Browse by topic
Meta’s Big Tobacco Moment Isn’t About the Money
Everyone is calling Meta's $18 billion settlement with a coalition of state attorneys general social media’s Big Tobacco moment. How apt that comparison ends up being, only time will tell. But the risk and compliance lessons from the settlement extend far beyond social media, legal and industry experts told CCI’s Jennifer L. Gaskin.
Does a ‘Forensic Audit’ Actually Exist? Examining Term That Creates More Confusion Than Clarity
When scope and approach are aligned with answers being sought, organizations are better positioned to act, communicate and make decisions
A Policy Is Not Evidence: What AI Governance Has to Produce on Demand
Sanctioned law firm’s case is a warning for any organization whose AI policy promises human review
What the EU’s Italian Cases Mean for Sanctions & AML Compliance
Two CJEU rulings on trust structures signal that regulators will look past legal title to who actually benefits, decides and influences assets
Risk & Compliance Implications of New UK Government
AI policy-making is already undergoing shake-ups
Only 1 in 10 Can See Through Shell Companies for Sanctioned Parties
Plus: Small firms have higher chance of reaching SOC 2 goals; AI-enabled cyber risk ranks as top threat
Bored Directors? How to Make Sure Board Materials Are Contributing Value
Board materials should be channeling the board’s energy and effectiveness as strategic advisers, not bogging them down, Protiviti’s Jim DeLoach writes. He offers a disciplined approach for excellent board operations through a shift from presentation to collaboration that honors the sanctity board members’ time.
The Compliance Confidence Gap
Compliance leaders are confident employees are equipped to handle compliance situations when they arise. But confidence and evidence are not always the same thing. The harder question is whether organizations have enough evidence to show that employees can put what they have learned into practice, writes Kristina Ryan, vice president of product and design at...
Root Cause Analysis: Right-Sized Guidance Before the Crisis Hits
RCA guidance helps a company avoid improvisation, apply consistent criteria and distinguish fixing an incident from fixing its cause
Why Small Gestures Matter in Chinese Business Culture
Seemingly tiny interactions can have a big impact
The Greenwashing Reckoning Isn’t About Marketing
A bold public target and a cautious financial model can contradict each other inside the same annual report
European Data Act: Balancing IP & Privacy
Companies that delay meeting the act’s requirements may find themselves challenged by enforcement and outpaced by competitors
NIST Is Offering a New AI Evaluation Framework, Not Another Compliance Checklist
Draft framework TEVV-Athlon is designed for organizational flexibility
AI Governance Is Becoming a Named Accountability
In UK financial services, senior managers in charge of a business area are also in charge of how AI gets used inside that unit
Most Audit Leaders Are Using AI; Few Have a Strategy for It
Plus: 1 in 10 UK wealth managers don’t ask for a key piece of information; ransomware payments fall while attacks increase
Has the CTA Saga Finally Ended?
Beneficial ownership reporting rules that once applied to more than 30 million corporate entities in the US now have just 28,000 in scope. But is this the end or just another fork in the road for BOI reporting under the Corporate Transparency Act? CCI’s Jennifer L. Gaskin explores the turbulent journey of the rules and...
So You’ve Been Subpoenaed by Congress? How to Prepare for Lawmakers’ Grilling
A congressional investigation is a high-stakes event where the response matters as much as the underlying facts
As Midterms Approach, Specter of Transcribed Interviews Rises for Non-Governmental Actors
TIs are informal, but records are kept and they are increasingly being videotaped
You Settled With the FTC; Now Comes a 20-Year Consent Decree
Third-party assessments generally considered costliest part of FTC decrees
Illinois Genetic Information Protection Act Comes of Age
Illinois’ experience with biometric privacy offers a cautionary tale for companies that keep genetic information in the AI era
26% of Execs Say Audit Has Caught Public-Facing AI Mistake
Few orgs say AI governance is fully mature; data center boom running into risk hurdles
The Hidden Link Between Sleep Deprivation & Fear of Failure at Work
Compliance will never be low-stress, but it does not have to be self-defeating
Born in the USA? The FTC Wants Your Substantiation File
The FTC is cracking down on “Made in USA” claims, but risk is not equal across all claims and all products. A series of July letters may reveal a hidden triage framework for who gets a warning and who gets a penalty, write Reed Smith attorneys John Feldman and Julia Solomon Ensor, the former leader...
Q&A: SEC’s Proposed Quarterly Reporting Rule — Compliance Costs vs. Investor Protection
What do capital markets and SEC reporting experts believe a potential reporting cadence change will catalyze, and will it “Make IPOs great again?”
Safe Harbor Compliance Means More Than Fair Pricing in Healthcare
Getting fair-market value isn’t enough to stop the feds from pursuing an anti-kickback statute violation
Managing Tariff Risk Through the Rest of 2026
The environment is likely to change even more with exclusions, negotiations, enforcement guidance, litigation and country-specific actions
What Companies Need to Know About the Evolving Youth Privacy Landscape
With numerous state youth data laws passed and more in the works, count on a patchwork adding to compliance requirements
Telling Moments Compliance Leaders May Overlook in Investigations
Understanding how people recount details in an interview is just as important as the words they say
Audit‑Dominated Risk Oversight Leaves Boards Blind to Modern Risks
The solution won’t be found in incremental tweaks to existing compliance templates but in a spirit to change how the board is built
Cyber Leaders Wary of Giving Agentic AI Too Much Authority
Plus: Most finance leaders need to see AI ROI; large majority of companies see rising supply chain risk




























