Categories
AI Today in 5

AI Today in 5: August 6, 2025, The Rethinking Compliance Episode

Welcome to AI Today in 5, the newest addition to the Compliance Podcast Network. Each day, Tom Fox will bring you 5 stories about AI to start your day. Sit back, enjoy a cup of morning coffee, and listen in to the AI Today In 5. All, from the Compliance Podcast Network. Each day, we consider four stories from the business world, compliance, ethics, risk management, leadership, or general interest about AI.

  • AI for compliance and contract review. (Nucamp)
  • Will Big Tech comply with EU rules on AI? (RFI)
  • AI for workers’ comp compliance. (Press Release)
  • Redefining finance compliance with AI. (VettaFi)
  • Using AI to rethink compliance. (Ethisphere)

For more information on the use of AI in compliance programs, Tom Fox’s new book is Upping Your Game. You can purchase a copy of the book on Amazon.com

Categories
Compliance Into the Weeds

Compliance into the Weeds: A Deep Dive into Cadence Design Systems’ Export Control Violations

The award-winning Compliance into the Weeds is the only weekly podcast that takes a deep dive into a compliance-related topic, literally going into the weeds to explore a subject more fully. Looking for some hard-hitting insights on compliance? Look no further than Compliance into the Weeds! In this episode of Compliance into the Weeds, Tom Fox and Matt Kelly discuss the recent enforcement action against Cadence Design Systems for export control violations.

They explore the company’s illegal sales of sensitive technology to a Chinese university connected to the Chinese military, resulting in $140 million in penalties and a three-year probation. The conversation delves into topics like weak subsidiary governance, challenges in monitoring Chinese subsidiaries, and the complexities of conducting investigations in China. They also reflect on the broader implications for U.S. companies operating in China and the intractable risks involved.

Key highlights:

  • Cadence Design Systems Case Overview
  • Subsidiary Governance Issues
  • Details of the Misconduct
  • Resolution and Penalties
  • Challenges in Compliance and Monitoring
  • Complexities of Doing Business in China

Resources:

Matt Kelly in Radical Compliance

Tom

Instagram

Facebook

YouTube

Twitter

LinkedIn

A multi-award-winning podcast, Compliance into the Weeds was most recently honored as one of the Top 25 Regulatory Compliance Podcasts, a Top 10 Business Law Podcast, and a Top 12 Risk Management Podcast. Compliance into the Weeds has been conferred a Davey, Communicator, and W3 Awards for podcast excellence.

Categories
Compliance Tip of the Day

Compliance Tip of the Day – Key M&A Enforcement Actions

Welcome to “Compliance Tip of the Day,” the podcast where we bring you daily insights and practical advice on navigating the ever-evolving landscape of compliance and regulatory requirements. Whether you’re a seasoned compliance professional or just starting your journey, we aim to provide you with bite-sized, actionable tips to help you stay on top of your compliance game. Join us as we explore the latest industry trends, share best practices, and demystify complex compliance issues to keep your organization on the right side of the law. Tune in daily for your dose of compliance wisdom, and let’s make compliance a little less daunting, one tip at a time.

M&A under the FCPA is well-settled. Today, we consider three seminal enforcement actions.

For more on this topic, check out The Compliance Handbook, a Guide to Operationalizing Your Compliance Program, 6th edition, which LexisNexis recently released. It is available here.

Categories
Daily Compliance News

Daily Compliance News: August 6, 2025, The Spanking Banks Edition

Welcome to the Daily Compliance News. Each day, Tom Fox, the Voice of Compliance, brings you compliance-related stories to start your day. Sit back, enjoy a cup of morning coffee, and listen in to the Daily Compliance News. All, from the Compliance Podcast Network. Each day, we consider four stories from the business world, compliance, ethics, risk management, leadership, or general interest for the compliance professional.

Stories include:

  • Trump wants to punish banks. (WSJ)
  • When ABC becomes corrupted. (FT)
  • Is the Comic Sans font evil? (FT)
  • Microsoft is going RTO. (Business Insider)

You can donate to flood relief for victims of the Kerr County flooding by going to the Hill Country Flood Relief here.

Categories
Great Women in Compliance

Great Women in Compliance – LATAM Compliance Update with Alejandra Montenegro Almonte

In this episode of Great Women in Compliance, Lisa speaks with Alejandra Montenegro Almonte, a member at Miller Chevalier. Alejandra is the Chair of their International Practice and Practice Co-Lead, Workplace Culture.

They discuss recent regulatory trends, workplace culture, and the evolving compliance landscape in Latin America and the United States, including the increased focus on Foreign Terrorist Organizations, False Claims Act enforcement, and the importance of addressing these changes and others proactively, including the DEI Executive Order requirements.

Alejandra also shares her insights about the shift towards addressing workplace culture and conduct issues proactively, and how this has evolved past looking just at litigation risk. She discusses employee engagement and the increasing use of ethical assessments.

Alejandra and Lisa reflect on the challenges of building authentic professional relationships in a predominantly remote work environment. They emphasize the need for intentionality, such as scheduling regular virtual coffees and employer-facilitated opportunities for connection, to foster networking and mentorship.

Alejandra and Lisa have known each other for a long time, and they discuss the value of the early career friendships that become a peer network. This is harder in a virtual age, and Alejandra shares some of her strategies to build networks.

