Innovation in Compliance with Tom Fox

Thomas Fox

Innovation in compliance brings you interviews with industry leading experts who are changing the way practitioners approach compliance. Host Tom Fox, the Compliance Evangelist and Voice of Compliance is driving the conversation about compliance into the 2020s and beyond with his focus on innovations for the compliance practitioner and the compliance profession. If you want to learn how to bring business solutions to compliance problems to more fully operationalize compliance, this is the podcast for you.

  1. 2d ago

    Paul Welter on AI Legal Reasoning for Embedded Compliance Workflows

    Innovation comes in many areas, and compliance professionals need to not only be ready for it but also embrace it. Join Tom Fox, the Voice of Compliance, as he visits with top innovative minds, thinkers, and creators in the award-winning Innovation in Compliance podcast. In this episode, host Tom visits with Paul F. Welter, co-founder at Bayshore AI. Welter is a German-qualified lawyer whose path into legal innovation began with an early background in software engineering, giving him a rare combination of legal and technical expertise. That experience led him to study how legal reasoning could be automated at Stanford Law School’s Codex, and later to co-found Bayshore AI to build LLM-based tools for in-house legal and compliance teams. He believes AI can help scale legal and compliance support because demand far exceeds human capacity, but he expects adoption to happen gradually through copilots, policy chatbots, and targeted workflow automation rather than a sudden transformation. At the same time, he stresses that regulated companies need systems that are transparent, auditable, and able to show how decisions are made, with human oversight remaining essential for higher-risk matters and regulator-facing accountability. Key highlights: AI Legal Reasoning for Embedded Compliance Workflows Auditable Legal Decision Logic from Conventional Programs Customer-Specific Policy Logic with Deterministic Compliance Logic translated into code for reviewable decisions Full-time employee days of manual compliance checks AI copilots, compliance workflows, and decision trails Resources: Paul Welter on LinkedIn Bayshore Website Bayshore on LinkedIn Innovation in Compliance was recently honored as the Number 4 podcast in Risk Management by 1,000,000 Podcasts

  2. Aug 25

    Brian Holyfield on Reducing Cybersecurity Blast Radius

    Innovation comes in many areas, and compliance professionals need to not only be ready for it but also embrace it. Join Tom Fox, the Voice of Compliance, as he visits with top innovative minds, thinkers, and creators in the award-winning Innovation in Compliance podcast. In this episode, host Tom visits with Brian Holyfield, Co-Founder & Chief Product Officer at SendSafely. Holyfield discusses why the right compliance question on cybersecurity is not whether a breach will happen but when and what data will be exposed, often through vendors. He explains “blast radius” as the scope of access and data reachable during an incident and argues organizations should prioritize architecture, data minimization, and retention controls alongside prevention. He also highlights risks from accumulated file attachments, overbroad user access, interconnected systems using OAuth tokens, and “standing access” via long-lived machine credentials that can be abused without obvious login anomalies. Holyfield discusses examples involving ServiceNow and Salesforce that illustrate platform vulnerabilities, trusted upstream vendor connections, and end-user compromise, and advises leaders to inventory connections, define retention/archiving, and move sensitive data out of frontline platforms; SendSafely positions itself as an end-to-end encrypted trust layer, including for AI chatbot attachments. Key highlights: Assume the Breach Blast Radius Explained ServiceNow and Salesforce Lessons Board-Level Questions AI Changes the Game Compliance and Governance Fit Resources: SendSafely Brian Holyfield on LinkedIn Innovation in Compliance was recently honored as the Number 4 podcast in Risk Management by 1,000,000 Podcasts

