About a-team Marketing Services
The knowledge platform for the financial technology industry
The knowledge platform for the financial technology industry

A-Team Insight Blogs

FinCEN Overhauls AML and CFT Rules with a New Effectiveness Standard

Subscribe to our newsletter

Published April 7, 2026, FinCEN’s latest Notice of Proposed Rulemaking (NPRM) is a sweeping overhaul of anti-money laundering (AML) and countering the financing of terrorism (CFT) programmes, recasting them around effectiveness, risk-based design and the fight against illicit finance. “For too long, Washington has asked financial institutions to measure success by the volume of paperwork rather than their ability to stop illicit finance threats,” said Secretary of the Treasury Scott Bessent. “Our proposal restores common sense with a focus on keeping bad actors out of the financial system, not burying America’s banks in more red tape.

This proposal formally supersedes FinCEN’s earlier July 2024 proposal, replacing it with a broader reset that distinguishes more clearly between failures in programme design and failures in programme implementation. FinCEN says comments are due 60 days after Federal Register publication, and the proposal states that, if finalised, the rule would generally become effective 12 months after the final rule is issued.

Becki LaPorte, Principal – AML Strategy and Innovation at FinScan, an Innovative Systems solution, shared her thoughts with RegTech Insight on the implications for firms’ governance and compliance operations – “FinCEN’s proposed rule represents a significant structural shift in AML/CFT compliance obligations, with immediate and concrete implications for compliance officers. The most consequential change is the move from an existence standard to an effectiveness standard – meaning a well-documented program that produces no meaningful risk outcomes is now explicitly exposed.” She continues, “Paired with this, the rule formally requires a mandatory, structured risk assessment as a legal obligation, requiring institutions to identify, assess, and document AML/CFT risks in direct alignment with FinCEN’s published National Priorities, with prompt updates whenever the risk profile materially changes. These two shifts alone demand that compliance officers begin building outcome-measurement frameworks and defensible, living risk assessment processes – not just policy libraries.”

For compliance operations, the burden moves upstream-trigger events, escalation paths, customer review processes, scenario tuning, suspicious activity reports (SARs), workflows and customer exit decisions all need to be connected to a living AML/CFT risk assessment.

A mandatory, structured and continuously refreshed risk assessment process creates new demands on data and explainable decision records. Institutions will need to show how customer, product, channel and geographic data feeds into risk classification, how those classifications affect controls and monitoring, and how those decisions are reviewed when risk conditions change. FinCEN’s model gives firms flexibility on methodology, but not on evidence quality.

LaPorte draws out the implication – “The rule also puts real regulatory teeth behind risk-based compliance and directly challenges blanket de-risking practices. Institutions are now explicitly required to allocate more resources to high-risk customers and focus less on low-risk customers. Account closure or customer exit decisions must be grounded in individualized AML/CFT risk analysis, not broad category-based policies.”

A Global Trend

The FinCEN NPR is the latest in a round of AML/CFT reviews across the jurisdictions. In the European Union, the new Anti-Money Laundering Authority (AMLA) and the Anti-Money Laundering Regulation (AMLR) are designed to create a more harmonised supervisory and rulebook architecture, especially for high-risk cross-border institutions.

In the United Kingdom, the Financial Conduct Authority’s (FCA’s) Office for Professional Body Anti-Money Laundering Supervision (OPBAS) said last month that supervision “is more effective than at any time since 2018 but enforcement lacks the teeth to deter firms from falling short of minimum standards.” In 2025 the government has decided the FCA will take over anti-money laundering and counter-terrorist financing supervision in the legal and accountancy sectors.

The Hong Kong Monetary Authority (HKMA) continues to frame AML and CFT obligations around risk-based supervisory expectations for authorised institutions. HKMA’s most recent AML and CTF materials include work on transaction monitoring design and AI, including for stored value facility licensees.

Australia’s AML and CFT reforms likewise emphasise governing body and senior management responsibility, a fit and proper compliance officer, and more targeted customer due diligence requirements that come into force for current reporting entities on March 31, 2026.

Institutional models differ across the European Union, United Kingdom, Hong Kong and Australia. But the regulatory direction is converging around the same question: can firms show that AML and CFT controls are risk-based, current, demonstrable and capable of producing useful outcomes?

FinCEN’s proposal sharpens that question for the United States. It is unlikely to be the last jurisdiction to do so as LaPorte concludes, “FinCEN isn’t asking institutions to do more compliance, it’s demanding smarter, more defensible, and outcome-driven compliance.”

Subscribe to our newsletter

Related content

WEBINAR

Recorded Webinar: GenAI and LLM case studies for Surveillance, Screening and Scanning

As Generative AI (GenAI) and Large Language Models (LLMs) move from pilot to production, compliance, surveillance, and screening functions are seeing tangible results – and new risks. From trade surveillance to adverse media screening to policy and regulatory scanning, GenAI and LLMs promise to tackle complexity and volume at a scale never seen before. But...

BLOG

How GenAI Is Reshaping Surveillance and Screening: Practical Takeaways for Compliance Leaders

The rapid expansion of Generative AI across financial institutions is often described in terms of technological capability, model performance, and data scale. But for compliance leaders, the more meaningful shift is organisational and operational. The recent A-Team Group webinar on GenAI and LLM case studies for surveillance, screening and scanning brought this into sharp focus....

EVENT

TradingTech Summit London

Now in its 15th year the TradingTech Summit London brings together the European trading technology capital markets industry and examines the latest changes and innovations in trading technology and explores how technology is being deployed to create an edge in sell side and buy side capital markets financial institutions.

GUIDE

FRTB Special Report

FRTB is one of the most sweeping and transformative pieces of regulation to hit the financial markets in the last two decades. With the deadline confirmed as January 2022, this Special Report provides a detailed insight into exactly what the data requirements are for FRTB in its latest (and final) incarnation, and explores what needs to be done in order to meet these needs on a cost-effective and company-wide basis.