Categories
Business Integrity Innovations

Business Integrity Innovations: Empowering SME’s Through Business Ethics with Fatma Elmaawy

Business Integrity Innovations is brought to you by the Center for International Private Enterprise (CIPE) and the Compliance Podcast Network (CPN). This podcast is inspired by Ethics 1st, a multi-stakeholder initiative led by CIPE that creates pathways for accountable and sustainable investment in Africa. Companies can use Ethics 1st to standardize their business practices, develop sound corporate governance systems, and demonstrate their commitment to compliance and business ethics.

In this episode of Business Integrity Innovations, host Tom Fox and co-host Lola Adekanye sit down with Fatma Elmaawy, founder of Milestones Resource Solutions, to explore her diverse professional background and journey into business ethics and compliance training. Fatma shares her experiences from working in various sectors, including airlines, to founding her own training company that initially focused on sales and customer service but eventually specialized in business ethics. She highlights the challenges SMEs face in environments where corruption is rampant and discusses practical solutions, such as mindset engineering and the three R’s approach (Response, Report, Review), to help businesses operate with integrity.

Fatma also touches on the importance of training the trainers to create a ripple effect of ethical practices within organizations and explains how pivotal leadership is in setting the tone for business integrity. The conversation further delves into the success stories of companies that have transformed their compliance cultures and shares strategies for leaders to embed ethical practices effectively.

Key highlights:

  • Fatma Elmaawy’s Professional Journey
  • Challenges and Realities of Business Ethics
  • Success Stories and Impact
  • Training the Trainers and Leadership
  • Practical Solutions and Collective Action

Resources:

Milestones Resources Solution

Categories
Blog

AI, Process Management, and Compliance

Integrating artificial intelligence (AI) and advanced analytics with robust process management principles can unlock new levels of efficiency and innovation. Mars Wrigley, the global confectionery leader, offers an instructive case study. In an article in the Harvard Business Review entitled, How to Marry Process Management and AI Thomas H. Davenport and Thomas C. Redman wrote that through its strategic deployment of AI to digitize its supply chain and manage operations, Mars Wrigley demonstrates how a systematic approach to process management can achieve significant improvements in operational performance, customer satisfaction, and sustainability.

Mars Wrigley’s success story holds valuable lessons for compliance professionals about aligning technology, data, and governance to enhance compliance frameworks and drive value across organizations.

Digitization and AI: The New Frontier for Process Management

Mars Wrigley began its journey by building a digital twin of its production line and feeding real-time operational data into machine-learning models. The results were striking. The company received predictive insights that reduced overfilling, minimized waste, and optimized supply chain processes. They partnered with vendors like Aera Technology for data visualization and preventive maintenance and with Kinaxis to balance supply and demand, automate invoices, and increase truck utilization by 15%.

This underscores a critical point from a compliance standpoint: Technology can only enhance compliance when processes are well-defined, integrated, and aligned with organizational goals. Compliance officers must recognize the potential of AI to streamline compliance monitoring, enhance risk detection, and reduce manual inefficiencies.

For example, consider AI tools that monitor high-risk transactions or flag anomalies in employee expense reports. When implemented in a robust compliance framework, these tools improve detection rates and allow compliance teams to focus on strategic initiatives rather than routine checks.

The Role of Process Management in Compliance

Process management is about understanding how tasks fit together to create a specific outcome and then optimizing those sequences. Put another way, it is about operationalizing compliance. Whether addressing department-level activities or end-to-end processes, process management principles can yield transformative results when applied to compliance. What are some of the ways process management can do so?

In areas as basic as error reduction, well-managed processes minimize compliance failures by reducing error rates and increasing consistency. A traditional compliance department area is cross-functional coordination with other corporate departments. Effective compliance requires breaking down silos, whether between legal, finance, HR, or operations, and aligning departments toward common objectives.

This approach can also positively impact corporate culture by increasing stakeholder buy-in and employee engagement. Process management often conflicts with hierarchical management structures. In compliance, this tension may manifest when reconciling DOJ mandates with operational priorities in your organization. Persuading stakeholders to prioritize compliance demands strong leadership and effective change management.

