Regulatory compliance
Organizational adherence to laws, policies, and regulations.
Regulatory compliance describes the goal that organizations aspire to achieve in their efforts to ensure that they are aware of and take steps to comply with relevant laws, policies, and regulations. Due to the increasing number of regulations and need for operational transparency, organizations are increasingly adopting the use of consolidated and harmonized sets of compliance controls. This approach is used to ensure that all necessary governance requirements can be met without the unnecessary duplication of effort and activity from resources. Regulatory compliance varies not only by industry but often by location, with financial, research, and pharmaceutical regulatory structures in one country often similar but with particularly different nuances in another country.
- field
- Regulatory compliance
- known_for
- Ensuring organizations meet legal, policy, and regulatory requirements across industries and nations
- key_regulators_example
- APRA (Australia), OSFI (Canada), Dutch Central Bank (Netherlands)
- related_frameworks
- COBIT, NIST, PCI-DSS, GLBA, FISMA, HACCP, HIPAA
Lore & Background
Regulatory compliance has traditionally been explained by reference to deterrence theory, according to which punishing a behavior will decrease violations both by the wrongdoer (specific deterrence) and by others (general deterrence). This view has been supported by economic theory, which has framed punishment in terms of costs and has explained compliance in terms of a cost-benefit equilibrium. However, psychological research on motivation provides an alternative view: granting rewards or imposing fines for a certain behavior is a form of extrinsic motivation that weakens intrinsic motivation and ultimately undermines compliance.
Reader's Guide
Regulatory compliance is a critical function for organizations worldwide, shaped by a mix of deterrence theory, economic cost-benefit analysis, and psychological insights into motivation. The field has evolved to include consolidated and harmonized sets of compliance controls to avoid duplication of effort. Compliance varies by nation and industry, with examples including financial regulators like Australia's APRA, Canada's OSFI, and the Netherlands' Dutch Central Bank, as well as sector-specific frameworks such as PCI-DSS, HIPAA, and HACCP. Organizations increasingly use compliance software and separate data stores to manage reporting requirements and audit trails. Non-compliance can lead to fines, product recalls, or restrictions on market access, making effective compliance management essential for operational transparency and legal adherence.
Did You Know?
- Psychological research suggests that imposing fines or granting rewards can weaken intrinsic motivation and ultimately undermine compliance.
- Canada does not have a securities regulatory authority at the federal government level; provincial and territorial regulators coordinate through the Canadian Securities Administrators.
- The General Product Safety Regulation (GPSR) in the European Union requires online marketplaces to ensure only compliant products are listed.
More in Public Law 1-24
Elsewhere in the Public Law universe
Spotted an error? Know more?
This is a living reference — every entry is fact-audited, and reader corrections feed straight into our audit queue. Suggest an edit · See this site's audit record
