No Result
View All Result
SUBSCRIBE | NO FEES, NO PAYWALLS
MANAGE MY SUBSCRIPTION
NEWSLETTER
Corporate Compliance Insights
  • Home
  • About
    • About CCI
    • CCI Magazine
    • Writing for CCI
    • Career Connection
    • NEW: CCI Press – Book Publishing
    • Advertise With Us
  • Explore Topics
    • See All Articles
    • Compliance
    • Ethics
    • Risk
    • FCPA
    • Governance
    • Fraud
    • Internal Audit
    • HR Compliance
    • Cybersecurity
    • Data Privacy
    • Financial Services
    • Well-Being at Work
    • Leadership and Career
    • Opinion
  • Vendor News
  • Library
    • Download Whitepapers & Reports
    • Download eBooks
    • New: Living Your Best Compliance Life by Mary Shirley
    • New: Ethics and Compliance for Humans by Adam Balfour
    • 2021: Raise Your Game, Not Your Voice by Lentini-Walker & Tschida
    • CCI Press & Compliance Bookshelf
  • Podcasts
    • Great Women in Compliance
    • Unless: The Podcast (Hemma Lomax)
  • Research
  • Webinars
  • Events
  • Subscribe
Jump to a Section
  • At the Office
    • Ethics
    • HR Compliance
    • Leadership & Career
    • Well-Being at Work
  • Compliance & Risk
    • Compliance
    • FCPA
    • Fraud
    • Risk
  • Finserv & Audit
    • Financial Services
    • Internal Audit
  • Governance
    • ESG
    • Getting Governance Right
  • Infosec
    • Cybersecurity
    • Data Privacy
  • Opinion
    • Adam Balfour
    • Jim DeLoach
    • Mary Shirley
    • Yan Tougas
No Result
View All Result
Corporate Compliance Insights
Home Compliance

UK Corporate Crime Law Puts ‘Senior Managers’ in the Hot Seat

As Britain’s landmark economic crime law takes effect later this year, organizations face expanded liability and unclear guidance on compliance

by Ben Boorer
January 23, 2025
in Compliance
executive meeting room empty seats

With senior manager liability expanding and third-party risks in sharp focus, the UK’s Economic Crime and Corporate Transparency Act demands a fresh approach to fraud prevention. Ben Boorer of consultancy Secretariat breaks down the key challenges and offers practical strategies for navigating this complex new regulatory landscape. 

The Economic Crime and Corporate Transparency Act (ECCTA), coming into force in September 2025, is landmark legislation set to reshape the UK’s corporate compliance landscape. A key aspect of ECCTA is that it emphasizes the prevention of fraud, in myriad underlying offenses, holding organizations accountable for the actions of their internal teams and external partners. This will require organizations to implement adequate procedures to prevent and detect fraud, including due diligence on third parties, robust internal controls and regular employee training.

Despite the anticipated significant impact, ECCTA’s guidelines from the Home Office have raised questions over their lack of clarity and practical guidance. Traditionally, proving a company’s involvement in fraud required showing a clear link between the criminal act and the company’s “directing mind and will.” ECCTA lowers this bar, making it easier to hold organizations liable for actions of their teams and partner ecosystem if they have been deemed to have benefitted from the wrongdoing.

A critical ambiguity in the act is its definition of a “senior manager.” The guidelines reiterate the statutory definition, leaving organizations to interpret it case-by-case. ECCTA expands this definition to include individuals playing a significant role in managing or organizing substantial parts of the organization’s activities. This broader definition means more individuals, beyond the board and executive management, can cause the organization to be held liable for economic crimes.

Perhaps inevitably, the guidelines also lack detailed steps for ECCTA compliance and fraud prevention. While the six principles provide a high-level framework, they cannot offer the granular detail needed for effective implementation. Organizations should, therefore, adopt a proactive approach to fraud prevention, considering internal and external threats, fostering a culture of integrity, transparency and reassurances for staff who raise concerns, leveraging data analytics to identify red flags and conducting thorough due diligence on third parties.