AI and Process Management: A Compliance Blueprint

AI supports specific subprocesses within larger workflows, but true transformation occurs when organizations integrate these capabilities across end-to-end processes. For compliance professionals, this is a roadmap for embedding AI into compliance programs.

Step 1: Establish Ownership

Every effective compliance initiative begins with clear accountability. A defined ownership structure underpinned Mars Wrigley’s digital twin success. Compliance programs require similar clarity. Appointing a “compliance process owner” ensures cross-functional alignment, while department-level compliance champions can coordinate implementation.

Step 2: Map and Redesign Processes

Mapping current compliance processes is essential for identifying inefficiencies. Process mining tools, which analyze enterprise system logs to identify bottlenecks, can uncover hidden risks. For instance, tracking the due diligence lifecycle in third-party onboarding can reveal inefficiencies, such as delays in background checks or missed follow-ups.

Redesign efforts should prioritize risk-prone areas, leveraging AI tools to streamline activities like transaction monitoring, policy distribution, and whistleblower case tracking.

Step 3: Define Metrics and Set Targets

Compliance performance must be measurable. Metrics such as incident resolution times, training completion rates, and risk assessment quality should guide process improvements. AI enables real-time metrics monitoring, providing insights that compliance officers can act on immediately. Mars Wrigley’s use of analytics to improve truck utilization offers a parallel for compliance: by tracking resource allocation, compliance teams can reduce unnecessary costs while ensuring optimal coverage of risk areas.

Step 4: Leverage Technology and Data

AI tools such as robotic process automation (RPA) and natural language processing (NLP) are increasingly used in compliance programs to automate routine tasks. RPA can streamline repetitive activities like generating regulatory reports. NLP can analyze large volumes of text, such as contracts or policies, to identify risks or inconsistencies.

Compliance professionals must also advocate for standardized data practices. As Mars Wrigley’s case illustrates, data silos impede process efficiency. In compliance, inconsistent data can obscure risks, making standardized data governance a cornerstone of effective compliance.

Step 5: Foster a Culture of Continuous Improvement

AI and process management are not “set it-and-forget it” solutions. As Mars Wrigley demonstrated, continuous monitoring and iterative improvements are critical for sustaining gains. This means regularly reviewing and updating AI tools for compliance professionals to address emerging risks and regulatory changes.

Lessons for Compliance Professionals

Mars Wrigley’s journey highlights several key takeaways for compliance leaders:

  1. Invest in AI Thoughtfully. Technology is not a silver bullet. Its effectiveness depends on how well it integrates with and supports compliance processes.
  2. Adopt a Holistic View of Compliance. Compliance risks rarely confine themselves to one department. Breaking down silos through cross-functional process management improves visibility and reduces risk.
  3. Prioritize Data Governance. High-quality, standardized data is essential for both AI and compliance. Without it, even the best tools cannot deliver meaningful insights.
  4. Embrace Change Management. As with Mars Wrigley’s digital transformation, compliance process improvements require buy-in from leadership and employees.

The Compliance Call to Action

Compliance has been reactive for too long, focusing on addressing failures rather than preventing them. Integrating AI into process management offers an opportunity to shift that paradigm. By combining the best of technology and process management, compliance programs can reduce risk and enhance business value.

Mars Wrigley’s success story reminds us that the tools and strategies to transform compliance are available—but the onus is on compliance professionals to lead the charge. Whether through smarter risk management, better stakeholder engagement, or innovative technology adoption, the path forward is clear: process management and AI are not just operational tools; they are the future of compliance.

Now is the time to act. By adopting process management principles and leveraging AI, compliance leaders can build programs that are not only effective but also resilient, sustainable, and aligned with organizational goals. The question is no longer whether compliance should embrace these tools but how quickly they can integrate them into their processes.

By learning from companies like Mars Wrigley, compliance professionals can reimagine their programs, aligning them with the business’s needs while staying ahead of regulatory requirements.

Categories
31 Days to More Effective Compliance Programs

31 Days to a More Effective Compliance Program: Day 22 – Levels of Due Diligence

Welcome to a special podcast series on the Compliance Podcast Network, 31 Days to a More Effective Compliance Program. Over these 31 days of the series in January 2025, Tom Fox will post a key part of a best practices compliance program daily. By the end of January, you will have enough information to create, design, or enhance a compliance program. Each podcast will be short, at 6-8 minutes, and will include three key takeaways you can implement at little or no cost to help update your compliance program. I hope you will join us each day in January for this exploration of best practices in compliance.

