Deferred, Not Ignored: Explaining Unpatched Vulnerabilities to Your Auditor
Teams should follow CISA’s lead and create the documentation and decision-making that gets the art of safe deferrals right
Teams should follow CISA’s lead and create the documentation and decision-making that gets the art of safe deferrals right
Third-party relationships are essential to modern business, but they can also introduce significant ethics and compliance risks. A new benchmarking ...
RCA guidance helps a company avoid improvisation, apply consistent criteria and distinguish fixing an incident from fixing its cause
The solution won’t be found in incremental tweaks to existing compliance templates but in a spirit to change how the ...
Adopting AI without understanding how it was built and how it handles data can expose an organization to risks that ...
Ahead of the act's expected entry into force next year, the guidance signals a cultural shift: counterterrorism preparedness embedded into ...
Register of common vulnerabilities and exposures will have less federal context, leaving organizations to decide if a vulnerability warrants quick ...
Ignoring prediction markets and employee temptations to bet on them isn’t going to make these increasingly popular platforms go away. ...
How exposed is your business to political violence risk? 2026 report Allianz 2026 Political Violence & Civil Unrest Trends Report ...
Take a system-wide view rather than attempting to plug holes
The act applies to companies, even those outside Europe, if they use AI outputs in their EU operations
Most forced labor compliance frameworks ask companies to publish statements and describe their policies. The EU's new forced labor regulation ...
Founded in 2010, CCI is the web’s premier global independent news source for compliance, ethics, risk and information security.
Got a news tip? Get in touch. Want a weekly round-up in your inbox? Sign up for free. No subscription fees, no paywalls.
© 2026 Corporate Compliance Insights