Categories
Innovation in Compliance

Innovation in Compliance: Paul Welter on AI Legal Reasoning for Embedded Compliance Workflows

Innovation comes in many areas, and compliance professionals need to not only be ready for it but also embrace it. Join Tom Fox, the Voice of Compliance, as he visits with top innovative minds, thinkers, and creators in the award-winning Innovation in Compliance podcast. In this episode, host Tom visits with Paul F. Welter, co-founder at Bayshore AI.

Welter is a German-qualified lawyer whose path into legal innovation began with an early background in software engineering, giving him a rare combination of legal and technical expertise. That experience led him to study how legal reasoning could be automated at Stanford Law School’s Codex, and later to co-found Bayshore AI to build LLM-based tools for in-house legal and compliance teams. He believes AI can help scale legal and compliance support because demand far exceeds human capacity, but he expects adoption to happen gradually through copilots, policy chatbots, and targeted workflow automation rather than a sudden transformation. At the same time, he stresses that regulated companies need systems that are transparent, auditable, and able to show how decisions are made, with human oversight remaining essential for higher-risk matters and regulator-facing accountability.

Key highlights:

  • AI Legal Reasoning for Embedded Compliance Workflows
  • Auditable Legal Decision Logic from Conventional Programs
  • Customer-Specific Policy Logic with Deterministic Compliance
  • Logic translated into code for reviewable decisions
  • Full-time employee days of manual compliance checks
  • AI copilots, compliance workflows, and decision trails

Resources:

Bayshore

Innovation in Compliance was recently honored as the Number 4 podcast in Risk Management by 1,000,000 Podcasts

Categories
FCPA Compliance Report

FCPA Compliance Report: Mara Senn on AI-Native, Human-in-the-Loop Investigations for Compliance

In this episode, Tom Fox welcomes Mara Senn, founder and CEO of Ethakos, about her path from big law and a decade as a partner at Arnold & Porter to anti-corruption work at the Kleptocracy Initiative, investigations at the World Bank, and in-house leadership roles at Fortune 500 medical device and pharma companies.

Senn explains she built the Ethakos compliance investigations platform using “vibe coding” with Claude, reducing reliance on software engineers and enabling rapid product decisions. She describes Ethakos as AI-native and human-in-the-loop, designed around how compliance teams actually work, with cleaner data creation, configurable workflows, and features that automate painful reporting tasks (e.g., investigation updates) and first drafts of chronologies, interview outlines, and reports. Senn emphasizes audibility via logs and citations, advises starting AI projects with clear risk goals, and predicts AI will remove menial work so teams can cover more risks while becoming more data- and tech-forward. Contact options include ethakos.com, email, and LinkedIn.

Key highlights:

  • Why Build Ethakos
  • AI Native Platform Design
  • Solving Reporting Pain
  • Starting AI in Compliance
  • Avoiding Common AI Mistakes
  • Investigation Workflow Automation
  • Auditability and Regulator Proofing
  • Future of Compliance Teams

Resources:

Ethakos

Mara Senn on LinkedIn

Tom Fox

Instagram

Facebook

YouTube

Twitter

LinkedIn

To learn about the intersection of Sherlock Holmes and the modern compliance professional, check out Tom’s latest book, The Game is Afoot-What Sherlock Holmes Teaches About Risk, Ethics and Investigations on ⁠Amazon.com⁠.

Categories
AI Today in 5

AI Today in 5: August 31, 2026, The AI for Mental Health Treatment Edition

Welcome to AI Today in 5, the newest addition to the Compliance Podcast Network. Each day, Tom Fox will bring you 5 stories about AI to start your day. Sit back, enjoy a cup of morning coffee, and listen in to AI Today in 5. All from the Compliance Podcast Network. Each day, we consider five stories from the business world on compliance, ethics, risk management, leadership, or general interest in AI.

Top AI stories include:

  1. AI implementation with compliance. (PharmExec)
  2. AI redefining regulation and compliance. (FinTechGlobal)
  3. AI on reading the body’s signals. (MedCityNews)
  4. Should you use AI for mental health treatment? (WSJ)
  5. Reimagining health care delivery through AI. (Cleveland)

For more information on using AI in compliance programs, Tom Fox’s new book, Upping Your Game, is available. You can purchase a copy of the book on ⁠Amazon.com⁠.

To learn about the intersection of Sherlock Holmes and the modern compliance professional, check out Tom’s latest book, The Game is Afoot-What Sherlock Holmes Teaches About Risk, Ethics and Investigations on ⁠Amazon.com⁠.

