No Result
View All Result
SUBSCRIBE | NO FEES, NO PAYWALLS
MANAGE MY SUBSCRIPTION
NEWSLETTER
Corporate Compliance Insights
  • About
    • About CCI
    • Writing for CCI
    • NEW: CCI Press – Book Publishing
    • Advertise With Us
  • Explore Topics
    • See All Articles
    • Compliance
    • Ethics
    • Risk
    • FCPA
    • Governance
    • Fraud
    • Internal Audit
    • HR Compliance
    • Cybersecurity
    • Data Privacy
    • Financial Services
    • Well-Being at Work
    • Leadership and Career
    • Opinion
  • Vendor News
  • Downloads
    • Download Whitepapers & Reports
    • Download eBooks
  • Books
    • CCI Press
    • New: Bribery Beyond Borders: The Story of the Foreign Corrupt Practices Act by Severin Wirz
    • CCI Press & Compliance Bookshelf
    • The Seven Elements Book Club
  • Podcasts
    • Great Women in Compliance
    • Unless: The Podcast (Hemma Lomax)
  • Research
  • Webinars
  • Events
  • Subscribe
Jump to a Section
  • At the Office
    • Ethics
    • HR Compliance
    • Leadership & Career
    • Well-Being at Work
  • Compliance & Risk
    • Compliance
    • FCPA
    • Fraud
    • Risk
  • Finserv & Audit
    • Financial Services
    • Internal Audit
  • Governance
    • ESG
    • Getting Governance Right
  • Infosec
    • Cybersecurity
    • Data Privacy
  • Opinion
    • Adam Balfour
    • Jim DeLoach
    • Mary Shirley
    • Yan Tougas
No Result
View All Result
Corporate Compliance Insights
Home Compliance

Defining Culture: Can Firm Culture Be Regulated?

by Michael Manley
August 17, 2016
in Compliance
blue corporate culture puzzle being assembled by multiple hands

Culture is defined as a way of thinking, behaving or working that exists in a place or organization (such as a business). Firm culture has long been a target of regulators of the financial services industry as the culprit in many scandals. In that regard, in its 2016 Regulatory and Examination Priorities Letter, the Financial Industry Regulatory Authority (FINRA) again identifies firm culture as the cause of systemic breakdowns in the financial services industry. FINRA Chairman and CEO Richard Ketchum states: “Nearly a decade after the financial crisis, some firms continue to experience systemic breakdowns manifested through significant violations due to poor cultures of compliance.” Chairman Ketchum, however, clarifies that “(o)ur goal is not to dictate a specific culture,” but rather links firm culture to effective compliance and risk management.

FINRA asserts that it will assess five indicators of a firm’s culture:

  1. whether control functions are valued within the organization,
  2. whether policy or control breaches are tolerated,
  3. whether the organization proactively seeks to identify risk and compliance events,
  4. whether immediate managers are effective role models of firm culture and
  5. whether subcultures that may conform to overall corporate culture are identified and addressed.

In February of 2016, FINRA released its “culture survey” to members of the brokerage industry, in which it defined “firm culture” as “the set of explicit and implicit norms, practices and expected behaviors that influence how employees make and carry out decisions in the course of conducting the firm’s business.” FINRA’s Culture Survey requests the following eight categories of information:

  1. A summary of the key policies and processes by which the firm establishes cultural values. In the summary, include whether this is a board-level function at your broker-dealer or at the corporate parent of the firm. If it is a board-level function, describe the board’s involvement. Also, provide a description of any steps you have initiated or completed in the past 24 months to promote, strengthen or change your firm’s culture.
  2. A description of the processes employed by executive management, business unit leaders and control functions in establishing, communicating and implementing your firm’s cultural values. Include a description of how executive management communicates, promotes and establishes a “tone from the top” as it relates to cultural values (to the extent not covered by the previous question). Include a description of the firm’s approach to ensure that its cultural values are adopted and applied by middle management.
  3. A description of how your firm assesses and measures the impact of cultural values (to the extent assessments and measures exist) and whether they have made a difference at your firm in achieving desired behaviors. Provide a summary of the policy statements, procedures, mission statements or other related documents that reflect your firm’s assessments and measures.
  4. A summary of the processes your firm uses to identify policy breaches, including the types of reports or other documents your firm relies on, in determining whether a breach of its cultural values has occurred. Please focus your summary on those activities your firm considers to be directly related to reinforcing its culture.
  5. A description of how your firm addresses cultural value policy or process breaches once discovered. What efforts are used to promptly address these policy or process breaches? What is the escalation process to surface and resolve such breaches?
  6. A description of your firm’s policies and processes, if any, to identify and address subcultures within the firm that may depart from or undermine the cultural values articulated by your board and senior management.
  7. A description of your firm’s compensation practices and how they reinforce your firm’s cultural values.
  8. A description of the cultural value criteria used to determine promotions, compensation or other rewards. Describe opportunities for promotion to the managing director or equivalent level available to personnel of your compliance, legal, risk and internal audit functions.

