Compliance audit
Introduction
Regulatory compliance, also known as compliance,[1] is the set of policies, procedures and actions that an organization carries out to ensure that its activities comply with the laws, regulations, norms and ethical standards applicable in its field of action.[2] The main objective of regulatory compliance is to prevent and minimize the legal, financial and reputational risks that may arise from regulatory infractions or non-compliance.
Importance of regulatory compliance
Regulatory compliance is essential for the sustainability and success of any organization, as it fosters a culture of integrity and transparency in the company, which improves the corporate image and reputation among customers, suppliers, employees and authorities.[3] In addition, it prevents legal sanctions, fines and penalties derived from non-compliance with laws and regulations, such as the Foreign Corrupt Practices Act (FCPA) in the United States[4] or the Bribery Act in the United Kingdom (UK Bribery Act).[5].
International compliance standards
Contenido
Existen estándares internacionales que proporcionan directrices para el diseño e implementación de sistemas de gestión de cumplimiento normativo, como la norma ISO 37001:2016[6] (Sistema de Gestión Antisoborno), la norma ISO 37301:2021[7] (Sistema de Gestión de Compliance) y la ISO 37002[8] (Sistema de Gestión de Denuncias Internas).
ISO 37001:2016
The ISO 37001:2016 standard establishes the requirements and guidelines for implementing an anti-bribery management system, with the objective of preventing, detecting and addressing bribery in the organization.[9] This standard is applicable to organizations of any size, sector or jurisdiction.