SlideShare a Scribd company logo
1 of 7
Towards a Compliance Capability
Nikat Malik
January 2014
All Rights Reserved
Compliance Capability
Compliance Capability - Principles
Compliance Capability
End-to End View of the process path encompassing the business life cycle to completion. This will provide
effective compliance control of functional business processes and activities along the desired path.
Ownership of the compliance process must be explicitly clear and accountability held from leadership
through to operational level.
Compliance processes should be positioned at forefront of business functions , not as an after event.
Regulatory and compliance requirements should be addressed as part of the business operating model in
a partnering approach to be effective.
The compliance function together with processes should be fully automated to account for operational
risk and efficiency.
Compliance processes should be identified and integrated into the transaction life cycle route for
comprehensive control and to ensure business processes are compliant with requirements.
Consistency of controls and procedures should be maintained at both strategic and operational level with
change methodology applied judiciously.
High risk audit points must be examined across business processes and controls applied adequately.
Clear escalation path for efficient resolution must be put in place to ensure efficient business operations.
Compliance Capability – Applied Methodology
Compliance Capability
Understand business model and strategic objectives comprising of profit model,
customer model, product model and control model.
Evaluate impact of regulation and compliance requirements on business model.
Develop and confirm integrated operating model.
Undertake self assessment to identify compliance capability and its strengths and
weaknesses.
Identify gaps in specific level of capability required.
Develop the capability framework...
In reference to ….
• Business Context
• Operating Environment
• Customer Base
• Risk Appetite
• Technology
Comprising ….
• Behaviour
• Performance
• Conduct
• Skills Training
• Systems Required
Compliance Capability – Self Assessment (1 of 2)
Compliance Capability
Objectives
• To identify levels of capability required in light of operating environment and regulatory demands
in local, regions and host country
• To assess current compliance standards
• To proactively manage risk exposures
• To define target state to fulfil business objectives
Self Assessment is completed through facilitated expert judgement that considers risk and controls information to
define a set of impacts and directive efforts
Risk and Control Framework
• Money Laundering
• Sanctions
• Bribery
• Terrorist Financing
• PEP Finance/Payments
• Cross Border Breech
• Unlawful Payments
• Conduct / Mis-Selling
• Client Identification
• Fraud & Security
Regulatory Risks Risk & Control Assessment
Key Indicators
Internal Incidents
External Events
Expected Loss
Self Assessment
Results
Financial & Reputation Impact
Proactive &
Remedial
Action
Governance Identify Risk Appetite Assess Control Report
Compliance Capability – Self Assessment (2 of 2)
Compliance Capability
Self Assessment Process
Scope Build Assess Validate
• Develop draft Self
Assessment
Questionnaire for
each risk including
drivers and impacts
• Ensure appropriate
involvement from
functional experts,
businesses and legal
• Agree audit and
compliance points for
each risk by business /
country
• Plan Self Assessment
workshops and
attendees
• Leadership provided
by Group Risk &
Compliance
Committee and Self
Assessment Task Force
• Involvement and input
from Business and
Global Functions
• Agreement on Risks to
be included and
Businesses to cover
• Assess impact of
questionnaire results
• Assessment to include
an assessment of local
controls and
management actions
required taking into
account risk appetite
• Undertake impact
assessment for all
possible scenarios incl.
typical and rare events
• Validate impact of risk
and functional review
• Undertake
quantitative validation
incl. severity and
benchmarking
• Action Plan to Group
Risk & Compliance
Committee
• Annual model review
Compliance Capability – Structure
Compliance Capability
Front Office Mid Office Back Office
Customer Centric Control Centric Service Centric
Prevention Investigation Detection
EntityFocusRoleComplianceRequirements
KYC / KYCC
FATCA
CDD / PDD / EDD
SANCTIONS
ATF
ABC
AML
C/P FRAUD
DODD FRANK
EMIR
BCBS 248
BASEL
FDSF / Stress Test
MIFIR
BCBS 239
COREP / FINREP
SOX
FRAUD – Internal
SECURITY
Compliance Capability – In Action
Trade Management Process, an example
Customer
Management
Trade
Validation
Trade
Execution
Trade
Processing
Clearing &
Settlement
Compliance &
Accounting
Checks:
•Terms & product
•Legal Agreement
•Credit Limit
•Collateral
•Margin
Addl. Compliance
Control Checks:
•Sanctions
•KYCC
•FATCA
•CDD
•ATF
•AML
•Customer/Country
Risk Rating
•Capital/Liquidity
•Matching
•Confirmation
•Allocation
•Booking
•Netting
•Exposure
Management
•Pricing
•Valuation
•Analytics
•Portfolio Position
•Trade Initiation
•Relationship
Management
•Client On
Boarding
•Limit Setting
•Payment
•Settlement
•Custody
•Exchange
•Collateral
Management
•P/L
•Counter Party
Management
•Regulatory
Reporting
•Compliance
Control
CurrentStateTargetStateProcess
“ “ “ “ “
Trade Compliance Committee –
escalation & governance procedure to manage Alerts & Suspicious Activity for timely clearance and resolution
Value Statement
Positions compliance at forefront of business process
Mitigates risk at potential point of occurrence
Real time feedback result
Ease of monitoring & efficient control
Clean data ensures accuracy
Compliance Capability

More Related Content

What's hot

Governance risk and compliance
Governance risk and complianceGovernance risk and compliance
Governance risk and complianceMagdalena Matell
 
