ABA Banking Journal
No Result
View All Result
  • Topics
    • Ag Banking
    • Commercial Lending
    • Community Banking
    • Compliance and Risk
    • Cybersecurity
    • Economy
    • Human Resources
    • Insurance
    • Legal
    • Mortgage
    • Mutual Funds
    • Payments
    • Policy
    • Retail and Marketing
    • Tax and Accounting
    • Technology
    • Wealth Management
  • Newsbytes
  • Podcasts
  • Magazine
    • Subscribe
    • Advertise
    • Magazine Archive
    • Newsletter Archive
    • Podcast Archive
    • Sponsored Content Archive
SUBSCRIBE
ABA Banking Journal
  • Topics
    • Ag Banking
    • Commercial Lending
    • Community Banking
    • Compliance and Risk
    • Cybersecurity
    • Economy
    • Human Resources
    • Insurance
    • Legal
    • Mortgage
    • Mutual Funds
    • Payments
    • Policy
    • Retail and Marketing
    • Tax and Accounting
    • Technology
    • Wealth Management
  • Newsbytes
  • Podcasts
  • Magazine
    • Subscribe
    • Advertise
    • Magazine Archive
    • Newsletter Archive
    • Podcast Archive
    • Sponsored Content Archive
No Result
View All Result
No Result
View All Result
Home Compliance and Risk

Aardvarks and aliens: Learning to recognize risk and embrace compliance

June 29, 2023
Reading Time: 4 mins read
Aardvarks and aliens: Learning to recognize risk and embrace compliance

What can compliance and risk management professionals do at this critical juncture to ensure that their institutions are able to weather this latest perfect storm?

By Elaine Duffus

Aardvarks and aliens. I don’t remember when I first used that phrase to describe the potential parade of horribles of regulatory or operational risk that were not properly managed—but I do recall that people always smiled. I think they thought that it was an entirely appropriate description because risk can come out of nowhere and is often misunderstood or not anticipated.

One of my most memorable and impactful aardvarks and aliens’ moments was in the months after September 11, 2001. Suddenly there was a whole new body of law and regulation called the USA Patriot Act, and I was to be our firm’s first AML compliance officer. No one could have foreseen the events and aftermath of that terrible day. But I spent the rest of my career working in compliance, became a lawyer somewhere along the way and never stopped imagining the potential risks my institutions faced and how best to mitigate their impact.

rightwards arrow
View more
risk and compliance articles.

I have now been a compliance professional for more than 25 years and I have never had such strong aardvarks and aliens vibes as I am having right now for the financial services industry. Unfettered AI (e.g., ChatGPT), turbulent crypto developments, the risks of unmanaged digitalization, AWOL boards, regulators falling on their swords after bank failures, interest rate and recession fears, etc. It’s a lot all at once.

Regulations and risk management efforts have not really kept pace with the technology demands of customers; the new products and services resulting from those demands; the subsequent partnerships with and, in many cases, nascent third-parties to help deliver those new products and services; and how to keep one’s business units, compliance and risk management departments, internal audit, i.e. one’s three lines of defense, engaged and informed as to these emerging risks.

What can compliance and risk management professionals do at this critical juncture to ensure that their institutions are able to weather this latest and most perfect storm?

Anticipation is key

In my experience, the answer is to harden your overall defenses so that the nature of an emerging risk does not have to be fully understood or anticipated to be properly managed. But what does that look like in practical terms?

First, review the role of your governance bodies (board, senior leadership, compliance and audit committees) to ensure they are truly providing the requisite oversight. It is a crucial aspect of successful institutional control to ensure that your governance bodies are equipped with the information necessary to make informed decisions, especially when it comes to questions of ethics or compliance. For example, are they fully informed about exceptions to the risk appetite framework of the institution and on record as the final arbiters if an exception is made, including on compensation and incentives?

Do the chief compliance officer, chief risk officer and internal audit provide those governance bodies with regular, on-the-record reporting of conditions for their areas of responsibility? Are they informed of and involved in escalation efforts when violations are found, or disciplinary actions are needed? Are there members with experience germane to their role? Have they clearly and unambiguously articulated and demonstrated rigorous adherence to applicable standards? Have they ensured that middle-management reinforces those standards and encourages employees to abide by them?

Finally, look at the larger effects of these efforts. How are they positively impacting the culture of ethics and compliance? Do they provide the necessary resources and empowerment to the compliance and risk management areas to function effectively? Is there at-hire and on-going due diligence of them and all decision-makers?

A deeper dive on risk and compliance functions

Next, look holistically at your compliance and risk management functions. Are the right processes in place when a new or changed law, rule, regulation, product, partnership or service, new location, customer type or other activity impacting the bank’s business model is enacted, undertaken or approved? Is there involvement by all appropriate stakeholders in the creation of appropriate, documented and regularly tested and reported-on controls commensurate with the risk?

Also, are compliance and risk management professionals thinking outside-the-box (a.k.a. aardvarks and aliens) about what might go wrong—and is there a process for escalating their concerns? Is the responsibility for timely and fully addressing internal audit and regulatory examination findings shared by compliance, risk management, the business and governance? Do compliance and risk management personnel have a decision-making role in incentive programs, sales strategies and disciplinary actions?

