Chris McClean serves Security & Risk Professionals. See the full Analyst bio.
Visit Forrester.com to learn how we make Security & Risk Professionals successful every day.
Keeping up with global regulations
Posted by Chris McClean on December 28, 2007
- 211 Recommendations
- 0 comments
The Foreign Corrupt Practices Act (FCPA) has been seemingly more newsworthy than usual recently (even impacting Hollywood elite), with somewhat conflicting accounts of the US cracking down on bribery both here and abroad, and the rationale for the US to accept some level of bribery for the sake of broader national interests.
The interesting issue here is not the level of enforcement, but the inability of companies to keep track of legislation applying to them. This article quotes a KPMG spokesperson referring to a study that found that nearly half of respondent didn’t know that the FCPA applied to their operations, specifically commenting, “Companies appear to be exposing themselves to increased risk of prosecution through a mixture of lack of awareness of the anti-bribery rules, and a lack of engagement even when they are aware.”
Tracking, understanding, updating, and communicating regulatory requirements are often significant gaps in corporate compliance programs, and certainly gaps that the vendor community is looking to solve. Note how the leading compliance management platforms are demonstrating leadership with some of these capabilities in The Forrester Wave™: Enterprise Governance, Risk, And Compliance Platforms, Q4 2007 released last week.
As companies continue to expand operations overseas, exposing themselves to new and changing regulatory environments, these capabilities will likely play an even more crucial role in 2008 in the competition of leading compliance platforms. Compliance officers should certainly keep these as criteria when evaluating possible solutions. Expect more research from Forrester in this area as well.
Categories:
search forrester's blogs
Secure the digital business future.
Attend Forrester’s Forum for Security & Risk Professionals EMEA, June 10-11, London UK
Analyst Blogs
- Andras Cser (31)
- Andrew Rose (17)
- Chris McClean (54)
- Christopher Sherman (1)
- Edward Ferrara (20)
- Eve Maler (19)
- Heidi Shey (9)
- John Kindervag (28)
- Khalid Kark (13)
- Laura Koetzle (2)
- Nick Hayes (5)
- Rick Holland (20)
- Stephanie Balaouras (50)
Top Categories
- GRC (21)
- Enterprise Risk Management (10)
- Governance Risk and Compliance (2)
- IT Risk Management (2)
- IT security (2)
- acquisitions (1)
- BC/DR (1)
- BT Resiliency (1)
- Business continuity (1)
- business technology resiliency (1)
- See all
Archives
- March 2013 (1)
- February 2013 (1)
- November 2012 (1)
- May 2012 (2)
- March 2012 (1)
- November 2011 (1)
- October 2011 (1)
- September 2011 (1)
- May 2011 (1)
- February 2011 (2)
- January 2011 (1)
- December 2010 (1)
- November 2010 (1)
- See all