No Result
View All Result
SUBSCRIBE | NO FEES, NO PAYWALLS
MANAGE MY SUBSCRIPTION
NEWSLETTER
Corporate Compliance Insights
  • About
    • About CCI
    • Writing for CCI
    • NEW: CCI Press – Book Publishing
    • Advertise With Us
  • Explore Topics
    • See All Articles
    • Compliance
    • Ethics
    • Risk
    • Artificial Intelligence (AI)
    • FCPA
    • Governance
    • Fraud
    • Internal Audit
    • HR Compliance
    • Cybersecurity
    • Data Privacy
    • Financial Services
    • Well-Being at Work
    • Leadership and Career
    • Opinion
  • Vendor News
  • Downloads
    • Download Whitepapers & Reports
    • Download eBooks
  • Research
  • Books
    • CCI Press
    • New: Bribery Beyond Borders: The Story of the Foreign Corrupt Practices Act by Severin Wirz
    • CCI Press & Compliance Bookshelf
    • The Seven Elements Book Club
  • Podcasts
  • Webinars
  • Videos
  • Subscribe
Jump to a Section
  • At the Office
    • Ethics
    • HR Compliance
    • Leadership & Career
    • Well-Being at Work
  • Compliance & Risk
    • Compliance
    • FCPA
    • Fraud
    • Risk
  • Finserv & Audit
    • Financial Services
    • Internal Audit
  • Governance
    • ESG
    • Getting Governance Right
  • Infosec
    • Cybersecurity
    • Data Privacy
  • Opinion
    • Adam Balfour
    • Jim DeLoach
    • Mary Shirley
    • Yan Tougas
No Result
View All Result
Corporate Compliance Insights
Home Compliance

Only 1 in 10 Can See Through Shell Companies for Sanctioned Parties

Plus: Small firms have higher chance of reaching SOC 2 goals; AI-enabled cyber risk ranks as top threat

by Staff and Wire Reports
August 27, 2026
in Compliance, Cybersecurity
CCI staff share recent surveys, reports and analysis on risk, compliance, governance, infosec and leadership issues. Share details of your survey with us: editor@corporatecomplianceinsights.com.

Less than 10% can point out a sanctioned person

Just under 10% of compliance, legal and financial services professionals are fully confident they could spot a sanctioned individual hiding behind a shell company or a corporate web, a survey by VinciWorks concluded.

Asking 146 of these professionals how confident they were in spotting an indirect sanctions risk, only about 1 in 10 said they were “very confident.” At almost 46%, the biggest share said they were “fairly confident,” while another roughly 30% said they were “somewhat confident.” About 15% said they were not very confident or not confident at all.

“Ninety percent of compliance professionals telling us they lack full confidence in this area should concern any organization operating across borders,” Naomi Grossman, compliance manager at VinciWorks, said as part of the survey. “Sanctions regimes have grown far broader than a simple list of frozen bank accounts.”

The survey also found that about 60% reported that their escalation process for a sanctions match had not been tested recently. About 40% described their escalation process as clear and regularly tested.

Other key findings include:

  • Compliance teams are more exposed on judgement-based checks than on basic screening with 55% saying that establishing ownership and control or understanding end users and supply chains is their greatest challenge.
  • Only around 11% pointed to screening names and counterparties as their greatest sanctions risk identification challenge.

Small businesses more likely to reach security readiness standard

Data analysis by security and compliance software provider Drata found that enterprise organizations reach readiness for SOC 2 observation quicker than emerging companies but peak at a lower readiness percentage and often don’t reach full readiness.

The analysis based on data from thousands of Drata customers, concluded that enterprise organizations tend to plateau in SOC 2 readiness fastest — averaging 602 days to their peak readiness — but they also tend to plateau lower, capping out at just 30% average max readiness with only 5.5% ever reaching 100%. 

Emerging and small- to mid-sized businesses take longer to hit their SOC 2 readiness ceiling at an average of 829 days but climb higher once they get there, averaging 55% max readiness. These businesses also reach 100% readiness 17% of the time. That’s three times more often than large enterprises.

