AML & Financial Crime – Page 5 – grcsight.com

Money Laundering Examples

Money laundering examples show how criminals turn dirty money into clean-looking funds. Common ones include structuring cash deposits, shell companies, trade mis-invoicing, real estate, and money mules. Large bank cases like Danske Bank and TD Bank show the same methods at scale. Key takeaways A money laundering example is any real method used to disguise the criminal origin of funds. Everyday examples include structuring, money mules, and cash-intensive businesses. Business examples include shell companies and trade-based laundering. About 200 billion euros in suspicious transactions ran through Danske Bank’s Estonia branch from 2007 to 2015. In 2024, TD Bank paid about $3 billion after 92 percent of its transactions went unmonitored. Every example maps to the three stages: placement, layering, and integration. On this page What counts as oneEveryday examplesBusiness and tradeReal estate and cryptoFamous casesHow they are caughtFAQsRead more ~200bn EUR Suspicious flows through Danske Bank’s Estonia branch (2007 to 2015) Source: Danske Bank internal report $4.5B Misappropriated in the 1MDB scandal Source: US Department of Justice $800B to $2T Laundered worldwide each year Source: UNODC What counts as a money laundering example? A money laundering example is any real method a criminal uses to make illegal money look legal. The method matters less than the goal, which is to break the link between the cash and the crime that produced it. Every example fits the same three-stage model. Money enters the system (placement), gets moved around to hide its trail (layering), then returns as clean-looking income (integration). If you can spot which stage an example belongs to, you can usually see the reporting trigger it should set off. The examples below run from small and everyday to large and infamous. Read more: for the model behind them, see the three stages of money laundering. Everyday money laundering examples Most laundering is not glamorous. It relies on simple, repeatable methods that hide small amounts of cash across many transactions. Structuring (smurfing). Splitting a large sum into many small cash deposits, each kept below the reporting limit. In the US that limit is $10,000. See how structuring works. Money mules. People who let criminals move funds through their own bank accounts, sometimes for a cut and sometimes without knowing the source. Cash-intensive businesses. Laundromats, car washes, nail bars, and restaurants that mix dirty cash with real takings and report the total as revenue. Gift cards and prepaid cards. Buying stored-value cards with cash, then spending or reselling them to move value quietly. Gambling. Buying casino chips with dirty cash, playing briefly, then cashing out for a check that looks like winnings. Luxury goods. Buying watches, jewelry, or art with cash, then reselling the item for clean money. These methods work because each transaction looks ordinary on its own. The pattern only appears when someone reviews many transactions together. See where your money laundering risk sits Answer a few questions about your customers, products, and markets to get an indicative risk rating in minutes. Try the AML Risk Assessment → Business and trade-based examples Businesses give launderers something an individual cannot: a reason for money to move. That cover is why company structures show up in almost every large case. Shell companies. Firms that exist on paper with no real staff or activity, used to hold funds and issue fake invoices. Learn how shell companies are used. Front companies. Real businesses that trade normally but also wash dirty money through their books. Trade-based laundering. Over-invoicing or under-invoicing goods so value moves across borders while the paperwork looks routine. See trade-based methods. Invoice fraud and round-tripping. Sending money out for fake services, then cycling it back through related companies to look like earnings. Loan-back schemes. Lending dirty money to yourself through a controlled company, then repaying it as clean loan installments. Worth knowing. Trade-based laundering is the hardest type to catch, because a single mispriced invoice looks like a normal commercial decision. Investigators usually need to compare the invoice against market prices for the same goods, which most banks never see. Spot the warning signs early Run our money laundering red flags checklist to review onboarding and transactions for suspicious behavior. Open the Red Flags Checklist → Real estate, crypto, and digital examples Assets that hold large value soak up dirty money well. Property and crypto both let criminals park funds and later sell for a clean receipt. Real estate. Buying property, often through an anonymous company, then selling it on so the proceeds look like a normal sale. Cryptocurrency mixers. Services that pool and shuffle coins to break the link between a wallet and the funds inside it. Chain-hopping. Swapping one cryptocurrency for another across exchanges to make the trail harder to follow. NFTs and digital assets. Buying and reselling digital items between controlled wallets to move value and invent a paper trail. Online marketplaces. Selling fake goods or services to yourself to convert dirty funds into platform payouts. Use the tool: screen a person or company against sanctions, PEP, and adverse media data with Combined AML Screening before you take their money. Famous money laundering cases Large cases are the same everyday methods run at scale, usually because a bank failed to watch its own transactions. Each one below is a matter of public record. Case What happened Scale Danske Bank (2007 to 2015) Suspicious non-resident funds flowed through its Estonia branch, mostly linked to Russia and former Soviet states About 200 billion euros in suspicious transactions (Danske Bank internal report) 1MDB (2009 to 2015) Funds were drained from Malaysia’s state fund through shell companies, then spent on property, art, and a film About $4.5 billion misappropriated (US Department of Justice) Wachovia (2004 to 2007) The bank failed to check the origin of funds from Mexican money-transfer firms tied to drug cartels Weak controls on about $378 billion of transfers (reported 2010) TD Bank (2024) The bank left large categories of transactions out of monitoring, letting criminal networks move funds About $3 billion in penalties, with 92 percent of volume … Read more

Designated Non-Financial Business or Profession (DNFBP)