  3. Aug 18

    Clarence Chio on Rethinking Third-Party Due Diligence in the Age of AI

    Innovation comes in many areas, and compliance professionals need to not only be ready for it but also embrace it. Join Tom Fox, the Voice of Compliance, as he visits with top innovative minds, thinkers, and creators in the award-winning Innovation in Compliance podcast. In this episode, host Tom Fox visits with Clarence Chio, co-founder and CEO of Coverbase, about modernizing third-party risk management as AI reshapes vendor due diligence. Chio describes how traditional onboarding relies on long questionnaires, SOC 2/ISO documentation, and trust centers that streamline document exchange but were built for human-driven workflows. He argues AI makes the process risky and increasingly meaningless because vendors can auto-complete questionnaires convincingly and customers can analyze them with AI, eroding the value of nuance and attestation. Chio contrasts static, point-in-time evidence with the need for dynamic, continuous security evidence, noting software changes faster than annual assessments and third-party software frequently appears in breach chains. He proposes moving from check-the-box questionnaires to first-principles risk validation, including continuous information sharing, deeper technical evidence, and machine-readable artifacts such as SBOMs. He highlights Coverbase’s open-source Trust MCP, which provides scoped, standardized access to verified vendor evidence for an agent-driven future. Key highlights: Why Coverbase Exists Trust Centers Explained AI Makes Due Diligence Risky Attestation and Human Loop Static vs. Dynamic Evidence Machine-Readable Trust Future Resources: Coverbase Clarence Chio on LinkedIn Innovation in Compliance was recently honored as the Number 4 podcast in Risk Management by 1,000,000 Podcasts

  4. Aug 11

    Scaling the RiskCloud and Agentic AI for Enterprise GRC with Diego Panama

    Innovation comes in many areas, and compliance professionals need not only to be ready for it but also to embrace it. Join Tom Fox, the Voice of Compliance, as he visits with top innovative minds, thinkers, and creators in the award-winning Innovation in Compliance podcast. In this episode, host Tom Fox visits with Diego Panama, the new CEO of LogicGate. They discuss his career from Microsoft product management to scaling Live Ramp to an IPO, building go-to-market at Olo, and joining LogicGate through a planned CEO transition with co-founder Matt Kunkel. Panama describes his focus on scaling operations while preserving a customer-first, values-driven culture and sharpening the company’s positioning as the leading AI GRC platform for enterprise. The discussion highlights AI’s role in moving GRC from check-the-box defense to real-time, strategic enablement, including holistic risk visibility across silos, third-party risk blind spots, and always-on monitoring. Panama explains LogicGate’s workflow agents and the path toward orchestrated, autonomous GRC, with humans setting risk appetite; emphasizes data access, quality, and governance; and outlines product UX evolution from no-code to prompt-driven configuration. He notes boards’ increased attention to GRC due to AI risks and encourages students and practitioners to stay curious and aligned to business outcomes. Key highlights: Why LogicGate and GRC AI Makes GRC Strategic Holistic Risk and Third Parties Workflow Agents Explained Data Access and Governance Big Tech Lessons on Focus Staying Current in Tech Resources: LogicGate Diego Panama on LinkedIn Innovation in Compliance was recently honored as the Number 4 podcast in Risk Management by 1,000,000 Podcasts

  5. Aug 4

    From Checklists To Dynamic Compliance Systems with Justin Roopnarine

    Innovation comes in many areas, and compliance professionals need not only to be ready for it but also to embrace it. Join Tom Fox, the Voice of Compliance, as he visits with top innovative minds, thinkers, and creators in the award-winning Innovation in Compliance podcast. In this episode, host Tom Fox visits with Justin Roopnarine, Partner at Limitless Capital. Roopnarine is an engineer whose career has spanned the Air Force, financial engineering, software engineering, and both public- and private-sector problem solving. He brings a practical perspective to evolving compliance and risk management, arguing that organizations need systems that can adapt to changing conditions rather than rely on static checklists or rigid SOPs. Roopnarine believes algorithmic auditing can make compliance more repeatable and effective by using rules, metrics, and programmatic checks to document decisions, monitor thresholds, and quickly identify where breakdowns occur. At the same time, he emphasizes that AI and technology should strengthen human judgment and that financial literacy helps people comply more fully when they understand the reasons behind the rules and the broader goals they support. Key highlights: Living Compliance Framework for Changing Conditions Algorithmic Compliance Checks with Portfolio Exposure Limits FAR North Star of government contracting compliance Consolidated Database Feedback Loop from Lower Ranks Understanding the “why” behind financial rules Resources: Managing Partner: Limitless Capital LP Podcast: Approaching Infinity Website: https://limitlesslp.com/ LinkedIn https://www.linkedin.com/in/justin-roopnarine/ YouTube https://www.youtube.com/@approachinginfinityshow Spotify https://open.spotify.com/show/32jOxQ8WhZElwk4c3RjkmD Instagram https://www.instagram.com/jrlive7/ TikTok https://www.tiktok.com/@approaching_infinity_pod Facebook https://www.facebook.com/profile.php?id=61576572194605 Innovation in Compliance was recently honored as the Number 4 podcast in Risk Management by 1,000,000 Podcasts

