2026-08-17

Added · Updated

AML/CFT/CPF Handbook — 8 Policies Procedures Controls

Regulated entities must establish and maintain risk-sensitive policies, controls, and procedures covering customer due diligence, reporting, record-keeping, internal control, risk assessment, compliance management, and employee screening. These measures must be proportionate to the nature and size of the business, with an independent audit function required to assess compliance with Section 26(1) of the Proceeds of Crime Act 2015. Entities with branches or subsidiaries must implement group-wide policies meeting Gibraltar standards, including information sharing and confidentiality safeguards. When outsourcing systems and controls, regulated entities retain ultimate responsibility for compliance and must conduct due diligence, risk assessments, and maintain contingency plans.

Gibraltar Financial Services Commission logo

Gibraltar

Gibraltar Financial Services Commission

Scan of the document's first page
Share

Get GFSC alerts — same-day email on every new publication.

Read the rest free

Source: Gibraltar Financial Services Commission — original document · Summary generated with machine assistance and reviewed before publication; the authoritative text is the regulator's original document. How RegAlert works

More like this from GFSC

We email you every new GFSC publication the day it's published.

Topics