A DNFBP, or designated non-financial business or profession, is a non-financial business that has to follow anti-money laundering rules. It covers casinos, real estate agents, dealers in precious metals, lawyers, accountants, and company service providers, all of which criminals use to move money. Key takeaways A DNFBP is a non-financial business covered by anti-money laundering rules. The term stands for designated non-financial business or profession. It covers casinos, real estate, dealers in precious metals and stones, legal and accounting professionals, and company service providers. They are covered because they act as gatekeepers to the financial system. The FATF extended AML obligations to DNFBPs in its 2003 standards. DNFBPs must run customer checks, keep records, and report suspicion. On this page What it isWhat it stands forWhich businessesWhy they are coveredTheir obligationsDNFBP vs bankChallengesManaging AMLFAQsRead more 2003 Year the FATF extended AML obligations to DNFBPs Source: FATF $800B to $2T Laundered worldwide each year, much of it through DNFBPs Source: UNODC 1989 Year the FATF was founded to set the global standard Source: FATF What is a DNFBP? A DNFBP is a business outside the financial sector that still has to follow anti-money laundering rules. Banks are the obvious front line against laundering, but criminals also use lawyers, estate agents, and other professionals to move and hide money. Because these businesses sit at points where money enters property, companies, and high-value goods, the rules pull them in. They become part of the defense, whether they see themselves that way or not. The idea comes from the global AML standard-setter. Read more: DNFBP duties flow from the FATF Recommendations. What DNFBP stands for DNFBP stands for designated non-financial business or profession. Each word carries meaning. Designated. Named in law or regulation as covered by AML rules. Non-financial. Outside banking and other core financial services. Business or profession. Both companies and professional practices are included. The term is used worldwide, though some countries use their own labels for the same idea. Which businesses are DNFBPs? The FATF sets out the main categories of DNFBP. They share one trait: each can be used as a doorway for dirty money. Casinos. Where cash, chips, and winnings change hands easily. Real estate agents. Property is a favored way to store large sums. Dealers in precious metals and stones. High-value goods that hold and move value. Lawyers, notaries, and accountants. When they help set up companies, move money, or buy property. Trust and company service providers. Firms that create and manage companies and trusts. Not every activity of these professionals is covered. Legal and accounting duties usually apply to specific tasks, such as handling client money or forming companies, rather than all of their work. Why DNFBPs are covered by AML rules DNFBPs are covered because they are gatekeepers. They stand at the points where criminals need help to turn dirty money into property, companies, or luxury goods. A launderer buying a house needs an estate agent and often a lawyer. Setting up a shell company to hide ownership needs a company service provider. Each professional, knowingly or not, can open a door that a bank alone would close. Pulling these gatekeepers into the AML system closes those doors. It also spreads the defense beyond banks, so there is no easy way around the checks. The approach has a name: the gatekeeper model. Rather than relying on banks alone, it asks every professional who can open a door to criminal money to help keep it shut. That is why a solicitor or an estate agent now carries duties that would have seemed unusual a generation ago. Screen a client before you act Run one search across sanctions, PEP, and adverse media data to check a client or counterparty before you take them on. Try Combined AML Screening → DNFBP obligations A DNFBP carries many of the same core duties as a bank, scaled to its size. The obligations are consistent across most countries. Customer due diligence. Verify who the client is, using customer due diligence. Risk assessment. Judge the money laundering risk of clients and work. Record-keeping. Keep evidence of checks and transactions. Reporting. File a suspicious activity report when something looks wrong. Training. Make sure staff can recognize and handle laundering risk. Do this: get an indicative read on your exposure with the AML Risk Assessment before onboarding higher-risk clients. DNFBP vs financial institution A DNFBP and a bank share the same goal but differ in scale and setup. The difference is one of resources, not of duty. DNFBP Financial institution Sector Non-financial Financial Examples Law firms, estate agents, casinos Banks, payment firms AML resources Often small or part-time Large, dedicated teams Core duties The same in principle The same in principle The duties are alike, but a small law firm cannot run a bank’s compliance operation. The rules expect an effort in proportion to the firm’s size and risk. Worth knowing. Real estate is one of the largest laundering channels in the world, precisely because property holds huge value and often changes hands with limited scrutiny. That is why estate agents and the lawyers behind property deals are treated as DNFBPs, even though neither feels much like a bank. Challenges for DNFBPs DNFBPs face real hurdles in meeting AML rules. The gap between duty and resource is the heart of it. Limited resources. Compliance is often one of many hats a single person wears. Less expertise. Non-financial professionals may not know AML rules well. Cost. Checks and systems can weigh heavily on a small practice. Awareness. Some professionals do not see themselves as a laundering risk at all. These challenges do not remove the duty. They shape how a small firm meets it, usually with simpler tools and a clear focus on its real risks. A part-time compliance officer who knows the firm’s clients well can be more effective than an expensive system nobody understands. How DNFBPs manage AML A DNFBP manages AML in proportion to its size and risk. A small practice does … Read more