On Day 22, we consider the levels of due diligence you should use when investigating third parties. Tom outlines the three due diligence levels necessary to manage corruption risk effectively. With insights from Candice Tal, founder and CEO of Infortal, Tom breaks down each level in detail, from initial screenings in level one to comprehensive, on-the-ground investigations in level three. He emphasizes the need for tailored approaches based on the risks associated with different business transactions and the importance of thorough documentation throughout the process.

Key highlights:

  • What are the levels of Due Diligence?
  • When is each level appropriate?
  • Key Takeaways

Resources:

Click here to receive a 20% discount on The Compliance Handbook, 5th edition, for listeners to this podcast.

Categories
Great Women in Compliance

Great Women in Compliance – The Future of the Profession

It’s a new year and a new administration.  Listen to two experts talk about what their crystal balls reveal about the profession’s future and how #Ethics and #Compliance professionals should prepare for what may lie ahead.

🎧 Listen to the full episode here.

In this #GWIC roundtable podcast, @Lisa Fine and @Ellen Hunt talk with our guests about:

  • What characteristics make ethics and compliance professionals and their programs succeed?
  • The potential impact of technology and #AI.
  • How we might bridge the divide between the U.S. and the EU regarding #DEI and ESG.
  • The most insightful results of @ECI’s Global Business Ethics Survey and @Navex’s benchmarking surveys.

Thanks, as always, to our sponsor, #Corporate Compliance Insights, and our wonderful #GWIC community. You can join the Great Women in Compliance community on LinkedIn here.

Categories
Blog

Top Compliance Leadership Skills for the Wild Wild West that is Coming – Part 3, Humor

This week, the world changed when Donald Trump was inaugurated as the 47th President of the US. Indeed, the only thing I can guarantee with complete certainty is change. I was therefore intrigued by Melissa Swift’s recent MIT Sloan Business Review article, “Three Nonnegotiable Leadership Skills for 2025.” In this week of change, I cannot think of a more prescient article for the compliance professional.

I adapted Swift’s three critical leadership skills for the compliance professional: fairness, curiosity, and a sense of humor. In this concluding blog post of this three-part series, I will explore how compliance leaders can develop and leverage these skills to strengthen their programs and inspire their teams throughout the tumultuous next four years using humor.

Your Saving Grace: Sense of Humor

As Ronnie Feldman continually reminds us, do not be “Debbie Downer,” or as I would say, do not be Dr. No from the Land of No. In some ways, Ronnie focuses on attitude, while I tend to focus a bit more on the message. However, you might look at it. Between audits, policy rollouts, regulatory updates, and managing the risk employees inevitably want to take, a sense of humor is a powerful tool for staying grounded and maintaining perspective.

It is important to note that you need the right kind of humor for compliance leadership. This does not mean you should become the office comedian. Instead, humor in compliance leadership is about finding light in challenging situations and encouraging your team to do the same. For example, after navigating a tough audit and telling your team, “Well, we survived—and I didn’t even need to bribe anyone with donuts this time!” That simple quip can diffuse tension and signal that it’s okay to exhale.

The humor in your attitude and what you can bring to your customer base. Humor can reduce stress. Compliance work often operates under tight deadlines, high stakes, and relentless scrutiny. This pressure can weigh heavily on teams, leading to burnout and diminishing productivity. A leader who uses humor to lighten the mood helps to ease stress, making the workplace feel less like a pressure cooker and more like a place of collaboration and problem-solving.

Humor can help to build relationships, as compliance leaders often face the challenge of appearing approachable while maintaining authority. Humor humanizes leaders, making them more relatable and easier to connect with. When you can laugh at yourself or acknowledge the absurdities of compliance work with a smile, your team feels more comfortable sharing ideas, asking questions, and raising concerns.

Humor can make you a better compliance officer. When people are less stressed, their creativity and problem-solving abilities improve. Humor reduces the brain’s fight-or-flight response, allowing for more thoughtful and innovative approaches to challenges. A leader who fosters an environment where it’s okay to laugh at setbacks or unexpected hurdles creates a culture where solutions flow more freely. For example, if a compliance initiative hits a snag, a leader who can frame it with humor, “Okay, so maybe this isn’t Plan A…or Plan B…but I have high hopes for Plan C!” encourages the team to stay flexible and keep brainstorming.

