Categories
Red Flags Rising

Red Flags Rising: S01 E05 – The Knowledge “Glass Onion” for U.S. Export Controls

Mike & Brent update listeners on the America First Trade Policy Section 4(c) Report Executive Summary (01:05) before previewing their forthcoming “Glass Onion” article in WorldECR magazine about the various layers of the “knowledge” standard under the U.S. Export Administration Regulations (03:18), including “actual knowledge” (07:23), “reason to know” (08:44), and “awareness of a high probability” (09:39). Mike & Brent then discuss relevant guidance from the U.S. Bureau of Industry & Security (12:44), parallels to U.S. Foreign Corrupt Practices Act enforcement (13:30), how the “high probability” standard is becoming the new national security enforcement paradigm (14:56), and key takeaways for trade compliance professionals (16:49) before wrapping up with yet another edition of Brent Carlson’s “Managing Up” segment (19:07).

Mike & Brent’s new “Glass Onion” article (subscription required): [link forthcoming!]

Resources:

Brent LinkedIn

Mike LinkedIn

Mike & Brent’s “Fresh Looks” Series

Categories
The Hill Country Podcast

The Hill Country Podcast – Inside the Music and Creative Process: Marathon Highway’s Journey

Welcome to the award-winning The Hill Country Podcast. The Texas Hill Country is one of the most beautiful places on earth. In this podcast, Hill Country resident Tom Fox visits with the people and organizations that make this the most unique area of Texas. In this episode, Andrew Gay steps in for Tom Fox and welcomes Rod McGehee and Reggie Knowles of the newly formed band Marathon Highway.

They discuss the band’s formation highlights, their dedication to creating original music, and how each member’s unique musical background contributes to their collective sound. Rod and Reggie share insights into their personal music journeys, songwriting processes, and the communal effort involved in bringing their music to life. They emphasize music’s emotional impact and universal language, drawing parallels to other art forms like painting. The conversation concludes with details about their upcoming performance and how they hope to engage the local arts community through their music.

Resources:

  • Formation of Marathon Highway
  • Musical Backgrounds and Band Dynamics
  • Songwriting and Creative Process
  • Music as an Emotional and Intellectual Art
  • Upcoming Gigs and Future Plans

Other Hill Country Network Podcasts

Hill Country Authors Podcast

Hill Country Artists Podcast

Texas Hill Country Podcast Network

Artwork

Nancy Huffman Fine Art

Categories
Compliance Into the Weeds

Compliance into the Weeds: Unsexy Keys to Data Analytics for Compliance Programs

The award-winning Compliance into the Weeds is the only weekly podcast that takes a deep dive into a compliance-related topic, literally going into the weeds to explore a subject more fully. Are you looking for some hard-hitting insights on compliance? Look no further than Compliance into the Weeds! In this Compliance into the Weeds episode, Tom Fox and Matt Kelly take a deep dive into the critical yet often overlooked aspects of data analytics.

They discuss Matt’s recent blog post on the ‘Unsexy Keys to Data Analytics,’ emphasizing the importance of foundational infrastructure over flashy visualizations. The conversation covers the need for robust data validation, the cooperation between compliance, business units, and IT departments, and the challenges faced by compliance officers in smaller companies. Highlights include real-world examples, the role of data governance, and how to align compliance risk management with corporate objectives amid ever-changing business landscapes.

Key highlights:

  • The Importance of Data Infrastructure
  • Compliance vs. Enterprise Data Analytics
  • Collaboration Across Departments
  • Data Governance and Change Management
  • Aligning Compliance with Corporate Risk Management

Resources:

Matt in Radical Compliance

Tom

Instagram

Facebook

YouTube

Twitter

LinkedIn

Compliance into the Weeds was recently honored as one of the Top 25 Regulatory Compliance Podcast.

Categories
Daily Compliance News

Daily Compliance News: April 9, 2025, The Corruption at the DOJ Edition

Welcome to the Daily Compliance News. Each day, Tom Fox, the Voice of Compliance, brings you compliance-related stories to start your day. Sit back, enjoy a cup of morning coffee, and listen to the Daily Compliance News—all from the Compliance Podcast Network. Each day, we consider four stories from the business world: compliance, ethics, risk management, leadership, or general interest for the compliance professional.

