Categories
Great Women in Compliance

Great Women in Compliance: Why Decision Rubrics Matter in the Age of AI with Hemma Lomax and Shalini Rajoo

In this conversation, GWIC host Dr. Hemma R. Lomax and Shalini Rajoo explore the critical role of decision rubrics in governance, accountability, and trust, especially in the context of AI. Shalini shares her journey from law to compliance, emphasizing the importance of understanding systems and the impact of leadership on decision-making processes. They discuss how transparency and clarity in decision-making can build trust within organizations and the necessity of responsible AI governance. Practical tips for improving decision quality are also provided, highlighting the importance of self-awareness and critical thinking in leadership.

Takeaways:

  • The biggest risk in governance is unclear decisions.
  • AI amplifies existing clarity or confusion in decision-making.
  • Systems and rules reflect the identities of their architects.
  • Everyone has an impact on those around them every day.
  • Leadership is about improving the people around you.
  • It’s not just about rules; it’s about how people behave.
  • Decision rubrics provide consistency and predictability in outcomes.
  • Transparency in decision-making processes builds trust.
  • Slowing down to ask questions can lead to better decision-making.
  • Writing down the reasons for decisions brings clarity and accountability.

Sound bites:

“Systems and rules are not inherently neutral.”

“Transparency in decision making builds trust.”

“Slow is smooth, and smooth is fast.”

Chapters:

00:00 Introduction to Decision Rubrics and Governance

02:55 Shalini’s Journey: From Law to Governance

06:09 The Impact of Systems on Leadership and Accountability

09:09 Transitioning to Compliance and Ethics

11:49 Understanding Decision Rubrics in Compliance

15:06 The Role of Leadership in Decision Making

18:03 Designing Conditions for Effective Decision Making

20:47 The Importance of Transparency in Decision Processes

24:09 Decision Rubrics: Building Trust in Organizations

26:49 AI and Governance: Leadership Infrastructure Failures

29:47 Responsible AI: The Role of Ethics and Compliance

32:55 Practical Tips for Improving Decision Quality

36:00 Conclusion: The Future of Decision Making in AI

Guest Biography:

Shalini Rajoo is the Founder and Principal Consultant of Shalini Rajoo Advisory, LLC, where she partners with organizations to design governance, compliance, and decision-making systems that are resilient, trustworthy, and aligned to real operational pressures. Across more than two decades in law, compliance, HR, and organizational leadership, Shalini has helped companies and leaders move beyond check-the-box frameworks to build structures that embed accountability, clarity, and performance into everyday decisions.

She began her career in South Africa, first as a public prosecutor and then leading regulatory work with the Department of Trade and Industry, collaborating with legislative and executive stakeholders on corporate, competition, and consumer law. After relocating to the U.S., Shalini practiced commercial litigation. She later served as Director of Global Business Conduct for a Fortune 500 company, where she redesigned ethics and compliance systems, led global risk assessments, and championed psychological safety and integrity-based practices.

Today, Shalini’s work centers on helping leaders clarify decision rights, governance architectures, and accountability pathways — especially as organizations adopt AI and automation. She recently spoke at the Opal Group’s Corporate Governance & Ethics in the Age of AI conference, where she reframed AI governance as a leadership-infrastructure challenge rather than a purely technical or compliance one.

Categories
Blog

Mudd’s Women: Illusions of Consent and the Ethics of Exploitation

In this eye-opening episode of Trekking Through Compliance, we examine Mudd’s Women, one of the earliest and most ethically provocative episodes of Star Trek. While Harcourt Fenton Mudd provides his usual comic bluster, the underlying story is a disturbing metaphor for human trafficking. The three women he transports appear glamorous, but they are victims of manipulation, economic coercion, and chemical dependency, all tactics that mirror modern trafficking schemes.

I review the key compliance lessons by breaking down how this episode reflects red flags in trafficking risk. From the illusion of choice to abusive power dynamics and the responsibility of organizations to prevent exploitation in their supply chains, Mudd’s Women provides a surprisingly timely framework for modern compliance professionals.

Key Highlights and Human Trafficking Case Illustrations

1. Illusion of Consent—When “Choice” is Conditioned by Coercion

Illustrated by: The women believing they must take the Venus drug to be desirable and accepted.

