MAS published an information paper that highlights the observations from thematic inspections of enterprise-wide risk assessment (EWRA) in the area of money laundering and terrorism financing (ML/TF). The paper also sets out the supervisory expectations for effective EWRA frameworks and processes that financial institutions should benchmark themselves against. The review analyzed the inherent ML/TF risk profile of selected banks, the effectiveness of the control environment designed to mitigate those risks, and the need to implement additional measures to manage residual risks where necessary. The thematic inspections of MAS show that banks have room to improve the rigor of management oversight of EWRA processes, the robustness of the design of EWRA methodologies, and the effectiveness of EWRA implementation.
The thematic inspections of selected banks were conducted in the first quarter of 2020. The inspected banks generally have established frameworks and processes to conduct the EWRA, in accordance with the requirements set out in MAS Notice 626 and the Guidelines to MAS Notice 626. Robustness of the risk assessment was, however, uneven across the inspected banks. Some banks have established good practices, such as utilizing good quantitative analysis tools to detect ML/TF risks, that the industry can emulate. Others have room to enhance the rigor of management oversight of the risk-assessment processes, the robustness of risk-assessment methodologies, and the effectiveness of risk-assessment implementation. Banks have taken, or are taking, remedial actions to improve their frameworks and processes. MAS will continue to engage financial institutions to promote best practices and maintain high anti-money laundering and countering financing of terrorism (AML/CFT) standards in the industry.
As part of the supervisory expectations, MAS expects the board and senior management of institutions to demonstrate good understanding of the underlying objectives of the EWRA, and set the appropriate tone from the top to instill an appreciation of these objectives among staff. MAS also expects the board and senior management to ensure that the EWRA frameworks and methodologies are sound and implemented effectively to meet the underlying objectives of the EWRA. While the paper is based on MAS’ thematic inspections of banks, the desired outcomes and good practices are relevant and applicable to other types of financial institutions. The paper presents the following desired outcomes based on key observations:
- Banks’ senior management maintain active oversight of EWRA frameworks and processes, including ensuring compliance with the relevant MAS Notices and Guidelines.
- Banks have sound and systematic frameworks and processes to assess inherent risks, control effectiveness, and address residual risks for each business line.
- Banks perform adequate and accurate qualitative and quantitative analyses in assessing risks.
- Banks assess effectiveness of controls, taking into account policies and procedures, control testing results, and insights from the banks’ assessments of their cultures.
- Banks have systematic processes to establish and implement control measures to address areas for improvement identified from the EWRA exercise.
- Banks have structured processes to perform gap analysis against guidance papers and incorporate lessons learned and good industry practices in their own processes.
Keywords: Asia Pacific, Singapore, Banking, ML/TF, AML/CFT, Enterprise Wide Risk Assessment, Operational Risk, Compliance Risk, Governance, Basel, MAS
Previous ArticleMAS Awards SRFB Privileges to Standard Chartered Bank in Singapore
ECB published Guideline 2021/975, which amends Guideline ECB/2014/31, on the additional temporary measures relating to Eurosystem refinancing operations and eligibility of collateral.
EIOPA published a report, from the Consultative Expert Group on Digital Ethics, that sets out artificial intelligence governance principles for an ethical and trustworthy artificial intelligence in the insurance sector in EU.
HKMA published the seventh and final issue of the Regtech Watch series, which outlines the three-year roadmap of HKMA to integrate supervisory technology, or suptech, into its processes.
EC launched a targeted consultation to improve transparency and efficiency in the secondary markets for nonperforming loans (NPLs).
BIS, Danmarks Nationalbank, Central Bank of Iceland, Norges Bank, and Sveriges Riksbank launched an Innovation Hub in Stockholm, making this the fifth BIS Innovation Hub Center to be opened in the past two years.
FDITECH, the technology lab of FDIC, announced a tech sprint that is designed to explore new technologies and techniques that would help expand the capabilities of community banks to meet the needs of unbanked individuals and households.
EC released the EU Taxonomy Compass, which visually represents the contents of the EU Taxonomy starting with the EU Taxonomy Climate Delegated Act.
FDIC is seeking comments on a rule to amend the interagency guidelines for real estate lending policies—also known as the Real Estate Lending Standards.
EIOPA published its annual report, which sets out the work done in 2020 and indicates the planned work areas for the coming months.
The ESRB paper that presents an analytical framework that assesses and quantifies the potential impact of a bank failure on the real economy through the lending function.