No Result
View All Result
SUBSCRIBE | NO FEES, NO PAYWALLS
MANAGE MY SUBSCRIPTION
NEWSLETTER
Corporate Compliance Insights
  • About
    • About CCI
    • Writing for CCI
    • NEW: CCI Press – Book Publishing
    • Advertise With Us
  • Explore Topics
    • See All Articles
    • Compliance
    • Ethics
    • Risk
    • Artificial Intelligence (AI)
    • FCPA
    • Governance
    • Fraud
    • Internal Audit
    • HR Compliance
    • Cybersecurity
    • Data Privacy
    • Financial Services
    • Well-Being at Work
    • Leadership and Career
    • Opinion
  • Vendor News
  • Downloads
    • Download Whitepapers & Reports
    • Download eBooks
  • Research
  • Books
    • CCI Press
    • New: Bribery Beyond Borders: The Story of the Foreign Corrupt Practices Act by Severin Wirz
    • CCI Press & Compliance Bookshelf
    • The Seven Elements Book Club
  • Podcasts
  • Webinars
  • Videos
  • Subscribe
Jump to a Section
  • At the Office
    • Ethics
    • HR Compliance
    • Leadership & Career
    • Well-Being at Work
  • Compliance & Risk
    • Compliance
    • FCPA
    • Fraud
    • Risk
  • Finserv & Audit
    • Financial Services
    • Internal Audit
  • Governance
    • ESG
    • Getting Governance Right
  • Infosec
    • Cybersecurity
    • Data Privacy
  • Opinion
    • Adam Balfour
    • Jim DeLoach
    • Mary Shirley
    • Yan Tougas
No Result
View All Result
Corporate Compliance Insights
Home Compliance

Compliance Best Practices DOJ Should Endorse

Latest program guidance offers some details, but the more the merrier

by Mary Shirley
May 28, 2024
in Compliance
department of justice building

CCI columnist Mary Shirley mulls over some ideas for boosting the profile and strength of your compliance program that she would like to see the Justice Department embrace in future guidance for corporate compliance programs.

When the Department of Justice updated its guidelines on evaluating corporate compliance programs in 2023, the agency mentioned several best practices — compliance champion programs and transparency in discipline, for example — that it wants to see more often. Here are some others I’d love to see the department embrace.

Qualitative feedback data

Many compliance officers know that exit interviews can be a rich opportunity to glean candid views from colleagues about misconduct and gaps in the compliance program because it’s the time in the employment cycle where people will be the most candid. After all, they have nothing to lose for being frank if they haven’t felt a culture of psychological safety at the organization. I mean, what are they going to do, fire the person already leaving on Wednesday for speaking up? 

Additionally, many companies have conducted culture of integrity surveys to identify gaps to focus on, such as whether people fear remediation and whether there is a perception that management walks the talk when it comes to ethics and integrity. 

Importantly, for colleagues to continue providing us with this information, we need to show that we’re listening and actually addressing specific areas highlighted. Deploying these feedback channels should be used in conjunction with communications that close the loop; for example, at the start of a training, make a statement that acknowledges feedback that suggested more real-life scenarios. Something like, “In this training, any resemblance to characters and circumstances described is entirely deliberate dun-dun.” (Yes, that is a reference to the iconic “Law & Order” sound effect.)

Mystery shopping your compliance program

It’s not uncommon for compliance officers to conduct test calls to all of their hotline numbers to make sure they’re working, that someone is available to speak in all of the languages the company is paying for and sometimes even engaging in a test scenario to assess the call intake person’s skill at getting information from the caller, as well as offering gracious service. It’s a good way to put yourself in the shoes of your internal customer. 

This approach can be extended more fully into other areas of the compliance program for continuous monitoring and improvement purposes, for example, by asking a colleague to read a policy relevant to their role and then explain back to you what the policy is saying and how they need to apply it in their day-to-day job. 

You could also stop by to attend the compliance section of staff onboarding and hear how your team member is presenting on the topic. Are they keeping the audience engaged, is the information still up to date and relevant? (Use the mystery shopping template in my book’s activity pack.) 

Many of these things are not captured by an internal audit review or standard compliance audit for those who have audit teams built internally into their compliance function, but they’re low-hanging fruit. They can help compliance teams take an honest look at themselves and ask what they could be doing better, both substantively and in terms of sales and customer service abilities. Let’s face it, we’re essentially a sales function that needs to have top-shelf customer service – even if we aren’t boosting company sales!

puzzle pieces
Compliance

Why Building a Holistically Competent Compliance Function Means Looking Beyond Lawyers

by Mary Shirley
March 12, 2024

A multidisciplinary approach is a better option for staffing your compliance & ethics team

Read moreDetails

Compliance weeks/fairs

Conducting a compliance week or a compliance fair as an annual event is a fairly common activity that focuses on outreach and advocacy of the compliance program and function, often with a bit of gentle education and incentives woven in. 

These activities are a useful forum for compliance departments to help shape the narrative around their reputations as well as draw people in to learn more about compliance in an appealing way. I have treated compliance weeks as major projects in the past because they do require a lot of planning and details to get right, especially in larger organizations where many team members may not have their own company computers or even email addresses. They also require careful budget management because typically ethics and compliance, traditionally viewed as a cost center, does not tend to be the best-placed to get a whopping wallet of funds to spend. 