The women in this episode appear to be making choices, but those choices are shaped by manipulation, desperation, and dependency. The Venus drug becomes a stand-in for traffickers’ tools: debt bondage, false promises, or immigration threats. Compliance officers must recognize that surface-level consent does not equal genuine autonomy when coercion lurks beneath.

2. Economic Exploitation—Vulnerability Creates Risk

Illustrated by: The miners’ willingness to trade vital resources for the women, commodifying human beings.

The deal Mudd brokers—exchanging women for lithium crystals—lays bare the dynamics of commodification. In today’s terms, this is a form of transactional trafficking. Vulnerable individuals are offered to influential economic players in exchange for profit. Companies operating in high-risk jurisdictions or industries must vet third-party recruiters and labor brokers with exceptional diligence

3. Deception and Misrepresentation—The Role of Fraud in Trafficking 

Illustrated by: Mudd’s concealment of the Venus drug and misrepresentation of the women’s condition to both the women and the miners.

Human trafficking often begins with lies. Whether it’s a promise of employment, education, or escape, traffickers rely on fraud to lure victims. Mudd’s entire operation is built on deceit. A strong compliance program includes rigorous due diligence processes to detect falsified credentials, labor contract inconsistencies, and red flags in vendor onboarding.

4. Victim Support and Recognition—Beyond Enforcement to Empathy

Illustrated by: Kirk’s ultimate compassion toward Evie and her rediscovery of her inner strength without the drug.

While the episode ends with Mudd in custody, the more powerful moment is Evie realizing her self-worth independent of manipulation. This reflects a crucial compliance principle: anti-trafficking programs must prioritize survivor-centered support. This entails creating ethical exit strategies, ensuring access to justice and care, and cultivating environments where individuals are not reliant on exploitative systems to survive.

5. The Responsibility to Intervene—Compliance Can’t Be a Bystander 

Illustrated by: Kirk’s decision to arrest Mudd and expose the drug deception despite the miners’ interest in continuing the transaction.

Kirk could have turned a blind eye, but he doesn’t. This is the model for corporate action: when exploitation is found, the response must be swift and straightforward. Compliance programs must include escalation pathways and partnerships with law enforcement and NGOs to act decisively when trafficking risks emerge.

Final ComplianceLog Reflections

Mudd’s Women may begin with lighthearted charm, but it ends with one of the most haunting portraits of exploitation in Star Trek. Beneath the fantasy is a cautionary tale of deception, dependency, and commodification, the core ingredients of human trafficking today. For compliance professionals, this episode serves as a call to action: look deeper, build proactive detection systems, and empower vulnerable individuals throughout your value chain.

Resources:

Excruciatingly Detailed Plot Summary by Eric W. Weisstein

MissionLogPodcast.com

Memory Alpha

Categories
Blog

Note Navy Seals Way: Moving from Continuous Monitoring to Continuous Improvement

Decision making is a critical skill for any Chief Compliance Officer (CCO) or compliance professional. Continuous monitoring and continuous improvement are now accepted as standard components of any table stakes compliance program. The Department of Justice (DOJ), in the 2020 Update to the Evaluation of Corporate Compliance Programs, made clear the need for continuous improvement in any compliance program. It stated quite succinctly, “One hallmark of an effective compliance program is its capacity to improve and evolve. The actual implementation of controls in practice will necessarily reveal areas of risk and potential adjustment. A company’s business changes over time, as do the environments in which it operates, the nature of its customers, the laws that govern its actions, and the applicable industry standards. Accordingly, prosecutors should consider whether the company has engaged in meaningful efforts to review its compliance program and ensure that it is not stale.”