Regulatory Fine

A regulatory fine is a financial penalty a regulator imposes on a firm for breaking the rules. In anti-money laundering, weak controls and sanctions breaches have produced some of the largest fines in history, running into billions of dollars. Key takeaways A regulatory fine is a penalty a regulator imposes for breaking the rules. AML and sanctions failures have led to multi-billion-dollar fines. BNP Paribas paid about $8.9 billion for sanctions breaches in 2014. Binance paid about $4.3 billion for AML and sanctions failures in 2023. TD Bank paid about $3.09 billion for AML failures in 2024. A fine is often only part of the cost, alongside remediation and reputational damage. On this page What it isWhy regulators fineWhat triggers a fineThe biggest finesHow fines are setBeyond the fineFines vs other actionHow firms avoid themFAQsRead more $8.9B BNP Paribas penalty for sanctions violations, 2014 Source: US Department of Justice $4.3B Binance penalty for AML and sanctions failures, 2023 Source: US Department of Justice $3.09B TD Bank penalty for AML failures, 2024 Source: US Department of Justice What is a regulatory fine? A regulatory fine is money a firm is ordered to pay for breaking rules a regulator enforces. In compliance, it is the most visible consequence of getting things wrong, and often the one that makes the news. Fines are not taxes or fees. They are penalties, imposed after a failure, meant to punish the firm and warn others. In anti-money laundering, they have reached sums that would have seemed unthinkable a generation ago. The failures behind them are usually about controls. Read more: the breakdowns often trace back to a weak AML compliance program. Why regulators fine firms Regulators fine firms to change behavior, not just to raise money. A fine has two jobs: to punish the firm that failed, and to make every other firm pay attention. The logic is deterrence. If weak controls cost nothing, firms would underinvest in them, so regulators make the cost of failure high enough to focus minds. A large, public fine tells the whole industry that a particular failure will not be tolerated. Fines also signal priorities. When regulators start fining a certain failure heavily, firms know where to look in their own operations. A pattern of penalties in one area is, in effect, a public map of where regulators are turning their attention next. What triggers an AML fine AML fines tend to come from a familiar set of failures. Each represents a gap that let, or could have let, dirty money through. Weak controls. An AML program that does not do its job. Poor monitoring. Failing to watch transactions properly. Missed reports. Not filing suspicious activity reports when required. Sanctions breaches. Processing payments for restricted parties. Weak due diligence. Onboarding customers without knowing who they are. Often a single case involves several of these at once, which is part of why the penalties grow so large. The biggest AML and sanctions fines The largest penalties give a sense of the stakes. Each followed a serious, sustained failure, and each was announced by the US authorities. In 2014, BNP Paribas agreed to pay about $8.9 billion for processing transactions that breached US sanctions on several countries. In 2023, the crypto exchange Binance was penalized about $4.3 billion for AML and sanctions failures. And in 2024, TD Bank paid about $3.09 billion after admitting sweeping AML failures, the largest penalty of its kind against a US bank. These are the headline numbers, but similar failures produce large fines every year, well below the record level. Get an indicative AML risk rating See where your money laundering risk is concentrated so you can close gaps before they cost you. Try the AML Risk Assessment → How fines are calculated Regulators do not pick fine amounts at random. Several factors shape the final figure, even if the exact method varies. Seriousness. How bad the failure was, and how much risk it created. Duration. How long the problem went uncorrected. Harm. Whether dirty money actually flowed, and how much. Cooperation. Whether the firm self-reported and helped, or resisted. History. Whether the firm had been warned or fined before. A firm that owns up and fixes the problem is usually treated more leniently than one that hides it and is caught. Cooperation can make a striking difference to the final figure. Regulators often give meaningful credit to firms that self-report, hand over evidence, and remediate quickly, while treating concealment as an aggravating factor that pushes the penalty higher. Beyond the fine The fine is often not the biggest cost. For many firms, what follows hurts more than the payment itself. A serious case can bring a court-appointed monitor watching the firm for years, forced spending on remediation, restrictions on growth, and lasting reputational damage. In the TD Bank case, regulators capped the bank’s US assets, limiting its ability to grow, a penalty that can outlast the fine. Customers and investors also draw their own conclusions. Worth knowing. The dollar figure of a fine is only the visible part. Behind it sit years of remediation, the cost of a monitor, lost business, and a dent in trust that can take far longer to repair than the balance sheet. For many firms, the lesson of a large fine is that prevention would have been far cheaper than the cure. Fines vs other enforcement A fine is one tool among several, and often it comes bundled with others. It helps to see where it sits. Action What it is Regulatory fine A financial penalty for breaking the rules Criminal charges Prosecution, which can include guilty pleas and individual liability Business restrictions Limits on activity, such as an asset cap Loss of license Removing the right to operate The largest AML cases often combine a fine with a criminal plea and a monitor, which is why they land so heavily. How firms avoid regulatory fines Avoiding fines is, in the end, about running a program that works. A few … Read more

AML Risk Assessment

An AML risk assessment is a firm-wide analysis of where a business is exposed to money laundering. It rates risk across customers, products, geographies, and channels, then sets how strong each control needs to be. It is the foundation of the whole AML program. Key takeaways An AML risk assessment shows a firm where its laundering risk is highest. It looks at customers, products, geographies, channels, and transactions. It is firm-wide, which is different from rating a single customer’s risk. The method is inherent risk, minus the effect of controls, equals residual risk. It underpins the risk-based approach and the wider program. A stale or missing assessment is one of the most common examination findings. On this page What it isWhy it mattersFirm-wide vs customerThe risk factorsHow to conduct oneScoring and methodHow often to refreshCommon mistakesFAQsRead more 2012 Year the FATF made risk assessment central to its standard Source: FATF $800B to $2T Laundered worldwide each year the assessment targets Source: UNODC $3B Paid by TD Bank in 2024 after control gaps Source: US Department of Justice What is an AML risk assessment? An AML risk assessment is a structured look at where a firm could be used to launder money. It maps the threats the business faces and rates how serious each one is. The result is a clear picture of risk, written down and ranked. That picture then decides how much effort each control deserves, from light checks on low-risk activity to deep scrutiny on high-risk activity. It is the first thing a regulator asks to see, because everything else depends on it. Read more: the assessment gives shape to your AML compliance program. Why an AML risk assessment matters The assessment matters because it justifies the whole program. Without it, a firm cannot explain why its controls are set the way they are. It also focuses effort where it counts. Resources are limited, so a firm that knows its real risks can put people and tools where the threat is highest rather than spreading them thin. Regulators treat a weak assessment as a serious gap. In 2024, TD Bank agreed to about $3 billion in penalties after leaving whole transaction types outside its controls, a failure that a sound assessment should have surfaced (US Department of Justice, 2024). Get an indicative AML risk rating Answer a few questions about your customers, products, and markets to see where your money laundering risk is concentrated. Try the AML Risk Assessment → Firm-wide risk assessment vs customer risk rating An AML risk assessment and a customer risk rating are related but different. One looks at the whole firm, the other at a single customer. The firm-wide assessment sets the framework. It decides which customer types, products, and countries are risky. A customer risk rating then applies that framework to one person or business at onboarding. AML risk assessment Customer risk rating Scope The whole firm A single customer Purpose Set the risk framework Rate one relationship Frequency Periodic and on change At onboarding and on review The two work together. A strong firm-wide assessment makes every customer rating more accurate. The risk factors to assess A sound assessment looks across several factors. Each can raise or lower the overall picture, and they interact. Customer risk. The types of customers served, including politically exposed persons and complex ownership. Product and service risk. Whether products favor anonymity or fast movement of funds. Geographic risk. Exposure to high-risk countries. Check with our Country Risk Checker. Channel risk. Whether onboarding is face to face or fully remote. Transaction risk. The size, speed, and pattern of expected activity. Worth knowing. The point of a risk assessment is not the score, it is the reasoning. Two firms can land on the same rating for very different reasons, and an examiner cares far more about whether the logic holds than about the final number. A defensible assessment shows its working. Screen customers as you assess risk Run one search across sanctions, PEP, and adverse media data to feed real signals into your assessment. Try Combined AML Screening → How to conduct an AML risk assessment Conducting an assessment follows a repeatable method. It moves from raw exposure to a considered rating. Identify inherent risk. List the money laundering risks the firm faces before any controls. Assess your controls. Judge how well existing controls reduce each risk. Calculate residual risk. Work out the risk that remains after controls. Prioritize and act. Focus attention where residual risk is highest. Document everything. Record the risks, ratings, reasoning, and review date. Use the tool: turn a single customer’s details into a risk level with our Customer Risk Calculator as you apply the framework. Scoring and methodology Most assessments use a simple equation at their core: inherent risk, reduced by the strength of controls, leaves residual risk. The scoring puts numbers or bands around that idea. Firms usually rate each factor as low, medium, or high, then combine them into an overall picture. The bands should be defined, so that a high rating means the same thing across the firm. Inherent risk. The threat before controls, based on the factors above. Control effectiveness. How much the firm’s controls actually reduce that threat. Residual risk. What remains, which is where attention should go. The method matters less than consistency. A rating scheme applied evenly across the firm is worth more than a complex model used loosely. How often to refresh the assessment An assessment goes stale as the business changes. It should be refreshed on a schedule and whenever something material shifts. Most firms review it at least once a year. A new product, a new market, a new customer segment, or a regulatory change should all trigger an update outside the normal cycle. A short note in the assessment recording when it was last reviewed and when it is next due keeps this on track. It also gives an examiner an instant read on whether the document is current. Common out-of-cycle … Read more