Top stories include:

  • Wall Street bursts over the stupidity of Trump tariffs. (NYT)
  • The fired DOJ lawyer accused the current DOJ leadership of corruption. (AP)
  • Paul Atkins for SEC chair advances in Senate. (Reuters)
  • Hackers have spied on OCC for over a year, undetected. (Bloomberg)
Categories
Blog

The Role of Compliance in Auditing AI

As compliance professionals, our roles evolve constantly, shaped by new technologies and emerging risks. One of the most significant developments in recent years has been the rapid growth of artificial intelligence (AI) and machine learning systems in the corporate environment. The 2024 Evaluation of Corporate Compliance Programs (2024 ECCP), under the Management of Emerging Risks to Ensure Compliance with Applicable Law section, asked several key questions.

  • What is the company’s approach to governance regarding the use of new technologies, such as AI, in its commercial business and compliance program?
  • How is the company curbing any potential adverse or unintended consequences resulting from using technologies, both in its commercial business and its compliance program?
  • How is the company mitigating the potential for deliberate or reckless misuse of technologies, including by company insiders?
  • To the extent that the company uses AI and similar technologies in its business or as part of its compliance program, are controls in place to monitor and ensure its trustworthiness, reliability, and use in compliance with applicable law and the company’s code of conduct?
  • Do controls exist to ensure the technology is used only for its intended purposes?
  • What baseline of human decision-making is used to assess AI?
  • How is accountability over the use of AI monitored and enforced?

One key tool for answering many of these questions is auditing. In his recent article in the Harvard Business Review, What Leaders Need to Know About Auditing AI, author Luca Belli outlines crucial insights that business leaders must understand about auditing AI. I have adapted his thoughts for a Chief Compliance Officer and compliance professional.

While audits are becoming a core feature of working with AI, they do not have a predetermined process that follows a straight line; rather, they are a web of different decisions, both from the business and the technical side. Specifically, audits often face four core challenges: 1) they do not follow a straight line, 2) data governance is messy, 3) they require internal trust, and 4) they focus on the past. Leaders can take steps to help audits succeed. Compliance professionals can help instill the right culture and incentives and help design the audit. During the audit, they can shape the process and remove red tape.

AI is no longer confined to back-end analytics. It has stepped confidently into customer-facing roles, making decisions in critical areas such as finance, healthcare, and housing. With such reach and influence, AI poses significant ethical, reputational, and legal risks if left unchecked. Audits of AI systems, therefore, have become a cornerstone of modern compliance frameworks. Policymakers worldwide, including through the EU’s Digital Services Act and New York City’s AI bias law, are mandating external audits of AI systems. Even where not mandated, businesses voluntarily engage in audits to manage risk, mitigate potential crises, and anticipate regulatory developments.

However, auditing of AI is not straightforward. Compliance professionals must understand four fundamental challenges inherent in AI audits.

1. Non-linear Audit Processes

AI audits rarely follow a straight, predictable path. Instead, they often resemble a “random walk,” as auditors must continually adjust their focus based on emerging data and shifting business needs. Consider an audit to detect racial bias in decision-making algorithms where direct data on race is unavailable. Auditors may pivot to proxy measures like zip codes to approximate racial data. This approach, while practical, introduces discrepancies and limitations that must be carefully managed and transparently documented.

2. Complex Data Governance

Effective auditing relies heavily on data governance practices, yet data management often resembles an “old building” layered with historical inefficiencies rather than a clean, structured system. Many organizations struggle to locate and interpret data due to outdated documentation or employee turnover. Compliance teams must actively collaborate with technical teams to ensure data accuracy and completeness. As Belli suggests, robust internal documentation and dedicated data custodians can significantly ease this challenge.

3. Building Internal Trust

Audits can strain internal team dynamics, particularly if audit results lead to perceived criticisms of operational decisions. Compliance professionals must proactively foster a culture of trust, reinforcing that audits are not punitive but integral to operational excellence. As Belli notes, incentives should align accordingly: supporting audits should positively influence personal and professional evaluations, signaling organizational value in transparency and continuous improvement.

