Surveys: Rushing technology decisions comes with big compliance risks
Embracing technology to help manage risk and improve efficiencies is a trend that’s been developing in the compliance space for a while, but the pandemic has fast-tracked the urgency behind it, according to a couple of recent surveys.
Survey: Cyber-risk and data privacy in the age of COVID
In the wake of the SolarWinds hack and in the middle of a pandemic, it’s critical to ensure your most important data is protected—particularly when you’re collecting and storing more of it than ever. Take 2 minutes to let us know how you think you’re doing.
German laptop retailer fined $12.7M under GDPR for employee surveillance
A German data regulator fined an online laptop and electronic goods retailer €10.4 million (U.S. $12.7 million) for video-monitoring employees for at least two years without legal basis.
e-Book: Choose your ending: What to do when your systems are hacked and ransom is demanded
What should you do if your firm is hit by ransomware? Choose your own ending to this tale about a clinic, a criminal, and coronavirus to learn the risks and rewards of each choice.
Learning from SolarWinds: Five steps to fortify your cloud supply chain
For most companies, supply chain risk management traditionally focuses on managing physical third-party risks. But what the SolarWinds cyber-attack revealed is the catastrophic havoc fourth and fifth parties can also wreak in the often-ignored cloud supply chain.
Cyber-security lessons from the SolarWinds hack
The lessons from the massive SolarWinds hack on where vulnerabilities still lurk in the third-party vendor supply chain cannot be grasped soon enough.
Video: Twitter GDPR fine too little or just right?
Aaron Nicodemus and Dave Lefort debate whether the Irish Data Protection Commission’s €450,000 (U.S. $547,000) fine against Twitter under the GDPR is an appropriate figure or way too small for the social media company.
FinTech darling Robinhood fined $65M for misleading customers
Mobile trading app provider Robinhood Financial, which has become a disruptive force in the stock market, has agreed to pay $65 million to the SEC to settle charges of misleading customers about how it makes money and for failing to secure best sale prices.
Best practices for customized digital compliance training
Today’s volatile market, coupled with the increasing willingness of subject matter experts to collaborate, changes the game in some areas, where “build” starts to make more sense than “buy.” One area is digital compliance training.
FTC data requests could pave way to federal privacy law, experts say
FTC requests issued to nine social media and video streaming services for information about how they collect and use personal information could be a step toward the U.S. government enacting federal privacy legislation.
Twitter’s tiny $547K GDPR fine leaves many scratching their heads
Ireland’s first major decision against a Big Tech company under the GDPR has stirred controversy as the country’s data regulator hit Twitter with an underwhelming €450,000 (U.S. $547,000) fine for a 2018 data breach.
Regulators catching up on use of analytics; compliance better take notice
If your company isn’t making optimal use of data to enhance its compliance program, now is the time to start—before it’s too late.
Ask a CCO: How to meet data analytics expectations of both board and regulators
Six senior compliance practitioners share some big-picture thoughts on how their companies are using data within the context of regulators’ increased expectations in the area.
France sidesteps GDPR in fining Google, Amazon $163M combined
Data privacy watchdog CNIL utilized the French Data Protection Act in fining Google and Amazon a combined €135 million (U.S. $163 million) for illegal cookie practices, sidestepping the “one-stop shop” provision of the GDPR.
Five challenges for European CCOs heading into 2021
Many of the problems European compliance officers faced in 2020 will remain in place going into the new year, but new risks and new regulations will also present new challenges.
Top ethics and compliance failures of 2020
From a massive accounting fraud scandal in Germany to deceitful consumer tactics among China-based companies to unethical practices on the environmental front in the United States—CW’s list of the top ethics and compliance failures of 2020 spans the globe.
Five compliance triumphs from 2020
CW reveals its list of five compliance wins from the year, including Samsung for its honesty, Volkswagen for successfully wrapping up its monitorship, 3M for stellar ethics, and more.
Jan. 26 | Machine learning leads next-gen battle against financial crime
The complexity and pervasiveness of financial crime continues to challenge compliance functions. Machine learning can significantly bolster the efficiency and effectiveness of the function when implemented correctly, yet many financial institutions have had limited success in deploying it.
Trio of U.K. fines expose third-party risks under GDPR
Recent GDPR fines against British Airways, Marriott, and Ticketmaster by the U.K. Information Commissioner’s Office each saw the regulator dismiss claims by the companies that third parties were primarily responsible for the data breaches in question.
CPE Webcast: Eliminate payment fraud and corruption: power of AI and compliance expertise
Accounts payable, procurement, and travel and expense-management processes are common channels to route frauds making organizations susceptible to regulatory penalties, reputational damage, financial loss, and even prosecution.
White paper: Addressing the hidden cost of embedding open source software
The digital economy has created a need in the world of software development to find new ways of delivering innovative software solutions and software updates faster than ever before. Development teams are—understandably so—increasingly using open source software.
Cryptocurrency’s future: What compliance needs to know
Cryptocurrency is complicated, but it’s not going away anytime soon. David Povey of the ICA takes a look at what regulators are trying to do and offers tips on where compliance officers can go to study this complex topic further.
Survey: Machine learning will (eventually) help win the war against financial crime
While the war against financial crime wages on, machine learning and artificial intelligence may give financial institutions the upper hand, according to a recent survey.
e-Book: Machine learning will (eventually) help win the war against financial crime
This e-Book, from Compliance Week and Guidehouse Inc., explores how the adoption of machine learning in fighting financial crime will likely explode as technology solutions become more effective and efficient—driven by work-stream prioritization, product maturity, and refinement of implementation processes.
