Compliance management

Compliance is an outcome of an organization meeting its obligations. An organization’s approach to compliance is ideally shaped by the leadership applying core values and generally accepted corporate governance, ethical and community standards.

 

An effective, organization-wide compliance management system enables an organization to demonstrate its commitment to compliance with relevant laws, including legislative requirements, industry codes and organizational standards, as well as standards of good corporate governance, best practices, ethics and community expectations.

 

Embedding compliance in the behaviour of the people working for an organization depends above all on leadership at all levels and clear values of an organization, as well as an acknowledgement and implementation of measures to promote compliant behaviour. If this is not the case at all levels of an organization, there is a risk of noncompliance.

ISO 19600 - Compliance Management systems - Guidelines

Compliance management is embedded ideally in the core management system. Leading to "Good and responsible corporate governance" it works hand in hand with risk management.

ISO 19600 has adopted the high-level structure (HLS) to improve alignment among the International Standards for management systems.

  • In a strategic context analysis relevant stakeholders and their requirements, expectations and needs are identified. The compliance obligations are established.
  • Operational risk assessment is used to prioritize compliance obligations and determine controls to ensure compliance. Controls are implemented in the operational activities.