Internal audit
Internal auditInternal audit
Internal auditHpm India
 
Quality Management System PowerPoint Presentation Slide
Quality Management System PowerPoint Presentation Slide  Quality Management System PowerPoint Presentation Slide
Quality Management System PowerPoint Presentation Slide SlideTeam
 
SOC-2 Framework - Plan, Budget, Design, Integrate & Audit Security Controls
SOC-2 Framework - Plan, Budget, Design, Integrate & Audit Security ControlsSOC-2 Framework - Plan, Budget, Design, Integrate & Audit Security Controls
SOC-2 Framework - Plan, Budget, Design, Integrate & Audit Security ControlsMark S. Mahre
 
Process Mining: Konzept und Anwendung
Process Mining: Konzept und AnwendungProcess Mining: Konzept und Anwendung
Process Mining: Konzept und AnwendungMichael Groeschel
 
AML and Compliance Analytics
AML and Compliance Analytics AML and Compliance Analytics
AML and Compliance Analytics Naveen Grover
 
ISO 9001:2015 Awareness Training
ISO 9001:2015 Awareness TrainingISO 9001:2015 Awareness Training
ISO 9001:2015 Awareness TrainingANUPAM RAY
 
Operational Risk : Take a look at the raw canvas
Operational Risk : Take a look at the raw canvasOperational Risk : Take a look at the raw canvas
Operational Risk : Take a look at the raw canvasTreat Risk
 
Typical Quality Management System Based On Iso 9001 2008
Typical Quality Management System Based On Iso 9001 2008Typical Quality Management System Based On Iso 9001 2008
Typical Quality Management System Based On Iso 9001 2008Isidro Sid Calayag
 
Corrective Actions and Risk management for ISO 9001:2015
Corrective Actions and Risk management for ISO 9001:2015Corrective Actions and Risk management for ISO 9001:2015
Corrective Actions and Risk management for ISO 9001:2015sundaybizsys
 
ISO Implementation Roadmap- By Motaharul Islam
ISO Implementation Roadmap- By Motaharul IslamISO Implementation Roadmap- By Motaharul Islam
ISO Implementation Roadmap- By Motaharul IslamMotaharul Islam
 
Introduction to AIAG & VDA FMEA.pdf
Introduction to AIAG & VDA FMEA.pdfIntroduction to AIAG & VDA FMEA.pdf
Introduction to AIAG & VDA FMEA.pdfsachin05101
 
Internal Audit 03-03-16
Internal Audit 03-03-16Internal Audit 03-03-16
Internal Audit 03-03-16Lisa Barnes
 
Mitra matra iatf for honda volume 1
Mitra matra iatf for honda volume 1Mitra matra iatf for honda volume 1
Mitra matra iatf for honda volume 1DANANG WID
 
QMS Principles ISO 9001 2015
QMS Principles ISO 9001 2015QMS Principles ISO 9001 2015
QMS Principles ISO 9001 2015Kranthi Rainbow
 

What's hot (20)

Governance risk and compliance
Governance risk and complianceGovernance risk and compliance
Governance risk and compliance
 
Internal audit
Internal auditInternal audit
Internal audit
 
Quality Management System PowerPoint Presentation Slide
Quality Management System PowerPoint Presentation Slide  Quality Management System PowerPoint Presentation Slide
Quality Management System PowerPoint Presentation Slide
 
SOC-2 Framework - Plan, Budget, Design, Integrate & Audit Security Controls
SOC-2 Framework - Plan, Budget, Design, Integrate & Audit Security ControlsSOC-2 Framework - Plan, Budget, Design, Integrate & Audit Security Controls
SOC-2 Framework - Plan, Budget, Design, Integrate & Audit Security Controls
 
Process Mining: Konzept und Anwendung
Process Mining: Konzept und AnwendungProcess Mining: Konzept und Anwendung
Process Mining: Konzept und Anwendung
 
AML and Compliance Analytics
AML and Compliance Analytics AML and Compliance Analytics
AML and Compliance Analytics
 
ISO 9001:2015 Awareness Training
ISO 9001:2015 Awareness TrainingISO 9001:2015 Awareness Training
ISO 9001:2015 Awareness Training
 
qms.pptx
qms.pptxqms.pptx
qms.pptx
 
Risk based approach
Risk based approachRisk based approach
Risk based approach
 
Operational Risk : Take a look at the raw canvas
Operational Risk : Take a look at the raw canvasOperational Risk : Take a look at the raw canvas
Operational Risk : Take a look at the raw canvas
 
Typical Quality Management System Based On Iso 9001 2008
Typical Quality Management System Based On Iso 9001 2008Typical Quality Management System Based On Iso 9001 2008
Typical Quality Management System Based On Iso 9001 2008
 
Corrective Actions and Risk management for ISO 9001:2015
Corrective Actions and Risk management for ISO 9001:2015Corrective Actions and Risk management for ISO 9001:2015
Corrective Actions and Risk management for ISO 9001:2015
 
What is BPM?
What is BPM?What is BPM?
What is BPM?
 