CPE Webcast: Harnessing power of data analytics to meet compliance obligations
The updated DOJ guidance on the evaluation of compliance programs emphasizes the importance of obtaining, tracking, and acting on compliance-relevant data.
California voters approve creation of new state agency to enforce CCPA
California voters approved a ballot measure that will add new layers of responsibility for businesses attempting to comply with the state’s first-in-the-nation data privacy law, the California Consumer Privacy Act.
Choose your ending: What to do when your systems are hacked and ransom is demanded
What should you do if your firm is hit by ransomware? Choose your own ending to this tale about a clinic, a criminal, and coronavirus to learn the risks and rewards of each choice.
Corrective action could trump fines as GDPR evolves
Experts discuss whether EU data protection authorities would be better served using corrective actions other than eye-watering fines to encourage companies to commit to best (and legal) GDPR practices.
U.S. agencies get nod for using data, smart incentives in enforcement
Both the CFTC and CFPB “Nailed It” this week while corporate heavyweight General Electric found itself in more trouble.
‘Audit in Action’: BDO partner shares data analytics journey
Brian Miller, national partner of audit transformation and innovation at BDO USA, talked with Compliance Week about how the pandemic has driven adoption of technologies by BDO’s auditors.
Ask a CCO: What will compliance look like in 5 years?
We asked nine prominent chief compliance officers to look into their crystal balls, and all of them saw data and advanced technology playing a larger role in the future of the profession.
Five ways the pandemic has changed compliance—perhaps permanently
It’s a good thing you’re all experts in partnering for change, as more than 3 in 4 of you think COVID-19 will have a permanent impact on some compliance functions.
Companies face greater risk as GDPR class actions emerge
In the past month three of the world’s largest tech firms have been hit with legal actions that could lead to billion-dollar damages suits for alleged violations of the GDPR. Neil Hodge explores the trend and what to expect moving forward.
U.K. lawsuit seeks $3.2B from YouTube for violating children’s privacy
A first-of-its-kind lawsuit in the U.K. alleges YouTube unlawfully collects personal information from children without parental consent and harvests their data for advertising purposes, in violation of British and European data privacy laws.
Gut instinct keeps humans ahead of AI in fight against financial crime
As artificial intelligence evolves and takes on new tasks, whether it can develop the instinct of an experienced compliance professional will be key to its prevalence in the AML world, writes Martin Woods.
Ireland’s order to Facebook to halt data transfers could have ‘profound’ impact
The Irish DPC’s order to Facebook to halt the transfer of European citizens’ personal data to the United States could pose operational and legal challenges that set a precedent for not only other tech giants, but companies generally.
CPE Webcast: Debunking myths of AI & ML in TPRM technology
This webinar debunks the myths of AI and ML in third-party risk technology and drills into reality with a pragmatic application of how your data can be harnessed to support various risk management use cases.
White paper: AI-enabled real-time T&E audit analytics to drive compliance and reduce spends
Your company may be spending less on travel and entertainment expenses, but the risk of fraud and regulatory non-compliance is spiking. Without proper safeguards in place to manage T&E spend – a major operating expense – companies face costly consequences.
Credit social media giants for prepping for election chaos
Silicon Valley’s social media heavyweights deserve a nod for “war-gaming” potential misinformation scenarios in advance of November’s elections, while McDonald’s again finds itself on our “Not Lovin’ It” list.
Age of Learning to pay $10M for billing practices; ‘digital deception’ a trend?
The company that runs ABCmouse Early Learning Academy found itself in the FTC’s crosshairs for what the Commission alleges are unfair billing practices that are part of a wider problem across the internet.
CPE Webcast: Capturing, managing communications data in modern enterprise
Today’s employees and customers generate a lot of communications data, in a lot of formats and in a lot of locations, from computers and on prem servers to mobile devices and the cloud.
Survey: Automating entity management greatly reduces compliance risk
A new study from Compliance Week and Diligent finds that many companies are still using unsecure and inefficient entity management processes, leaving them vulnerable to compliance risk.
Q&A: New training takes compliance leaders on ‘non-technical’ cyber-journey
A new training offered by renown expert Paul C. Dwyer helps non-technical practitioners gain confidence in dealing with all aspects of cyber-security or cyber-risk.
Clash over draft Twitter GDPR decision exposes differences among EU authorities
As Ireland’s first GDPR decision against Big Tech hangs in limbo, experts are scratching their heads as to why a seemingly straightforward case is headed to the EU’s data governing body to rule on.
Google promotes veteran legal exec to general counsel
Embroiled in a federal antitrust investigation, tech giant Google announced the appointment of Halimah DeLaine Prado as its new general counsel.
How far is too far with employee monitoring? Barclays case could offer litmus
The U.K. Information Commissioner’s Office is investigating allegations that Barclays Bank had effectively been spying on employees by using an intrusive software system that monitored workers’ activity.
Trump’s TikTok crusade a hollow win for privacy
There’s no questioning the need to protect the data of U.S. citizens from China, but it’s naïve to think pressuring TikTok to take up a U.S. owner is anything more than a hollow victory given our lack of federal oversight in the area of privacy.
e-Book: Artificial intelligence: Risks and benefits for compliance
Artificial Intelligence (AI) tools are being deployed in numerous areas by financial institutions and broker-dealer firms.
Oracle, Salesforce targeted in class-action GDPR lawsuits
A European privacy group is pursuing multiple class-action lawsuits against Oracle and Salesforce for alleged violations of the EU’s General Data Protection Regulation, estimating damages sought could exceed €10 billion (U.S. $11.9 billion).
CPE Webcast: Future-proof your global supply chain with data & analytics
The COVID-19 pandemic has certainly changed the landscape of global risk, and many organizations are quickly adapting their third-party risk management processes as a result.