Chief Compliance Officer

A chief compliance officer, or CCO, is the senior executive who leads a firm’s entire compliance function. The CCO owns the framework that keeps the whole business within the law and regulation, sitting above specific roles like the AML officer. Key takeaways A chief compliance officer leads a firm’s whole compliance function. The CCO is a senior, often executive-level, role. It is broader than a compliance officer or an MLRO. The CCO sets the compliance framework across all areas, not just AML. Independence and access to the board are central to the role. Regulators increasingly hold CCOs personally accountable. On this page What it isWhat a CCO doesCCO vs other rolesThe CCO in AMLIndependence and reportingPersonal accountabilitySkills and challengesBuilding the roleFAQsRead more 1970 Year the US Bank Secrecy Act created duties a CCO oversees Source: FinCEN 1989 Year the FATF set the global standard CCOs work to Source: FATF $800B to $2T Laundered worldwide each year that compliance targets Source: UNODC What is a chief compliance officer? A chief compliance officer is the person in charge of compliance across an entire organization. The CCO sits at a senior level, often in the executive team, and owns the job of keeping the whole firm on the right side of the law and its regulators. It is a leadership role, not a checking role. The CCO does not personally review every transaction; they build and run the framework that makes sure the firm, as a whole, complies. The role sits at the top of the compliance structure. Read more: it shapes the firm’s AML governance. What a chief compliance officer does The CCO’s job spans the whole compliance picture, from setting policy to answering to the board. Several duties define the role. Owns the framework. Sets the policies and controls that keep the firm compliant. Oversees all compliance areas. Not just AML, but the full range of obligations. Advises leadership. Guides the board and executives on compliance risk. Manages the function. Leads the compliance team and its resources. Answers to the board. Reports on how well the firm is meeting its duties. The common thread is ownership. Where individual officers handle parts of compliance, the CCO owns the whole of it. Chief compliance officer vs other roles It helps to see how the CCO relates to the other compliance roles people often confuse it with. The difference is scope and seniority. A compliance officer is a general term for someone who works on compliance, at any level. An MLRO is a specific role focused on anti-money laundering, especially reporting suspicion. A chief compliance officer sits above both, leading the entire function across every area of compliance, of which AML is one part. Role Scope Chief compliance officer Leads all compliance, firm-wide and senior Compliance officer Works on compliance, any level or area MLRO Focused specifically on AML and reporting In a small firm, one person may hold all three roles. In a large one, the CCO leads a team that includes compliance officers and an MLRO. The chief compliance officer in AML Anti-money laundering is one of the most important areas the CCO oversees, though not the only one. The CCO makes sure AML sits properly within the wider compliance framework. While an MLRO handles the day-to-day of AML, including reporting, the CCO owns the overall structure that the AML program sits inside. They make sure it is resourced, aligned with other controls, and taken seriously at the top. In many firms, the MLRO reports up to the CCO, who answers to the board for compliance as a whole. Set out the framework in an AML policy Generate a tailored AML policy draft that records the controls and responsibilities a CCO owns. Open the AML Policy Generator → Independence and reporting lines For a CCO to be effective, the role needs independence and a direct line to the top. Without both, compliance can be overruled by the business. A strong CCO has the authority to challenge decisions, access to the board, and enough independence that commercial pressure does not silence them. Regulators expect the role to sit high enough in the firm to be heard, and to report to the board or a board committee rather than being buried under the business it is meant to check. That independence is what gives the role its weight. Personal accountability The CCO role carries real personal risk, which has grown in recent years. It is not just the firm on the line; it can be the officer too. Regulators have increasingly signaled that they will hold compliance leaders personally accountable for serious failures, through fines, bans, or other action. This reflects a wider push toward individual accountability, on the view that naming a responsible person focuses minds. For a CCO, it means the role comes with genuine exposure, and with it the need for real authority and resources to do the job properly. Worth knowing. The rise of personal accountability has changed the CCO role. A generation ago, compliance failures fell almost entirely on the firm. Now a chief compliance officer can face action in their own name, which cuts both ways: it raises the stakes of the job, but it also strengthens the case for giving the role the independence, authority, and resources it needs to be done well. Skills and challenges The CCO role asks for an unusual mix of skills, because it sits between the business and the regulator. A few qualities stand out. Judgment. Weighing risk in situations that rules do not fully cover. Authority. The standing to challenge senior colleagues. Breadth. Understanding many areas of compliance at once. Communication. Explaining risk to a board in terms it can act on. The central challenge is balancing the demands of the business against the demands of the rules, without giving way to either. Building the role well A firm that wants compliance to work gives the CCO what the role needs. A few steps make the difference. Give it seniority. … Read more

