
DOJ’s corporate compliance program evaluation gets a facelift
An effective compliance program can and does mitigate liability, so it's important to stay abreast of regulatory changes.
Nearly a year ago,
- Written policies and procedures
- Compliance leadership and oversight
- Training and education
- Effective lines of communication with the compliance officer and disclosure program
- Enforcing standards: consequences and incentives
- Risk assessment, auditing, and monitoring
- Responding to detected offenses and developing corrective action initiatives
As any white-collar defense counsel knows, an effective compliance program can and does mitigate liability – both with voluntary disclosures and False Claims Act (FCA) liability.
In September 2024, the U.S. Department of Justice (DOJ) published a revised version of its “
A couple of notable additions stood out, which begin at the bottom of page 3 – Management of Emerging Risks to Ensure Compliance with Applicable Law. Here is a sample of the questions posed:
- Does the company have a process for identifying and managing emerging internal and external risks that could potentially impact the company’s ability to comply with the law, including risks related to the use of new technologies?
- How does the company assess the potential impact of new technologies, such as artificial intelligence (AI), on its ability to comply with criminal laws?
- Is management of risks related to use of AI and other new technologies integrated into broader enterprise risk management (ERM) strategies?
Prudent questions to ask within a compliance department regarding HIPAA, HITECH and other related cyber compliance requirements. In sum, both documents provide an excellent roadmap and refer to other sources, including laws and regulations. By reviewing and incorporating these items in a comprehensive and good faith way, companies are better positioned in the long-run to avoid liability.
Rachel V. Rose, JD, MBA, advises clients on compliance, transactions, government administrative actions, and litigation involving healthcare, cybersecurity, corporate and securities law, as well as False Claims Act and Dodd-Frank whistleblower cases. She also teaches bioethics at Baylor College of Medicine in Houston. Rachel can be reached through her website,
Newsletter
Optimize your practice with the Physicians Practice newsletter, offering management pearls, leadership tips, and business strategies tailored for practice administrators and physicians of any specialty.














