us

216.73.217.135

Back
News

SFC Finalizes Consultation Conclusions on AML Guidelines

SFC Finalizes Consultation Conclusions on AML Guidelines
R Richard M. SEPTEMBER 16, 2021 1 minute read

Updated AML/CFT guidelines are expected to come into effect from 30 September 2021, except for the requirements of new cross-border correspondent relationships. 

The Securities and Futures Commission (SFC) of Hong Kong has finally issued its consultation conclusions on the country’s AML/CFT guidelines for licensed corporations.

The amendments were proposed to align Hong Kong’s Anti-money Laundering guidelines with the global standards set by the Financial Action Task Force (FATF).

The insulation began in September 2020, whereby the Securities and Futures Commission (SFC) was seeking to gain insights from market participants and other interested parties regarding some proposed amendments to the Guideline on Anti-Money Laundering and Counter Financing of Terrorism. 

The SFC stated that they received 26 written submissions in total which showed support for the proposals. However, a “considerable number” of remarks were made on the proposed requirements for cross-border correspondent relationships.

The consultation had proposed the introduction of requirements such as due diligence and robust risk mitigation measures for the business relationships in the securities sector, which are similar to cross-border correspondent banking relationships. 

The feedback from the SFC provides further clarity and flexibility in meeting the requirements for cross-border correspondent relationships. A streamlined approach for such relationships with affiliated companies has also been introduced.

“Under the streamlined approach, licensed corporations would be able to apply additional due diligence and other risk-mitigating measures for cross-border correspondent relationships with affiliated companies through their group AML/CFT programmes,” says the SFC report. 

The guidelines have also highlighted some key risk factors and sources of information that must be considered when licensed corporations conduct their institutional risk assessments. These risk assessment protocols must be conducted at least once every two years, or whenever a trigger event occurs.

Licensed corporations with overseas branches and subsidiaries of licensed corporations must also perform a group-wide risk assessment. 

The SFC has also limited the type or extent of CDD (customer due diligence) measures that must be used for verifying the identities of low-risk customers, in line with the risk-based approach. Enhanced CDD measures should be implemented for customers that fall under the PEP lists and high-risk jurisdiction categories. 

Other updates to the guidelines include enhancements to the list of red flag indicators for suspicious transactions and activities, requirements to perform third-party deposit due diligence before settling transactions with client-deposited funds and additional guidance on the source of funds and source of wealth checks.

Hong Kong’s updated AML/CFT guidelines are expected to come into effect from 30 September 2021, except for the requirements of new cross-border correspondent relationships, which will take effect on 30 March 2022 after a six-month transition period.

The detailed consultation conclusions can be viewed here.

Suggested Read: How can you prepare for AML Compliance – Ultimate AML Guidelines For Starters

Disclaimer: The views and opinions expressed on this webpage or weblink are those of the author only, and are not necessarily the views or opinions of Shufti Pro Limited. The material and information on this weblink is solely for general information purposes. You should not rely upon the material or information on the website as a basis for making any business or legal decision.

While we endeavor to keep the information up-to-date and/or correct, we make no representations or warranties of any kind, express or implied, or for any purpose about the completeness, accuracy, reliability, suitability, or availability of the contents or information herein. Any reliance on its content is thus entirely at your own risk.

For the avoidance of doubt, Shufti Pro Limited will not be liable for any false, inaccurate, inappropriate, or incomplete information presented herein, and all liabilities with respect to actions taken, or not taken, based on the contents or information herein, or for any loss sustained by you as a consequence are hereby expressly disclaimed by us.

Share you link

Bring your voice

Bring Your Voice.

The community for every hand that writes and every voice that speaks against fraud.

Join Community

Pitch a piece and get a verified byline in the Media room.

“Industry Partnerships That Create Real Value”

Join Shufti’s partnership network to expand your connections, collaborate with industry leaders, and unlock new opportunities.

Pitch a piece and get a verified byline in the Media room.

Partnership Inquiries?
Email us at [email protected]

iBeta Level 1 — ISO 30107-3 Compliant iBeta Level 2 — ISO 30107-3 Compliant iBeta Level 3 — ISO 30107-3 Compliant PCI DSS SOC 2 Type 2 GDPR GDPR Fundamentals — Quality Guild ISO 27001:2022 KJM Age Verification CCPA / CPRA Cyber Essentials Cyber Essentials Plus
Copyright © 2026 Shufti. All rights reserved.