Earlier quoted context omitted.
Which require compliance with them. If you work at a company that cares to actually comply they will. I luckily work somewhere where it's taken seriously. But it's shockingly easy not to and auditors couldn't possibly catch all of the instances of non-compliance
>> But it's shockingly easy not to and auditors couldn't possibly catch all of the instances of non-compliance Regulations are usually backwards looking. So at least we never get Enron/GlobalCrossing/etc again. Then another waves of crises happen, and we get new regulations. So Fannie/Freddie happened in 2004-2007 and we got brightline guidance and application of FAS91 and EITF-9920. So then AIG/Lehman/Bear happened…
The correct way to think about it is scammers versus law makers.
Scammers are both trying to scam and also to blend in.
So it's hard at first to draw lines.
Them the lines burst onto the scene, when scammers become obvious.
So law makers write that up, and scammers have to find something new.