MAS published an information paper that highlights the observations from thematic inspections of enterprise-wide risk assessment (EWRA) in the area of money laundering and terrorism financing (ML/TF). The paper also sets out the supervisory expectations for effective EWRA frameworks and processes that financial institutions should benchmark themselves against. The review analyzed the inherent ML/TF risk profile of selected banks, the effectiveness of the control environment designed to mitigate those risks, and the need to implement additional measures to manage residual risks where necessary. The thematic inspections of MAS show that banks have room to improve the rigor of management oversight of EWRA processes, the robustness of the design of EWRA methodologies, and the effectiveness of EWRA implementation.
The thematic inspections of selected banks were conducted in the first quarter of 2020. The inspected banks generally have established frameworks and processes to conduct the EWRA, in accordance with the requirements set out in MAS Notice 626 and the Guidelines to MAS Notice 626. Robustness of the risk assessment was, however, uneven across the inspected banks. Some banks have established good practices, such as utilizing good quantitative analysis tools to detect ML/TF risks, that the industry can emulate. Others have room to enhance the rigor of management oversight of the risk-assessment processes, the robustness of risk-assessment methodologies, and the effectiveness of risk-assessment implementation. Banks have taken, or are taking, remedial actions to improve their frameworks and processes. MAS will continue to engage financial institutions to promote best practices and maintain high anti-money laundering and countering financing of terrorism (AML/CFT) standards in the industry.
As part of the supervisory expectations, MAS expects the board and senior management of institutions to demonstrate good understanding of the underlying objectives of the EWRA, and set the appropriate tone from the top to instill an appreciation of these objectives among staff. MAS also expects the board and senior management to ensure that the EWRA frameworks and methodologies are sound and implemented effectively to meet the underlying objectives of the EWRA. While the paper is based on MAS’ thematic inspections of banks, the desired outcomes and good practices are relevant and applicable to other types of financial institutions. The paper presents the following desired outcomes based on key observations:
- Banks’ senior management maintain active oversight of EWRA frameworks and processes, including ensuring compliance with the relevant MAS Notices and Guidelines.
- Banks have sound and systematic frameworks and processes to assess inherent risks, control effectiveness, and address residual risks for each business line.
- Banks perform adequate and accurate qualitative and quantitative analyses in assessing risks.
- Banks assess effectiveness of controls, taking into account policies and procedures, control testing results, and insights from the banks’ assessments of their cultures.
- Banks have systematic processes to establish and implement control measures to address areas for improvement identified from the EWRA exercise.
- Banks have structured processes to perform gap analysis against guidance papers and incorporate lessons learned and good industry practices in their own processes.
Keywords: Asia Pacific, Singapore, Banking, ML/TF, AML/CFT, Enterprise Wide Risk Assessment, Operational Risk, Compliance Risk, Governance, Basel, MAS
Previous ArticleMAS Awards SRFB Privileges to Standard Chartered Bank in Singapore
The Office of the Superintendent of Financial Institutions (OSFI) published an update on the discussion paper that intended to engage federally regulated financial institutions and other interested stakeholders in a dialog with OSFI, to proactively enhance and align assurance expectations over key regulatory returns.
The European Commission (EC) published a report summarizing responses to the targeted consultation on the supervisory convergence and the single rulebook in the European Union (EU).
The European Central Bank (ECB) published its opinion on a proposal for a regulation on European green bonds, following a request from the European Parliament.
The Advisory Scientific Committee (ASC) of the European Systemic Risk Board (ESRB) published a report that explores the expected impact of digitalization on provision of financial and banking services, and proposes policy measures to address the risks stemming from digitalization.
The Hong Kong Monetary Authority (HKMA) is consulting on the draft Financial Institutions (Resolution) Ordinance (Cap. 628), or FIRO, Code of Practice chapter on liquidity and funding in resolution, until March 14, 2022.
The Swedish Financial Supervisory Authority (FI) announced that the capital adequacy reporting as at December 31, 2021 must be done by February 11, 2022.
The European Banking Authority (EBA) announced that the guidelines on the reporting and disclosure of exposures subject to measures COVID-relief measures shall continue to apply until further notice.
The Central Bank of the Philippines (BSP) issued communications covering developments related to online lending platforms, open finance framework and roadmap, and on the expected regulations in the area sustainable finance.
The Board of Governors of the Federal Reserve System (FED) published the final rule that amends Regulation I to reduce the quarterly reporting burden for member banks by automating the application process for adjusting their subscriptions to the Federal Reserve Bank capital stock, except in the context of mergers.
The European Banking Authority (EBA) published its assessment of risks through the quarterly Risk Dashboard and the results of the Autumn edition of the Risk Assessment Questionnaire (RAQ).