4. Historical Focus and Technical Limitations

Most audits evaluate past performance, and evolving AI systems and datasets pose challenges in replicating historical conditions. A user deleting their profile data or changes in system algorithms can complicate audits significantly. Compliance professionals must advocate for real-time monitoring or, at minimum, detailed record-keeping, ensuring auditors have sufficient context to interpret their findings and recommendations accurately.

Given these complexities, how can corporate compliance officers effectively lead their organizations through AI audits? Belli provides several practical steps:

  • Proactive Preparation: Companies should not wait for external mandates to build auditing capabilities. By establishing internal audit teams or clearly defined points of contact within existing teams, organizations can swiftly respond to audit needs while minimizing operational disruption.
  • Cultural Alignment: Corporate culture profoundly impacts audit effectiveness. Compliance professionals must champion transparency and accountability at the highest organizational levels, ensuring that audits are critical to long-term business success rather than occasional inconveniences.
  • Strategic Audit Design: Choosing between external auditors and internal audit teams requires careful consideration of organizational dynamics. Internal teams offer in-depth institutional knowledge, while external auditors provide objective perspectives without internal friction. Belli suggests a hybrid model, often ideal, balancing centralized expertise with distributed operational familiarity.
  • Leadership Engagement: Active, informed involvement by senior leadership during audits can clarify organizational priorities and remove operational roadblocks. Leaders should regularly engage with technical teams to understand key decisions, encourage thorough documentation, and ensure audit findings align clearly with broader business objectives.

The author underscores the CCO’s crucial role in navigating the nuanced landscape of AI auditing. As technology’s reach expands, compliance teams must proactively address these emerging complexities, continually adapting their oversight frameworks to meet the dynamic challenges presented by AI systems. By fostering robust internal collaboration, aligning incentives, and strategically preparing audit infrastructure, compliance professionals not only mitigate risks but also enable their organizations to harness AI’s transformative potential responsibly and ethically.

Categories
Compliance Tip of the Day

AI Playbook for Compliance Professionals

Welcome to “Compliance Tip of the Day,” the podcast where we bring you daily insights and practical advice on navigating the ever-evolving landscape of compliance and regulatory requirements. Whether you’re a seasoned compliance professional or just starting your journey, we aim to provide bite-sized, actionable tips to help you stay on top of your compliance game. Join us as we explore the latest industry trends, share best practices, and demystify complex compliance issues to keep your organization on the right side of the law. Tune in daily for your dose of compliance wisdom, and let’s make compliance a little less daunting, one tip at a time.

AI implementation is not simply just a tech or even business initiative. It requires a comprehensive compliance strategy.

Categories
SBR - Authors' Podcast

SBR-Author’s Podcast – Transforming Corporate Careers: Leadership Lessons for the US Military Veteran Entrepreneur

Welcome to the SBR – Authors Podcast! Host Tom Fox visits with authors in the compliance arena and beyond in this podcast series. Today, Tom is joined by Lisa Ducharme, an Air Force veteran with a unique journey from military service to entrepreneurship.

Lisa shares her story of working at Westfield State University and her unexpected transition to becoming the entrepreneur in residence for the Yukon EBV program. She discusses veterans’ challenges when transitioning to civilian life, stressing the importance of leveraging veteran resources and the skills learned in the military. Lisa also delves into her leadership philosophies, such as leading authentically, understanding one’s ‘why,’ and building strong teams. Additionally, she emphasizes the significance of giving back through initiatives like the Massachusetts Veterans Chamber of Commerce and her writing, which aims to empower and educate fellow veterans. The episode wraps up with Lisa previewing her upcoming podcast focused on veteran businesses and their historical contributions, offering listeners educational insights and practical tips for leveraging AI.

Key highlights:

  • Military Background and Transition
  • Leadership Philosophy
  • Writing and Marketing Insights

Resources:

Lisa Ducharme Website

Lisa Ducharme  on LinkedIn

Lisa Ducharme  on Instagram

Lisa Ducharme’s book list on Amazon.com

Tom Fox

Instagram

Facebook

YouTube

Twitter

LinkedIn

Categories
2 Gurus Talk Compliance

2 Gurus Talk Compliance – Episode 49 – The Depression Episode

What happens when two top compliance commentators get together? They talk compliance, of course. Join Tom Fox and Kristy Grant-Hart in 2 Gurus Talk Compliance as they discuss the latest compliance issues in this week’s episode!

