No Result
View All Result
SUBSCRIBE | NO FEES, NO PAYWALLS
MANAGE MY SUBSCRIPTION
NEWSLETTER
Corporate Compliance Insights
  • About
    • About CCI
    • Writing for CCI
    • NEW: CCI Press – Book Publishing
    • Advertise With Us
  • Explore Topics
    • See All Articles
    • Compliance
    • Ethics
    • Risk
    • Artificial Intelligence (AI)
    • FCPA
    • Governance
    • Fraud
    • Internal Audit
    • HR Compliance
    • Cybersecurity
    • Data Privacy
    • Financial Services
    • Well-Being at Work
    • Leadership and Career
    • Opinion
  • Vendor News
  • Downloads
    • Download Whitepapers & Reports
    • Download eBooks
  • Research
  • Books
    • CCI Press
    • New: Bribery Beyond Borders: The Story of the Foreign Corrupt Practices Act by Severin Wirz
    • CCI Press & Compliance Bookshelf
    • The Seven Elements Book Club
  • Podcasts
  • Webinars
  • Videos
  • Subscribe
Jump to a Section
  • At the Office
    • Ethics
    • HR Compliance
    • Leadership & Career
    • Well-Being at Work
  • Compliance & Risk
    • Compliance
    • FCPA
    • Fraud
    • Risk
  • Finserv & Audit
    • Financial Services
    • Internal Audit
  • Governance
    • ESG
    • Getting Governance Right
  • Infosec
    • Cybersecurity
    • Data Privacy
  • Opinion
    • Adam Balfour
    • Jim DeLoach
    • Mary Shirley
    • Yan Tougas
No Result
View All Result
Corporate Compliance Insights
Home Risk

The Importance of a Risk Assessment

by Michael Volkov
March 12, 2014
in Risk
buisness woman looking ahead to risk

This article was republished with permission from Michael Volkov’s Corruption, Crime & Compliance.

Sometimes people operate with blinders.  I don’t mean to suggest that people deliberately put blinders on to ignore issues; they sort of just grow into a person’s personality.

John Lennon said its best: “Living is easy with eyes closed.”

The same applies to people who fail to listen.  Deliberately or not, people avoid what they do not want to hear. There are numerous reasons for not listening.

In the relatively narrow field of anti-corruption compliance, it is interesting to see how many companies appear to be avoiding the very clear requirement of conducting a risk assessment as the foundation of a company’s compliance program.

The Justice Department and the SEC provided very useful guidance in November 2012 to the business community: an effective compliance program must be tailored to a risk assessment.  In addition, the DOJ and the SEC advised companies to update the risk assessment as needed to ensure that its compliance program is tailored to a current assessment of risks.

Companies need to heed those words.  They are important.  Instead, some companies want to live with their “eyes closed” and ignore the risk assessment requirement and jump ahead to implementing a compliance program, with all of the usual elements.

The danger of this approach is readily apparent.  It inevitably leads to a misallocation of compliance resources.  This problem is not catastrophic on its face; the compliance program will appear to be operating quite well and addressing what are perceived as potential compliance issues.

As the Wizard of Oz famously bellowed, “Pay no attention to the man behind the curtain!”  The same rings true for the company that never conducted a risk assessment, implemented a compliance program and marveled at its own creation.

The danger lies in a clear reality: the compliance program is not effectively addressing its risks.  There will be large risks which are unattended and ignored in favor of smaller risks which may have overblown policies and procedures.

One important indication of a misalignment of resources is the resources, policies and procedures companies dedicate to gifts, meals, entertainment and travel expenses.  Compliance officers love creating policies and procedures, forms and requirements, and seldom stopping to ask the question, is this really appropriate?

While creating this elaborate system for monitoring gifts that pose little to no risk of bribery, the compliance officer has no clue what the business development and sales staff, or the company’s third-party agents, are doing in their interactions with foreign officials on a set of RFPs for multimillion-dollar contracts.

The compliance officer is afraid to inject himself or herself into this risky interaction and ensure compliance.  Instead, the compliance officer rationalizes to himself or herself that “training” the business development and sales staff (and possibly the third-party agents) is sufficient to address the risk in such interactions.

This is a very common scenario. Eventually, however, this system breaks down when company sales staff, business development officers and/or third-party agents are caught bribing foreign officials.

There may be many explanations for such conduct but one thing is for sure: the absence of a risk assessment is a major contributor to a failure to detect and prevent bribery.

