RCMS Compliance Reporting & Documentation 2 — Questions and Answers
Question 1: Which compliance metric most directly measures the effectiveness of a compliance program?
- Total number of compliance policies in place
- Dollar amount of regulatory fines paid in the prior year
- Rate at which identified violations are remediated within defined timelines (Correct answer)
- Size of the compliance department relative to total headcount
Correct answer: Rate at which identified violations are remediated within defined timelines
Remediation rate measures whether identified compliance failures are actually being resolved, making it a direct outcome-based indicator of program effectiveness.
Question 2: When preparing a compliance report for the Board of Directors, what level of detail is most appropriate?
- Detailed technical findings for each compliance test performed
- Line-by-line analysis of all applicable regulatory requirements
- High-level summary of key risks, metrics, and material compliance issues (Correct answer)
- Complete audit work papers including all supporting documentation
Correct answer: High-level summary of key risks, metrics, and material compliance issues
Board-level compliance reports should provide high-level summaries of material risks, key performance metrics, and significant issues to support informed oversight without overwhelming directors with operational detail.
Question 3: A Key Risk Indicator (KRI) in compliance reporting is best described as which of the following?
- A metric that documents past compliance failures for historical reference
- A forward-looking metric that signals potential increases in compliance risk (Correct answer)
- A comprehensive list of all regulatory requirements applicable to the organization
- A summary report of completed compliance training activities
Correct answer: A forward-looking metric that signals potential increases in compliance risk
KRIs are forward-looking metrics designed to provide early warning signals of increasing compliance risk, enabling proactive intervention before violations occur.
Question 4: What is the primary function of a compliance dashboard in a reporting framework?
- It replaces the need for direct compliance officer review and judgment
- It provides real-time or near-real-time visibility into compliance metrics and program status (Correct answer)
- It automatically generates and submits required regulatory filings
- It documents the complete historical log of all regulatory changes
Correct answer: It provides real-time or near-real-time visibility into compliance metrics and program status
A compliance dashboard aggregates key metrics and status indicators to give management timely, consolidated visibility into the organization's compliance posture across multiple risk areas.
Question 5: Under the Dodd-Frank Act, which entities are required to file annual compliance reports with their applicable regulator?
- All U.S. corporations with more than 500 employees
- Swap dealers and major swap participants registered with the CFTC (Correct answer)
- Only federally chartered national banks
- All publicly traded companies listed on U.S. exchanges
Correct answer: Swap dealers and major swap participants registered with the CFTC
Dodd-Frank requires CFTC-registered swap dealers and major swap participants to file annual compliance reports demonstrating adherence to applicable regulations.
Question 6: In the 'three lines of defense' model, how does it most directly affect compliance reporting responsibilities?
- It determines who has authority to sign off on regulatory filings
- It establishes distinct accountability and escalation paths for reporting compliance issues (Correct answer)
- It sets the required frequency for board-level compliance reports
- It defines the approved format and template for all compliance documentation
Correct answer: It establishes distinct accountability and escalation paths for reporting compliance issues
The three lines model clarifies that the business (1st line), compliance function (2nd line), and internal audit (3rd line) each have distinct and non-overlapping reporting responsibilities and escalation paths.
Question 7: A Currency Transaction Report (CTR) must be filed with FinCEN within what timeframe following a qualifying cash transaction?
- Within 5 business days of the transaction
- Within 30 calendar days of detecting suspicious activity
- Within 15 calendar days of the cash transaction exceeding $10,000 (Correct answer)
- Within 24 hours for transactions exceeding $50,000
Correct answer: Within 15 calendar days of the cash transaction exceeding $10,000
The Bank Secrecy Act requires financial institutions to file CTRs with FinCEN within 15 calendar days of a covered cash transaction occurring.
Which compliance metric most directly measures the effectiveness of a compliance program?