Categories
From the Editor's Desk

From the Editor’s Desk: Aaron Nicodemus on the August and September in Compliance Week

In this episode of ‘From the Editor’s Desk,’ Tom Fox visits with Compliance Week editor-in-chief Aaron Nicodemus to discuss highlights from Compliance Week in August, take a look at what is coming down the pike in September in Compliance Week, and discuss the upcoming Third Party Risk Management and Supply Chain Summit in Chicago.

Tom and Aaron review key August coverage and upcoming priorities. They discuss new columnist Ben Mason’s “The Hidden Cost of Compliance Leadership,” outlining five recurring burdens for compliance leaders: independence that is often only theoretical, job risk from doing the role properly (including survey findings that nearly 70% of compliance officers have experienced retaliation), inability to voice doubts internally, the invisibility of effective prevention work, and weak leadership support—creating isolation and prompting ideas for safe forums such as the vetted CW app and event roundtables. Nicodemus highlights his Mayo Clinic whistleblower story alleging AI use may endanger patient privacy and outpace internal guardrails. He also describes a National Conference “Practitioner’s Briefing” distilling six Chatham House themes, previews a September 1MDB case study on enablers, plans AI-governance essays for National Compliance Officers Day, and promotes the Oct. 28–29 Chicago TPRM Summit.

Resources:

Aaron Nicodemus on LinkedIn

Compliance Week

Third Party Risk Management and Supply Chain Summit

Categories
AI Today in 5

AI Today in 5: August 28, 2026, The Just Table Stakes Edition

Welcome to AI Today in 5, the newest addition to the Compliance Podcast Network. Each day, Tom Fox will bring you 5 stories about AI to start your day. Sit back, enjoy a cup of morning coffee, and listen in to AI Today in 5. All from the Compliance Podcast Network. Each day, we consider five stories from the business world on compliance, ethics, risk management, leadership, or general interest in AI.

Top AI stories include:

  1. Bill Gates warns on AI. (NYT)
  2. AI governance beyond compliance. (IAPP)
  3. CIGNA AI chief on investing in AI. (Fortune)
  4. AI is now a table stake for compliance monitoring. (National Law Review)
  5. Will Agentic AI refine banking? (International Banker)

For more information on using AI in compliance programs, Tom Fox’s new book, Upping Your Game, is available. You can purchase a copy of the book on ⁠Amazon.com⁠.

To learn about the intersection of Sherlock Holmes and the modern compliance professional, check out Tom’s latest book, The Game is Afoot-What Sherlock Holmes Teaches About Risk, Ethics and Investigations on ⁠Amazon.com⁠.

Categories
Compliance and AI

Compliance and AI: Governance First: How Enterprises Deploy Agentic AI Safely with Nikunj Bajaj

What is the intersection of AI and compliance? What about machine learning? Are you using ChatGPT? These questions are just three of the many we will explore in this cutting-edge podcast series, Compliance and AI, hosted by Tom Fox, the award-winning Voice of Compliance. In this episode, host Tom visits with Nikunj Bajaj, Co-founder & CEO at TrueFoundry, to discuss enterprise agentic AI infrastructure, governance, and hidden costs.

Nikunj Bajaj brings a practical enterprise lens to the rise of agentic AI, shaped by years of working at the intersection of model development and production infrastructure. He argues that enterprise AI is not just a technical challenge but also an organizational one, because federated teams adopting different tools can quickly create sprawl, inconsistent controls, and governance gaps. To address this, he advocates for a unified gateway layer that centralizes observability and control while still allowing teams to build with best-of-breed frameworks, paired with targeted safeguards like auditability, RBAC, guardrails, and the ability to inspect or revert agent actions. Bajaj also stresses that successful enterprise adoption requires disciplined cost management through FinOps, chargebacks, and budget guardrails so companies can move quickly toward ROI without letting agentic systems become a governance risk or a runaway expense.

Resources:

Connect with Nikunj Bajaj

Learn More About TrueFoundry

Tom Fox

Instagram

Facebook

YouTube

Twitter

LinkedIn

Categories
AI in Financial Services in 5 Stories

AI in Financial Services in 5 Stories – Week Ending August 28, 2026

Welcome to AI in Financial Services in 5 Stories. A practical weekly roundup of the five most important AI developments affecting banking, insurance, payments, asset management, and fintech. Each Friday, Tom Fox will break down the top stories that matter most through the lenses of compliance, risk management, governance, and business strategy. Designed for compliance professionals, executives, legal teams, and financial services leaders, it goes beyond headlines to explain why each development matters in a highly regulated industry. The result is a concise weekly briefing that helps listeners stay current on AI innovation while asking sharper questions about oversight, accountability, and trust.

