No Result
View All Result
SUBSCRIBE | NO FEES, NO PAYWALLS
MANAGE MY SUBSCRIPTION
NEWSLETTER
Corporate Compliance Insights
  • About
    • About CCI
    • Writing for CCI
    • NEW: CCI Press – Book Publishing
    • Advertise With Us
  • Explore Topics
    • See All Articles
    • Compliance
    • Ethics
    • Risk
    • Artificial Intelligence (AI)
    • FCPA
    • Governance
    • Fraud
    • Internal Audit
    • HR Compliance
    • Cybersecurity
    • Data Privacy
    • Financial Services
    • Well-Being at Work
    • Leadership and Career
    • Opinion
  • Vendor News
  • Downloads
    • Download Whitepapers & Reports
    • Download eBooks
  • Research
  • Books
    • CCI Press
    • New: Bribery Beyond Borders: The Story of the Foreign Corrupt Practices Act by Severin Wirz
    • CCI Press & Compliance Bookshelf
    • The Seven Elements Book Club
  • Podcasts
  • Webinars
  • Videos
  • Subscribe
Jump to a Section
  • At the Office
    • Ethics
    • HR Compliance
    • Leadership & Career
    • Well-Being at Work
  • Compliance & Risk
    • Compliance
    • FCPA
    • Fraud
    • Risk
  • Finserv & Audit
    • Financial Services
    • Internal Audit
  • Governance
    • ESG
    • Getting Governance Right
  • Infosec
    • Cybersecurity
    • Data Privacy
  • Opinion
    • Adam Balfour
    • Jim DeLoach
    • Mary Shirley
    • Yan Tougas
No Result
View All Result
Corporate Compliance Insights
Home Compliance

10 Reasons Why DOJ’s Foray Into Ephemeral Messaging Is Misguided

Latest corporate compliance guidance threatens to transform every workplace into a surveillance state

by Joe Murphy
January 7, 2025
in Compliance, Opinion
doj building with flag

Under the guise of corporate compliance, federal prosecutors are making a clear grab for control over how Americans communicate at work, says compliance and ethics author and speaker Joe Murphy.

The government has apparently decided it can use compliance programs as a lever to get us to control how we communicate. This goes under the tech-sounding words “ephemeral and off-channel communications.” But is this just a simple compliance policy implementation question? No. The DOJ is overreaching and misusing its authority in leveraging compliance programs to tell us how we should and should not communicate by adding ephemeral messaging to its “Evaluation of Corporate Compliance Programs” guidance.

Here are 10 reasons why this is problematic:

  1. In the US, the financial services industry has rules about recording and keeping records of communications. There is no law in the US that requires all other companies and organizations to do this. 
  2. The government is using compliance programs as a lever to extend these narrowly targeted rules to everyone else. There is no legislation supporting this. There has been no consideration of the First Amendment threat from the government attempting to regulate how we communicate. 
  3. There are already laws that cover the government’s concerns: We cannot obstruct investigations or engage in misprision of felony. Company policies only need to cover this.
  4. There is no limit to how far this goes. Every organization is subject to using compliance programs as a defense. So the compliance leverage applies everywhere: churches, nonprofits, unions, political parties. The government apparently has not even thought about this.
  5. This is not just about having a policy. The DOJ says we must act “to the greatest extent possible” to preserve these communications. That means every aspect of a compliance program applies to enforce DOJ’s demand: audits, monitoring, training, discipline, risk assessment, helpline calls, evaluations of success, etc. 
  6. Controlling how everyone in an organization communicates and records their communications is a fool’s errand. As difficult as the compliance job is, this will destroy the compliance program’s credibility and divert it from preventing real crimes and misconduct. 
  7. There is no limit to what this covers. What about Zoom calls and other video chat? If all it takes to record is to click the record button, then this would certainly be covered. Why not also require that all face-to-face communications be written up? There is no stopping point.
  8. This flies in the face of rules and laws relating to privacy. GDPR, for example, directs that records relating to people be kept only when needed. Because no law requires such vast retention, there is no legal defense. Imagine how much personal information would be retained if every Zoom call, including those taken from home, had to be retained. 
  9. The record volume is enormous, with substantial costs and strains on already overworked IT staff. Consider how much volume would be created just by recording Zoom calls. The more communication is retained, the greater the risks from cybercrime. 
  10. The DOJ tried this type of back door path once before, attempting to eviscerate attorney-client confidentiality by conditioning prosecutorial leniency on waiver of privilege protection. Congress reacted and the DOJ completely backed away.

