Author: Joseph McCafferty

HIPAA Enforcement

HIPAA Enforcement Targets Employer Health Plans, Expanding Compliance Risk

A recent enforcement action by the U.S. Department of Health and Human Services is sending a clear signal to corporate compliance teams: HIPAA obligations don’t stop at hospitals and insurers. In a newly reported case, the agency’s Office for Civil Rights pursued enforcement against a self-funded employer health plan—marking a Read More

Brokers using off-channel communications

FINRA Keeps Pressure on Off-Channel Messaging as Enforcement Focus Shifts

T he crackdown on off-channel communications at financial firms isn’t over—it has simply taken a quieter, more targeted turn. While the U.S. Securities and Exchange Commission drew headlines over the past several years with multibillion-dollar penalties for financial firms where employees communicated with undocumented texts and messages, recent developments suggest Read More

CFPB changes fair lending rules

CFPB Revises Fair Lending Standards, Shifting Compliance Focus to Intent

T he Consumer Financial Protection Bureau (CFPB) has finalized a rule that narrows how fair lending laws are enforced, marking a notable shift for compliance programs across the financial services industry. The rule amends Regulation B, which implements the Equal Credit Opportunity Act (ECOA). Its most significant change is the Read More

Disney Logo

Disney Settles ‘Opt-Out’ Privacy Case with California for $2.75 Million

T he California Attorney General’s office has announced a settlement with the Walt Disney Co., resolving allegations that the company violated the California Consumer Privacy Act (CCPA) by failing to answer consumers’ requests to opt-out of the sale or sharing of their data across all devices and streaming services associated Read More

Modernizing compliance with automated controls

Modernizing Compliance: How AI and Automation Are Reshaping Internal Controls

I n today’s fast-paced business environment, regulatory compliance has become both more critical and more complex. Organizations are expected to maintain rigorous internal controls, ensure transparency, and respond swiftly to audits all while managing sprawling IT ecosystems and evolving risk landscapes. Regulations like the Sarbanes-Oxley Act (SOX) demand companies adhere Read More

Compliance Confidence vs. Control: Feeling Secure Isn’t Being Secure

T his year, the compliance landscape is shifting on multiple fronts. Seven new U.S. state-level privacy laws are taking effect, the U.S. Department of Health and Human Services is proposing major changes to HIPAA—the most significant since 2013, and the EU AI Act is introducing sweeping new governance requirements for Read More

update on anti-bribery programs

Anti-Bribery and Anti-Corruption Enforcement post-FCPA Pause

W e have previously written about the impact of the pause in enforcement of the FCPA implemented by the Trump Administration on non-American companies.[1] Although the 180-day review period the Executive Order provided to the Department of Justice (“DOJ”) to develop new guidance for FCPA enforcement has not yet elapsed, Read More

Changing Regulations

Maintenance Checks Required: Navigating the Chaotic Compliance Highway

I magine driving on a constantly changing highway: the speed limits and lane directions are shifting and updating, the exit ramps and destinations rerouting, all while you are mid-journey. How do you, the driver, stay on course? You rely on an up-to-the-minute navigation system. You watch for new road signs. Read More

Anti-money laundering programs

Four Strategic Ways AI Can Strengthen Your AML Program

GUEST BLOG POST Money laundering facilitates crime, threatens our national security, distorts markets, and has a devastating economic and social impact on citizens, according to the U.S. Department of the Treasury. Financial institutions are required to do their part to combat these threats. The Financial Crimes Enforcement Network (FinCEN), a Read More