Bulk Cash Smuggling

Bulk cash smuggling is the physical movement of large amounts of cash across a border to avoid reporting rules and hide where the money came from. It is a common way criminals get dirty cash into the financial system, and a first step in laundering. Key takeaways Bulk cash smuggling is physically moving large cash across a border. The goal is to avoid reporting rules and hide the money’s source. It is a placement technique, the first stage of money laundering. Cash is used because it is hard to trace and leaves no record. US law requires travelers to declare more than $10,000 in cash. It differs from structuring, which splits money into small amounts. On this page What it isWhy criminals do itHow it is doneA placement techniqueReporting rulesVs structuringRed flagsHow firms respondFAQsRead more $10,000 US threshold to declare cash carried across the border Source: FinCEN 1989 Year the FATF set the global AML standard Source: FATF $800B to $2T Laundered worldwide each year, some moved as cash Source: UNODC What is bulk cash smuggling? Bulk cash smuggling is exactly what it sounds like: moving a large pile of cash from one country to another without declaring it. The point is to get the money across a border quietly, out of reach of the reporting rules that would otherwise flag it. It is one of the oldest tricks in money laundering, and it persists because cash is anonymous. A wire transfer leaves a record; a bag of banknotes does not. It is usually the entry point for dirty money. Read more: it belongs to the first stage of the stages of money laundering. Why criminals smuggle cash Criminals smuggle cash for one main reason: to get it somewhere it can be used without being traced. Crime, especially drug trafficking, generates huge volumes of physical cash, and that cash is a problem to hold. Dirty cash cannot easily be banked at home, where reporting rules would catch it. Moving it to another country, often one with weaker controls, opens up ways to place it into the financial system. The smuggling itself is the bridge between the crime and the laundering that follows. The scale can be enormous, with millions of dollars moved in a single shipment. How bulk cash smuggling is done Smugglers hide cash in whatever way avoids detection. The methods range from crude to elaborate, but all share the aim of getting money past a border check. Concealed in vehicles. Hidden in compartments, panels, or cargo. In luggage. Packed into suitcases, sometimes among ordinary belongings. On the body. Strapped to a person or carried in clothing. In freight. Concealed within legitimate shipments of goods. Split among couriers. Spread across several people to reduce what each carries. Whatever the method, the giveaway is often the sheer amount of cash relative to any honest reason to be carrying it. A placement technique Bulk cash smuggling sits at the start of the laundering process, in the stage known as placement. This is where dirty cash first enters the system. Once the cash reaches a destination, criminals look for ways to deposit or convert it, often through cash-heavy businesses or exchanges. Smuggling gets the money into position; the later stages, layering and integration, then work to disguise its origin. Understanding smuggling as a placement method helps explain why authorities watch borders so closely. Get an indicative AML risk rating See where your money laundering risk is concentrated, including cash and cross-border exposure. Try the AML Risk Assessment → Reporting rules on carrying cash Most countries require travelers to declare large amounts of cash when crossing a border. The rules exist precisely to catch smuggling. In the US, anyone carrying more than $10,000 in cash or equivalents into or out of the country must declare it, a requirement enforced under the rules overseen by the Financial Crimes Enforcement Network. Failing to declare it is an offense, and the cash can be seized. Many other countries set similar thresholds. These declarations create a record where none would otherwise exist. Bulk cash smuggling vs structuring Bulk cash smuggling and structuring are both ways of moving cash while avoiding attention, but they work in opposite directions. The difference is size. Smuggling moves a large amount of cash in one go, relying on physical concealment to avoid detection. Structuring breaks money into many small transactions, each below a reporting threshold, to avoid triggering a report. One hides a big sum; the other disguises a big sum by making it look like lots of little ones. Bulk cash smuggling Structuring Method Move a large sum physically Split into small transactions Avoids Border and reporting checks Reporting thresholds Relies on Physical concealment Staying under limits Criminals sometimes use both together, smuggling cash across a border and then structuring its deposit on the other side. Red flags of bulk cash smuggling Certain signs point to cash smuggling, whether at a border or when the money later surfaces. A few recur. Large unexplained cash. Sums with no honest business or travel reason. Cash from high-risk routes. Money arriving from known trafficking corridors. Sudden cash deposits. Large cash appearing after cross-border travel. Reluctance to declare. Attempts to avoid or downplay a declaration. For a firm, the sign is usually the cash surfacing later, as an unexplained deposit that does not fit the customer. Worth knowing. Bulk cash smuggling is a reminder that money laundering often begins in the physical world, not the digital one. Before a single transaction appears on a screen, dirty cash may have already crossed a border in a suitcase. This is why cash-handling businesses and unusual cash deposits deserve close attention: they are frequently where smuggled money re-enters the visible system. How firms and authorities respond Authorities tackle smuggling at the border, while firms watch for the cash when it reappears. Both roles matter. Border controls. Customs and law enforcement search for undeclared cash. Declaration rules. Reporting requirements create a record and a basis to act. Firm-level … Read more