ISO Implementation Roadmap- By Motaharul Islam
ISO Implementation Roadmap- By Motaharul IslamISO Implementation Roadmap- By Motaharul Islam
ISO Implementation Roadmap- By Motaharul Islam
 
Itil 4 34 Management Practices
Itil 4 34 Management PracticesItil 4 34 Management Practices
Itil 4 34 Management Practices
 
Introduction to AIAG & VDA FMEA.pdf
Introduction to AIAG & VDA FMEA.pdfIntroduction to AIAG & VDA FMEA.pdf
Introduction to AIAG & VDA FMEA.pdf
 
Internal Audit 03-03-16
Internal Audit 03-03-16Internal Audit 03-03-16
Internal Audit 03-03-16
 
Mitra matra iatf for honda volume 1
Mitra matra iatf for honda volume 1Mitra matra iatf for honda volume 1
Mitra matra iatf for honda volume 1
 
ISO 9001/14001/45001 requirements comparison
ISO 9001/14001/45001 requirements comparisonISO 9001/14001/45001 requirements comparison
ISO 9001/14001/45001 requirements comparison
 
QMS Principles ISO 9001 2015
QMS Principles ISO 9001 2015QMS Principles ISO 9001 2015
QMS Principles ISO 9001 2015
 

Viewers also liked

Anti Money Laundering Framework
Anti Money Laundering FrameworkAnti Money Laundering Framework
Anti Money Laundering Frameworknikatmalik
 
Creating a compliance assessment program on a tight budget
Creating a compliance assessment program on a tight budgetCreating a compliance assessment program on a tight budget
Creating a compliance assessment program on a tight budgetAshley Deuble
 
Risk assessment for_small_business_-_be_smart
Risk assessment for_small_business_-_be_smartRisk assessment for_small_business_-_be_smart
Risk assessment for_small_business_-_be_smartRana Daniyal
 
Operational innovations in AML/CFT compliance processes and financial inclus...
Operational innovations in AML/CFT  compliance processes and financial inclus...Operational innovations in AML/CFT  compliance processes and financial inclus...
Operational innovations in AML/CFT compliance processes and financial inclus...CGAP
 
The Challenges of Managing a Global AML Program
The Challenges of Managing a Global AML Program The Challenges of Managing a Global AML Program
The Challenges of Managing a Global AML Program jennyhollingworth
 
StubbsGazette Anti-Money Laundering Workshop presentation
StubbsGazette Anti-Money Laundering Workshop presentationStubbsGazette Anti-Money Laundering Workshop presentation
StubbsGazette Anti-Money Laundering Workshop presentationStubbsGazette
 
mr neeraj - day 2 - aml kyc
mr neeraj - day 2 - aml kycmr neeraj - day 2 - aml kyc
mr neeraj - day 2 - aml kycNeeraj Verma
 
Exposure Measurement
Exposure MeasurementExposure Measurement
Exposure Measurementnikatmalik
 
Regulatory Risk
Regulatory RiskRegulatory Risk
Regulatory Risknikatmalik
 
Lean Transformation
Lean TransformationLean Transformation
Lean Transformationnikatmalik
 
Data Managment
Data ManagmentData Managment
Data Managmentnikatmalik
 
Credit Value Adjustment
Credit Value AdjustmentCredit Value Adjustment
Credit Value Adjustmentnikatmalik
 
Test Automation
Test AutomationTest Automation
Test Automationnikatmalik
 
BCBS 261 - Collateral and Margin Management for Uncleared Derivatives
BCBS 261 -  Collateral and Margin Management for Uncleared DerivativesBCBS 261 -  Collateral and Margin Management for Uncleared Derivatives
BCBS 261 - Collateral and Margin Management for Uncleared Derivativesnikatmalik
 
BCBS 248 - Intraday Liquidity Management
BCBS 248 - Intraday Liquidity ManagementBCBS 248 - Intraday Liquidity Management
BCBS 248 - Intraday Liquidity Managementnikatmalik
 
2015 09-22 Is it time for a Security and Compliance Assessment?
2015 09-22 Is it time for a Security and Compliance Assessment?2015 09-22 Is it time for a Security and Compliance Assessment?
2015 09-22 Is it time for a Security and Compliance Assessment?Raffa Learning Community
 
LT-Innovate OSCAR Open Standards Compliance Assessment Report Project
LT-Innovate OSCAROpen Standards Compliance Assessment Report ProjectLT-Innovate OSCAROpen Standards Compliance Assessment Report Project
LT-Innovate OSCAR Open Standards Compliance Assessment Report ProjectSerge Gladkoff
 
Scce webinar assessment_061316
Scce webinar assessment_061316Scce webinar assessment_061316
Scce webinar assessment_061316Eric Morehead
 

Viewers also liked (20)

Anti Money Laundering Framework
Anti Money Laundering FrameworkAnti Money Laundering Framework
Anti Money Laundering Framework
 
Creating a compliance assessment program on a tight budget
Creating a compliance assessment program on a tight budgetCreating a compliance assessment program on a tight budget
Creating a compliance assessment program on a tight budget
 
Risk assessment for_small_business_-_be_smart
Risk assessment for_small_business_-_be_smartRisk assessment for_small_business_-_be_smart
Risk assessment for_small_business_-_be_smart
 
Operational innovations in AML/CFT compliance processes and financial inclus...
Operational innovations in AML/CFT  compliance processes and financial inclus...Operational innovations in AML/CFT  compliance processes and financial inclus...
Operational innovations in AML/CFT compliance processes and financial inclus...
 
