Money laundering whistleblowing policy template

Figurine cleaning money
Staff should feel comfortable raising any suspicions of money laundering without fear that doing so could affect their role

The Money Laundering Regulations 2017, which transpose the Fourth EU Money Laundering Directive into UK law, came into full force on 26 June. The Fourth Directive includes some fundamental changes to the anti-money laundering procedures, including changes to customer due diligence, a central register for beneficial owners and a focus on risk assessments. For example, there will no longer be automatic exemptions from conducting client due diligence.

Further, the UK parliament has enacted a piece of sanctions and money laundering legislation designed to Brexit-proof the UK’s ability to implement international and European sanctions. The Sanctions & Anti-Money Laundering Act 2018 gives the UK new powers regarding sanctions and money laundering. For example, the UK can make, suspend and revoke sanctions regimes which can include broad measures including shipping, trade and even airspace restrictions, in addition to financial sanctions and travel bans.

VinciWorks has created a money laundering whistleblowing policy template that can easily be edited to suit your organisation and include the appropriate contact people.

Download policy template

What should be included in a money laundering whistleblowing policy?

A whistleblowing policy should give clear guidance and your organisation’s procedures for reporting suspicious activity. Whistleblowers should feel comfortable to raise concerns without fearing abuse from their colleagues and the policy should stress that concerns can be raised in full confidentiality. Any person who victimises a bona fide whistleblower must be liable to disciplinary action. Further, the money laundering whistleblowing policy should only be referred to with regards to concerns about money laundering, rather than to bring up personal grievances an individual might have with their organisation or a colleague.

The anti-money laundering resources page

VinciWorks has created an anti-money laundering resource page containing a host of compliance tools, including policy templates, guides, knowledge checks and more. The resources will help businesses comply with the Money Laundering Regulations 2017 and the Sanctions and Anti-Money Laundering Act 2018.

How are you managing your GDPR compliance requirements?

GDPR added a significant compliance burden on DPOs and data processors. Data breaches must be reported to the authorities within 72 hours, each new data processing activity needs to be documented and Data Protection Impact Assessments (DPIA) must be carried out for processing that is likely to result in a high risk to individuals. Penalties for breaching GDPR can reach into the tens of millions of Euros.

GDPR added a significant compliance burden on DPOs and data processors. Data breaches must be reported to the authorities within 72 hours, each new data processing activity needs to be documented and Data Protection Impact Assessments (DPIA) must be carried out for processing that is likely to result in a high risk to individuals. Penalties for breaching GDPR can reach into the tens of millions of Euros.

“In a world older and more complete than ours they move finished and complete, gifted with extensions of the senses we have lost or never attained, living by voices we shall never hear.”

Picture of James

James

VinciWorks CEO, VInciWorks

Spending time looking for your parcel around the neighbourhood is a thing of the past. That’s a promise.

How are you managing your GDPR compliance requirements?

GDPR added a significant compliance burden on DPOs and data processors. Data breaches must be reported to the authorities within 72 hours, each new data processing activity needs to be documented and Data Protection Impact Assessments (DPIA) must be carried out for processing that is likely to result in a high risk to individuals. Penalties for breaching GDPR can reach into the tens of millions of Euros.

GDPR added a significant compliance burden on DPOs and data processors. Data breaches must be reported to the authorities within 72 hours, each new data processing activity needs to be documented and Data Protection Impact Assessments (DPIA) must be carried out for processing that is likely to result in a high risk to individuals. Penalties for breaching GDPR can reach into the tens of millions of Euros.

How are you managing your GDPR compliance requirements?

GDPR added a significant compliance burden on DPOs and data processors. Data breaches must be reported to the authorities within 72 hours, each new data processing activity needs to be documented and Data Protection Impact Assessments (DPIA) must be carried out for processing that is likely to result in a high risk to individuals. Penalties for breaching GDPR can reach into the tens of millions of Euros.

GDPR added a significant compliance burden on DPOs and data processors. Data breaches must be reported to the authorities within 72 hours, each new data processing activity needs to be documented and Data Protection Impact Assessments (DPIA) must be carried out for processing that is likely to result in a high risk to individuals. Penalties for breaching GDPR can reach into the tens of millions of Euros.