No Result
View All Result
SUBSCRIBE | NO FEES, NO PAYWALLS
MANAGE MY SUBSCRIPTION
NEWSLETTER
Corporate Compliance Insights
  • Home
  • About
    • About CCI
    • CCI Magazine
    • Writing for CCI
    • Career Connection
    • NEW: CCI Press – Book Publishing
    • Advertise With Us
  • Explore Topics
    • See All Articles
    • Compliance
    • Ethics
    • Risk
    • FCPA
    • Governance
    • Fraud
    • Internal Audit
    • HR Compliance
    • Cybersecurity
    • Data Privacy
    • Financial Services
    • Well-Being at Work
    • Leadership and Career
    • Opinion
  • Vendor News
  • Library
    • Download Whitepapers & Reports
    • Download eBooks
    • New: Living Your Best Compliance Life by Mary Shirley
    • New: Ethics and Compliance for Humans by Adam Balfour
    • 2021: Raise Your Game, Not Your Voice by Lentini-Walker & Tschida
    • CCI Press & Compliance Bookshelf
  • Podcasts
    • Great Women in Compliance
    • Unless: The Podcast (Hemma Lomax)
  • Research
  • Webinars
  • Events
  • Subscribe
Jump to a Section
  • At the Office
    • Ethics
    • HR Compliance
    • Leadership & Career
    • Well-Being at Work
  • Compliance & Risk
    • Compliance
    • FCPA
    • Fraud
    • Risk
  • Finserv & Audit
    • Financial Services
    • Internal Audit
  • Governance
    • ESG
    • Getting Governance Right
  • Infosec
    • Cybersecurity
    • Data Privacy
  • Opinion
    • Adam Balfour
    • Jim DeLoach
    • Mary Shirley
    • Yan Tougas
No Result
View All Result
Corporate Compliance Insights
Home Compliance

Building or Enhancing Your Whistleblower Program? Do These 5 Things.

In the wake of SEC-record award, now’s the time to beef up your reporting channels

by Susan Divers
October 2, 2023
in Compliance, Governance
megaphone digital art collage

As the saying goes, an ounce of prevention’s worth a pound of cure. Whether statutorily mandated or not, whistleblower programs can help companies prevent major ethical or legal breaches before they occur. LRN’s Susan Divers shares insights about building or strengthening whistleblower programs in light of the SEC’s eye-popping $268 million award.

Organizations talk a lot about corporate culture — and rightly so. They often showcase their appealing working environment, nurturing approach to career progression, commitment to DEI or their green credentials as part of their values and ethos. All of this is commendable, but it’s equally important how they root out and deal with serious problems that might occur.

What happens if fraud or other misconduct is committed internally? How easy is it to report bad behavior and how is it investigated and resolved? What about retaliation against employees or others who raise issues? Failing to fully and adequately investigate and remediate misconduct can be costly as such problems typically don’t resolve themselves — and usually grow worse. The answers to these questions are the critical measure of an organization’s character and demonstrate the robustness of its governance as well as determine its compliance with regulatory requirements in many instances.

Regulatory requirements

In the wake of the Enron scandal and subsequent banking crisis, whistleblower programs became requirements in many regulated industries. The Sarbanes-Oxley Act of 2002 (SOX) requires publicly traded companies to establish whistleblower programs for accounting and auditing matters that allow for anonymous, confidential reporting and prohibit retaliation. 

Other laws and regulations, particularly in the government contracting and healthcare sectors, can also require fraud and abuse reporting mechanisms. And some European countries prohibit anonymous reporting channels — a legacy of WWII collaboration — so check with local law requirements as well.

Following SOX, the Dodd-Frank Act of 2010 required the SEC to establish a whistleblower program that rewards those who bring forward valid and previously unreported allegations about violations of the securities laws. Successful whistleblowers can recover from 10% to 30% of the money collected when the SEC and other agencies impose sanctions of more than $1 million.

In May 2023, the highest award in the SEC’s whistleblower program history — nearly $279 million — was paid to a single whistleblower. This award was reportedly related to Ericsson’s $1.1 billion FCPA settlement with the DOJ and the SEC in 2019. Though the SEC did not provide substantive information about the case or the whistleblower, the SEC noted, “While the whistleblower’s information did not prompt the opening of the Commission’s investigation, their information expanded the scope of misconduct charged.” 

speaking out
Compliance

How to Comply With the EU Whistleblowing Directive

by Daniel Vaknine
April 26, 2023

Despite its passage nearly four years ago, the EU’s whistleblower directive has yet to be adopted by many European Union member nations. Despite this, many organizations — and their compliance teams — have worked to revise their whistleblower policies or implement fresh ones in accordance with the EU’s guidance.