Indeed, the 2020 Update posed the following questions that the DOJ might ask a company under a Foreign Corrupt Practices Act (FCPA) investigation, “How often has the company updated its risk assessments and reviewed its compliance policies, procedures, and practices? Has the company undertaken a gap analysis to determine if particular areas of risk are not sufficiently addressed in its policies, controls, or training? What steps has the company taken to determine whether policies/procedures/practices make sense for particular business segments/subsidiaries? Does the company review and adapt its compliance program based upon lessons learned from its own misconduct and/or that of other companies facing similar risks?”But one question not posed is around your decision-making process in when to move from continuous monitoring to continuous improvement. I was therefore interested in a recent FastCompany.com article, entitled “3 Steps Navy SEALs Use to Make Decisions”, by Stephanie Vozza. Vozza quotes former Navy SEAL and Chief Executive Officer (CEO) of ADS, Inc., Ryan Angold who said, “With so much information out there, a lot of people get analysis paralysis. You want to do your research and you want to access all the resources you have so you can make the right decision. But you can’t sit in analysis paralysis forever. Ultimately, there’s no 100% perfect decision.”

For her piece she also interviewed former Navy and current VMWare Chief Digital Transformation Officer Mike Hayes and author of the book, Never Enough: A Navy SEAL Commander on Living a Life of Excellence, Agility, and Meaning, who laid out a framework he used as an active SEAL for decision making.

  1. Gather Input

When you are a CCO or compliance professional in a corporate compliance function, you most probably have created experiences from which you can draw. Angold noted, “The requirement in SEAL teams is that you have you’ve gone through multiple different scenarios, you’ve trained for the most extreme environment, the most challenging environment, the worst-case scenarios. These reference points are helpful. You can say, ‘Okay, we’ve seen something like this before.’ Maybe this isn’t the exact scenario—it never is. But you’ve learned how the team works and can make quick decisions.”

Both Jonathan’s from the award-winning Everything Compliance gang, Jonathan Armstrong and Jonathan Marks, talk about not simply crisis and scenario planning but practice as well. Such practice not only gives you the muscle memory of what to do when a true crisis appears but also provide the types of experiences that Angold references that the SEALs then use in missions.

Hayes added that you should listen to difference voices or inputs, noting, “Too often, we tend to seek out like-minded input. Artists tend to hire artists and engineers hire engineers. By getting input from people who don’t think like us and by having a culture that celebrates differences and raising other ideas, you help people be comfortable saying things like, ‘Hey, sir, I don’t think that’s a great idea. Here’s how I would do it.’ That framework enables the best possible decisions.” Note that Hayes’ remarks also illuminate the importance and benefits of a true “Speak-Up Culture”.

  1. Decide When to Decide

 Most interestingly, the first thing you have to determine is when to make your decision. Hayes said, “The first decision is when to make your decision. That’s the thing that most people get wrong.” Obviously in combat your decision-making window can be quite short, but the same principle applies in the corporate world. Here Hayes noted, “At some point, the value of those extra inputs in your input streams costs more than the time associated with getting more inputs. At that inflection point is when you want to make your decision. You start losing value by waiting longer.”

But this point is where experience can become more paramount. In the corporate compliance world, you will likely get information, which is both quantitative and qualitative, particularly through continuous monitoring. Do not become paralyzed at this point, and you can rely on your gut or, as Hayes said, “there are other times where you need to operate in instinct. Instinct is really a set of experiences that you can’t quite crystallize, but that you extract logic from.”

  1. Be Willing (and ready) to Course Correct

Here a key CCO and compliance professional soft skill, that of humility, both “intellectual and real will help you get to the right decision.” Do not let your ego get in the way or start considering your sunk costs. You may garner new information which gives new input. Even John Maynard Keynes said, “When my information changes, I alter my conclusions. What do you do, sir?

Hayes said this is “the ultimate sign of leadership because it’s a sign of comfort in your own skin and not needing to look good in front of an organization. Instead, you’re putting the organization before self and doing the right thing.” Angold phrased it as “It takes a lot of humility for someone to be able to recognize it was the wrong call,” he says. “That’s where the communication is important and having that transparency with your team. You can gain a lot of additional trust from your team, when you acknowledge a wrong decision.”

Continuous improvement through continuous monitoring or other similar techniques will help keep your compliance program abreast of any changes in your business model’s compliance risks and allow growth based upon new and updated best practices specified by regulators. A compliance program is in many ways a continuously evolving organism, just as your company is. You need to build in a way to keep pace with both market and regulatory changes to have a truly effective anti-corruption compliance program. By using this three-step approach, you can best determine how to move from the monitoring to the improvement phase.