  6. Jul 28

    Compliance Evangelists Fighting Modern Slavery Together with Matt Friedman

    Innovation comes in many areas, and compliance professionals need to not only be ready for it but also embrace it. Join Tom Fox, the Voice of Compliance, as he visits with top innovative minds, thinkers, and creators in the award-winning Innovation in Compliance podcast. In this episode, host Tom Fox visits with Matt Friedman, who provides a 2026 update to the fight against the international scourge of human trafficking and modern slavery and discusses his latest book, Awakening the Advocate. Friedman is a leading voice in the fight against human trafficking and modern slavery, known for founding and leading the Mekong Club and for more than 35 years of advocacy, policy work, and corporate engagement. He views modern slavery as a vast, still underaddressed crisis, where tens of millions remain trapped while the number of survivors helped and criminals convicted remains far too small to match the scale of the problem. Friedman believes the biggest barrier is not compassion but awareness and that educating employees inside companies can “wake up” lawyers, bankers, marketers, and other professionals who already have the instincts to help. From his perspective, ESG and compliance efforts can protect the business while also driving meaningful anti-slavery action, making corporate compliance a practical engine for both risk reduction and social change. Key highlights: Compliance Evangelists Fighting Modern Slavery Together Leadership Briefings and Procurement Risk Assessments Board-Level Awareness Protects Reputation and Brand Value AI sifting data to uncover scam-center patterns Modern Slavery Risks Make ESG’s Future Uncertain Resources: Matt Friedman on LinkedIn The Mekong Club Awakening the Advocate on Amazon.com Innovation in Compliance was recently honored as the Number 4 podcast in Risk Management by 1,000,000 Podcasts.

  7. Jul 14

    AI Compliance at the Speed of Content with Kunal Vankadara

    Innovation comes in many areas, and compliance professionals need to not only be ready for it but also embrace it. Join Tom Fox, the Voice of Compliance, as he visits with top innovative minds, thinkers, and creators in the award-winning Innovation in Compliance podcast. In this episode, host Tom Fox visits Kunal Vankadara, CEO & Co-founder of Haast, to discuss how AI can help regulated organizations scale compliance as content volume explodes and regulatory scrutiny increases. Vankadara believes AI-powered compliance automation is especially valuable in content review because many decisions are subjective and context-driven, such as judging whether a disclaimer is sufficiently prominent. In his view, LLMs can be trained on a company’s risk tolerance to apply those standards consistently at scale, reducing false positives and sending only gray-area issues to human experts. As AI-driven content creation and regulatory scrutiny continue to grow, he sees this approach as a way to make compliance faster, more reliable, and less of a bottleneck. Key highlights: AI-driven content surge overburdens compliance teams Training Agents to Match Company Risk Tolerance Teaching AI Risk Tolerance Beyond False Positives Compliance agents as digital twins for content Sanctions and Regulatory Changes into Actionable Intelligence Resources: Connect with Kunal Vankadara on LinkedIn Haast Innovation in Compliance was recently honored as the Number 4 podcast in Risk Management by 1,000,000 Podcasts.

4.5
out of 5
17 Ratings

About

Innovation in compliance brings you interviews with industry leading experts who are changing the way practitioners approach compliance. Host Tom Fox, the Compliance Evangelist and Voice of Compliance is driving the conversation about compliance into the 2020s and beyond with his focus on innovations for the compliance practitioner and the compliance profession. If you want to learn how to bring business solutions to compliance problems to more fully operationalize compliance, this is the podcast for you.

You Might Also Like