No Result
View All Result
SUBSCRIBE | NO FEES, NO PAYWALLS
MANAGE MY SUBSCRIPTION
NEWSLETTER
Corporate Compliance Insights
  • About
    • About CCI
    • Writing for CCI
    • NEW: CCI Press – Book Publishing
    • Advertise With Us
  • Explore Topics
    • See All Articles
    • Compliance
    • Ethics
    • Risk
    • Artificial Intelligence (AI)
    • FCPA
    • Governance
    • Fraud
    • Internal Audit
    • HR Compliance
    • Cybersecurity
    • Data Privacy
    • Financial Services
    • Well-Being at Work
    • Leadership and Career
    • Opinion
  • Vendor News
  • Downloads
    • Download Whitepapers & Reports
    • Download eBooks
  • Research
  • Books
    • CCI Press
    • New: Bribery Beyond Borders: The Story of the Foreign Corrupt Practices Act by Severin Wirz
    • CCI Press & Compliance Bookshelf
    • The Seven Elements Book Club
  • Podcasts
  • Webinars
  • Videos
  • Subscribe
Jump to a Section
  • At the Office
    • Ethics
    • HR Compliance
    • Leadership & Career
    • Well-Being at Work
  • Compliance & Risk
    • Compliance
    • FCPA
    • Fraud
    • Risk
  • Finserv & Audit
    • Financial Services
    • Internal Audit
  • Governance
    • ESG
    • Getting Governance Right
  • Infosec
    • Cybersecurity
    • Data Privacy
  • Opinion
    • Adam Balfour
    • Jim DeLoach
    • Mary Shirley
    • Yan Tougas
No Result
View All Result
Corporate Compliance Insights
Home Compliance

Why Your Company Should Have Zero Tolerance for Zero Tolerance

by Robert Zafft
May 13, 2016
in Compliance, FCPA
female judge with gavel

Like many catch phrases, “zero tolerance” obscures more than it explains and hurts more than it helps.  Rather than adopting zero-tolerance policies, corporate compliance should take a lesson from fields like manufacturing and strive for processes and cultures of continuous improvement.

Zero-Tolerance Follies

A leader who advocates “zero tolerance” is either a knave or a fool.

In the public sphere, zero tolerance has resulted in a second grader suspended for biting his Pop Tart into the shape of a gun[1], a 4-year-old placed on in-school suspension for hugging a teacher[2] and a D.C. resident with no criminal record threatened with a year in jail for having an inoperable shotgun shell in his own home[3].

The impact in the private sector of well-intentioned but ill-conceived zero-tolerance policies may be less spectacular, but just as harmful:

  • Zero tolerance encourages a culture of deception and cheating. Normal people in normal situations will ignore or cover up petty mistakes/infractions having disproportionately severe consequences. Over time, indifference and cover-ups can spread to more severe wrongdoing.
  • Zero tolerance demoralizes your best people while encouraging your worst. Zero-tolerance policies are rarely evenly enforced. Disproportionate punishments and favoritism turn off or turn away motivated, moral employees while creating an environment in which the dishonest thrive.
  • Zero tolerance leads to bad decisions. Sound decision-making rests on accurate information. A culture of deception and demoralization masks the unfavorable news managers must receive to manage rationally. Moreover, when challenged regarding a bad decision, a manager may embellish or fabricate justifications, entrenching the decision and fostering further deception and demoralization.

Zero tolerance sounds good to politicians, academics and activists – people who benefit from staking out the moral high ground, but who generally dodge the consequences of the get-tough policies they advocate.

The Real World Requires Tolerance – An FCPA Example

The real world is imperfect. Humans are imperfect. And imperfection requires tolerance.

For corporate compliance purposes, however, “tolerance” does not mean a lack of standards or failure to impose consequences for failing to adhere to standards. Rather, “tolerance” needs to be understood in an engineering sense, meaning an essential part of businesses processes and cultures that are dedicated to continuous improvement. As these processes and cultures improve – as they become more transparent and consistent – the degree of “tolerance” will narrow.

This message appears to be sinking in even within federal enforcement bodies. In enforcing the anti-fraud provisions of the U.S. Foreign Corrupt Practices Act (FCPA), for example, the Department of Justice (DOJ) recently announced a pilot program to “promote both transparency and accountability… [by granting] those voluntarily disclosing a reduction of up to 50 percent below the low end of the applicable U.S. Sentencing Guidelines fine range.”  In addition, the DOJ will not generally require appointment of a monitor, and where those same conditions are met, the DOJ will consider a declination of prosecution.[4]

Three Key Steps for Your Own Company

The DOJ’s pilot program may help a business make the best of a bad situation. But compliance should first work to avoid the circumstances that required self-disclosure in the first place.

How should you do this?