At FINRA’s Annual Conference in May of 2016, Chairman Ketchum reinforced the message: “I can say unequivocally that firm culture has a profound influence on how a securities firm conducts its business. I can’t count the number of times throughout my career where a culture that doesn’t value ethical behavior has led to compliance failures for a firm and significant harm to investors.” He further identified three behaviors for exploration that will inform FINRA’s understanding of the issues: groupthink, the winner-takes-all culture and the importance of tone from the top. Chairman Ketchum pointed out that FINRA counts “culture as a factor that influences a firm’s risk profile” and may influence the “probability or severity of an enforcement action.”

These themes should be familiar. Tone at the top, a culture of compliance, ethical behavior and conflicts of interest management have been part of the industry and regulatory dialogue for many years. Here is the news: the evolution from a focus on “culture of compliance” to a survey and evaluation of firm culture is a significant development in the regulatory landscape. In his remarks, Chairman Ketchum points to the application of research by behavioral scientists “to understand how and why honest people do dishonest things.” For the first time, regulatory oversight may include behavioral psychology in its calculus, not only for individuals, but also for institutions. Is this a logical extension of prior learning, or is it a brave new world where regulators boldly go?

Chairman Ketchum cautions that “it isn’t FINRA’s goal to prescribe the culture for the industry or to determine the values a firm and reps should have.” However, it is clear that FINRA and other regulators will utilize the results of this culture survey to inform regulatory oversight and their mission in protecting investors. Are there clues to facilitating good firm culture? Sure – A few of these are highlighted in Chairman Ketchum’s remarks:

  1. Clear and consistent institutional messages regarding professional ethics;
  2. Diligent analysis, effective controls and comprehensive monitoring of behavior;
  3. Careful evaluation of human capital to avoid or control the introduction of what Chairman Ketchum refers to as “negative culture carriers”; and
  4. Thoughtful review of potential conflicts associated with a firm’s compensation system.

Nonetheless, there will be more to this story as the results of FINRA’s culture survey are digested and communicated to the market.

So can firm culture be regulated? Commentators differ on how they view culture and its impact on firm behavior. In fact, some current and former CEOs “say that culture isn’t something you ‘fix’,” and it raises a question of whether culture is an outcome rather than a cause. In either event, firm culture is likely to be an increasing focus of regulators of the financial services industry. Working together, industry participants can achieve the shared goal of protecting investors. It is paramount that firms proactively participate in the discussion of “firm culture” and contribute to meaningful guidance that will allow for objective, risk-based analysis and improvement. Otherwise, regulation of “firm culture” could morph into feelings versus facts.


Tags: Corporate Culture
Previous Post

Cognitive Risk Framework for Cybersecurity, Part 2

Next Post

Why Model Risk Matters

Michael Manley

Michael Manley

Michael Manley is a partner at Venable and previously served as general counsel, Chief Compliance Officer and Secretary for CĪON Investment Management, LLC, a registered investment adviser and CĪON Investment Corporation, an externally managed, non-traded, business development company. Mr. Manley was responsible for developing and implementing comprehensive compliance programs, including establishing corporate charters, corporate governance policies and various policies and procedures regarding code of ethics, insider trading, custody and SEC disclosure. He also negotiated agreements with swap counterparties, custodians, consultants, insurers and other fund providers. Additionally, Mr. Manley served as general counsel, chief compliance officer and secretary for both CĪON entities. Mr. Manley previously worked at investment adviser Plainfield Asset Management and, as co-general counsel and chief compliance officer, managed the day-to-day legal and compliance affairs for Plainfield Direct, a business development company managed by Plainfield Asset Management.