Categories
Blog

The Intersection of Compliance and Crisis Communications

Earlier this week, I posted a podcast with Steve Vincze regarding his thoughts about responding to a corporate crisis similar to the recent one seen at a Coldplay concert, where a Kiss Cam caught two individuals canoodling and it sparked a viral frenzy. The incident serves as a timely reminder that the adage of having 24 hours to respond is long gone. Vincze spoke about how the company can begin to record from such a compliance and ethics miasma, as when your CEO is openly having an affair with the head of your Human Resources Department. Yet there are other considerations a company needs to consider, as in today’s hyper-connected digital environment, corporate compliance professionals find themselves navigating crises at unprecedented speed. Today, compliance and communications teams have mere milliseconds to act.

The viral Kiss Cam event during Coldplay’s performance in Boston quickly transcended entertainment, morphing into a crisis for the company involved as speculation, memes, and fake apologies rapidly filled the communication void. Silence became negligence, and by the time the company issued its response over 24 hours later, the damage had intensified. This case isn’t an anomaly; it’s a crystal-clear signal of the evolving nature of crisis communications and its profound implications for corporate compliance teams. I recently came across an article by Gini Dietrich, founder of Spin Sucks, which outlined everything you need to consider to be ready for such a PR crisis (and nightmare). I took her piece and adapted it for the compliance professional. Here are five key lessons compliance professionals must learn from this incident.

1. Speed is Non-Negotiable

The essence of crisis response in 2025 is rapidity. Compliance professionals can no longer wait for every fact or legal review to issue a holding statement. Hesitation allows misinformation to spread unchecked, rapidly escalating manageable issues into existential threats. By preparing pre-approved holding statements and designating empowered response teams ahead of time, compliance can ensure immediate, controlled communication, preventing narrative hijacking.

Speed protects accuracy, as immediate communication positions organizations as transparent and responsive. A prompt, initial statement doesn’t need exhaustive details but should acknowledge awareness and ongoing investigation. Such swift action conveys responsibility, minimizes uncertainty, and curtails speculative narratives before they gain momentum.

2. Internal Communications are Essential

In crises, employees are not just internal stakeholders; they become frontline communicators, responding to inquiries from customers, partners, and personal connections. Compliance professionals must prioritize internal communications, informing employees first, clearly, and quickly. Doing so avoids confusion, curbs misinformation, and positions employees as reliable ambassadors equipped to handle external conversations appropriately.

Effective internal communications demonstrate organizational respect and care for employees, reinforcing loyalty and trust. It empowers them to respond confidently and consistently, reducing the risk of inadvertent misinformation. Early internal updates also foster internal stability, safeguarding productivity and morale during uncertain times, ultimately strengthening organizational resilience and unity during crises.

3. Scenario Planning Must Broaden

Traditional crisis management often focuses on natural disasters and data breaches. However, modern scenarios like executive misconduct, white-collar crime, and viral moments must be integrated into risk matrices. Compliance professionals should proactively collaborate with communications teams to anticipate diverse risks. Regular scenario-based drills ensure preparedness and reveal potential weaknesses in response strategies, enabling continuous improvement.

By embracing a broader spectrum of potential crises, compliance teams can identify vulnerabilities and preemptively design response protocols tailored to each scenario. Continuous assessment and updating of these protocols foster adaptability, ensuring teams remain agile and prepared, significantly reducing reaction times and minimizing the scope of damage.

4. Control Your Owned Channels

Immediate access to and control of your communication channels—such as websites, LinkedIn, Twitter, and internal communications platforms—is critical. In the Coldplay Kiss Cam incident, the initial lack of communication enabled false narratives to dominate. Compliance and communication teams must maintain ready-to-use channels, ensuring the company narrative can be rapidly deployed, preserving control and credibility.

Owning and managing these channels allows companies to issue timely, authoritative messages directly to their audience without relying solely on external media coverage. By proactively maintaining these channels, companies ensure consistent messaging, prevent misinformation, and swiftly address emerging issues, thus safeguarding their reputation and maintaining stakeholder trust.

5. Continuous Monitoring and Readiness

Crises do not follow business hours. Compliance professionals must establish continuous monitoring, leveraging tools such as Google Alerts, Buffer, and structured internal monitoring schedules. Maintaining constant vigilance ensures early detection and rapid response, crucially limiting reputational damage. Regular training and simulations further cement readiness, creating an agile response capability able to manage real-time crises effectively.

Continuous monitoring facilitates early warning signs, enabling compliance teams to act preemptively rather than reactively. Additionally, cultivating readiness through regular drills builds organizational muscle memory, reducing response times and stress during real crises. This proactive stance transforms potential vulnerabilities into managed situations, enhancing overall organizational resilience.

The Coldplay Kiss Cam saga underscores that modern crisis communications are not reactive but proactive. Compliance teams prepared for rapid, effective responses not only survive crises—they shape the narrative. By embracing these five critical lessons, compliance professionals can confidently navigate the lightning-fast world of digital communications, turning potential vulnerabilities into opportunities for integrity and trust-building.

In today’s hyper-connected landscape, waiting is no longer a caution; it may be closer to malpractice. As compliance professionals, our responsibility is not merely reacting to crises but proactively preparing for the inevitable moments when reputations hang by a thread. Your employees, stakeholders, and the public do not expect perfection, but they do expect presence, transparency, and action. By investing now in responsive protocols, clear internal communications, and agile crisis teams, you ensure your voice isn’t drowned out by speculation. Speed is not simply an advantage; it may well be your most critical compliance control. Act swiftly, communicate authentically, and you will not just survive the storm; you and your team will shape the narrative.