This Practitioner’s Briefing is crafted as a high-level recap of Compliance Week’s 2026 National Conference, held in Washington, D.C., in May. Whether you were there, or wished to be, this briefing will bring you up to speed. The briefing captures the six themes that pervaded three days of panel discussion and the networking conversations between […]
CW Staff
Beyond breaching privacy: The compliance risks of workplace surveillance
When organizations implement workplace surveillance tools, the conversation often begins with privacy. Questions about employee consent, data collection, retention periods, and legal compliance are essential. But as workplace monitoring technologies become more sophisticated, focusing exclusively on privacy risks often overlooks a much larger challenge.
The hidden cost of compliance leadership
There is a cost attached to senior compliance roles that does not appear in job descriptions, is rarely discussed in appraisals, and is absent from careers talks given to people entering the profession.
The inference gap: Auditing the AI risk no framework requires you to see
When external regulation lags, internal audit becomes the only line of defense. AIโs environmental footprint is a live governance exposure, and right now, almost no one is auditing it. A company can run an AI product billions of times a day with no obligation to measure what it consumes: No requirement to report the energy […]
Asia-Pacific central banks weigh AI governance to safeguard financial stability
Central banks in the Asia-Pacific (APAC) countries are taking steps to develop artificial intelligence governance frameworks for financial institutions, as regulators are seeking to balance innovation with emerging risks and safeguard financial stability.
AI demands a new risk operating model. Are risk leaders up to the task?
For years, risk, compliance, and internal audit functions have been asked to absorb and integrate new technologies and ways of working while facing off against increased business expectations without fundamentally changing the risk management operating model that underpins them. Capabilities such as continuous controls monitoring, dynamic risk assessments, and new reporting requirements have been layered […]
National Whistleblower Day: Closing the gap between policy and practice
Every year around this time, I think back to conversations I’ve had with employees who chose to report a concern, and what it actually took for them to make that call. Almost none of them describe the decision as simple.
India’s data privacy rules entering enforcement phases, raising compliance stakes for U.S. financial firms
Indiaโs Digital Personal Data Protection Act soft enforcement period will end in November. With more active enforcement to follow, financial institutions that failed to comply could face penalties of up to $26.2 million.
Brazil’s National Data Protection Authority: How regulators investigate and enforce its data protection law
In June of this year, Brazil’s National Data Protection Authority opened an administrative enforcement proceeding against Claro, one of the country’s largest telecom carriers, over the sharing of customer data with Serasa, the largest credit bureau in Latin America.
Practitioner lessons from Prudential Life of Japanโs scandal
Prudential Life Insuranceโs scandal in Japan attracted limited attention in the West when it broke in January, but six months on, it has become one of the most consequential compliance failures seen this year.ย