We still really need to make the leap from being viewed as a cost center to the revenue and reputation preservation/protection department. Nevertheless, many have found compliance week to be well worth the time, effort and funds as it adds to our communication and awareness plan in a very powerful way. They can also be an ideal two-way feedback mechanism and get yourself more qualitative data to use.

More guidance would be welcome

As a bonus on the wish list, it would be wonderful to hear the DOJ share some specifics as to what they would consider makes for an adequately resourced program, but that agency isn’t the only one talking about what makes a good compliance program. The HHS Office of the Inspector General has drawn a clear line in the sand that compliance should be independent from other functions in the organization and should not give legal or finance advice.

DOJ’s “Evaluation of Corporate Compliance Program” guidance touches on the independence and empowerment themes by asking “Is the corporation’s compliance program adequately resourced and empowered to function effectively?” and provides some commentary around that question but doesn’t go so far as to state expectations in the same way the OIG has. 

Getting some low-level detail, even just examples of what backgrounds, experience levels and skills are deemed to contribute to being adequately resourced and what kind of profile a chief compliance officer might be expected to have at a minimum would be valuable guidance.

Regardless of whether these ideas are encapsulated in the next round of guidance, I eagerly look forward to the next update.

Tags: DOJ
Previous Post

LRN Benchmark of Ethical Culture 2024

Next Post

Beyond Borders: We Must Strengthen International Cooperation to Tackle Money Laundering

Mary Shirley

Mary Shirley

Mary Shirley is a New Zealand-qualified lawyer with 20 years of ethics and compliance experience that includes working for data privacy and antitrust regulators, in-house and private practice/consultancy across five countries and four regions of the world. Currently chief compliance officer at ScionHealth, a large U.S. healthcare system, she's also an adjunct professor in the law schools at George Mason University and Fordham University, along with authoring the bestselling book "Living Your Best Compliance Life: 65 Hacks and Cheat Codes to Level Up Your Ethics and Compliance Program" (CCI Press, 2023). She has been named a Compliance Week Top Mind 2019, Trust Across America 2020 Top Thought Leader in Trust and Excellence in Compliance Awards 2022 Mentor of the Year.

Related Posts

us doj building with flag

Once You’ve Decided to Self-Disclose, Here’s How to Do It Right

by Sean M. Farrell and Thomas F. Rybarczyk
July 29, 2026

Deciding to self-disclose is one thing; doing it well is another, and the difference often shapes whether a company earns...

bosch sign

Bosch Case Provides First Glimpse of NatSec Application of Department-Wide CEP

by Roberto Gonzalez and Samuel Kleiner
July 13, 2026

While the CEP generally aligns with the prior policy, it offers greater potential benefits to a company that voluntarily self-discloses,...

data abstract numbers

The DOJ Wants Strong FCA Whistleblower Lawsuits From Data Miners

by Selina P. Coleman, Lesley C. Reynolds, Thomas H. Suddath Jr., David A. Bender and Matthew K. Loughran
May 14, 2026

The FOCUS initiative sets parameters for the DOJ’s support of data miners’ qui tam complaints.

doj timeliness collage

What the Enforcement Record Says About ‘Timely’ Disclosure

by Jennifer L. Gaskin
May 13, 2026

Of the nine enforcement cases CCI examined where companies received credit for timely disclosure, only two included a measurable time...

Next Post
international currency on clothesline

Beyond Borders: We Must Strengthen International Cooperation to Tackle Money Laundering

GGR sq
No Result
View All Result

Privacy Policy | AI Policy

Founded in 2010, CCI is the web’s premier global independent news source for compliance, ethics, risk and information security. 

Got a news tip? Get in touch. Want a weekly round-up in your inbox? Sign up for free. No subscription fees, no paywalls. 

Follow Us

Browse Topics:

  • CCI Press
  • Compliance
  • Compliance Podcasts
  • Cybersecurity
  • Data Privacy
  • eBooks Published by CCI
  • Ethics
  • FCPA
  • Featured
  • Financial Services
  • Fraud
  • Governance
  • GRC Vendor News
  • HR Compliance
  • Internal Audit
  • Leadership and Career
  • On Demand Webinars
  • Opinion
  • Research
  • Resource Library
  • Risk
  • Uncategorized
  • Videos
  • Webinars
  • Well-Being
  • Whitepapers

© 2026 Corporate Compliance Insights

No Result
View All Result
  • About
    • About CCI
    • Writing for CCI
    • NEW: CCI Press – Book Publishing
    • Advertise With Us
  • Explore Topics
    • See All Articles
    • Compliance
    • Ethics
    • Risk
    • Artificial Intelligence (AI)
    • FCPA
    • Governance
    • Fraud
    • Internal Audit
    • HR Compliance
    • Cybersecurity
    • Data Privacy
    • Financial Services
    • Well-Being at Work
    • Leadership and Career
    • Opinion
  • Vendor News
  • Downloads
    • Download Whitepapers & Reports
    • Download eBooks
  • Research
  • Books
    • CCI Press
    • New: Bribery Beyond Borders: The Story of the Foreign Corrupt Practices Act by Severin Wirz
    • CCI Press & Compliance Bookshelf
    • The Seven Elements Book Club
  • Podcasts
  • Webinars
  • Videos
  • Subscribe

© 2026 Corporate Compliance Insights