Risk-Based Approach

The risk-based approach to AML means matching a firm’s controls to the money laundering risk it actually faces. Rather than treating every customer the same, a firm applies lighter checks to low-risk cases and deeper checks to high-risk ones. It is the core of the FATF standard. Key takeaways The risk-based approach allocates AML effort in proportion to risk. The FATF made it the foundation of its Recommendations in 2012. Firms assess risk across customers, products, geographies, and channels. Low-risk cases get simplified checks; high-risk cases get enhanced due diligence. It replaces a one-size-fits-all, rules-only model that wastes effort and misses real risk. A written risk assessment is what makes the approach defensible to a regulator. On this page What it isWhy the FATF requires itHow it worksRisk factors to assessApplying it: low vs highDocumenting itRisk-based vs rules-basedCommon mistakesFAQsRead more 1989 Year the FATF was founded to set the standard Source: FATF 40 FATF Recommendations built on the risk-based approach Source: FATF $800B to $2T Laundered worldwide each year the approach targets Source: UNODC What is the risk-based approach in AML? The risk-based approach means a firm focuses its anti-money laundering effort where the risk is greatest. It accepts that not every customer or transaction carries the same threat, so it treats them differently. In practice, that means a low-risk customer gets simpler checks, while a high-risk one gets deeper scrutiny. The firm decides the difference using a documented assessment of its own risks, guided by the Financial Action Task Force. The approach is now the default worldwide. Read more: it underpins every AML compliance program a regulated firm runs. Why the FATF requires a risk-based approach The FATF made the risk-based approach the foundation of its 40 Recommendations when it revised them in 2012. The logic is simple: resources are limited, so they should go where they do the most good. A rules-only model spreads effort evenly, which means wasting time on low-risk cases while under-watching the dangerous ones. The risk-based approach fixes that mismatch by design. Because the FATF standard shapes AML law in more than 200 jurisdictions, the approach is written into national rules from the US to Singapore. See where your risk is concentrated Answer a few questions about your customers, products, and markets to get an indicative risk rating in minutes. Try the AML Risk Assessment → How the risk-based approach works The approach follows a repeating cycle. A firm identifies its risks, rates them, applies controls to match, then reviews the result. Identify. List the money laundering risks the firm is exposed to. Assess. Rate each risk as low, medium, or high, and write it down. Mitigate. Apply controls that fit the rating, from simplified checks to enhanced due diligence. Monitor and review. Watch for change, and update the assessment as the business shifts. The written assessment is the heart of it. Without it, a firm cannot show a regulator why its controls are set the way they are. Risk factors to assess A sound risk assessment looks across several factors, not just the customer. Each one can raise or lower the overall rating. Customer risk. Who the customer is, including politically exposed persons and complex ownership. Product and service risk. Whether the product favors anonymity or fast movement of funds. Geographic risk. Whether the customer or money touches a high-risk country. Check with our Country Risk Checker. Channel risk. Whether onboarding is face to face or fully remote. Transaction risk. The size, frequency, and pattern of expected activity. Worth knowing. A single high-risk factor does not always make a customer high risk, and low-risk factors do not cancel out a serious red flag. The skill in the risk-based approach is weighing factors together, which is why examiners want to see the reasoning, not just the final score. Check where a country sits on risk Look up a country against FATF, EU, and corruption data to feed the geographic part of your risk assessment. Try the Country Risk Checker → Applying the approach: low risk vs high risk Once a customer is rated, the rating decides how the firm treats them. The two ends of the scale look very different. Low risk. Simplified due diligence, with basic identity checks and lighter ongoing monitoring. Standard risk. Full customer due diligence and normal monitoring. High risk. Enhanced due diligence, including source-of-funds checks, senior sign-off, and closer monitoring. Use the tool: turn customer details into a risk level with our Customer Risk Calculator. Documenting your risk assessment Documentation is what turns a risk-based approach from a good intention into a control you can defend. A regulator cannot see your judgment, so it has to see your records. A sound write-up covers a few things: The risks you identified, across customers, products, geographies, and channels. The rating you gave each one, and the reasoning behind it. The controls you apply at each rating, from simplified to enhanced checks. The date of the assessment and when it will next be reviewed. The write-up does not need to be long. For a small firm it can run to a few pages. What matters is that the reasoning is visible, so an examiner can follow how you got from a risk to a control. Keep it current. An assessment that still describes last year’s business is one of the most common findings in an examination, and it weakens every control built on top of it. Read more: the assessment sits at the base of your AML compliance program. Risk-based approach vs rules-based approach The risk-based approach is often set against a rules-based one. The difference is where judgment sits. Rules-based Risk-based Basis Fixed rules applied to everyone Controls matched to assessed risk Strength Simple and consistent Focuses effort where it matters Weakness Wastes effort, misses new risk Needs judgment and documentation Most regimes now expect a risk-based approach with rules inside it, not one or the other. The rules set a floor, and the risk assessment decides where to go … Read more

Terrorist Financing

Terrorist financing is the act of raising, moving, and using money to support terrorism. Unlike money laundering, the funds can be small and legally sourced, which makes them hard to spot. Stopping it is the job of counter-terrorist financing controls. Key takeaways Terrorist financing funds terrorism by raising, moving, and using money. It differs from money laundering, where the aim is to hide dirty money’s origin. Funds can come from legal sources such as salaries and donations. The 9/11 attacks cost an estimated $400,000 to $500,000 to carry out. Small, ordinary-looking transactions make it hard to detect. The response, screening and reporting, falls under counter-terrorist financing. On this page What it isVs money launderingSources of fundsHow money movesHow funds are usedScale and measurementHow it is stoppedWarning signsFAQsRead more $400k to $500k Estimated cost of carrying out the 9/11 attacks Source: 9/11 Commission, 2004 2001 Year the FATF added terrorist financing to its mandate Source: FATF 40 FATF Recommendations covering money laundering and terrorist financing Source: FATF What is terrorist financing? Terrorist financing is the act of providing money for terrorism. It covers raising the funds, moving them, and spending them on attacks, operatives, and logistics. It is treated as a serious crime worldwide, and it sits next to money laundering in financial crime rules. The two are so often paired that controls are written as AML and counter-terrorist financing together. The activity is what firms and governments try to stop. Read more: the controls that target it are covered in counter-terrorist financing. Terrorist financing vs money laundering Terrorist financing and money laundering look similar but chase opposite problems. The difference is the money’s origin and its purpose. Money laundering hides where dirty money came from. Terrorist financing hides where money is going and what it will pay for, and that money can be perfectly legal at the source. A salary or a donation can fund an attack without any crime at the start. Money laundering Terrorist financing Aim Hide the source of funds Fund a violent act Source Usually illegal Often legal Amounts Often large Often small Key signal Hidden origin Destination or link of concern Because the money can be small and clean, terrorist financing leans on who is involved far more than on how much moves. Screen a name against terrorist and sanctions lists Run one search across sanctions, PEP, and adverse media data to check a person or company before you deal with them. Try Combined AML Screening → Sources of terrorist funds Terrorist funds come from a mix of legal and criminal sources. That mix is part of what makes them hard to trace. Donations. Given directly or through front charities and non-profits. Legitimate income. Salaries, small businesses, and trade. Crime. Fraud, extortion, kidnapping for ransom, and smuggling. The drug trade. A major source for some groups, blending with laundering. State support. Funding from a sponsoring government in some cases. A single group may draw on several of these at once, which is why no one control can catch it all. A group might take small donations, run a modest business as a front, and top up with the proceeds of fraud, so the money entering the system looks ordinary from every angle. How terrorists move money Once raised, funds have to reach the people who will use them. Terrorists rely on channels that are quick or hard to trace. Bank transfers. Often small, to stay below notice. Cash couriers. Physically carrying money across borders. Informal value transfer. Systems that move value without moving money through banks. Cryptocurrency. Fast, cross-border, and harder to link to a person. Worth knowing. Informal value transfer, sometimes called hawala, is a legal and widely used way to send money in many parts of the world. The concern is not the system itself, but that it can move value with little record, which is why firms focus on the people and destinations behind a transfer rather than the method alone. How terrorist funds are used The final step is spending. Terrorist money pays for both attacks and the wider organization behind them. Attacks. Weapons, materials, vehicles, and travel. People. Paying and supporting operatives and their families. Logistics. Safe houses, communications, and forged documents. Propaganda and recruitment. Spreading a message and drawing in new members. Much of this is cheap, which is the heart of the problem, covered next. Scale and why it is hard to measure The scale of terrorist financing is small compared with money laundering, and it is very hard to measure. The reason is built into the crime. Many attacks cost little. The 9/11 Commission estimated in 2004 that the attacks cost between $400,000 and $500,000, and many later plots have cost far less. When a few thousand dollars from a legal source can fund an attack, no single transaction looks unusual. That is why success in this area depends on intelligence and screening, not on spotting large, suspicious sums. Sharing information between firms and authorities matters more here than almost anywhere else in financial crime, because the signal is a known name or link rather than an unusual amount. Check a country’s terrorist financing risk Look up a country against FATF, EU, and other risk data to see where terrorist financing exposure is highest. Try the Country Risk Checker → How terrorist financing is stopped Stopping terrorist financing relies on a set of controls aimed at people and links rather than amounts. The core steps are consistent across firms. Screen names. Check customers against terrorist and sanctions lists at onboarding and over time. Assess geography. Weigh exposure to conflict zones and high-risk regions. Monitor for patterns. Watch for many small transfers gathering to one destination. Report suspicion. File a suspicious activity report when a link or pattern looks wrong. Read more: the full discipline is set out under counter-terrorist financing. Warning signs of terrorist financing A few patterns raise concern, though none is proof on its own. Firms read them against what they know about the … Read more