I think you get the picture. It must be an enterprise-wide effort to holistically recognize and manage risk. It has always been important to avoid siloed activities in business, but it is all the more critical to have an enterprise-wide perspective now. Effective compliance and risk management programs require the active engagement of all levels of personnel in an organization. Concerns voiced by anyone, even those that seem far-fetched and unlikely, should be vetted by appropriate personnel to ensure red flags are not missed.

Consider the ideas discussed above and what effect they may have on compliance and risk management activities at your bank. And don’t forget to ensure that third-party service providers are as equally educated as employees regarding the voicing of concerns, as well as recognition of risk and consequences of acting unethically or contrary to policies.

And finally, while the hope is that your institution has the processes in place to manage the myriad regulatory and operational risks presenting today, there is always help available from your regulators (yes, you can ask them questions), consultants and other industry experts to identify unmanaged regulatory or operational risk and ultimately strengthen your institutions risk profile for years to come.

Elaine Duffus is a senior specialized consultant with Wolters Kluwer Compliance Solutions. She can be reached at [email protected].

Tags: ComplianceRisk management
ShareTweetPin

Related Posts

OCC’s Gould: Bank regulation should not distract banks from business challenges

Gould suggests easing bank resolution planning requirements

Compliance and Risk
January 16, 2026

Comptroller of the Currency Jonathan Gould said he sees no benefit in the FDIC continuing to require filings from large banks that detail their suggested orderly resolution in case of a bank failure, known as CIDI plans. He...

FHFA to create affordable housing advisory committee

HUD proposes to remove disparate impact from Fair Housing Act rule

Compliance and Risk
January 14, 2026

The Department of Housing and Urban Development is proposing to rescind three rules allowing the use of disparate impact in determining Fair Housing Act violations.

AI romance, ‘machine-to-machine’ scams among top 2026 fraud trends

AI romance, ‘machine-to-machine’ scams among top 2026 fraud trends

Compliance and Risk
January 14, 2026

Romance scams carried out by artificial intelligence and computers scamming other computers are among the top five fraud trends to watch out for in 2026, according to a new report by credit reporting agency Experian.

FinCEN proposes applying BSA requirements to investment advisers

G7 expert group releases cybersecurity ‘roadmap’ for post-quantum cryptography

Compliance and Risk
January 13, 2026

The G7 Cyber Expert Group released a “roadmap” to help the financial sector take steps to secure computer systems from cybersecurity risks arising from quantum computing.

Banking agencies: Shared National Credit quality remains moderate

Banking agencies release Shared National Credit Program report

Compliance and Risk
January 12, 2026

Credit risk associated with large, syndicated bank loans remains moderate, with credit risk trends reflecting the effects of borrowers' ability to manage higher interest expenses and other macroeconomic factors, three banking agencies said in their most recent Shared...

ABA urges FinCEN to reevaluate BOI collection burden on banks

Treasury issues order, alert to Minnesota institutions on alleged fraud rings

Compliance and Risk
January 9, 2026

FinCEN issued an alert urging financial institutions to identify and report fraud associated with federal child nutrition programs in Minnesota, and it released a geographic targeting order directing banks and money transmitters in two Minnesota counties to report...

NEWSBYTES

Democratic senators introduce bill to lower credit card late fee cap

January 16, 2026

Gould suggests easing bank resolution planning requirements

January 16, 2026

Survey: Merchants expand payment options, express interest in crypto

January 16, 2026

SPONSORED CONTENT

Seeing More Check Fraud and Scams? These Educational Online Toolkits Can Help

Seeing More Check Fraud and Scams? These Educational Online Toolkits Can Help

November 1, 2025
5 FedNow®  Service Developments You May Have Missed

5 FedNow® Service Developments You May Have Missed

October 31, 2025

Cash, Security, and Resilience in a Digital-First Economy

October 20, 2025
Rethinking Outsourcing: The Value of Tech-Enabled, Strategic Growth Partnerships

Rethinking Outsourcing: The Value of Tech-Enabled, Strategic Growth Partnerships

October 1, 2025

PODCASTS

Podcast: A Lone Star banking perspective

January 15, 2026

Podcast: The incredible shrinking penny (circulation)

January 8, 2026

Podcast: Cybersecurity in a mobile-first banking landscape

December 18, 2025

American Bankers Association
1333 New Hampshire Ave NW
Washington, DC 20036
1-800-BANKERS (800-226-5377)
www.aba.com
About ABA
Privacy Policy
Contact ABA

ABA Banking Journal
About ABA Banking Journal
Media Kit
Advertising
Subscribe

© 2026 American Bankers Association. All rights reserved.

No Result
View All Result
  • Topics
    • Ag Banking
    • Commercial Lending
    • Community Banking
    • Compliance and Risk
    • Cybersecurity
    • Economy
    • Human Resources
    • Insurance
    • Legal
    • Mortgage
    • Mutual Funds
    • Payments
    • Policy
    • Retail and Marketing
    • Tax and Accounting
    • Technology
    • Wealth Management
  • Newsbytes
  • Podcasts
  • Magazine
    • Subscribe
    • Advertise
    • Magazine Archive
    • Newsletter Archive
    • Podcast Archive
    • Sponsored Content Archive

© 2026 American Bankers Association. All rights reserved.