AI tools are arriving through the back door of enterprise software — no contract, no due diligence, no TPRM trigger — and most manufacturing compliance functions have no idea they are already inside.
Third Party Risk
How to establish an anti-corruption and anti-bribery compliance program
The U.K. unveiled a new Anti-Corruption Strategy in December 2025, just as the EU unveiled its first Anti-Corruption Directive. Both jurisdictions have signalled that they are keen to push back on rising risks of corruption. But many organizations have no formal anti-corruption measures. Where should compliance start?
The State of Third-Party Risk Assessments 2026: Benchmarking the Maturity Gap
In this Compliance Week webinar, we’ll explore the most compelling findings from the report, based on independent global research conducted in collaboration with the Ponemon Institute and informed by responses from more than 1,400 third-party risk leaders and practitioners.
Hidden supply-web risks in MSPs and MSSP contracts
Governance failures embedded in standard agreements are amplifying organizations’ exposure to cyber incidents by failing to account for modern supply-chain realities, where third- and fourth-party vendors, cloud platforms, subcontractors create a cascading risk far beyond the contracting entity.
Top of mind compliance topics in 2026: Finance, immigration, supply chains and sustainability
What will you be doing in the coming year? We asked experts in a range of sectors to gaze into their crystal balls and highlight one legal development or compliance topic that will be critical for compliance teams in 2026. This is an edited version of what they told us.
How to identify and mitigate risks posed by Foreign Terrorist Organizations
Since Inauguration Day on Jan. 20, 2025, the Trump Administration has made it a priority to expand the list of designated Foreign Terrorist Organizations.
EU financial firms must prepare now for new rules on critical third-party arrangements
European banks and financial institutions must prepare now for stringent new rules on third-party suppliers.
CW survey finds compliance teams struggling to scale due diligence beyond direct vendors
Companies are tightening oversight of third-party risks but still struggle to extend due diligence beyond their direct partners, according to a new survey by Compliance Week and GAN Integrity.
Write supply chain resilience into the contract
The only thing constant is change. Shouldn’t we be ready for that in our contracts?
TPRM – Best Practices for Calculating Inherent Risk
Join this webinar with ProcessUnity to hear expert advice and best practices on how to calculate inherent risk and put it to work for your program.