The Right Kind of Humor for Compliance Leadership 

Humor in compliance leadership is not about cracking jokes or becoming the office comedian. Instead, it is about using levity strategically to foster positivity and resilience. Some key principles are as follows:

  1. Diffuse Tension, Don’t Deflect Responsibility. A well-timed, self-deprecating comment can make you more relatable, but humor should never be used to deflect accountability. For example, if a compliance policy rollout faces delays, saying, “Looks like my time management skills could use some compliance training of their own!” shows humility without shirking responsibility.
  2. Celebrate Compliance Wins Playfully. Recognizing team achievements doesn’t have to be dry or overly formal. Use humor to make celebrations memorable. Consider giving out light-hearted awards like “Most Persistent Policy Enforcer” or decorating the office with “Mission Accomplished” banners after a successful audit. These small gestures show appreciation while keeping the mood light.
  3. Maintain Perspective. Compliance is serious work, but that does not mean you must take every situation or yourself too seriously. Laughing at the absurdities of navigating complex regulations or managing a mountain of policies reminds your team that, while the work is important, it’s okay to have a sense of humor about the challenges.

Applying Humor to Compliance Challenges in 2025

Humor is not simply a feel-good tool. It can be strategically applied to some of the most pressing challenges compliance professionals face in 2025.

  • Building Ethical Cultures Amid Workforce Discontent

With employee engagement at a low and workplace polarization on the rise, leaders must model fairness and transparency to rebuild trust. Humor can complement these efforts by making leaders more relatable and approachable. For example, during a town hall on compliance updates, opening with a light joke about the complexity of the latest regulations, “I think the word paid the lawyers who wrote this!” can put employees at ease and make the session more engaging.

  • Navigating Emerging Risks

As AI, ESG, and privacy dominate the compliance agenda, staying ahead of these risks requires proactive engagement and innovation. Humor can make daunting challenges feel more manageable. For example, when introducing training on AI ethics, a leader might quip, “Don’t worry, our goal is to make sure the robots are working for us, not the other way around!” This approach encourages curiosity and open-mindedness.

  • Managing Regulatory Fatigue

As regulations grow more complex, compliance fatigue becomes a real risk for teams. Or, as the Trump Administration whipsaws the business communities with new mandates morning, noon, and night, business and compliance leaders who inject humor into routine tasks, like creating a fun, interactive quiz for compliance training or adding light-hearted captions to a policy presentation, can make the work feel less monotonous. A leader who acknowledges the challenges with humor, such as “Regulatory updates: the gift that keeps on giving!” helps your compliance team feel seen and supported, even as they tackle challenging workloads.

How to Integrate Humor Into Your Leadership Style

If you’re ready to harness the power of humor in your compliance leadership, here are some practical tips:

  1. Know Your Audience. Tailor your humor to your team’s preferences and sensitivities. Avoid sarcasm or jokes that could be misinterpreted.
  2. Start Small. During meetings, test the waters with light-hearted comments or anecdotes. Observe how your team responds and adjust accordingly.
  3. Encourage Teamwide Levity. Create a culture where humor is welcomed. For example, designate a “fun committee” to plan occasional light-hearted activities, like a compliance trivia game or themed office decorations.
  4. Keep It Contextual. Use humor to enhance, not detract from, the seriousness of compliance work. Acknowledge the gravity of issues like regulatory violations while using humor to build resilience.

The Bottom Line: Humor as a Leadership Strength

In 2025, compliance leaders will face mounting challenges, from increasing regulatory complexity to employee disengagement to a more focused enforcement presence in some verticals. A sense of humor can be your secret weapon for gracefully and effectively navigating these difficulties.

By reducing stress, building connections, and fostering creative problem-solving, humor enhances your leadership and the overall resilience of your compliance team. Remember, humor doesn’t diminish the importance of your work; it underscores your ability to lead with empathy, perspective, and authenticity.

