Categories
Blog

From Compliance to Strategic Risk Management: A Conversation with John Byrne

I recently had an opportunity to sit down with John Byrne, CEO of Corlytics, for a podcast recording. The episode is posted here in my Compliance and AI podcast. Corlytics sponsored the podcast. We had a fascinating conversation about the next steps forward for compliance professionals, exploring tools, insights, and strategies that help us not just react to regulatory changes but proactively embed compliance into the heart of business operations.

Corlytics has recently achieved ISO 42001 certification, a milestone that marks it as a true pioneer in the RegTech space. For those unfamiliar, ISO 42001 establishes rigorous standards for AI model testing, validation, and robust processes that protect against misuse and data vulnerabilities. Byrne emphasized that this certification demonstrates the company’s dedication to applying meticulous, methodical processes typically reserved for cloud computing security to the burgeoning field of AI. Given the increasing centrality of AI to operational infrastructure, John argued convincingly that managing AI risks should be as rigorous and robust as managing any critical business software.

We dove deeper into AI’s role in compliance, highlighting a shift from reactive detective strategies to proactive, predictive capabilities. Compliance, historically viewed as the “business prevention unit,” has undergone significant evolution. AI-driven solutions enable the considerable acceleration of compliance operations, leading to improved outcomes and enhanced traceability. This means compliance professionals can now focus their expertise on strategic issues rather than mundane, repetitive tasks.

Byrne also linked compliance with fundamental banking principles, reminding us that compliance is not a new concept, but rather, it is rooted in maintaining trust. Banking, at its core, is about trust, and the robustness of compliance directly affects this trust. This echoes the historical narrative that compliance is not merely about following rules but also about ensuring long-term business viability and customer satisfaction. Compliance, at its best, is good business.

One of the critical compliance risks in AI highlighted during our conversation was data poisoning, a growing and increasingly significant threat. Bad actors deliberately corrupt AI training data to manipulate model outputs, creating misleading results. John pointed out that managing this risk involves rigorous data provenance checks and cleansing techniques. The objective is not only to secure data but also to validate its accuracy and integrity continuously.

We also explored the distinction between large language models (LLMs) and small language models (SLMs). While LLMs like ChatGPT excel with vast datasets, SLMs are invaluable when privacy, specificity, and accuracy are paramount, such as in proprietary compliance controls within financial institutions. John’s insights into this nuanced approach are particularly critical for compliance professionals managing highly confidential or regulated information.

Moreover, our discussion touched on traceability and auditability, key concerns for compliance practitioners. AI solutions now facilitate real-time audit trails, enabling the immediate tracing of every compliance decision, control update, and policy shift back to their origins. The emphasis is clear that automation and digitization are not optional; they should be viewed as necessary to meet current regulatory expectations effectively.

Byrne provided a powerful case study example regarding dynamic traceability, from risk identification to response, highlighting how AI can dramatically compress timeframes. Traditionally, significant regulatory changes, such as those stemming from MiFID II, would take organizations months or even years to fully operationalize. Today, AI-driven systems can manage this lifecycle in seconds. Such rapid responsiveness not only ensures compliance but also provides strategic flexibility, which is crucial in our ever-changing regulatory landscape.

Recent geopolitical developments underscored the strategic potential of compliance as a proactive risk management function. The Trump Administration’s suspension of FCPA investigation and enforcement raises questions about the role of compliance in the absence of strict regulatory frameworks. A key compliance response is embedding compliance within core business operations, as this integration is a powerful enabler rather than a mere defensive posture. Once again, we see that effective compliance drives more efficient business operations, leading to greater profitability.

Finally, we discussed the future of RegTech, which Byrne believes will democratize compliance technology. Historically restricted to larger financial institutions, advanced compliance tech is now becoming accessible to smaller entities, leveling the competitive field. This democratization ensures that sophisticated compliance is no longer the privilege of only the largest, most resource-rich banks.

In wrapping up our conversation, it became clear that AI and compliance together represent not just a shift but a leap forward, transforming compliance from a cost center into a strategic business partner capable of driving significant organizational value. It’s an exciting time to be a compliance professional as we witness firsthand how AI innovation is reshaping our roles and the very nature of compliance itself.