Related Posts

runner lagging behind leader

Are We Losing Ground? The State of Ethics & Compliance Independence

by Jennifer May
January 19, 2026

What matters most isn't where your box sits on the org chart but whether you have unfettered access to senior...

executive planning on wall calendar

Beyond the First Quarter: Strategies for Lasting Compliance Impact

by Jamie Hoyle
January 16, 2026

Success isn't measured by how many boxes you've checked but by building a culture where compliance enables business performance

prediction market gambling collage

‘If It Quacks Like a Duck’: Prediction Markets, Sports Betting & Insider Trading

by Jennifer L. Gaskin
January 14, 2026

An incredibly well-timed trade on a predictions market regarding the US capture of Venezuela’s president has catalyzed an ongoing conversation...

no entry sign on closed gate

When ‘Fix It and Come Back’ Becomes Your Compliance Strategy, You’ve Already Failed

by Tahir Jamal
January 13, 2026

Repeated mistakes aren’t necessarily evidence of staff incompetence; they could be signs of unclear expectations

Next Post
Financial Crime

Why Model Risk Matters

reminder to speak up
No Result
View All Result

Privacy Policy | AI Policy

Founded in 2010, CCI is the web’s premier global independent news source for compliance, ethics, risk and information security. 

Got a news tip? Get in touch. Want a weekly round-up in your inbox? Sign up for free. No subscription fees, no paywalls. 

Follow Us

Browse Topics:

  • CCI Press
  • Compliance
  • Compliance Podcasts
  • Cybersecurity
  • Data Privacy
  • eBooks Published by CCI
  • Ethics
  • FCPA
  • Featured
  • Financial Services
  • Fraud
  • Governance
  • GRC Vendor News
  • HR Compliance
  • Internal Audit
  • Leadership and Career
  • On Demand Webinars
  • Opinion
  • Research
  • Resource Library
  • Risk
  • Uncategorized
  • Videos
  • Webinars
  • Well-Being
  • Whitepapers

© 2026 Corporate Compliance Insights

Welcome to CCI. This site uses cookies. Please click OK to accept. Privacy Policy
Cookie settingsACCEPT
Manage consent

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
Necessary
Always Enabled
Necessary cookies are absolutely essential for the website to function properly. These cookies ensure basic functionalities and security features of the website, anonymously.
CookieDurationDescription
cookielawinfo-checbox-analytics11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Analytics".
cookielawinfo-checbox-functional11 monthsThe cookie is set by GDPR cookie consent to record the user consent for the cookies in the category "Functional".
cookielawinfo-checbox-others11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Other.
cookielawinfo-checkbox-necessary11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary".
cookielawinfo-checkbox-performance11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Performance".
viewed_cookie_policy11 monthsThe cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data.
Functional
Functional cookies help to perform certain functionalities like sharing the content of the website on social media platforms, collect feedbacks, and other third-party features.
Performance
Performance cookies are used to understand and analyze the key performance indexes of the website which helps in delivering a better user experience for the visitors.
Analytics
Analytical cookies are used to understand how visitors interact with the website. These cookies help provide information on metrics the number of visitors, bounce rate, traffic source, etc.
Advertisement
Advertisement cookies are used to provide visitors with relevant ads and marketing campaigns. These cookies track visitors across websites and collect information to provide customized ads.
Others
Other uncategorized cookies are those that are being analyzed and have not been classified into a category as yet.
SAVE & ACCEPT
No Result
View All Result
  • About
    • About CCI
    • Writing for CCI
    • NEW: CCI Press – Book Publishing
    • Advertise With Us
  • Explore Topics
    • See All Articles
    • Compliance
    • Ethics
    • Risk
    • FCPA
    • Governance
    • Fraud
    • Internal Audit
    • HR Compliance
    • Cybersecurity
    • Data Privacy
    • Financial Services
    • Well-Being at Work
    • Leadership and Career
    • Opinion
  • Vendor News
  • Downloads
    • Download Whitepapers & Reports
    • Download eBooks
  • Books
    • CCI Press
    • New: Bribery Beyond Borders: The Story of the Foreign Corrupt Practices Act by Severin Wirz
    • CCI Press & Compliance Bookshelf
    • The Seven Elements Book Club
  • Podcasts
    • Great Women in Compliance
    • Unless: The Podcast (Hemma Lomax)
  • Research
  • Webinars
  • Events
  • Subscribe

© 2026 Corporate Compliance Insights