Compliance Risk Assessment
Compliance Risk AssessmentCompliance Risk Assessment
Compliance Risk Assessment
 
The Challenges of Managing a Global AML Program
The Challenges of Managing a Global AML Program The Challenges of Managing a Global AML Program
The Challenges of Managing a Global AML Program
 
StubbsGazette Anti-Money Laundering Workshop presentation
StubbsGazette Anti-Money Laundering Workshop presentationStubbsGazette Anti-Money Laundering Workshop presentation
StubbsGazette Anti-Money Laundering Workshop presentation
 
mr neeraj - day 2 - aml kyc
mr neeraj - day 2 - aml kycmr neeraj - day 2 - aml kyc
mr neeraj - day 2 - aml kyc
 
Exposure Measurement
Exposure MeasurementExposure Measurement
Exposure Measurement
 
Regulatory Risk
Regulatory RiskRegulatory Risk
Regulatory Risk
 
Lean Transformation
Lean TransformationLean Transformation
Lean Transformation
 
Data Managment
Data ManagmentData Managment
Data Managment
 
Credit Value Adjustment
Credit Value AdjustmentCredit Value Adjustment
Credit Value Adjustment
 
Test Automation
Test AutomationTest Automation
Test Automation
 
BCBS 261 - Collateral and Margin Management for Uncleared Derivatives
BCBS 261 -  Collateral and Margin Management for Uncleared DerivativesBCBS 261 -  Collateral and Margin Management for Uncleared Derivatives
BCBS 261 - Collateral and Margin Management for Uncleared Derivatives
 
BCBS 248 - Intraday Liquidity Management
BCBS 248 - Intraday Liquidity ManagementBCBS 248 - Intraday Liquidity Management
BCBS 248 - Intraday Liquidity Management
 
Basel III
Basel IIIBasel III
Basel III
 
2015 09-22 Is it time for a Security and Compliance Assessment?
2015 09-22 Is it time for a Security and Compliance Assessment?2015 09-22 Is it time for a Security and Compliance Assessment?
2015 09-22 Is it time for a Security and Compliance Assessment?
 
LT-Innovate OSCAR Open Standards Compliance Assessment Report Project
LT-Innovate OSCAROpen Standards Compliance Assessment Report ProjectLT-Innovate OSCAROpen Standards Compliance Assessment Report Project
LT-Innovate OSCAR Open Standards Compliance Assessment Report Project
 
Scce webinar assessment_061316
Scce webinar assessment_061316Scce webinar assessment_061316
Scce webinar assessment_061316
 

Similar to Compliance Capability

Internal Audit Strategic Framework
Internal Audit Strategic FrameworkInternal Audit Strategic Framework
Internal Audit Strategic FrameworkJeremy Cheng
 
Risk Based Approach to Auditing Financial Statements.pptx
Risk Based Approach to Auditing Financial Statements.pptxRisk Based Approach to Auditing Financial Statements.pptx
Risk Based Approach to Auditing Financial Statements.pptxhesnib
 
Internal audit RBIA and Lifecyle approach
Internal audit RBIA and Lifecyle approachInternal audit RBIA and Lifecyle approach
Internal audit RBIA and Lifecyle approachsubbusai82
 
What do the changes to ISO14001 mean for business?
What do the changes to ISO14001 mean for business? What do the changes to ISO14001 mean for business?
What do the changes to ISO14001 mean for business? Ardea International
 
kainat aiman wajiha QUALITY ,MANAGEW,MANE TO.pptx
kainat aiman wajiha QUALITY ,MANAGEW,MANE TO.pptxkainat aiman wajiha QUALITY ,MANAGEW,MANE TO.pptx
kainat aiman wajiha QUALITY ,MANAGEW,MANE TO.pptxalihassanfarooq19
 
Covering Your Bases McDonald
Covering Your Bases McDonaldCovering Your Bases McDonald
Covering Your Bases McDonaldEDR
 
Operational Risk | Assessing and Mitigating Operational Risk in a Changing En...
Operational Risk | Assessing and Mitigating Operational Risk in a Changing En...Operational Risk | Assessing and Mitigating Operational Risk in a Changing En...
Operational Risk | Assessing and Mitigating Operational Risk in a Changing En...NICSA
 
Audit practice manual of ICMA Pakistan By: Tariq Mahmood FCA, ACMA
Audit practice manual of ICMA Pakistan By: Tariq Mahmood FCA, ACMAAudit practice manual of ICMA Pakistan By: Tariq Mahmood FCA, ACMA
Audit practice manual of ICMA Pakistan By: Tariq Mahmood FCA, ACMAmichrist75
 
Best Practices & Considerations in “IT Suppliers Audit”
Best Practices & Considerations in “IT Suppliers Audit”Best Practices & Considerations in “IT Suppliers Audit”
Best Practices & Considerations in “IT Suppliers Audit”Shankar Subramaniyan
 
Quality Assurance in Aviation
Quality Assurance in AviationQuality Assurance in Aviation
Quality Assurance in AviationSeema Zaman
 
BCM Institute MTE Jeremy Wong - Business Continuty Management Benchmarking i...
BCM Institute MTE  Jeremy Wong - Business Continuty Management Benchmarking i...BCM Institute MTE  Jeremy Wong - Business Continuty Management Benchmarking i...
BCM Institute MTE Jeremy Wong - Business Continuty Management Benchmarking i...BCM Institute
 
Danforth Intl Presentation
Danforth Intl PresentationDanforth Intl Presentation
Danforth Intl Presentationkendan4th
 
Outsourcing and Vendor management
Outsourcing and Vendor managementOutsourcing and Vendor management
Outsourcing and Vendor managementRaminder Pal Singh
 
Head of Internal Audit & Compliance Department -Muath Ahmad
Head of Internal Audit & Compliance Department -Muath AhmadHead of Internal Audit & Compliance Department -Muath Ahmad
Head of Internal Audit & Compliance Department -Muath AhmadMuath Ahmad
 