In the high-stakes world of compliance, laughter truly is a saving grace. So, the next time you find yourself knee-deep in regulatory updates or preparing for a strict audit, don’t forget to take a moment to smile, laugh, and remind your team that even in the most serious work, a little levity goes a long way.

Categories
31 Days to More Effective Compliance Programs

31 Days to a More Effective Compliance Program: Day 21 – Managing 3rd Parties

Welcome to a special podcast series on the Compliance Podcast Network, 31 Days to a More Effective Compliance Program. Over these 31 days of the series in January 2025, Tom Fox will post a key part of a best practices compliance program daily. By the end of January, you will have enough information to create, design, or enhance a compliance program. Each podcast will be short, at 6-8 minutes, and will include three key takeaways you can implement at little or no cost to help update your compliance program. I hope you will join us each day in January for this exploration of best practices in compliance.

On Day 21 of our series, we dive into the essential strategies for managing third-party relationships in a compliance program. We consider the significance of a structured and strategic approach in handling third parties to mitigate anti-corruption risks. As companies mature, the operationalization of compliance through third-party management becomes crucial. Key areas explored include the importance of dual and diversified sourcing, monitoring subcontractors, legal protections, and financial stability checks. Additionally, we cover the necessity of integrating performance-based compensation and regular auditing to uphold compliance standards. Join us tomorrow as we explore levels of due diligence on Day 22.

Key highlights:

  • Strategic Approach to Third-Party Relationships
  • Auditing and Ongoing Management
  • Key Takeaways

Resources:

Listeners to this podcast can receive a 20% discount on The Compliance Handbook, 5th edition, by clicking here.

Categories
Innovation in Compliance

Innovation in Compliance – Navigating Accounting and Compliance with Mike Whitmire

Innovation comes in many areas, and compliance professionals must be ready to embrace it. Join Tom Fox, the Voice of Compliance, as he visits with top innovative minds, thinkers, and creators in the award-winning Innovation in Compliance podcast. In this episode, host Tom Fox visits Mike Whitmire, Co-founder & CEO at FloQast, on his journey in accounting and compliance.

In this episode, Tom is in a riveting conversation with Mike Whitmire, Co-founder & CEO at FloQast. They dive into Mike’s professional journey, starting from his early days at Ernst & Young, navigating the complexities of Sarbanes-Oxley (SOX) compliance, and eventually founding FloQast. Mike shares his firsthand experiences with the challenges in accounting and compliance, such as the talent gap and behavior change within organizations, and explains how FloQast’s closed management and compliance software addresses these issues. The discussion deeply delves into risk orchestration and its critical role in modern compliance strategies.

Additionally, Mike provides insights into his passion for podcasting and touches on his book, ‘Shift Happens,’ co-authored to highlight the rise of the operational accountant. The episode wraps up with a focus on FloQast’s innovative solutions that integrate daily accounting tasks with compliance requirements, thus simplifying processes for finance professionals. Tune in to hear how a common pain point in the accounting world led to the creation of a transformative software solution.

Key highlights:

  • Challenges in Accounting and Compliance
  • Risk Orchestration and Compliance
  • Mike’s Podcast and Book

Resources:

Mike Whitmire on LinkedIn

FloQast

Purchase Shift Happens on Amazon.com.

Tom Fox

Instagram

Facebook

YouTube

Twitter

LinkedIn

Categories
SBR - Authors' Podcast

SBR – Author’s Podcast – Exploring the Future of Work, Ethics, and Compliance with Kelly Monahan, Part 2

Welcome to the Sunday Book Review, The Authors Podcast! Host Tom Fox visits with authors in the compliance arena and beyond in this Podcast Series. Today, Tom is joined by his good friend and colleague, Earnie Broughton (Earnie from Boerne), to visit with Dr. Kelly Monahan, co-author of the soon-to-be-released book Essential: How Distributed Teams, Generative AI, and Global Shifts are Creating a New Human-Powered Leader.  (Co-authored with Dr. Christie Smith) We three had such good fun that we went on for nearly an hour, so we have broken up the interview into two podcasts. If you have not checked out our first episode, you can do so by clicking here.

