identifying supervisory groups that may need closer monitoring. Don't miss out on this informative and insightful episode available now!Key Highlights ·      Significance of the report·      Compliance and the Supply Chain·      Compliance and Exit Interview·      Using this report going forward Notable Quotes:“I just have to acknowledge that state of Illinois finally convicted someone for corruption.”“These reports provide not just simply a roadmap of how to change culture, but really a way to think through what may seem like an insurmountable problem.”“I applaud Exelon for establishing this comprehensive supply chain risk management effort and making supply chain compliance a big part of its supply chain risk program.”“It is compliance, which is driving overall supply chain risk management and business efficiency, which is inevitably lead will inevitably lead greater profitability if done correctly and that with a variety of other areas and companies having supply chain risk.” ResourcesMatt LinkedInBlog Post in Radical ComplianceCheck out our prior podcast on ComEd’s 2022 Compliance Report hereTom InstagramFacebookYouTubeTwitterLinkedIn Learn more about your ad choices. Visit megaphone.fm/adchoices
undefined
May 3, 2023 • 20min

BAT Sanctions Enforcement Action

The award-winning, Compliance into the Weeds is the only weekly podcast that takes a deep dive into a compliance-related topic, literally going into the weeds to explore a subject and looking for some hard-hitting insights on sanctions compliance. Look no further than Compliance into the Weeds!Tom Fox and Matt Kelly dive into the recent enforcement action against British American Tobacco (BAT) for violating North Korean sanctions. After years of evading sanctions and funneling over $630 million, regulators have imposed the maximum penalty. Join the podcast to understand the scheme enacted by BAT and the consequences of their actions. They also discuss the need for clarity around who is responsible for ensuring compliance with OFAC and the Justice Department for the next 5 years. With potential penalties looming, the consequences senior management could face, and the extent of compliance commitments expected of BAT, this is a case you want to take advantage of. Listen to Tom and Matt make sense of this perplexing case and what it means for companies in countries like North Korea. Key Highlights: ·   Sanctions enforcement on British American Tobacco·   The North Korean Scheme of British American Tobacco·   British American Tobacco's Sanctions Compliance Penalty and Requirements·   Legal implications of BAT's North Korea joint ventureNotable Quotes:“I almost think we should just name this series, ‘the hits just keep on coming’ as sanctions is the new FCPA.”“This is a long-running, complicated scheme involving the highest levels of BAT knew this was going on to evade sanctions risks.”“Short of Activision Blizzard, this case strikes me as 1 of the most egregious that we have seen in any form of trade control, export control, trade sanctions, FCPA, or other major corporate white collar.”“They talk about how BAT and its subsidiaries knew full well that US sanctions said you can't do business with North Korea; they were upset over how BAT publicly announced it.” ResourcesMatt LinkedInBlog Post in Radical ComplianceTom InstagramFacebookYouTubeTwitterLinkedIn Learn more about your ad choices. Visit megaphone.fm/adchoices
undefined
Apr 26, 2023 • 20min

Seagate Sanctions Enforcement Action

The award-winning, Compliance into the Weeds is the only weekly podcast that takes a deep dive into a compliance-related topic, literally going into the weeds to explore a subject more, looking for some hard-hitting insights on sanctions compliance. Look no further than Compliance into the Weeds!In this episode, Tom and Matt discuss the recent $300 million fine against Seagate Technology Corporation for violating US sanctions against Huawei. They analyze Seagate's approach to sanctions compliance, especially when compared to Microsoft's response to similar violations. With billions of dollars in sales at stake, the implications of these cases for compliance officers are huge. With frank insights, deep knowledge, and engaging dialogue, Compliance into the Weeds is a must-listen for anyone interested in sanctions compliance and the world of business.Key Highlights:·      Seagate's controversial business dealings with Huawei·      Seagate's Sanction Violations and Compliance Programs·      Seagate's Violation of Foreign Product Rule·      Expanding Lessons for Compliance Officers Notable Quotes:"Sanctions is going to be the new FCPA risk," according to the US Justice Department.""The failure to acknowledge your culpability is a key multiplier under the federal sentencing guidelines. And so if this had been any criminal penalty, this fine and penalty would have gone through the roof.""Look to your left, look to your right, see what other people are doing, what they're getting in trouble for, and incorporate those lessons learned into your risk assessment.""Sanctions are hard, and companies can misunderstand this. Well, very specifically, the rule that got Seagate into trouble is known as Foreign Direct Product Rule or what is it exactly, the foreign-produced direct product rule?"ResourcesMatt LinkedInBlog Post in Radical ComplianceTom InstagramFacebookYouTubeTwitterLinkedIn Learn more about your ad choices. Visit megaphone.fm/adchoices
undefined
Apr 19, 2023 • 25min

SOX Compliance, PCAOB Inspections and Audits

The award winning, Compliance into the Weeds is the only weekly podcast which takes a deep dive into a compliance related topic, literally going into the weeds to more fully explore a subject. Join Tom Fox and Matt Kelly in the latest episode of "Compliance into the Weeds" as they delve into the world of SOX compliance. In this discussion, Matt shares insights from recent webinars and Cornerstone Research studies on class action lawsuits related to accounting issues, while Tom emphasizes the importance of preventing accounting fraud through robust internal control systems. They shed light on the role of IT controls in ensuring the integrity and security of financial systems, as well as the challenges auditors face in verifying their effectiveness. They go on to discuss how companies can mitigate the risk of fraud by implementing strong access and cybersecurity controls and adapting to new business environments. Don't miss out on this captivating episode which offers practical tips and strategies for compliance officers and industry professionals alike!Key Highlights·      Current SOX compliance priorities·      The cost of lawsuits involving SOX compliance failures, financial accounting and financial restatements are going up·      2023 PCAOB inspection priorities Notable Quotes:“None of those numbers are going in the right direction for SOX compliance officers.”“A lot of what SOX compliance is and a lot of what auditors are looking at relates to IT controls.”“We rely so much on IT now to run the accounting system, the accounts payable, the finance function, a lot of what you need to assure a strong accounting system is really how are you governing software that is running those apps.”“That, however, assumes that you've got strong cybersecurity and strong access controls around getting into that portal.” ResourcesMatt  on LinkedInMatt’s 3 articles on Radical Compliancea.     SOX Complianceb.     Lawsuits over SOX failuresc.     PCAOB Inspection PrioritiesTom InstagramFacebookYouTubeTwitterLinkedIn Learn more about your ad choices. Visit megaphone.fm/adchoices

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app