Begin with three simple (but not easy) steps:

  • Define your compliance processes. In a surprising number of cases, even sophisticated global companies fail to define compliance processes properly. At the least, you should flowchart them, showing steps, decision points, input/output documents, decision-making authority/accountability and audit. Beware escalating decision-making to someone with a loftier title but no more information or expertise than the person below.
  • Combine audit with statistical-control analysis. Audits should not only spot noncompliance, but also help uncover the root causes of such noncompliance. Designing audit processes so they enable statistical-control analysis will help you determine whether a problem has arisen from a special cause (e.g., one apple in the bushel went rotten) or a general cause (e.g., we are picking rotten apples, or placing sound apples in a moldy bushel-basket). Treating special causes like general causes, and vice versa, can be worse than doing nothing.
  • Favor swift-and-certain over severe penalties. The trend in deterrence research finds that swift-and-certain penalties better deter misbehavior than severe penalties.[5] The DOJ’s pilot program reflects this trend. Noncompliance that involves law-breaking will always require special consideration, but for a wide range of internal compliance violations, lesser sanctions quickly and consistently imposed can produce a better long-run outcome for the business than “lowering the boom” every once in a while.

[1] https://www.washingtonpost.com/local/education/md-state-board-upholds-boys-suspension-in-pastry-gun-case/2015/03/04/782b412e-c1db-11e4-ad5c-3b8ce89f1b89_story.html

[2] http://www.kxxv.com/story/5785699/4-year-old-accused-of-improperly-touching-teacher

[3] http://www.bizpacreview.com/2014/01/23/gun-owners-beware-dc-man-faces-jail-for-having-empty-shotgun-shell-96062

[4] https://www.justice.gov/opa/blog/criminal-division-launches-new-fcpa-pilot-program

[5] http://www.sentencingproject.org/wp-content/uploads/2016/01/Deterrence-in-Criminal-Justice.pdf

Previous Post

PwC: Board Composition and Shareholder Activism

Next Post

Debunking Wage Garnishment Myths

Robert Zafft

Robert Zafft

Robert Zafft practices of counsel with Greensfelder, Hemker & Gale, P.C. in St. Louis, Chicago and Belleville, Illinois. He teaches business ethics at Washington University’s Olin Business School and previously served as an Associate Principal with McKinsey & Company, a Senior Advisor for Tony Blair Associates and as a Senior Expert for the Organization for Economic Cooperation and Development (OECD).

Related Posts

GRC News Roundup Cover

GRC News Roundup: Drata, Diligent, Achilles, Archer, Casepoint & More

by Corporate Compliance Insights
September 18, 2026

GRC technology is one of the fastest-growing segments in enterprise software, and compliance professions are rapidly evolving. Here’s the latest...

news roundup data grungy

Survey: AI Policies in Place, but They Are Often Short-Circuited

by Staff and Wire Reports
September 18, 2026

Plus: Two-thirds of auditors troubled by risk prediction; lower percentage of US businesses see AI returns

rusty cage

The Cage of Grandfathering: Why FCC Protection Won’t Save Foreign-Produced AI Robotics

by Kim D. Larsen
September 18, 2026

AI improvements don’t arrive like firmware updates

irs 1095 c form

1095-C Season: Where ACA Compliance Actually Goes Wrong

by John Sansoucie
September 18, 2026

Midyear rehires, entity transfers and stale wage figures quietly corrupt ACA filings, and January is the worst possible time to...

Next Post
man handing check to employee

Debunking Wage Garnishment Myths

GGR sq
No Result
View All Result

Privacy Policy | AI Policy

Founded in 2010, CCI is the web’s premier global independent news source for compliance, ethics, risk and information security. 

Got a news tip? Get in touch. Want a weekly round-up in your inbox? Sign up for free. No subscription fees, no paywalls. 

Follow Us

Browse Topics:

  • CCI Press
  • Compliance
  • Compliance Podcasts
  • Cybersecurity
  • Data Privacy
  • eBooks Published by CCI
  • Ethics
  • FCPA
  • Featured
  • Financial Services
  • Fraud
  • Governance
  • GRC Vendor News
  • HR Compliance
  • Internal Audit
  • Leadership and Career
  • On Demand Webinars
  • Opinion
  • Research
  • Resource Library
  • Risk
  • Uncategorized
  • Videos
  • Webinars
  • Well-Being
  • Whitepapers

© 2026 Corporate Compliance Insights

No Result
View All Result
  • About
    • About CCI
    • Writing for CCI
    • NEW: CCI Press – Book Publishing
    • Advertise With Us
  • Explore Topics
    • See All Articles
    • Compliance
    • Ethics
    • Risk
    • Artificial Intelligence (AI)
    • FCPA
    • Governance
    • Fraud
    • Internal Audit
    • HR Compliance
    • Cybersecurity
    • Data Privacy
    • Financial Services
    • Well-Being at Work
    • Leadership and Career
    • Opinion
  • Vendor News
  • Downloads
    • Download Whitepapers & Reports
    • Download eBooks
  • Research
  • Books
    • CCI Press
    • New: Bribery Beyond Borders: The Story of the Foreign Corrupt Practices Act by Severin Wirz
    • CCI Press & Compliance Bookshelf
    • The Seven Elements Book Club
  • Podcasts
  • Webinars
  • Videos
  • Subscribe

© 2026 Corporate Compliance Insights