Read moreDetails

Good governance

Companies that are not specifically required by regulation to have a whistleblower program nonetheless frequently implement one in the form of a confidential, anonymous hotline as part of their ethics and compliance program. 

Misconduct scandals undermine the trust of key stakeholders such as staff or customers, potentially leading to an exodus of talent or a loss of business. Identifying red flags at the earliest possible opportunity and dealing effectively with them can prevent major compliance scandals later. 

Many problems can start off as mistakes, such as inaccurate record-keeping or accidental breaches of process. These can turn into something much more serious over time if left unattended. A good hotline/reporting system can act as a supplement to internal audit assurance activities and, if used creatively, provide insight into the issues that employees on the front lines are encountering, even if they do not amount to misconduct per se. 

So, what does good look like?

  • Broad approach: In the wake of the pandemic, companies with high-performing ethics and compliance programs have expanded their internal hotlines into helplines that welcome questions, queries or observations that don’t rise to the level of misconduct but may be an indication that something is amiss at an early stage or that an employee needs guidance. For example, suggestions or pressure from a client to fudge health and safety testing conducted on their products could lead to serious misconduct if not addressed. Encouraging employees or third parties to come forward with concerns is a best practice, as not everyone can conclusively identify misconduct. LRN’s annual E&C program effectiveness report found that 42% of the E&C professionals we surveyed had either expanded their hotlines into helplines or set up a separate one.
  • Broad inputs: Data from the Ethisphere Institute in 2019 and from the Ethics and Compliance Initiative in the past three years indicates that hotlines capture 5% or less of misconduct allegations, with the majority of such reports being made to managers or human resource professionals. This means that hotline data can be seriously incomplete and not reflective of the main concerns of employees. Many companies have incorporated concerns and complaints raised to managers or others in the company into hotline data and obtained significantly more meaningful analytics as a result.
  • Ease of access: Hotlines or helplines should invite employees to share their concerns and be multi-channel to ensure they are easily accessible, including dedicated phone numbers, email addresses, translation capability, webpages or an online reporting tool for 24/7 accessibility. Instructions and training on how to use these should be simple and easy to follow and in local languages.
  • Transparency: It’s important to demystify the hotline and other E&C programs as much as possible so everyone knows what to expect. It is important to communicate details of how to report — what the process entails, retaliation protections, and timelines for investigation and resolution of complaints — to staff regularly. “Speak Up, Listen Up and Resolve” campaigns are a good way to get the message across that it is part of an employee’s duty to report issues of concern, even if they don’t have all the facts or a clear picture.
  • Training: Training is essential at all levels. Staff need to know how to spot misconduct as well as how to report it and be aware of how important tackling it is to the company’s culture and compliance requirements. Managers need to know how to encourage their team to speak up, what their obligations are if someone reports an issue to them, what steps to take next, what an investigation might look like and how to support whistleblowers.

The reality is that organizations that operate successful whistleblower programs detect fraudulent activities far more quickly: in a year on average, compared to 18 months for those that don’t. Having such a program in place underpins a culture of ethics and trust, which is central to sustainable business success. Indeed, the LRN “Benchmark of Ethical Culture” study found that companies with the strongest ethical cultures outperform by around 40% across all measures of business performance, including customer satisfaction, staff loyalty, innovation and growth.

Creating a robust response to fraud and misconduct through well-thought-out whistleblower programs demonstrates a clear commitment to organizational justice and good corporate governance. Everyone has a part to play and, if done well, people, profits and brand reputation will all be better protected.


Tags: Corporate CultureCulture of EthicsInternal ReportingSECWhistleblowing
Previous Post

SEC Adopts Sweeping New Private Fund Adviser Rules

Next Post

TrusTrace Joins EU-Focused Sustainable Textiles Program

Susan Divers

Susan Divers

Susan Divers is a senior adviser with LRN. In that capacity, she brings her 30-plus years of accomplishments and experience in the ethics and compliance area to LRN partners and colleagues. This expertise includes building state-of-the-art compliance programs infused with values, designing user-friendly means of engaging and informing employees, fostering an embedded culture of compliance, and substantial subject matter expertise in anti-corruption, export controls, sanctions and other key areas of compliance. Prior to joining LRN, she served as AECOM’s assistant general for global ethics and compliance and chief ethics and compliance officer. Under her leadership, AECOM’s ethics and compliance program garnered six external awards in recognition of its effectiveness and Divers’ thought leadership in the ethics field.