This week’s stories include the following:

  1. Will Agentic AI refine banking? (International Banker)
  2. How customers use AI banking apps. (Yahoo!Finance)
  3. The huge danger in letting AI replace bankers. (CNBC)
  4. Is the future of audit real-time? (CFO Dive)
  5. Making AI decisions defensible. (Forbes)

For more information on the use of AI in Compliance programs, Tom Fox’s new book, Upping Your Game, is available. You can purchase a copy of the book on Amazon.com.

To learn about the intersection of Sherlock Holmes and the modern compliance professional, check out Tom’s latest book, The Game is Afoot-What Sherlock Holmes Teaches About Risk, Ethics and Investigations on Amazon.com.

Categories
AI Today in 5

AI Today in 5: August 27, 2026, The Identity Problem Edition

Welcome to AI Today in 5, the newest addition to the Compliance Podcast Network. Each day, Tom Fox will bring you 5 stories about AI to start your day. Sit back, enjoy a cup of morning coffee, and listen in to AI Today in 5. All from the Compliance Podcast Network. Each day, we consider five stories from the business world on compliance, ethics, risk management, leadership, or general interest in AI.

Top AI stories include:

  1. Four places AI cuts paperwork in food compliance. (HealthcareITNews)
  2. New Anthropic models struggling. (FT)
  3. Colorado’s AI proposed law raises compliance concerns. (Housing Wire)
  4. Compliance controls for AI meeting notes. (Yahoo!Finance)
  5. The identity problem. (FinTechGlobal)

For more information on using AI in compliance programs, Tom Fox’s new book, Upping Your Game, is available. You can purchase a copy of the book on ⁠Amazon.com⁠.

To learn about the intersection of Sherlock Holmes and the modern compliance professional, check out Tom’s latest book, The Game is Afoot-What Sherlock Holmes Teaches About Risk, Ethics and Investigations on ⁠Amazon.com⁠.

Categories
Everything Compliance

⁠Everything Compliance: The AI, Investigations, Kickbacks and Kids Edition⁠

Welcome to a revamped Everything Compliance. We have a new host, Adam Turteltaub, and a new panelist, Rebecca Walker, who joins returning regulars Jonathan Armstrong and Karen Moore for the next iteration of Everything Compliance. Matt is on assignment this week. This episode features a cross-Atlantic discussion on emerging compliance issues. Fan favs, Shout Outs, and Rants end this week’s episode.

  • Karen Moore analyzes the DOJ’s $46M Veloxis Pharmaceuticals resolution, focusing on Sunshine Act misreporting caused by falsified expense data and the need to test controls for circumvention using analytics.
  • Jonathan Armstrong warns that generative AI is driving more frequent, longer, more aggressive, and sometimes hallucinated whistleblowing and investigation communications, increasing complaints to regulators and burdening tribunals; he offers six tips, including awareness, checking for AI use, cautious AI adoption for workload, budgeting, restricting AI inputs for data protection, and improving AI literacy under the EU AI Act.
  • Rebecca Walker reviews new developments in the KPMG Australia whistleblower controversy, highlighting investigation rigor, handling persistent whistleblowers with humility and curiosity, and the costs of getting investigations wrong.

The members of Everything Compliance are:

The award-winning Everything Compliance is a part of the Compliance Podcast Network.

Categories
Innovation in Compliance

Innovation in Compliance: Brian Holyfield on Reducing Cybersecurity Blast Radius

Innovation comes in many areas, and compliance professionals need to not only be ready for it but also embrace it. Join Tom Fox, the Voice of Compliance, as he visits with top innovative minds, thinkers, and creators in the award-winning Innovation in Compliance podcast. In this episode, host Tom visits with Brian Holyfield, Co-Founder & Chief Product Officer at SendSafely.

Holyfield discusses why the right compliance question on cybersecurity is not whether a breach will happen but when and what data will be exposed, often through vendors. He explains “blast radius” as the scope of access and data reachable during an incident and argues organizations should prioritize architecture, data minimization, and retention controls alongside prevention. He also highlights risks from accumulated file attachments, overbroad user access, interconnected systems using OAuth tokens, and “standing access” via long-lived machine credentials that can be abused without obvious login anomalies. Holyfield discusses examples involving ServiceNow and Salesforce that illustrate platform vulnerabilities, trusted upstream vendor connections, and end-user compromise, and advises leaders to inventory connections, define retention/archiving, and move sensitive data out of frontline platforms; SendSafely positions itself as an end-to-end encrypted trust layer, including for AI chatbot attachments.

Key highlights:

  • Assume the Breach
  • Blast Radius Explained
  • ServiceNow and Salesforce Lessons
  • Board-Level Questions
  • AI Changes the Game
  • Compliance and Governance Fit

Resources:

SendSafely

Brian Holyfield on LinkedIn

Innovation in Compliance was recently honored as the Number 4 podcast in Risk Management by 1,000,000 Podcasts