A Study: Cost of Non-Compliance | ComplianceBridge

A Study: Cost of Non-Compliance

Written by ComplianceBridge Policies & Procedures Team | Last Modified on June 19, 2016

In January of 2011, the Ponemon Institute LLC conducted a study of 46 multinational companies to determine both the costs of Compliance and Non-Compliance. This was “the first study to use empirical data to estimate the full costs of the organizations compliance efforts, including the cost of non-compliance with laws, regulations, and policies. Here are some highlights from the study:

Costs of Compliance vs Non Compliance

  • The average cost of Compliance for the 46 companies was 3.5 million- or about $220.00 per employee per year.
  • The average cost of Non-Compliance for the 46 companies was 9.3 million- or about $820.00 per employee per year
  • On average, the cost of Non-Compliance is about 2.65 the cost of Compliance for the 46 companies.
  • In all but 2 cases, Non-Compliance costs outweighed Compliance costs.

ComplianceNonCompliance

Security Strategy and Non-Compliance Costs

  1. The study used a well known indexing method called the Security Effectiveness Score (SES). They found that;
    • The SES had no relation to Compliance costs.
    • The SES is inversely related to Non-Compliance costs
  2. Outcome: When an organization spends more money on SES costs, Non-Compliance costs go down.

Breakdown of Non-Compliance Costs

  1. 43% of Non-Compliance Costs are Indirect Costs. Indirect costs include data center downtime, diminished employee productivity, or administrative overhead.
  2. 30% of Non-Compliance Costs are Opportunity Costs. Reduced potential, lost business opportunities that result from compliance infractions, or a companies reduced reputation are all opportunity costs.
  3. 27% of Non-Compliance Costs are Direct Costs. Direct costs from non-compliance include loss in customers or revenue loss.
mm

Written by ComplianceBridge Policies & Procedures Team

The ComplianceBridge Team has more than a decade of experience in compliance management and solution development. We cover stories of interest to Compliance Officers and provide tips and tricks for maximizing compliance.

Share this blog

Get an Instant Demo

Find out what ComplianceBridge has to offer in our two-minute demo.

Watch Demo Now