Stay smart, stay ethical, and, as always, stay compliant. The future is here, and AI is powering it.

Categories
Compliance and AI

Compliance and AI: Revolutionizing Risk Management with John Byrne

What is the role of Artificial Intelligence in compliance? What about Machine Learning? Are you using ChatGPT? These are but three questions we will explore in this cutting-edge podcast series, Compliance and AI, hosted by Tom Fox, the award-winning Voice of Compliance. In this episode, Tom welcomes John Byrne, founder and CEO at Corlytics, to discuss the company’s groundbreaking ISO 42001 certification and its significance for RegTech.

They delve into the evolving role of compliance, emphasizing the transition from reactive to proactive problem-solving. John highlights the shift towards AI-centric operations at Corlytics, aiming for enhanced accuracy, consistency, and traceability in compliance processes. The conversation explores the benefits and risks of AI, including data poisoning and the practical differences between large and small language models. They also touch upon integrating compliance into core business operations, aiming for better client outcomes and speeding up processes like account opening. John envisions RegTech becoming widely accessible, benefiting even the smallest regulated players by enabling proactive business solutions and reducing bottlenecks.

Key highlights:

  • ISO 42001 Certification and Its Importance
  • AI in Compliance and Security
  • AI as an Everyday Tool in Banking
  • Large Language Models vs. Small Language Models
  • Data Poisoning and Its Risks
  • Dynamic Traceability and Policy Lifecycle
  • Compliance as a Strategic Risk Management Tool

Resources:

John Byrne on LinkedIn

Corlytics

Tom Fox

Instagram

Facebook

YouTube

Twitter

LinkedIn

Check out my latest book, Upping Your Game: How Compliance and Risk Management Move to 2030 and Beyond, available from Amazon.com.

Categories
Everything Compliance - Shout Outs and Rants

Everything Compliance – Shout Outs and Rants: Episode 154

Welcome to this edition of Everything Compliance, Shout-Outs, and Rants. This episode features Matt Kelly, Jonathan Marks, Karen Woody, Tom Fox, and Karen Moore.

  1. Karen Moore shouts out to her nephew, who graduates from Georgetown Law School this week, and to the NFL superfan for allegedly causing Shedeur Sanders to drop to the 5th round before being drafted in the recent NFL Draft.
  2. Matt Kelly rants about the GOP’s attempt to ban states from regulating AI.
  3. Jonathan Marks rants about MLB caving to President Trump and allowing those who bet on baseball back into the fold.
  4. Karen Woody shouts out to the Washington & Lee Law School graduating class of 2025.
  5. Tom Fox shouts out to the Disney TV series Andor.

The members of Everything Compliance are:

Tom Fox, the Voice of Compliance, is the host, producer, and sometimes panelist of Everything Compliance. He can be reached at tfox@tfoxlaw.com. The award-winning Everything Compliance is part of the Compliance Podcast Network.

Categories
Daily Compliance News

Daily Compliance News: May 20, 2025, The What Could Go Wrong Edition

Welcome to the Daily Compliance News. Each day, Tom Fox, the Voice of Compliance, brings you compliance-related stories to start your day. Sit back, enjoy a cup of morning coffee, and listen in to the Daily Compliance News—all from the Compliance Podcast Network. Each day, we consider four stories from the business world: compliance, ethics, risk management, leadership, or general interest for the compliance professional.

Top stories include:

  • Drugmaker to buy genetic data company. (WSJ)
  • Defense boom corruption hits NATO. (dw.com)
  • Disparate impact change tees up compliance risk. (Bloomberg Law)
  • State AGs fill the AI regulatory role.  (Reuters)
Categories
Upping Your Game

Upping Your Game: Episode 3 – Embedded Compliance: From Gatekeeper to Business Enabler

In February, the Trump Administration suspended investigations under and enforcement of the FCPA. Many compliance professionals have since wondered what this will mean for corporate compliance programs. Hui Chen challenged compliance professionals with “it’s time to up your game.”