Compliance program requirements for the Volcker Rule of the Dodd-Frank Act
Compliance program requirements for the Volcker Rule of the Dodd-Frank ActCompliance program requirements for the Volcker Rule of the Dodd-Frank Act
Compliance program requirements for the Volcker Rule of the Dodd-Frank ActGrant Thornton LLP
 
Internal Control
Internal ControlInternal Control
Internal ControlSalih Islam
 
Best Practices For Identifying Offshore Vendors
Best Practices For Identifying Offshore VendorsBest Practices For Identifying Offshore Vendors
Best Practices For Identifying Offshore VendorsD2E CONSULTING
 

Similar to Compliance Capability (20)

Internal Audit Strategic Framework
Internal Audit Strategic FrameworkInternal Audit Strategic Framework
Internal Audit Strategic Framework
 
SFC Plan of engagement
SFC Plan of engagementSFC Plan of engagement
SFC Plan of engagement
 
Risk Based Approach to Auditing Financial Statements.pptx
Risk Based Approach to Auditing Financial Statements.pptxRisk Based Approach to Auditing Financial Statements.pptx
Risk Based Approach to Auditing Financial Statements.pptx
 
Internal audit RBIA and Lifecyle approach
Internal audit RBIA and Lifecyle approachInternal audit RBIA and Lifecyle approach
Internal audit RBIA and Lifecyle approach
 
What do the changes to ISO14001 mean for business?
What do the changes to ISO14001 mean for business? What do the changes to ISO14001 mean for business?
What do the changes to ISO14001 mean for business?
 
kainat aiman wajiha QUALITY ,MANAGEW,MANE TO.pptx
kainat aiman wajiha QUALITY ,MANAGEW,MANE TO.pptxkainat aiman wajiha QUALITY ,MANAGEW,MANE TO.pptx
kainat aiman wajiha QUALITY ,MANAGEW,MANE TO.pptx
 
Covering Your Bases McDonald
Covering Your Bases McDonaldCovering Your Bases McDonald
Covering Your Bases McDonald
 
Operational Risk | Assessing and Mitigating Operational Risk in a Changing En...
Operational Risk | Assessing and Mitigating Operational Risk in a Changing En...Operational Risk | Assessing and Mitigating Operational Risk in a Changing En...
Operational Risk | Assessing and Mitigating Operational Risk in a Changing En...
 
Audit practice manual of ICMA Pakistan By: Tariq Mahmood FCA, ACMA
Audit practice manual of ICMA Pakistan By: Tariq Mahmood FCA, ACMAAudit practice manual of ICMA Pakistan By: Tariq Mahmood FCA, ACMA
Audit practice manual of ICMA Pakistan By: Tariq Mahmood FCA, ACMA
 
Erm talking points
Erm talking pointsErm talking points
Erm talking points
 
Best Practices & Considerations in “IT Suppliers Audit”
Best Practices & Considerations in “IT Suppliers Audit”Best Practices & Considerations in “IT Suppliers Audit”
Best Practices & Considerations in “IT Suppliers Audit”
 
Quality Assurance in Aviation
Quality Assurance in AviationQuality Assurance in Aviation
Quality Assurance in Aviation
 
BCM Institute MTE Jeremy Wong - Business Continuty Management Benchmarking i...
BCM Institute MTE  Jeremy Wong - Business Continuty Management Benchmarking i...BCM Institute MTE  Jeremy Wong - Business Continuty Management Benchmarking i...
BCM Institute MTE Jeremy Wong - Business Continuty Management Benchmarking i...
 
Danforth Intl Presentation
Danforth Intl PresentationDanforth Intl Presentation
Danforth Intl Presentation
 
Outsourcing and Vendor management
Outsourcing and Vendor managementOutsourcing and Vendor management
Outsourcing and Vendor management
 
Head of Internal Audit & Compliance Department -Muath Ahmad
Head of Internal Audit & Compliance Department -Muath AhmadHead of Internal Audit & Compliance Department -Muath Ahmad
Head of Internal Audit & Compliance Department -Muath Ahmad
 
Compliance program requirements for the Volcker Rule of the Dodd-Frank Act
Compliance program requirements for the Volcker Rule of the Dodd-Frank ActCompliance program requirements for the Volcker Rule of the Dodd-Frank Act
Compliance program requirements for the Volcker Rule of the Dodd-Frank Act
 
Internal Control
Internal ControlInternal Control
Internal Control
 
Bilal ACCA CV
Bilal ACCA CVBilal ACCA CV
Bilal ACCA CV
 
Best Practices For Identifying Offshore Vendors
Best Practices For Identifying Offshore VendorsBest Practices For Identifying Offshore Vendors
Best Practices For Identifying Offshore Vendors
 

More from nikatmalik

BCBS 239 - Risk Data Adequacy
BCBS 239 - Risk Data AdequacyBCBS 239 - Risk Data Adequacy
BCBS 239 - Risk Data Adequacynikatmalik
 
Stress Testing
Stress TestingStress Testing
Stress Testingnikatmalik
 
Liquidity Risk
Liquidity RiskLiquidity Risk
Liquidity Risknikatmalik
 
Interest Rate Risk
Interest Rate Risk Interest Rate Risk
Interest Rate Risk nikatmalik
 
Collateral Management
Collateral ManagementCollateral Management
Collateral Managementnikatmalik
 
Applied Risk Process Model
Applied Risk Process ModelApplied Risk Process Model
Applied Risk Process Modelnikatmalik
 
