risk
Sector regulatory non-compliance (financial, healthcare, trade)
Non-compliance with sector regimes — banking prudential rules, consumer-lending laws, payment-network rules, healthcare (FDA/HIPAA/CMS, Anti-Kickback/Stark, False Claims), export controls (EAR/ITAR), antitrust, and environmental/labor rules — triggering fines, sanctions, or loss of license.
Record JSON · Open in map · Data retrieval guide
Catalog revision: 24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028. A connection does not establish full coverage.
Attributes
- category
- compliance_regulatory
- domain
- Compliance, Audit & Assurance
- Risk Assessment & Management
- taxonomy
- enterprise-risk
- coso-erm-risk
- inherent_rating
- high
Details
- risk_id
- compliance-sector-regulatory-breach
- category
- compliance_regulatory
- likelihood
- medium
- impact
- high
- inherent_rating
- high
- treatment
- mitigate
- taxonomies
- enterprise-risk
- coso-erm-risk
Source
No record-specific source URL is provided.
Connections
- UC-AI-24 — Operate an AI quality management system mitigates Sector regulatory non-compliance (financial, healthcare, trade)
- strength
- related
- rationale
- The quality system is where regulatory-compliance strategy and evidence for AI products are maintained.
- UC-RISK-16 — Conduct privacy impact assessments for high-risk processing mitigates Sector regulatory non-compliance (financial, healthcare, trade)
- strength
- primary
- rationale
- DPIA/PIA (GDPR Art 35) before high-risk processing is a direct data-protection compliance control identifying and mitigating privacy-law violations before they occur.
- UC-AUDIT-24 — Manage compliance with external legal and regulatory requirements mitigates Sector regulatory non-compliance (financial, healthcare, trade)
- strength
- primary
- rationale
- A register of applicable legal/regulatory requirements with owners, evaluated on a cadence and remediated, is the operative defense against sector non-compliance.