Tags: Risk Assessment
Previous Post

Keep It Simple: Don’t Let the “Single Undertaking” Stand in the Way of Trade Facilitation

Next Post

Contracts and Compliance: What You Don’t Know Might Hurt You

Michael Volkov

Michael Volkov

Michael-Volkov-leclairryan Michael Volkov is the CEO of The Volkov Law Group LLC, where he provides compliance, internal investigation and white collar defense services.  He can be reached at mvolkov@volkovlaw.com. Michael has extensive experience representing clients on matters involving the Foreign Corrupt Practices Act, the UK Bribery Act, money laundering, Office of Foreign Asset Control (OFAC), export controls, sanctions and International Traffic in Arms, False Claims Act, Congressional investigations, online gambling and regulatory enforcement issues. Michael served for more than 17 years as a federal prosecutor in the U.S. Attorney’s Office in the District of Columbia; for five years as the Chief Crime and Terrorism Counsel for the Senate Judiciary Committee, and Chief Crime, Terrorism and Homeland Security Counsel for the Senate and House Judiciary Committees; and as a Trial Attorney in the Antitrust Division of the U.S. Department of Justice. Michael also maintains a well-known blog: Corruption Crime & Compliance, which is frequently cited by anti-corruption professionals and professionals in the compliance industry.

Related Posts

hand checking off checklist

10 Questions Every Organization Should Ask a Potential AI Vendor

by Angela Juneau
July 15, 2026

Adopting AI without understanding how it was built and how it handles data can expose an organization to risks that...

manchester uk terrorist attack flowers

Martyn’s Law: What New Anti-Terrorism Guidance Means for Event Organizers

by Liam Lane and Constance Strasser
July 14, 2026

Ahead of the act's expected entry into force next year, the guidance signals a cultural shift: counterterrorism preparedness embedded into...

nist sign building

NIST Database Change Rebalances Burden of Risk

by Nichole Windholz
July 13, 2026

Register of common vulnerabilities and exposures will have less federal context, leaving organizations to decide if a vulnerability warrants quick...

kalshi display nyc mayoral election 2025

Congratulations, You Have a Prediction Market Policy; Now What?

by Jennifer L. Gaskin
June 24, 2026

Ignoring prediction markets and employee temptations to bet on them isn’t going to make these increasingly popular platforms go away....

Next Post
hands tearing contract digital art collage

Contracts and Compliance: What You Don’t Know Might Hurt You

GGR sq
No Result
View All Result

Privacy Policy | AI Policy

Founded in 2010, CCI is the web’s premier global independent news source for compliance, ethics, risk and information security. 

Got a news tip? Get in touch. Want a weekly round-up in your inbox? Sign up for free. No subscription fees, no paywalls. 

Follow Us

Browse Topics:

  • CCI Press
  • Compliance
  • Compliance Podcasts
  • Cybersecurity
  • Data Privacy
  • eBooks Published by CCI
  • Ethics
  • FCPA
  • Featured
  • Financial Services
  • Fraud
  • Governance
  • GRC Vendor News
  • HR Compliance
  • Internal Audit
  • Leadership and Career
  • On Demand Webinars
  • Opinion
  • Research
  • Resource Library
  • Risk
  • Uncategorized
  • Videos
  • Webinars
  • Well-Being
  • Whitepapers

© 2026 Corporate Compliance Insights

No Result
View All Result
  • About
    • About CCI
    • Writing for CCI
    • NEW: CCI Press – Book Publishing
    • Advertise With Us
  • Explore Topics
    • See All Articles
    • Compliance
    • Ethics
    • Risk
    • Artificial Intelligence (AI)
    • FCPA
    • Governance
    • Fraud
    • Internal Audit
    • HR Compliance
    • Cybersecurity
    • Data Privacy
    • Financial Services
    • Well-Being at Work
    • Leadership and Career
    • Opinion
  • Vendor News
  • Downloads
    • Download Whitepapers & Reports
    • Download eBooks
  • Research
  • Books
    • CCI Press
    • New: Bribery Beyond Borders: The Story of the Foreign Corrupt Practices Act by Severin Wirz
    • CCI Press & Compliance Bookshelf
    • The Seven Elements Book Club
  • Podcasts
  • Webinars
  • Videos
  • Subscribe

© 2026 Corporate Compliance Insights