Time has passed and perhaps the privilege waiver lesson has been forgotten. But each of these efforts, in its own way, was an abuse of power. And each deserves the same fate. For a push this broad and intrusive, perhaps we need to let the people, through their elected representatives, decide what standard they want to apply. We value our right to communicate in confidence with our legal counsel. And we value the right to communicate how we want, whether to document how we communicate and whether our job is to create and retain evidence for governments to use against us.

Tags: DOJ
Previous Post

New Year, New Cyber Threats: How Boards Are Stepping Up

Next Post

Corporate Ethics & Culture Face New Tests in Trump’s America

Joe Murphy

Joe Murphy

Joe Murphy CCEP is co-founder and editor of "Compliance and Ethics: Ideas & Answers." He is an author, speaker and longtime contributor to the field of compliance and ethics.

Related Posts

us doj building with flag

Once You’ve Decided to Self-Disclose, Here’s How to Do It Right

by Sean M. Farrell and Thomas F. Rybarczyk
July 29, 2026

Deciding to self-disclose is one thing; doing it well is another, and the difference often shapes whether a company earns...

bosch sign

Bosch Case Provides First Glimpse of NatSec Application of Department-Wide CEP

by Roberto Gonzalez and Samuel Kleiner
July 13, 2026

While the CEP generally aligns with the prior policy, it offers greater potential benefits to a company that voluntarily self-discloses,...

data abstract numbers

The DOJ Wants Strong FCA Whistleblower Lawsuits From Data Miners

by Selina P. Coleman, Lesley C. Reynolds, Thomas H. Suddath Jr., David A. Bender and Matthew K. Loughran
May 14, 2026

The FOCUS initiative sets parameters for the DOJ’s support of data miners’ qui tam complaints.

doj timeliness collage

What the Enforcement Record Says About ‘Timely’ Disclosure

by Jennifer L. Gaskin
May 13, 2026

Of the nine enforcement cases CCI examined where companies received credit for timely disclosure, only two included a measurable time...

Next Post
trump merch on table

Corporate Ethics & Culture Face New Tests in Trump's America

GGR sq
No Result
View All Result

Privacy Policy | AI Policy

Founded in 2010, CCI is the web’s premier global independent news source for compliance, ethics, risk and information security. 

Got a news tip? Get in touch. Want a weekly round-up in your inbox? Sign up for free. No subscription fees, no paywalls. 

Follow Us

Browse Topics:

  • CCI Press
  • Compliance
  • Compliance Podcasts
  • Cybersecurity
  • Data Privacy
  • eBooks Published by CCI
  • Ethics
  • FCPA
  • Featured
  • Financial Services
  • Fraud
  • Governance
  • GRC Vendor News
  • HR Compliance
  • Internal Audit
  • Leadership and Career
  • On Demand Webinars
  • Opinion
  • Research
  • Resource Library
  • Risk
  • Uncategorized
  • Videos
  • Webinars
  • Well-Being
  • Whitepapers

© 2026 Corporate Compliance Insights

No Result
View All Result
  • About
    • About CCI
    • Writing for CCI
    • NEW: CCI Press – Book Publishing
    • Advertise With Us
  • Explore Topics
    • See All Articles
    • Compliance
    • Ethics
    • Risk
    • Artificial Intelligence (AI)
    • FCPA
    • Governance
    • Fraud
    • Internal Audit
    • HR Compliance
    • Cybersecurity
    • Data Privacy
    • Financial Services
    • Well-Being at Work
    • Leadership and Career
    • Opinion
  • Vendor News
  • Downloads
    • Download Whitepapers & Reports
    • Download eBooks
  • Research
  • Books
    • CCI Press
    • New: Bribery Beyond Borders: The Story of the Foreign Corrupt Practices Act by Severin Wirz
    • CCI Press & Compliance Bookshelf
    • The Seven Elements Book Club
  • Podcasts
  • Webinars
  • Videos
  • Subscribe

© 2026 Corporate Compliance Insights