 

Stories This Week Include:

  • Rivals pounce on Paul Weiss lawyers. (NYT)
  • The court dismissed the FCPA case against Cognizant Technologies defendants. (Law360)
  • Boeing sued for wrongful death of whistleblower. (WSJ)
  • US presses French companies to stop DEI. (NYT)
  • Disney is under investigation for DEI. (BBC)
  • The Charlie Javice Verdict: A Wake-Up Call For Fintechs And Banking – (Forbes)
  • The Brave New World — Due Diligence to Identify Cartels and TCOs – (Volkov Blog)
  • Nuggets From Navex on Internal Reporting – (Radical Compliance)
  • The Five Things You Shouldn’t Tell ChatGPT – (WSJ)
  • Florida man points a gun at the man at a karaoke bar after getting ‘upset’ about the music: police – (Fox 35 Orlando)

Resources:

Kristy Grant-Hart on LinkedIn

Prove Your Worth

Tom

Instagram

Facebook

YouTube

Twitter

LinkedIn

Categories
Innovation in Compliance

Innovations in Compliance – Data Collection & Cybersecurity with ModeOne’s Matt Rasmussen and Ryan Frye

Innovation comes in many areas, and compliance professionals need to be ready for it and embrace it. Join Tom Fox, the Voice of Compliance, as he visits with top innovative minds, thinkers, and creators in the award-winning Innovation in Compliance podcast. In this episode, host Tom Fox visits Matt Rasmussen and Ryan Frye from ModeOne and their innovative approach to compliance data collection and cybersecurity.

They discuss their professional backgrounds, the founding of ModeOne, and their solutions to common challenges in data collection for compliance purposes. The conversation covers the shift from full data extraction to targeted data collection, navigating the complexities of encrypted communications, and the evolution of cloud compliance and AI integration. Key takeaways include the importance of targeted data collection, the use of AI in compliance monitoring, and strategies for balancing data privacy and protection.

Key highlights:

  • Founding ModeOne: The Journey
  • Innovation in Compliance and Cybersecurity
  • Role of the Chief Innovation Officer
  • Risk Management Frameworks
  • Future of Cloud Compliance and AI
  • Top Action Items for Compliance Officers
  • Preparing for the Future: 2030 and Beyond

Resources:

Matt Rasmussen on LinkedIn

Ryan Frye on LinkedIn

ModeOne Technologies in LinkedIn

ModeOne Website

Mobile Device Data Collection: What You Need to Know in 2025

ModeOne News

Tom Fox

Instagram

Facebook

YouTube

Twitter

LinkedIn

Categories
Word of the Week

Word of the Week with Kenneth O’Neal – The Importance of Agreement

Each week, Kenneth O’Neal discusses a word that describes a principle or value of the Qualities of Success. We suggest you use the Word of the Week in your thoughts, deeds, and actions. You might possess the quality and desire to develop it to a higher level. You could replace a bad habit with a good habit. Write an action step and use it daily to develop the quality in your life. In this episode, Kenneth discusses the word – Agreement.

In this episode, Kenneth O’Neal takes a deep dive into the concept of ‘agreement’ and its numerous connotations, from legal contracts to emotional alignments. The discussion emphasizes that agreements are inherent in human interactions, whether formal or informal, written or verbal. Popular phrases like ‘we agree to disagree’ promote peace and empowerment but can often hinder deeper conversations and understanding. The episode encourages listeners to take responsibility for meaningful discussions and communicate effectively. Highlights include historical agreements like the Magna Carta and the United States Constitution and practical tips like listing the pros and cons of resolving conflicts.

Key highlights:

  • Defining Agreement: Forms and Examples
  • The Pitfalls of Misunderstanding Agreements
  • Exploring Common Phrases: Agree to Disagree
  • Taking Responsibility in Conversations

Resources:

KRONEAL Consulting