

Compliance into the Weeds
Tom Fox
What happens when two compliance aficionados get together to talk all things compliance, risk management and ERM? You get Tom Fox, the Voice of Compliance and Matt Kelly, the Coolest Guy in Compliance, going into the weeds of a topic each week. Each week, you can take a deep dive with two of the top writers, thinkers and prognosticators in compliance.
Episodes
Mentioned books

Aug 31, 2022 • 27min
Mudge and Whistleblower Allegations Against Twitter
Compliance into the Weeds is the only weekly podcast that takes a deep dive into a compliance-related topic, literally going into the weeds to more fully explore a subject. In this episode, we explore the recently publicly released whistleblower allegations by Peiter Zatko, AKA “Mudge,” made against his former employer Twitter. Highlights include:
The allegations made by Mudge.
What possible enforcement actions and legal ramifications could develop?
What does this mean for the Twitter/Elon Musk litigation?
Where was the Board, and who was the Board?
Is there more to come?
ResourcesMatt in Radical Compliance Learn more about your ad choices. Visit megaphone.fm/adchoices

Aug 24, 2022 • 22min
HanesBrands Cyber Security Breach Disclosure
Compliance into the Weeds is the only weekly podcast which takes a deep dive into a compliance related topic, literally going into the weeds to more fully explore a subject. In this episode, we explore the recent disclosure by HanesBrands of a cyber security breach which cost the company over $100MM in sales in Q2 2022. Highlights include:
Why the public disclosure.
What might the SEC rules around disclosure be when adopted.
Why CISOs and IT (and a whole host of other corp functions) needs to talk to compliance.
What if this were a physical breach?
How and where to get started.
ResourcesMatt in Radical Compliance Learn more about your ad choices. Visit megaphone.fm/adchoices

Aug 17, 2022 • 20min
CFPB on Data Protection Minimums
Compliance into the Weeds is the only weekly podcast which takes a deep dive into a compliance related topic, literally going into the weeds to more fully explore a subject. In this episode, we explore the recent CFPB circular which noted a company’s failure to implement adequate data protection measures can qualify as an unfair practice prohibited under the Consumer Financial Protection Act. Highlights include:· The CFPB is going to start bringing charges against more companies for sloppy data protection programs. · Three Key data protection security controls. · Why CISOs and IT needs to talk to compliance.· The role of auditing and monitoring.· How and where to get started.ResourcesMatt in Radical Compliance Learn more about your ad choices. Visit megaphone.fm/adchoices

Aug 10, 2022 • 27min
What is a ‘Reasonably Designed’ Compliance Program
Compliance into the Weeds is the only weekly podcast that takes a deep dive into a compliance-related topic, literally going into the weeds to more fully explore a subject. In this episode, we explore the new requirements for CCO certification by considering what is meant by the term ‘reasonably designed’ compliance program. Highlights include:· What does ‘reasonably designed’ mean in practice and the eyes of the DOJ?· Should the DOJ articulate a standard?· Are CCOs certifying under greater risk?· What have other thought leaders opined?· Does this standard impact ‘effective’ compliance programs?ResourcesMatt in Radical Compliance Learn more about your ad choices. Visit megaphone.fm/adchoices

Aug 3, 2022 • 24min
Internal Controls Lessons from Cyber Failures in Wisconsin
Compliance into the Weeds is the only weekly podcast that takes a deep dive into a compliance-related topic, literally going into the weeds to more fully explore a subject. In this episode, we deep dive into recent failures detected in the state of Wisconsin regarding cyber security risks around election integrity. Highlights include:
The risks were uncovered.
What is a material risk?
Why Multi-Factor Authentication is important cyber security control.
What are the consequences of a single point of failure?
How and when should redefine a hazard?
What does CISA say about MFAs?
ResourcesMatt in Radical Compliance Learn more about your ad choices. Visit megaphone.fm/adchoices

Jul 27, 2022 • 23min
Lessons from the Biotronik Anti-Kickback Enforcement Action
Compliance into the Weeds is the only weekly podcast which takes a deep dive into a compliance related topic, literally going into the weeds to more fully explore a subject. In this episode, we take a deep dive into the recent settlement by Biotronik with the DOJ over allegations of the violation of the Anti-Kickback Statue Highlights include:· Background facts.· Training programs as cover for bribes.· What is lavish entertainment?· What were the internal control failures?· Controls for high-risk payments.· Lessons learned for the ABC compliance professional.ResourcesTom in the FCPA Compliance and Ethics BlogPart 1-BackgroundPart 2-the Bribery Schemes and Lessons LearnedMatt in Radical Compliance Learn more about your ad choices. Visit megaphone.fm/adchoices

Jul 20, 2022 • 24min
The Wild and Wacky World of Control Failures
Compliance into the Weeds is the only weekly podcast which takes a deep dive into a compliance related topic, literally going into the weeds to more fully explore a subject. In this episode, we take a deep dive into the recent story of an in-house attorney who was disbarred for fraudulent activities in creating fraudulent claims and fraudulent settlements. Highlights include:· Background facts.· Conflicts of Interests.· What were the internal control failures?· Were they material?· Lessons for the compliance professional.ResourcesMatt in Radical Compliance Learn more about your ad choices. Visit megaphone.fm/adchoices

Jul 13, 2022 • 20min
DFS Fines Carnival Cruise Lines for Cyber Failures
Compliance into the Weeds is the only weekly podcast which takes a deep dive into a compliance related topic, literally going into the weeds to more fully explore a subject. In this episode, we take a deep dive into the recent New York, Department of Financial Services enforcement action against Carnival Cruise Lines for failures in its cybersecurity reporting obligations. Highlights include:· Why is Carnival Cruise Lines subject to the DFS?· What violations occurred?· Why were there false certifications?· What were the tactical cyber security violations?· Were they material?· Lessons for the compliance professional.ResourcesMatt in Radical Compliance Learn more about your ad choices. Visit megaphone.fm/adchoices

Jun 29, 2022 • 26min
Dobbs and Compliance
Compliance into the Weeds is the only weekly podcast which takes a deep dive into a compliance related topic, literally going into the weeds to more fully explore a subject. In this episode, we take a deep dive into some of the issues for compliance professionals in the wake of the Dobbs decision. Highlights include:· What should compliance professional do now?· What are your policies and procedures?· Forced-birth v. women’s right states.· Where does you company stand?· Preparing for compliance challenges ahead.· The next wave of civil rights issues destroyed.· Ethical practices v. obeying state laws· Social media outreach.ResourcesMatt in Radical ComplianceTom in the FCPA Compliance and Ethics Report Learn more about your ad choices. Visit megaphone.fm/adchoices

Jun 22, 2022 • 25min
Unintended Consequences of CCO Certifications
Compliance into the Weeds is the only weekly podcast which takes a deep dive into a compliance related topic, literally going into the weeds to more fully explore a subject. In this episode, we take a deep dive into some of the unintended consequences of CCO certifications as required by the Department of Justice. Highlights include:· What happened to reasonable and proportional?· What about control override?· What is the purpose of compliance training?· What is effective compliance training?· Is compliance training complimentary to compliance training effectiveness?ResourcesMatt in Radical Compliance Learn more about your ad choices. Visit megaphone.fm/adchoices