Central Counterparty Clearing
Central Counterparty ClearingCentral Counterparty Clearing
Central Counterparty Clearingnikatmalik
 

More from nikatmalik (8)

FRTB
FRTBFRTB
FRTB
 
BCBS 239 - Risk Data Adequacy
BCBS 239 - Risk Data AdequacyBCBS 239 - Risk Data Adequacy
BCBS 239 - Risk Data Adequacy
 
Stress Testing
Stress TestingStress Testing
Stress Testing
 
Liquidity Risk
Liquidity RiskLiquidity Risk
Liquidity Risk
 
Interest Rate Risk
Interest Rate Risk Interest Rate Risk
Interest Rate Risk
 
Collateral Management
Collateral ManagementCollateral Management
Collateral Management
 
Applied Risk Process Model
Applied Risk Process ModelApplied Risk Process Model
Applied Risk Process Model
 
Central Counterparty Clearing
Central Counterparty ClearingCentral Counterparty Clearing
Central Counterparty Clearing
 

Recently uploaded

原版1:1复刻温哥华岛大学毕业证Vancouver毕业证留信学历认证
原版1:1复刻温哥华岛大学毕业证Vancouver毕业证留信学历认证原版1:1复刻温哥华岛大学毕业证Vancouver毕业证留信学历认证
原版1:1复刻温哥华岛大学毕业证Vancouver毕业证留信学历认证rjrjkk
 
Ch 4 investment Intermediate financial Accounting
Ch 4 investment Intermediate financial AccountingCh 4 investment Intermediate financial Accounting
Ch 4 investment Intermediate financial AccountingAbdi118682
 
(办理原版一样)QUT毕业证昆士兰科技大学毕业证学位证留信学历认证成绩单补办
(办理原版一样)QUT毕业证昆士兰科技大学毕业证学位证留信学历认证成绩单补办(办理原版一样)QUT毕业证昆士兰科技大学毕业证学位证留信学历认证成绩单补办
(办理原版一样)QUT毕业证昆士兰科技大学毕业证学位证留信学历认证成绩单补办fqiuho152
 
government_intervention_in_business_ownership[1].pdf
government_intervention_in_business_ownership[1].pdfgovernment_intervention_in_business_ownership[1].pdf
government_intervention_in_business_ownership[1].pdfshaunmashale756
 
chapter_2.ppt The labour market definitions and trends
chapter_2.ppt The labour market definitions and trendschapter_2.ppt The labour market definitions and trends
chapter_2.ppt The labour market definitions and trendslemlemtesfaye192
 
The Triple Threat | Article on Global Resession | Harsh Kumar
The Triple Threat | Article on Global Resession | Harsh KumarThe Triple Threat | Article on Global Resession | Harsh Kumar
The Triple Threat | Article on Global Resession | Harsh KumarHarsh Kumar
 
Bladex Earnings Call Presentation 1Q2024
Bladex Earnings Call Presentation 1Q2024Bladex Earnings Call Presentation 1Q2024
Bladex Earnings Call Presentation 1Q2024Bladex
 
(办理学位证)加拿大萨省大学毕业证成绩单原版一比一
(办理学位证)加拿大萨省大学毕业证成绩单原版一比一(办理学位证)加拿大萨省大学毕业证成绩单原版一比一
(办理学位证)加拿大萨省大学毕业证成绩单原版一比一S SDS
 
Tenets of Physiocracy History of Economic
Tenets of Physiocracy History of EconomicTenets of Physiocracy History of Economic
Tenets of Physiocracy History of Economiccinemoviesu
 
Bladex 1Q24 Earning Results Presentation
Bladex 1Q24 Earning Results PresentationBladex 1Q24 Earning Results Presentation
Bladex 1Q24 Earning Results PresentationBladex
 
(中央兰开夏大学毕业证学位证成绩单-案例)
(中央兰开夏大学毕业证学位证成绩单-案例)(中央兰开夏大学毕业证学位证成绩单-案例)
(中央兰开夏大学毕业证学位证成绩单-案例)twfkn8xj
 
letter-from-the-chair-to-the-fca-relating-to-british-steel-pensions-scheme-15...
letter-from-the-chair-to-the-fca-relating-to-british-steel-pensions-scheme-15...letter-from-the-chair-to-the-fca-relating-to-british-steel-pensions-scheme-15...
letter-from-the-chair-to-the-fca-relating-to-british-steel-pensions-scheme-15...Henry Tapper
 
Quantitative Analysis of Retail Sector Companies
Quantitative Analysis of Retail Sector CompaniesQuantitative Analysis of Retail Sector Companies
Quantitative Analysis of Retail Sector Companiesprashantbhati354
 
How Automation is Driving Efficiency Through the Last Mile of Reporting
How Automation is Driving Efficiency Through the Last Mile of ReportingHow Automation is Driving Efficiency Through the Last Mile of Reporting
How Automation is Driving Efficiency Through the Last Mile of ReportingAggregage
 
SBP-Market-Operations and market managment
SBP-Market-Operations and market managmentSBP-Market-Operations and market managment
SBP-Market-Operations and market managmentfactical
 
magnetic-pensions-a-new-blueprint-for-the-dc-landscape.pdf
magnetic-pensions-a-new-blueprint-for-the-dc-landscape.pdfmagnetic-pensions-a-new-blueprint-for-the-dc-landscape.pdf
magnetic-pensions-a-new-blueprint-for-the-dc-landscape.pdfHenry Tapper
 
