RSS Feed
Friday, November 7, 2025
Iratxe Gurpegui

From red flags to trust: vendor risk management

Imagine a large European company faces allegations that one of its subcontractors was involved in forced labor on a construction site in 2023. The fallout travels faster than the facts.

Tuesday, November 4, 2025
Iratxe Gurpegui

Build a Compliance Program That Auditors Trust

Building a compliance program that inspires immediate confidence from external auditors is no longer a nice-to-have. It is table stakes for organizations that operate in multiple jurisdictions or plan to scale quickly without incurring regulatory drag.

Saturday, November 1, 2025
Iratxe Gurpegui

Managing Compliance in SMEs: 8 Mistakes to Avoid

Small and mid-sized enterprises (SMEs) face almost the same regulatory scrutiny as listed corporations, yet they rarely have the headcount or the budget of a Fortune 500 compliance department.

Friday, October 3, 2025
Iratxe Gurpegui

Dawn Raids Are Back: What Sanofi’s Case Teaches Us About Compliance Readiness

The European Commission has raided Sanofi’s offices in France and Germany over suspected anticompetitive practices in the flu vaccine market. Beyond the headlines, the case is a reminder that dawn raids don’t just target classic cartels or price-fixing. This time, the suspicion is anticompetitive disparagement—a risk that often goes unnoticed by compliance officers. The lesson? A strong dawn raid protocol, regular training, and a comprehensive competition risk map are essential. Because when regulators come knocking, it’s not just about prices—it’s about being ready for the unexpected.

Thursday, October 2, 2025
Iratxe Gurpegui

How to Build a Compliance Risk Map in 6 Steps

Sure, you can run a compliance program without a risk map — but it won’t get you very far. Without a clear view of where the company is most exposed, compliance activities often become generic, disconnected, and, in the end, a waste of resources.