A Quick Look at CPS 230 APRA: What Australia’s Standard Means for Financial Institutions

The CPS 230 APRA standard represents one of the most significant shifts in how Australian financial institutions manage operational risk. Introduced by the Australian Prudential Regulation Authority (APRA), CPS 230 is designed to strengthen resilience by improving oversight, risk visibility, and accountability across critical operations. This standard moves beyond reactive risk management. It encourages a culture of preparedness and clarity. And it ensures organizations are compliant ...

By |2025-05-07T19:32:35+00:00May 7th, 2025|Compliance, Governance, Risk & Compliance: GRC|

How to Create an Effective Compliance Program

Ask five organizations what makes an effective compliance program, and you’ll likely get five different answers. But ask a regulator, and the picture gets a lot clearer.  Regulators are not looking for flashy training modules or one-size-fits-all policies. What they’re looking for is evidence—evidence that your compliance program is real, rooted in risk, and taken seriously across the business. Can you walk the compliance walk ...

By |2025-06-17T20:25:38+00:00April 16th, 2025|Compliance, Governance, Risk & Compliance: GRC|

2025 Global Regulatory Changes to Watch: ESG, AI, Cybersecurity & More

Global regulations are evolving—and before our very eyes. But it’s not just the volume of regulatory changes that matters. It’s the new direction changes may be headed and the need to keep up. Across global markets, a greater shift is taking hold. Compliance is now operating like a mirror, becoming a clear reflection of corporate values, ethics, and long-term resilience. In 2025, a new wave ...

By |2025-04-28T03:08:23+00:00April 14th, 2025|Compliance, Governance, Risk & Compliance: GRC|

29th Annual HCCA Compliance Institute

Join SAI360 at the HCCA Compliance Institute in Las Vegas - Booth #419 We're excited to announce the SAI360 team will be attending the Annual HCCA Compliance Institute Conference in Las Vegas this year. Stop by our booth to discover our latest compliance solutions. And pick up your complimentary physical copy of: 2025 Compliance Benchmark Report 2025 HIPAA Benchmark Report Exclusive Evening at The Neon ...

By |2025-04-28T03:08:30+00:00April 4th, 2025|Governance, Risk & Compliance: GRC, Uncategorized|

3 Reasons You Should Add Emerging Risk Detection to Your GRC Strategy

Business risks. They’re everywhere and not always in places you’d expect. A sudden natural disaster can impact a key supplier. A third-party’s technical glitch can halt your production line. In some scenarios, like a disruptive new technology, an entire industry can be left scrambling. These unforeseen events often escalate quickly, create significant operational disruptions, and may result in financial loss or reputational damage. In light ...

By |2025-09-10T13:09:35+00:00April 3rd, 2025|Governance, Risk & Compliance: GRC|

10 Innovations Shaping the Future of Compliance and Learning

At SAI360’s CustomerConnect Chicago event, industry leaders and forward-thinking professionals came together to explore the intersection of compliance and learning and discuss the cutting-edge advancements shaping both of these fields. A siloed approach to risk management is no longer the solution. What is? With compliance playing a critical role in navigating risks and maintaining organizational integrity and operational resilience, GRC-learning integration is revolutionizing how teams learn, ...

How Are HIPAA Breaches Detected? How Healthcare Organizations Catch Privacy Violations

HIPAA compliance remains a critical focus for healthcare organizations. But how are most HIPAA breaches detected? Our 4th Annual HIPAA Compliance Survey reveals that employee violation reporting remains the primary detection method. However, relying solely on staff to identify breaches may not be enough to protect sensitive patient data and ensure regulatory compliance. HIPAA Privacy Programs: New Compliance Trends to Know Below, we analyze a ...

By |2025-11-21T14:50:19+00:00March 24th, 2025|Governance, Risk & Compliance: GRC, Healthcare GRC|

Third-Party Risk Management for Stronger Compliance Security

Third-party risk management software introduces significant risks. If business operations are a house, vendors and third-party providers are the bricks holding it up. Exposing your valuable and highly confidential information to another company ups the ante for everything from cybersecurity threats to regulatory violations to operational disruptions and reputational damage. Done wrong, everything comes crashing down to the ground. When information is no longer in ...

Confidence in Compliance: Overcoming Self-Doubt in Risk and Governance Roles

In honor of International Women’s Day, we’re celebrating the moments that shape women’s leadership in ethics, governance, risk, and compliance —the ones that challenge us, push us, and ultimately make us stronger. For Lindsey Brown-Acquaye, CRCM, AAP, CRA & Fair Banking Program Manager at Stearns Bank, that moment came during her first solo exit interview with a client. Overcoming Self-Doubt in Compliance Leadership New to audit ...

Why Your Business Needs Third-Party Compliance Training

Third-party compliance training (or a lack of) has been hitting the mainstream media headlines, given our increasingly interconnected world. Case in point? When Equifax experienced one of the largest data breaches in history, it wasn’t their own security systems that failed—it was a vulnerability in a third-party software vendor¹. The result? Personal data for nearly 150 million people was exposed, leading to a $425 million ...

By |2025-04-28T03:07:13+00:00March 2nd, 2025|Ethics & Compliance Learning, Third-Party and Vendor Risk|