top of page
BLOG


From Telescope to Steering Wheel: Understanding Governance
As a compliance engineer who's spent years helping organizations streamline their governance, risk and compliance programs, I've noticed...


Building a Better Compliance Program: The Metrics That Actually Matter
As a compliance engineer with 30+ years of experience, I've learned that not all metrics are created equal. Today, I want to share a...


Don't Make This Costly Mistake With Your Compliance Controls
As a compliance professional, you know that navigating the web of security standards, industry regulations, and business obligations is...


Third-Party AI Risk: Are You Covered?
While your organization may be committed to practising safe and responsible AI, what about your third-party partners? From suppliers and...


Implementing an AI Compliance Program: A Lean Startup Approach
AI compliance demands a fundamentally new mindset. Many organizations fall into one of two limiting perspectives: either viewing...


How To Get The Most From Your ISO Management System
Getting the most value from your ISO Management System requires more than just maintaining certification. By taking a strategic approach,...


Turn Your Compliance Silos Into Compliance Pillars
Lean TCM (Total Compliance Management) is a strategic framework that transforms compliance management through four fundamental adaptive...


Holistic Risk Management: A Modern Necessity for Compliance
When it comes to compliance success, you need to pay attention to all the risk – the threats and the opportunities. This requires...


Toasters on Trial: The Slippery Slope of Crediting AI for Discoveries
In recent days, a thought-provoking statement was made suggesting that artificial intelligence (AI) should receive recognition for...


Uncertainty: A Ruthless Master
In risk and compliance, we often assess the likelihood of significant events that could harm employees or damage facilities. Imagine...


What is Compliance?
Compliance is an end, a means, a measure, and a value. ➡️ As an “end” it is the outcome of meeting all your obligations – better safety,...


Reverse Engineering Success: The Inversion Approach to Compliance
When it comes to decision-making, a common approach is to work forwards—to start from a problem and try to figure out the steps toward a...


A Structured Approach to Continuous Improvement in Compliance Management Using Four Problem Types
Are you looking for a structured way to enhance your compliance management system? Art Smalley’s foundational book provides a framework...


Proceed, but Proceed with Caution
When it comes to AI, many don’t want to hear about the risk. In fact, many go to great lengths to avoid the discussion. Some will go as...


AI Governance, Guardrails and Lampposts
At today's monthly "Elevate Compliance Webinar" participants learned strategies and methods for effectively governing artificial...


Compliance Operability Assessment Using Total Value Chain and Compliance Criticality Analysis
Why Is This Assessment Necessary? For compliance to be effective, it must generate desired outcomes. These outcomes may include reducing violations and breaches, minimizing identity thefts, enhancing integrity, and ultimately fostering greater stakeholder trust. Realizing these benefits requires compliance to function as more than just the sum of its parts. Unfortunately, many organizations focus solely on individual components rather than the whole system – they see the tree
bottom of page