Related Posts

sec building sign

What to Expect From Atkins-Led SEC

by Jaclyn Jaeger
May 6, 2025

Former Bush-era commissioner returns with mission to streamline regulations and enhance capital markets

stress at work concept

Caught Between Conscience and Career: An E&C Leader’s Confession

by Anonymous
April 23, 2025

The mental health crisis among ethics and compliance professionals has remained largely unspoken despite its prevalence. Drawing on personal experience...

hedge maze

The Beauty of Bureaucracy: Good Governance Clarified

by Anna Romberg and Julia Haglind
April 15, 2025

Systems thinking, human-centered design and cultural alignment transform bureaucracy into business advantage

LRN E&C Program Effectiveness in Financial Services

Ethical Gaps in the Financial Services Sector

by Corporate Compliance Insights
April 11, 2025

What ethical gaps might be lurking in your organization? Insights From 2025 Benchmark Report Ethical Gaps in Financial Services What’s...

Next Post
TrusTrace logo

TrusTrace Joins EU-Focused Sustainable Textiles Program

No Result
View All Result

Privacy Policy | AI Policy

Founded in 2010, CCI is the web’s premier global independent news source for compliance, ethics, risk and information security. 

Got a news tip? Get in touch. Want a weekly round-up in your inbox? Sign up for free. No subscription fees, no paywalls. 

Follow Us

Browse Topics:

  • CCI Press
  • Compliance
  • Compliance Podcasts
  • Cybersecurity
  • Data Privacy
  • eBooks Published by CCI
  • Ethics
  • FCPA
  • Featured
  • Financial Services
  • Fraud
  • Governance
  • GRC Vendor News
  • HR Compliance
  • Internal Audit
  • Leadership and Career
  • On Demand Webinars
  • Opinion
  • Research
  • Resource Library
  • Risk
  • Uncategorized
  • Videos
  • Webinars
  • Well-Being
  • Whitepapers

© 2025 Corporate Compliance Insights

Welcome to CCI. This site uses cookies. Please click OK to accept. Privacy Policy
Cookie settingsACCEPT
Manage consent

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
Necessary
Always Enabled
Necessary cookies are absolutely essential for the website to function properly. These cookies ensure basic functionalities and security features of the website, anonymously.
CookieDurationDescription
cookielawinfo-checbox-analytics11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Analytics".
cookielawinfo-checbox-functional11 monthsThe cookie is set by GDPR cookie consent to record the user consent for the cookies in the category "Functional".
cookielawinfo-checbox-others11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Other.
cookielawinfo-checkbox-necessary11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary".
cookielawinfo-checkbox-performance11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Performance".
viewed_cookie_policy11 monthsThe cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data.
Functional
Functional cookies help to perform certain functionalities like sharing the content of the website on social media platforms, collect feedbacks, and other third-party features.
Performance
Performance cookies are used to understand and analyze the key performance indexes of the website which helps in delivering a better user experience for the visitors.
Analytics
Analytical cookies are used to understand how visitors interact with the website. These cookies help provide information on metrics the number of visitors, bounce rate, traffic source, etc.
Advertisement
Advertisement cookies are used to provide visitors with relevant ads and marketing campaigns. These cookies track visitors across websites and collect information to provide customized ads.
Others
Other uncategorized cookies are those that are being analyzed and have not been classified into a category as yet.
SAVE & ACCEPT
No Result
View All Result
  • Home
  • About
    • About CCI
    • CCI Magazine
    • Writing for CCI
    • Career Connection
    • NEW: CCI Press – Book Publishing
    • Advertise With Us
  • Explore Topics
    • See All Articles
    • Compliance
    • Ethics
    • Risk
    • FCPA
    • Governance
    • Fraud
    • Internal Audit
    • HR Compliance
    • Cybersecurity
    • Data Privacy
    • Financial Services
    • Well-Being at Work
    • Leadership and Career
    • Opinion
  • Vendor News
  • Library
    • Download Whitepapers & Reports
    • Download eBooks
    • New: Living Your Best Compliance Life by Mary Shirley
    • New: Ethics and Compliance for Humans by Adam Balfour
    • 2021: Raise Your Game, Not Your Voice by Lentini-Walker & Tschida
    • CCI Press & Compliance Bookshelf
  • Podcasts
    • Great Women in Compliance
    • Unless: The Podcast (Hemma Lomax)
  • Research
  • Webinars
  • Events
  • Subscribe

© 2025 Corporate Compliance Insights