Interimreport1 January–31 March2024 Elo Mutual Pension Insurance Company
Interimreport1 January–31 March2024 Elo Mutual Pension Insurance CompanyInterimreport1 January–31 March2024 Elo Mutual Pension Insurance Company
Interimreport1 January–31 March2024 Elo Mutual Pension Insurance CompanyTyöeläkeyhtiö Elo
 
House of Commons ; CDC schemes overview document
House of Commons ; CDC schemes overview documentHouse of Commons ; CDC schemes overview document
House of Commons ; CDC schemes overview documentHenry Tapper
 
Economic Risk Factor Update: April 2024 [SlideShare]
Economic Risk Factor Update: April 2024 [SlideShare]Economic Risk Factor Update: April 2024 [SlideShare]
Economic Risk Factor Update: April 2024 [SlideShare]Commonwealth
 

Recently uploaded (20)

原版1:1复刻温哥华岛大学毕业证Vancouver毕业证留信学历认证
原版1:1复刻温哥华岛大学毕业证Vancouver毕业证留信学历认证原版1:1复刻温哥华岛大学毕业证Vancouver毕业证留信学历认证
原版1:1复刻温哥华岛大学毕业证Vancouver毕业证留信学历认证
 
Ch 4 investment Intermediate financial Accounting
Ch 4 investment Intermediate financial AccountingCh 4 investment Intermediate financial Accounting
Ch 4 investment Intermediate financial Accounting
 
(办理原版一样)QUT毕业证昆士兰科技大学毕业证学位证留信学历认证成绩单补办
(办理原版一样)QUT毕业证昆士兰科技大学毕业证学位证留信学历认证成绩单补办(办理原版一样)QUT毕业证昆士兰科技大学毕业证学位证留信学历认证成绩单补办
(办理原版一样)QUT毕业证昆士兰科技大学毕业证学位证留信学历认证成绩单补办
 
government_intervention_in_business_ownership[1].pdf
government_intervention_in_business_ownership[1].pdfgovernment_intervention_in_business_ownership[1].pdf
government_intervention_in_business_ownership[1].pdf
 
🔝+919953056974 🔝young Delhi Escort service Pusa Road
🔝+919953056974 🔝young Delhi Escort service Pusa Road🔝+919953056974 🔝young Delhi Escort service Pusa Road
🔝+919953056974 🔝young Delhi Escort service Pusa Road
 
chapter_2.ppt The labour market definitions and trends
chapter_2.ppt The labour market definitions and trendschapter_2.ppt The labour market definitions and trends
chapter_2.ppt The labour market definitions and trends
 
The Triple Threat | Article on Global Resession | Harsh Kumar
The Triple Threat | Article on Global Resession | Harsh KumarThe Triple Threat | Article on Global Resession | Harsh Kumar
The Triple Threat | Article on Global Resession | Harsh Kumar
 
Bladex Earnings Call Presentation 1Q2024
Bladex Earnings Call Presentation 1Q2024Bladex Earnings Call Presentation 1Q2024
Bladex Earnings Call Presentation 1Q2024
 
(办理学位证)加拿大萨省大学毕业证成绩单原版一比一
(办理学位证)加拿大萨省大学毕业证成绩单原版一比一(办理学位证)加拿大萨省大学毕业证成绩单原版一比一
(办理学位证)加拿大萨省大学毕业证成绩单原版一比一
 
Tenets of Physiocracy History of Economic
Tenets of Physiocracy History of EconomicTenets of Physiocracy History of Economic
Tenets of Physiocracy History of Economic
 
Bladex 1Q24 Earning Results Presentation
Bladex 1Q24 Earning Results PresentationBladex 1Q24 Earning Results Presentation
Bladex 1Q24 Earning Results Presentation
 
(中央兰开夏大学毕业证学位证成绩单-案例)
(中央兰开夏大学毕业证学位证成绩单-案例)(中央兰开夏大学毕业证学位证成绩单-案例)
(中央兰开夏大学毕业证学位证成绩单-案例)
 
letter-from-the-chair-to-the-fca-relating-to-british-steel-pensions-scheme-15...
letter-from-the-chair-to-the-fca-relating-to-british-steel-pensions-scheme-15...letter-from-the-chair-to-the-fca-relating-to-british-steel-pensions-scheme-15...
letter-from-the-chair-to-the-fca-relating-to-british-steel-pensions-scheme-15...
 
Quantitative Analysis of Retail Sector Companies
Quantitative Analysis of Retail Sector CompaniesQuantitative Analysis of Retail Sector Companies
Quantitative Analysis of Retail Sector Companies
 
How Automation is Driving Efficiency Through the Last Mile of Reporting
How Automation is Driving Efficiency Through the Last Mile of ReportingHow Automation is Driving Efficiency Through the Last Mile of Reporting
How Automation is Driving Efficiency Through the Last Mile of Reporting
 
SBP-Market-Operations and market managment
SBP-Market-Operations and market managmentSBP-Market-Operations and market managment
SBP-Market-Operations and market managment
 
magnetic-pensions-a-new-blueprint-for-the-dc-landscape.pdf
magnetic-pensions-a-new-blueprint-for-the-dc-landscape.pdfmagnetic-pensions-a-new-blueprint-for-the-dc-landscape.pdf
magnetic-pensions-a-new-blueprint-for-the-dc-landscape.pdf
 
