The Cyberbeveiligingswet Just Changed Who Is In Scope
Roughly 8,000 Dutch organizations are directly in scope. An estimated 133,000 more are ...
The EU’s Quiet Training Mandate Now Faces Enforcement
Article 4 of the EU AI Act made staff training a legal duty in 2025, and enforcement be...
Is AI Replacing Paralegals? Behind Every Great Case, There’s a Great Paralegal
AI is handling more of the routine work, but paralegal demand hasn't dropped. Here's wh...
The EU Anti-Corruption Directive Raises the Bar on Corporate Liability. Is Your Program Ready?
While U.S. enforcement narrows, the EU Anti-Corruption Directive gets wider, deeper, an...
Your APAC Compliance Programme Was Built For a Region That Doesn’t Exist
The gap shows up in your supplier contracts before it shows up in your risk register.
The Policy Shift Enterprise Risk Management Wasn’t Built For
How U.S. economic security policy is creating a new category of geopolitical risk for e...
Third-Party Risk Management: The Top 10 Predictions for 2026
This post was originally co-authored with Alastair Parr, SVP of Products & Services. Up...
Supplier Risk Management: What It Requires and What Changed in 2026
Das Risikomanagement für Lieferanten (SRM) wird zunehmend zu einem Thema auf Vorstandsebene, da die...
Der Lebenszyklus des Risikomanagements von Drittanbietern: Der endgültige Leitfaden
Ihr Unternehmen ist in jeder Phase der Lieferantenbeziehung mit unterschiedlichen Risiken konfrontiert,...
ECCTA’s Failure to Prevent Fraud: Your Policy Is No Longer the Defence
What ECCTA’s failure to prevent fraud offence requires, why the SFO says a policy alone...