In Part 2, we deeply dive into effective communication tools for conveying corporate values to diverse workplace groups, emphasizing tailored training and gamification. Kelly highlights the importance of engaging, behavior-reinforcing communications through storytelling and public recognition systems. Emphasizing intrinsic motivation over financial incentives, Kelly draws on behavioral economics and the importance of fostering an environment of curiosity and context awareness for leadership roles. The discussion also addresses the nuances of generational differences in the workforce and the importance of diversity, equity, inclusion (DEI), and ESG initiatives for long-term organizational sustainability. Compliance professionals are encouraged to stay ahead of AI developments and promote positive behaviors to align with evolving business and ethical standards.

Key highlights:

  • Effective Communication Tools for Corporate Values
  • Future of Leadership in the Age of AI
  • Suspending Self-Interest and Cultivating Curiosity
  • Importance of Context in Ethical Decision-Making
  • Generational Differences in the Workforce
  • Role of Ethics and Compliance Professionals

Resources:

The Essential Website

Pre-Order Essential: How Distributed Teams, Generative AI, and Global Shifts are Creating a New Human-Powered Leader on Amazon.com

Kelly Monahan on LinkedIn

Earnie Boughton On LinkedIn

Tom Fox

Instagram

Facebook

YouTube

Twitter

LinkedIn

Categories
31 Days to More Effective Compliance Programs

31 Days to a More Effective Compliance Program: Day 20 – Third-Party Risk Management Process

Welcome to a special podcast series on the Compliance Podcast Network, 31 Days to a More Effective Compliance Program. Over these 31 days of the series in January 2025, Tom Fox will post a key part of a best practices compliance program daily. By the end of January, you will have enough information to create, design, or enhance a compliance program. Each podcast will be short, at 6-8 minutes, and will include three key takeaways you can implement at little or no cost to help update your compliance program. I hope you will join us each day in January for this exploration of best practices in compliance.

On Day 20, we delve into the third-party risk management process, a crucial aspect of corporate compliance under the FCPA. Third parties continue to pose the highest risk, necessitating an integrated and operational approach throughout the company. The episode outlines the five essential steps in the third-party risk management life cycle, as mandated by the DOJ in the 2020 FCPA Resource Guide. These steps include business justification, third-party questionnaires, due diligence, compliance terms and conditions, and post-contract management and oversight. Each step is explored in detail, emphasizing the importance of documenting business cases, performing thorough due diligence, and maintaining diligent oversight to mitigate potential FCPA violations. Key takeaways include the necessity of using the full five-step process, involving business development and ensuring all steps are operationalized with business unit representatives. Join us tomorrow for Day 21 to discuss managing your third parties.

Key highlights:

  • Introduction to Third Party Risk Management
  • The Five Steps of Third-Party Risk Management
  • Key Takeaways

Resources:

Listeners to this podcast can receive a 20% discount on The Compliance Handbook, 5th edition, by clicking here.

Categories
31 Days to More Effective Compliance Programs

31 Days for a More Effective Compliance Program: Day 19 – Evaluating the Risk Management Process

Welcome to a special podcast series on the Compliance Podcast Network, 31 Days to a More Effective Compliance Program. Over these 31 days of the series in January 2025, Tom Fox will post a key part of a best practices compliance program daily. By the end of January, you will have enough information to create, design, or enhance a compliance program. Each podcast will be short, at 6-8 minutes, and will include three key takeaways you can implement at little or no cost to help update your compliance program. I hope you will join us each day in January for this exploration of best practices in compliance.

In today’s episode, we review the critical process of evaluating and translating risk assessments into actionable risk profiles. The discussion highlights the importance of prioritizing risks based on their significance and likelihood using risk matrices and heat maps. Expert insights from Ben Locwin and Bill Anathas emphasize focusing resources on high-risk employees and maintaining a robust compliance program aligned with FCPA guidelines. The episode also covers the Treasury Department’s OFAC compliance framework and offers concrete steps for continuous risk monitoring and remediation. Key takeaways include the necessity of a well-reasoned approach to risk evaluation, thorough documentation, and the implementation of a dynamic risk matrix to guide compliance efforts.

Key highlights:

  • Understanding Risk Profiles
  • Evaluating Risk Management Processes
  • Risk Matrix and Heat Maps

Resources:

Listeners to this podcast can receive a 20% discount on The Compliance Handbook, 5th edition, by clicking here.