Financial Crime Compliance
Financial Crime Compliance (FCC) refers to the frameworks, policies, and measures that financial institutions and other organizations use to identify, prevent, detect, and report financial crime such as money laundering and fraud. Financial crime generally involves illegal activities that exploit financial systems for personal or organizational benefit. The specific obligations and scope of an FCC program typically vary by jurisdiction, sector, and entity type.
Financial Crime Compliance (FCC) is the set of policies, frameworks, and operational measures deployed by financial institutions and other regulated organizations to identify, prevent, detect, and report financial crime, including money laundering, fraud, and related illicit activity affecting financial systems. In practice, FCC functions as a compliance discipline, distinct from enterprise risk management and internal audit assurance, typically owned by a compliance or financial crime function under management, with board or committee oversight of its adequacy. The precise requirements, controls, and reporting obligations depend on applicable law and regulation in each jurisdiction and on the entity's regulatory status; the sources cited here describe FCC at a general level and do not establish the specific statutory obligations of any particular regime. This entry is educational and not legal, audit, or compliance advice.
Why it matters
Financial crime exploits the financial system for illicit gain, encompassing activities such as money laundering and fraud that can move criminal proceeds through legitimate institutions. Because financial institutions sit at the intersection of the economy and these illicit flows, a robust Financial Crime Compliance program is generally central to protecting the integrity of the financial system, an objective reflected in the mission of authorities such as the Financial Crimes Enforcement Network (FinCEN), which works to safeguard the financial system from illicit activity and counter money laundering.
For regulated organizations, the adequacy of an FCC program is typically a matter of both legal obligation and institutional resilience. Weaknesses in identifying, preventing, detecting, or reporting financial crime can expose an institution to regulatory scrutiny, remediation costs, and reputational harm, though the specific consequences depend on the applicable law and the entity's regulatory status in a given jurisdiction. FCC also matters at the governance level: while the compliance or financial crime function typically owns the day-to-day activity under management, the board or a relevant committee generally retains oversight responsibility for whether the program is adequate to the risks the organization faces.
It is important to recognize that the term describes a discipline at a general level. The precise controls, thresholds, and reporting duties vary by jurisdiction, sector, and entity type, and this entry does not establish the statutory obligations of any particular regime. Organizations should treat their own facts, regulatory status, and professional judgment as determinative rather than relying on a general definition.
Who it's relevant to
Inside FCC
Common questions
Answers to the questions practitioners most commonly ask about FCC.