Money Laundering Charges

Money laundering charges accuse a person or business of handling money they knew, or should have known, came from crime. In the United States the main laws are 18 U.S.C. 1956 and 1957, and penalties reach up to 20 years in prison plus large fines. A note before you read. This page explains what a money laundering charge means in general terms. It is not legal advice. Anyone facing an investigation or charge should speak to a qualified criminal defense lawyer about their own situation. Key takeaways A money laundering charge accuses someone of handling the proceeds of crime. In the US, the main statutes are 18 U.S.C. 1956 and 1957. Section 1956 carries up to 20 years in prison; section 1957 up to 10 years. Fines can reach $500,000 or twice the value of the funds, whichever is greater. A charge usually sits on top of a predicate offense that produced the money. In the UK, the Proceeds of Crime Act 2002 sets a maximum of 14 years. On this page What they areWhat must be provenUS lawsPenaltiesHow charges ariseIn the UKPossible defensesIf you are chargedFAQsRead more Up to 20 years Maximum US prison term under 18 U.S.C. 1956 Source: 18 U.S.C. 1956 Up to 14 years Maximum UK prison term under the Proceeds of Crime Act Source: POCA 2002 $500k or 2x US fine per count, whichever is greater Source: 18 U.S.C. 1956 What are money laundering charges? Money laundering charges are criminal accusations that someone handled money they knew, or should have known, came from crime. The charge is about what happened to the money, not the crime that produced it. That first crime is called the predicate offense. Money laundering is a separate offense layered on top, which is why a person can face both at once. The charge exists because moving and hiding criminal money is itself harmful. Read more: for the underlying concept, see money laundering. What has to be proven A money laundering charge is not proven by the money alone. A prosecutor generally has to show a few things together. Criminal proceeds. The money came from an unlawful activity. A transaction. The defendant took part in a financial transaction with those funds. Knowledge. The defendant knew, or in some cases should have known, the money was criminal. Intent. In many charges, an intent to promote crime or to hide the source of the funds. The exact elements depend on which statute is charged, covered below. Knowledge is often the hardest element to prove, because it turns on what the defendant actually understood about the source of the money. Prosecutors may rely on the circumstances, such as efforts to hide funds, to show that a person knew or deliberately ignored the obvious. Screen a counterparty before you deal Run one search across sanctions, PEP, and adverse media data to check a person or company before you take their money. Try Combined AML Screening → US money laundering laws US money laundering charges usually come under two statutes. They cover different conduct. 18 U.S.C. 1956. The main money laundering law, covering transactions meant to promote crime, hide the source of funds, or avoid reporting. 18 U.S.C. 1957. Covers spending or depositing more than $10,000 of criminal proceeds, even without an intent to hide anything. Prosecutors also use the Bank Secrecy Act for reporting failures. Read more: the Bank Secrecy Act sets many of the duties behind these cases. Penalties for money laundering Penalties are severe, and they stack on top of any sentence for the underlying crime. The table shows the US and UK maximums. Law Maximum prison Fine 18 U.S.C. 1956 (US) 20 years $500,000 or twice the value, whichever is greater 18 U.S.C. 1957 (US) 10 years Up to twice the amount involved POCA 2002 (UK) 14 years Unlimited fine Businesses face penalties too. In 2024, TD Bank agreed to about $3 billion after admitting money laundering failures (US Department of Justice, 2024). How money laundering charges arise Charges usually grow out of an investigation into another crime. The money trail often becomes the case. An investigation into fraud, drugs, or corruption can uncover how the proceeds were moved, and that movement supports a separate money laundering charge. A suspicious activity report from a bank can also start or support an inquiry. Because the money trail can be easier to prove than the original crime, prosecutors sometimes lead with laundering charges. Bank records, transfers, and property purchases leave a paper trail that a jury can follow, even when the underlying offense is harder to pin down. Know the warning signs before they cost you Run our red flags checklist to spot the behavior that leads to money laundering investigations. Open the Red Flags Checklist → Money laundering charges in the UK The United Kingdom handles money laundering charges under the Proceeds of Crime Act 2002. The structure is different from the US, but the idea is the same. The Act sets three main offenses: concealing criminal property, arranging to help someone acquire or use it, and acquiring, using, or possessing it. The maximum sentence is 14 years in prison plus an unlimited fine. The UK also requires regulated staff to report suspicion, and failing to do so can be an offense in its own right, separate from handling the money. That duty is one reason banks file so many reports each year. Possible defenses Defenses depend entirely on the facts, and only a lawyer can advise on a specific case. In general terms, they often center on knowledge and intent. No knowledge. The defendant did not know and had no reason to know the money was criminal. No criminal source. The funds did not come from unlawful activity. Authorized disclosure. In the UK, reporting a suspicion to the authorities can provide a defense. Lack of intent. The required intent to promote or conceal was not present. These are general categories, not advice. The right approach depends on the charge and the … Read more