This podcast series, sponsored by Ethico and co-hosted with Ethico co-CEO Nick Gallo, hopes to meet Hui Chen’s challenge for compliance professionals. We will discuss how compliance professionals can ‘Up Their Game’ using currently existing Generative AI (GenAI) tools to dramatically improve compliance programs. As compliance professionals, it is critical to recognize that this moment is not merely about incremental improvements but elevating our profession to a new level of effectiveness, efficiency, and organizational value.

In today’s ‘Upping Your Game’ episode, Nick and Tom discuss the Holy Grail of Compliance. Embedding Compliance. We dive into the concept of embedded compliance, where compliance is integrated into everyday business operations using advanced technologies like AI. They discuss how embedding compliance can drive quality and efficiency, drawing parallels from manufacturing safety norms. The conversation includes a detailed examination of how AI can help compliance professionals by providing real-time insights and streamlining processes, thereby highlighting the importance of viewing compliance not as an isolated task but as an integral part of business operations. Use cases and practical examples, such as those from the private equity sector and companies like Uber, further illustrate the potential of this approach to enhance business performance and ROI. The episode concludes with a compelling argument for positioning compliance as a blueprint for better business, emphasizing the need for constant advocacy and application of innovative technologies.

Key highlights:

  • Strategic and Operational Benefits
  • The Compliance Professional’s Role in Embedded Compliance
  • Lessons Learned
  • Practical Takeaways

Resources:

Upping Your Game- How Compliance and Risk Management Move to 2030 and Beyond on Amazon.com

Nick Gallo on LinkedIn

Ethico

Ethico Workshop on EV Workshop: Calculate, Track & Articulate Return on Integrity (ROI). For registration and Information, click here.

Tom Fox

Instagram

Facebook

YouTube

Twitter

LinkedIn

Categories
10 For 10

10 For 10: Top Compliance Stories For the Week Ending May 17, 2025

Welcome to 10 For 10, the podcast which brings you the week’s Top 10 compliance stories in one podcast each week. Tom Fox, the Voice of Compliance brings to you, the compliance professional, the compliance stories you need to be aware of to end your busy week. Sit back, and in 10 minutes hear about the stories every compliance professional should be aware of from the prior week. Every Saturday, 10 For 10 highlights the most important news, insights, and analysis for the compliance professional, all curated by the Voice of Compliance, Tom Fox. Get your weekly filling of compliance stories with 10 for 10, a podcast produced by the Compliance Podcast Network.

  • The $100K in cash deposit.  (WSJ)
  • Broader DOJ whistleblower program announced.  (WSJ)
  • Google faces massive antitrust lawsuit in Italy. (WSJ)
  • Apple says punishment for its illegal acts unfair. (BBC)
  • Insurance cover for chatbot based losses.  (FT)
  • Adani tries to settle corruption case. (Bloomberg)
  • Is the gift of a jet plane corruption. (NYT)
  • Will SEC overturn bans and suspensions? (Reuters)
  • GOP wants to ban state regulation of AI. (Bloomberg)
  • What is risk paralysis.  (FT)

You can check out the Daily Compliance News for four curated compliance and ethics related stories each day, here.

Connect with Tom 

Instagram

Facebook

YouTube

Twitter

LinkedIn

You can purchase a copy of my new book, Upping Your Game, on Amazon.com

Categories
Daily Compliance News

Daily Compliance News: May 14, 2025, The Widened Whistleblower Program Edition

Welcome to the Daily Compliance News. Each day, Tom Fox, the Voice of Compliance, brings you compliance-related stories to start your day. Sit back, enjoy a cup of morning coffee, and listen in to the Daily Compliance News—all from the Compliance Podcast Network. Each day, we consider four stories from the business world: compliance, ethics, risk management, leadership, or general interest for the compliance professional.