“Essentially, if you’re a small business, don’t worry if you’re starting from scratch — you may take longer to plateau, but you’re more likely to actually get all the way there,” Drata said in the report.

AI finding cyber weaknesses ranks as top emerging threat

AI exploiting cyber vulnerabilities is the most concerning emerging risk facing companies worldwide, according to a survey by Gartner.

In a survey of 316 senior executives and risk managers from April to May about the top emerging risks, AI discovery of cyber vulnerabilities ranked the highest. 

Geopolitical energy supply shocks ranked as the second highest emerging risk among those surveyed. Companies are seeing growing risk that geopolitical conflicts, sanctions and infrastructure disruption generate recurring supply shocks across production, distribution and logistics that increase price volatility, complicate planning and amplify broader macroeconomic instability, the report said.

Risks concerning agentic AI came in at No. 3, with respondents fearing that agentic AI could make decisions not aligned with organizational plans, leading to operational disruptions, compliance challenges and reputational harm.

Company leaders also ranked information integrity risk and AI workforce preparedness gap as emerging threats.

Tags: Artificial Intelligence (AI)Cyber RiskSanctions
Previous Post

Bored Directors? How to Make Sure Board Materials Are Contributing Value

Staff and Wire Reports

Staff and Wire Reports

Related Posts

nist headquarters sign

NIST Is Offering a New AI Evaluation Framework, Not Another Compliance Checklist

by Larry Marks
August 21, 2026

Draft framework TEVV-Athlon is designed for organizational flexibility

ai concept nodes

AI Governance Is Becoming a Named Accountability

by Paul Noon
August 21, 2026

In UK financial services, senior managers in charge of a business area are also in charge of how AI gets...

abstract obscured data colorful

Most Audit Leaders Are Using AI; Few Have a Strategy for It

by Staff and Wire Reports
August 20, 2026

Plus: 1 in 10 UK wealth managers don’t ask for a key piece of information; ransomware payments fall while attacks...

double helix of lego

Illinois Genetic Information Protection Act Comes of Age

by Michael C. McCutcheon and Ruby Borja
August 17, 2026

Illinois’ experience with biometric privacy offers a cautionary tale for companies that keep genetic information in the AI era

GGR sq
No Result
View All Result

Privacy Policy | AI Policy

Founded in 2010, CCI is the web’s premier global independent news source for compliance, ethics, risk and information security. 

Got a news tip? Get in touch. Want a weekly round-up in your inbox? Sign up for free. No subscription fees, no paywalls. 

Follow Us

Browse Topics:

  • CCI Press
  • Compliance
  • Compliance Podcasts
  • Cybersecurity
  • Data Privacy
  • eBooks Published by CCI
  • Ethics
  • FCPA
  • Featured
  • Financial Services
  • Fraud
  • Governance
  • GRC Vendor News
  • HR Compliance
  • Internal Audit
  • Leadership and Career
  • On Demand Webinars
  • Opinion
  • Research
  • Resource Library
  • Risk
  • Uncategorized
  • Videos
  • Webinars
  • Well-Being
  • Whitepapers

© 2026 Corporate Compliance Insights

No Result
View All Result
  • About
    • About CCI
    • Writing for CCI
    • NEW: CCI Press – Book Publishing
    • Advertise With Us
  • Explore Topics
    • See All Articles
    • Compliance
    • Ethics
    • Risk
    • Artificial Intelligence (AI)
    • FCPA
    • Governance
    • Fraud
    • Internal Audit
    • HR Compliance
    • Cybersecurity
    • Data Privacy
    • Financial Services
    • Well-Being at Work
    • Leadership and Career
    • Opinion
  • Vendor News
  • Downloads
    • Download Whitepapers & Reports
    • Download eBooks
  • Research
  • Books
    • CCI Press
    • New: Bribery Beyond Borders: The Story of the Foreign Corrupt Practices Act by Severin Wirz
    • CCI Press & Compliance Bookshelf
    • The Seven Elements Book Club
  • Podcasts
  • Webinars
  • Videos
  • Subscribe

© 2026 Corporate Compliance Insights