To mitigate potential risks, focus on these key areas:

Senior management liability

ECCTA lowers the “controlling mind” threshold, making the organization susceptible to actions taken by a larger population of its employees. Organizations must:

  • Identify senior managers: Define who may qualify as a senior manager under ECCTA.
  • Implement risk management Strategies: Develop strategies to address the risks of senior managers’ actions, such as: assessing fraud risks in operational areas; providing enhanced training on ECCTA and financial crime risks; increasing internal audit scrutiny of controls, policies and procedures; and reviewing historical allegations, whistleblower reports and audit findings for potential fraud weaknesses.

Litigation monitoring

Civil lawsuits potentially offer insights into corporate wrongdoing that could trigger a criminal investigation. Larger organizations with complex structures should:

  • Monitor litigation filings: Actively monitor litigation repositories for mentions of the organization or subsidiaries to identify potential issues early.
  • Respond swiftly: Develop a plan to address potential issues, mitigate risks and promptly prevent escalation.
parliament in the rain
Compliance

What Would UK Corporate Crime Changes Look Like in Practice?

by Lloydette Bai-Marrow
July 17, 2023

Read moreDetails

Third-party risk management

ECCTA extends liability to a range of “associated persons” who provide services on behalf of the organization, including partners, agents and distributors. Organizations should:

  • Assess third-party risk: Evaluate potential ECCTA-related risks associated with third parties.
  • Implement risk mitigation strategies: Consider strategies such as: offboarding high-risk third parties; incorporating ECCTA considerations into the onboarding process; conducting enhanced due diligence on high-risk third parties; requiring agents and partners to disclose past litigation; undertaking third-party fraud audits; implementing automated monitoring for fraud indicators; and demonstrating a commitment to fraud risk mitigation. 

Section 2 notices

The Serious Fraud Office has enhanced powers to obtain information under Section 2 of the Criminal Justice Act 1987. Organizations must be prepared to:

  • Develop a response plan: Create a comprehensive plan to coordinate responses to information requests and potential dawn raids.
  • Identify key personnel: Designate individuals responsible for coordinating responses and select external advisers (legal counsel, forensic experts, PR specialists).
  • Train internal teams: Educate IT, data handling and in-house legal teams on compliance procedures, rights and response strategies.

Conclusion

ECCTA presents significant challenges, but it also offers an opportunity to assess and strengthen corporate governance, enhance trust and build a resilient organization. By proactively managing fraud risk, fostering a culture of integrity and continuously improving fraud prevention measures, organizations can navigate the new legal landscape effectively and contribute to a more transparent and ethical business environment.

A well-resourced and empowered compliance function is critical. Management must support this function to navigate the responsibilities arising from ECCTA and other compliance obligations, effectively. A successful response requires a coordinated, cross-organizational effort.


Tags: Internal ControlsThird Party Risk Management
Previous Post

FinTech Platform iCapital Set to Acquire Digital ID Firm Parallel Markets

Next Post

PE Firms Make Strategic Investment in Managed Services Provider Thrive

Ben Boorer

Ben Boorer

Ben Boorer is a director in the investigations practice at Secretariat, a specialty consulting firm. He leads investigations into fraud, asset misappropriation, financial misreporting, bribery and corruption and asset tracing in criminal and civil environments. These investigations are typically cross-border in nature, originating in developing and emerging markets, and he has worked extensively throughout Europe, Africa, the Middle East and other offshore jurisdictions.