Top stories include:

  • The C-Suite wants to quantify AI’s impact. (Forbes)
  • General Dynamics in hot water over wage and hour compliance. (Reuters)
  • Of dress codes and walkouts at Starbucks. (Bloomberg)
  • Broader DOJ whistleblower program announced.  (WSJ)
Categories
Upping Your Game

Upping Your Game: Episode 2 – From Reactive to Predictive: How AI is Rewriting the Compliance Playbook

In February, the Trump Administration suspended investigations under and enforcement of the FCPA. Many compliance professionals have since wondered what this will mean for corporate compliance programs. Hui Chen challenged compliance professionals with “It’s time to up your game.” This podcast series, sponsored by Ethico and co-hosted with Ethico co-CEO Nick Gallo, hopes to meet Hui Chen’s challenge for compliance professionals. We will discuss how compliance professionals can ‘Up Their Game’ using currently existing Generative AI (GenAI) tools to improve compliance programs dramatically. As compliance professionals, it is critical to recognize that this moment is not merely about incremental improvements but about elevating our profession to an entirely new level of effectiveness, efficiency, and organizational value.

In today’s ‘Upping Your Game’ episode, Nick and Tom discuss moving from reactive to predictive compliance. They discuss how artificial intelligence revolutionizes compliance by shifting from reactive measures to predictive analytics. They highlight how regulatory bodies like the SEC and DOJ have led the charge in data analytics, emphasizing the importance of having access to data silos. Nick shares his experiences and stresses the need for compliance officers to integrate predictive models into business operations. They also explore the iterative process of refining these models and the significance of speaking the language of business to achieve better compliance outcomes and business impacts. The episode concludes with practical advice for compliance officers seeking to educate themselves and effectively pitch their initiatives to executives.

Key highlights:

  • The Regulatory Wake-Up Call
  • The Power of Predictive Analytics
  • Key Lessons for Compliance Professionals
  • The Iterative Approach
  • Meeting with the CEO

Resources:

Upping Your Game: How Compliance and Risk Management Move to 2030 and Beyond on Amazon.com

Nick Gallo on LinkedIn

Ethico Workshop on EV Workshop: Calculate, Track & Articulate Return on Integrity (ROI). For registration and information, click here.

Ethico

Tom Fox

Instagram

Facebook

YouTube

Twitter

LinkedIn

Categories
Daily Compliance News

Daily Compliance News: May 13, 2025, The Leaving on a Jet Plane Edition

Welcome to the Daily Compliance News. Each day, Tom Fox, the Voice of Compliance, brings you compliance-related stories to start your day. Sit back, enjoy a cup of morning coffee, and listen in to the Daily Compliance News—all from the Compliance Podcast Network. Each day, we consider four stories from the business world: compliance, ethics, risk management, leadership, or general interest for the compliance professional.

Top stories include:

  • Is the gift of a jet plane corruption? (NYT)
  • Will the SEC overturn bans and suspensions? (Reuters)
  • GOP wants to ban state regulation of AI. (Bloomberg)
  • What is risk paralysis? (FT)
Categories
Compliance and AI

Compliance and AI: Navigating Regulatory Challenges in 2025 with Allison Lagosh

What is the role of Artificial Intelligence in compliance? What about Machine Learning? Are you using ChatGPT? These questions are but three of the many we will explore in this cutting-edge podcast series, Compliance and AI, hosted by Tom Fox, the award-winning Voice of Compliance. In this episode, Tom is joined by Allison Lagosh, Head of Compliance at Saifr.ai, to discuss the current and future landscape of regulatory compliance.

Lagosh discusses key regulatory focus areas for 2025, including AI and its intersection with compliance, the expansion of AML rules to investment advisors, and the importance of accurate AI representation. She also touches on the challenges of an ever-changing regulatory environment, providing strategies for future-proofing compliance programs and managing uncertainty. Lagosh offers practical advice for compliance officers, emphasizing continuous education, reliance on sound vendor management, and integrating AI governance within firms.

Key highlights:

  • What are the key regulatory focus areas for 2025, particularly from the SEC and FINRA?
  • How are firms adjusting their compliance strategies to align with these expectations?
  • What are the new AML rules for investment advisors?
  • How are compliance functions currently leveraging AI technologies?
  • What are the practical challenges and benefits of integrating AI into a firm’s compliance infrastructure?
  •  What can compliance officers do now to future-proof their programs for upcoming regulatory changes?

Resources:

Allison Lagosh on Linkedin

Saifr.ai

Tom Fox

Instagram

Facebook

YouTube

Twitter

LinkedIn

Check out my latest book, Upping Your Game-How Compliance and Risk Management Move to 2030 and Beyond, available from Amazon.com.