Interimreport1 January–31 March2024 Elo Mutual Pension Insurance Company
Interimreport1 January–31 March2024 Elo Mutual Pension Insurance CompanyInterimreport1 January–31 March2024 Elo Mutual Pension Insurance Company
Interimreport1 January–31 March2024 Elo Mutual Pension Insurance Company
 
House of Commons ; CDC schemes overview document
House of Commons ; CDC schemes overview documentHouse of Commons ; CDC schemes overview document
House of Commons ; CDC schemes overview document
 
Economic Risk Factor Update: April 2024 [SlideShare]
Economic Risk Factor Update: April 2024 [SlideShare]Economic Risk Factor Update: April 2024 [SlideShare]
Economic Risk Factor Update: April 2024 [SlideShare]
 

Compliance Capability

  • 1. Towards a Compliance Capability Nikat Malik January 2014 All Rights Reserved Compliance Capability
  • 2. Compliance Capability - Principles Compliance Capability End-to End View of the process path encompassing the business life cycle to completion. This will provide effective compliance control of functional business processes and activities along the desired path. Ownership of the compliance process must be explicitly clear and accountability held from leadership through to operational level. Compliance processes should be positioned at forefront of business functions , not as an after event. Regulatory and compliance requirements should be addressed as part of the business operating model in a partnering approach to be effective. The compliance function together with processes should be fully automated to account for operational risk and efficiency. Compliance processes should be identified and integrated into the transaction life cycle route for comprehensive control and to ensure business processes are compliant with requirements. Consistency of controls and procedures should be maintained at both strategic and operational level with change methodology applied judiciously. High risk audit points must be examined across business processes and controls applied adequately. Clear escalation path for efficient resolution must be put in place to ensure efficient business operations.
  • 3. Compliance Capability – Applied Methodology Compliance Capability Understand business model and strategic objectives comprising of profit model, customer model, product model and control model. Evaluate impact of regulation and compliance requirements on business model. Develop and confirm integrated operating model. Undertake self assessment to identify compliance capability and its strengths and weaknesses. Identify gaps in specific level of capability required. Develop the capability framework... In reference to …. • Business Context • Operating Environment • Customer Base • Risk Appetite • Technology Comprising …. • Behaviour • Performance • Conduct • Skills Training • Systems Required
  • 4. Compliance Capability – Self Assessment (1 of 2) Compliance Capability Objectives • To identify levels of capability required in light of operating environment and regulatory demands in local, regions and host country • To assess current compliance standards • To proactively manage risk exposures • To define target state to fulfil business objectives Self Assessment is completed through facilitated expert judgement that considers risk and controls information to define a set of impacts and directive efforts Risk and Control Framework • Money Laundering • Sanctions • Bribery • Terrorist Financing • PEP Finance/Payments • Cross Border Breech • Unlawful Payments • Conduct / Mis-Selling • Client Identification • Fraud & Security Regulatory Risks Risk & Control Assessment Key Indicators Internal Incidents External Events Expected Loss Self Assessment Results Financial & Reputation Impact Proactive & Remedial Action Governance Identify Risk Appetite Assess Control Report
  • 5. Compliance Capability – Self Assessment (2 of 2) Compliance Capability Self Assessment Process Scope Build Assess Validate • Develop draft Self Assessment Questionnaire for each risk including drivers and impacts • Ensure appropriate involvement from functional experts, businesses and legal • Agree audit and compliance points for each risk by business / country • Plan Self Assessment workshops and attendees • Leadership provided by Group Risk & Compliance Committee and Self Assessment Task Force • Involvement and input from Business and Global Functions • Agreement on Risks to be included and Businesses to cover • Assess impact of questionnaire results • Assessment to include an assessment of local controls and management actions required taking into account risk appetite • Undertake impact assessment for all possible scenarios incl. typical and rare events • Validate impact of risk and functional review • Undertake quantitative validation incl. severity and benchmarking • Action Plan to Group Risk & Compliance Committee • Annual model review
  • 6. Compliance Capability – Structure Compliance Capability Front Office Mid Office Back Office Customer Centric Control Centric Service Centric Prevention Investigation Detection EntityFocusRoleComplianceRequirements KYC / KYCC FATCA CDD / PDD / EDD SANCTIONS ATF ABC AML C/P FRAUD DODD FRANK EMIR BCBS 248 BASEL FDSF / Stress Test MIFIR BCBS 239 COREP / FINREP SOX FRAUD – Internal SECURITY
  • 7. Compliance Capability – In Action Trade Management Process, an example Customer Management Trade Validation Trade Execution Trade Processing Clearing & Settlement Compliance & Accounting Checks: •Terms & product •Legal Agreement •Credit Limit •Collateral •Margin Addl. Compliance Control Checks: •Sanctions •KYCC •FATCA •CDD •ATF •AML •Customer/Country Risk Rating •Capital/Liquidity •Matching •Confirmation •Allocation •Booking •Netting •Exposure Management •Pricing •Valuation •Analytics •Portfolio Position •Trade Initiation •Relationship Management •Client On Boarding •Limit Setting •Payment •Settlement •Custody •Exchange •Collateral Management •P/L •Counter Party Management •Regulatory Reporting •Compliance Control CurrentStateTargetStateProcess “ “ “ “ “ Trade Compliance Committee – escalation & governance procedure to manage Alerts & Suspicious Activity for timely clearance and resolution Value Statement Positions compliance at forefront of business process Mitigates risk at potential point of occurrence Real time feedback result Ease of monitoring & efficient control Clean data ensures accuracy Compliance Capability