Horizon scanning

Horizon scanning Horizon scanning is the ongoing practice of monitoring for emerging risks, regulatory changes and new typologies before they affect a firm’s compliance programme. It sits ahead of the periodic risk assessment, feeding it new inputs as the environment shifts. Firms that scan systematically catch new obligations before they become findings, rather than after. Key takeaways Horizon scanning is ongoing external monitoring, not a one-off annual exercise. It feeds the periodic risk assessment rather than replacing it. Typical inputs: regulator publications, FATF statements on high-risk jurisdictions, enforcement actions, and new typologies from law enforcement and FIUs. Skipping it means a firm’s controls fall behind changes it should have seen coming. Ownership usually sits with compliance or the MLRO, reporting to senior management or the board. A documented horizon scanning log is something examiners commonly expect to see as evidence. On this page What horizon scanning means in practiceWhat a horizon scanning process actually watchesHorizon scanning vs the risk assessmentHow firms run it: sources, cadence, ownershipWhat happens when horizon scanning is skippedBuilding horizon scanning into governanceFAQsRead more What horizon scanning means in practice Horizon scanning is a continuous watch, not a one-off exercise. Compliance teams track regulator publications, enforcement outcomes, new typologies and geopolitical developments on a rolling basis, then assess what each one means for the firm’s own risk exposure. The output is usually a log: a running record of what was spotted, when, and what action it triggered, whether that’s a policy update, a control change, or simply a note that no action is needed yet. What a horizon scanning process actually watches A useful scan covers several distinct sources at once. Regulator consultations and policy statements signal changes before they’re mandatory. Enforcement actions against other firms show where supervisors are actually focusing attention, which often differs from what’s written in guidance. FATF statements on high-risk jurisdictions shift geographic risk ratings. New typologies published by financial intelligence units and law enforcement reveal how criminal methods are evolving. Worth knowing. A horizon scanning log that only lists regulator publications misses half the picture. Enforcement actions against peer firms are often the clearest early signal of where scrutiny is heading next. Horizon scanning vs the risk assessment The two are related but distinct. A risk assessment is a structured, periodic exercise that produces a formal risk rating for the business. Horizon scanning is the ongoing input that keeps that assessment current between formal reviews, rather than letting it go stale for a year at a time. A firm can have an excellent risk assessment on paper and still be caught off guard, if nothing is feeding it new information as the environment changes. How firms run it: sources, cadence, ownership Most programmes assign a named owner, usually within compliance or the MLRO’s team, to review sources on a set cadence, weekly or monthly is common, and log anything relevant. Larger firms sometimes split this by domain: sanctions, financial crime typologies, and data or technology regulation each get a separate scan. Findings typically get triaged into three buckets: immediate action required, monitor for now, and no action needed, with the reasoning recorded in each case. What happens when horizon scanning is skipped Without it, a firm’s controls only change when something forces them to, usually a new law taking effect, an audit finding, or an enforcement action against a peer. That’s a reactive posture, and it shows up in examinations as a gap: a firm that can’t demonstrate it was aware of a relevant development ahead of time looks worse than one that spotted it late but flagged it early. Building horizon scanning into governance The strongest programmes report scanning outputs up to senior management or the board on a regular cycle, not just log them and move on. That creates a paper trail showing the firm was actively watching, and it gives leadership visibility into risks building before they become findings. Stay ahead of emerging AML risk See where regulatory and typology risk is shifting before it shows up in your controls. Try the AML Risk Assessment → Frequently asked questions What is horizon scanning in compliance? Horizon scanning is the ongoing practice of monitoring regulator publications, enforcement actions, and emerging typologies to catch relevant changes before they affect a firm’s compliance programme. It feeds the periodic risk assessment rather than replacing it. How often should horizon scanning happen? There’s no single mandated frequency, but most programmes review sources weekly or monthly and log findings continuously, rather than treating it as an annual task. Who owns horizon scanning in a firm? Ownership usually sits with compliance or the MLRO’s team, often reporting outputs up to senior management or the board on a regular cycle. What’s the difference between horizon scanning and a risk assessment? A risk assessment is a structured, periodic exercise producing a formal risk rating. Horizon scanning is the continuous input that keeps that assessment current between formal reviews. What sources feed a horizon scanning process? Typical sources include regulator consultations and policy statements, enforcement actions against other firms, FATF statements on high-risk jurisdictions, and new typologies published by financial intelligence units and law enforcement. Read more: our ultimate guides, whitepapers and templates Related guides and resources to help you act on what you just read. AML Risk AssessmentWhat horizon scanning feeds.Read guide →AML GovernanceWhere ownership sits.Read guide →Financial Crime Risk AssessmentThe wider assessment.Read guide →Money Laundering TypologiesWhat new patterns look like.Read guide →Sanctions Risk AssessmentThe sanctions-specific version.Read guide → Last reviewed July 19, 2026 · 5 min read · Written for compliance and risk professionals · By the WhoWiki editorial team Key takeaway: Horizon scanning is the ongoing practice of monitoring for emerging risks, regulatory changes and new typologies before they affect a firm’s compliance programme. It sits ahead of the periodic risk assessment, feeding it new inputs as the environment shifts. Firms that scan systematically catch new obligations before they become findings, rather than after.