Related Posts

GAN Integrity TPRM & AI

Where TPRM Meets AI: Balancing Risk & Reward

by Corporate Compliance Insights
May 13, 2025

Is your organization prepared for the dual challenges of AI in third-party risk management? Whitepaper Where TPRM Meets AI: Balancing...

robot reviewing contract

9 Emerging Use Cases for AI in TPRM

by Miriam Konradsen Ayed and Craig Moss
May 6, 2025

(Sponsored) As third-party ecosystems grow more complex, compliance teams face mounting pressure to assess and monitor external relationships effectively. Miriam...

business relationship concept hands

Relationship (Owner) Goals: Why Half Your TPRM Red Flags Stay Hidden

by Chris Audet
April 9, 2025

The front-line staff who manage vendor relationships are uniquely positioned to spot problems before they escalate, yet many organizations fail...

avengers lego figures

Uniting Forces: Cross-Functional Approaches to Insider Threat Prevention

by Rachel L. Gerstein
April 8, 2025

Creating a structured framework that brings together security, HR, IT, legal and compliance teams to fight internal vulnerabilities

Next Post
Thrive funding

PE Firms Make Strategic Investment in Managed Services Provider Thrive

No Result
View All Result

Privacy Policy | AI Policy

Founded in 2010, CCI is the web’s premier global independent news source for compliance, ethics, risk and information security. 

Got a news tip? Get in touch. Want a weekly round-up in your inbox? Sign up for free. No subscription fees, no paywalls. 

Follow Us

Browse Topics:

  • CCI Press
  • Compliance
  • Compliance Podcasts
  • Cybersecurity
  • Data Privacy
  • eBooks Published by CCI
  • Ethics
  • FCPA
  • Featured
  • Financial Services
  • Fraud
  • Governance
  • GRC Vendor News
  • HR Compliance
  • Internal Audit
  • Leadership and Career
  • On Demand Webinars
  • Opinion
  • Research
  • Resource Library
  • Risk
  • Uncategorized
  • Videos
  • Webinars
  • Well-Being
  • Whitepapers

© 2025 Corporate Compliance Insights

Welcome to CCI. This site uses cookies. Please click OK to accept. Privacy Policy
Cookie settingsACCEPT
Manage consent

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
Necessary
Always Enabled
Necessary cookies are absolutely essential for the website to function properly. These cookies ensure basic functionalities and security features of the website, anonymously.
CookieDurationDescription
cookielawinfo-checbox-analytics11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Analytics".
cookielawinfo-checbox-functional11 monthsThe cookie is set by GDPR cookie consent to record the user consent for the cookies in the category "Functional".
cookielawinfo-checbox-others11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Other.
cookielawinfo-checkbox-necessary11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary".
cookielawinfo-checkbox-performance11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Performance".
viewed_cookie_policy11 monthsThe cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data.
Functional
Functional cookies help to perform certain functionalities like sharing the content of the website on social media platforms, collect feedbacks, and other third-party features.
Performance
Performance cookies are used to understand and analyze the key performance indexes of the website which helps in delivering a better user experience for the visitors.
Analytics
Analytical cookies are used to understand how visitors interact with the website. These cookies help provide information on metrics the number of visitors, bounce rate, traffic source, etc.
Advertisement
Advertisement cookies are used to provide visitors with relevant ads and marketing campaigns. These cookies track visitors across websites and collect information to provide customized ads.
Others
Other uncategorized cookies are those that are being analyzed and have not been classified into a category as yet.
SAVE & ACCEPT
No Result
View All Result
  • Home
  • About
    • About CCI
    • CCI Magazine
    • Writing for CCI
    • Career Connection
    • NEW: CCI Press – Book Publishing
    • Advertise With Us
  • Explore Topics
    • See All Articles
    • Compliance
    • Ethics
    • Risk
    • FCPA
    • Governance
    • Fraud
    • Internal Audit
    • HR Compliance
    • Cybersecurity
    • Data Privacy
    • Financial Services
    • Well-Being at Work
    • Leadership and Career
    • Opinion
  • Vendor News
  • Library
    • Download Whitepapers & Reports
    • Download eBooks
    • New: Living Your Best Compliance Life by Mary Shirley
    • New: Ethics and Compliance for Humans by Adam Balfour
    • 2021: Raise Your Game, Not Your Voice by Lentini-Walker & Tschida
    • CCI Press & Compliance Bookshelf
  • Podcasts
    • Great Women in Compliance
    • Unless: The Podcast (Hemma Lomax)
  • Research
  • Webinars
  • Events
  • Subscribe

© 2025 Corporate Compliance Insights