AUSTRAC’s risk assessment: three areas where you may need to step up your compliance program

Twitter
LinkedIn
Facebook

The Australian Transaction Reports and Analysis Centre (AUSTRAC) has just released a report (12 July) Securities & derivatives sector: money laundering and terrorism financing risk assessment revealing the vulnerabilities of the securities and derivatives sector with regards to financial crime.

We recently took at AUSTRAC’s advice on the risk management obligations of businesses. We have also looked at the compliance obligations of those who trade in OTC derivatives.

risk assessment

By Dr. Drew Donnelly, Compliance Quarter

Today we review AUSTRAC’s assessment with one focus; in which areas are businesses still falling short in meeting their obligations under the Anti-Money Laundering and Counter-Terrorism Financing (AML/CTF) framework.

AUSTRAC’s Findings

AUSTRAC’s report used three key sources in developing its risk assessment:

  • Analysis of suspicious matter reports (SMRs), as well as other AUSTRAC intelligence
  • Reports and intelligence from other government agencies
  • Feedback from entities within the sector, industry associations and industry experts.

The key findings were:

  • The risk of criminal behaviour in the securities and derivatives sector is rated at the high end of ‘medium’.
  • Fraud, including fraud which is cyber-enabled, was the highest reported threat to the sector, with many customer emails and trading accounts being hacked.
  • Money laundering, insider trading and market manipulation were the next highest areas of criminal behaviour
  • Tax evasion (2%) and terrorism financing (1%) were the least reported threats.

Areas where improvement is needed

AUSTRAC emphasises that it expects businesses to read the report and, check that AML/CTF procedures and arrangements are compliant. AUSTRAC has committed to following (p6). Listed below are three areas where organisations have work to do.

(1) Insufficient SMR

Under section 41 of the Anti-Money Laundering and Counter-Terrorism Financing Act 2006, designated organisations are required to submit ‘suspicious matter reports’ (SMRs) to AUSTRAC when certain suspicious circumstances apply.

However, over the two-year sample period used in the construction of AUSTRAC’s assessment, 60 per cent of participants did not submit an SMR to AUSTRAC.

While it is possible that there was no suspicious activity to report, this seems unlikely. It is more likely that some of the non-reporting is because organisations do not have appropriate mechanisms in place to capture the suspicious behaviour.

For further information, see our discussion of risk management programs under the AML/CTF Framework.

(2) White labelling

White labelling occurs when businesses facilitate access to a trading platform despite not being a customer. The risk here is that “Poorly developed agreements or contracts that do not clearly indicate which entities are responsible for AML/CTF obligations significantly undermine the AML/CTF framework.” (p5). Organisations need to be aware that they cannot outsource their regulatory obligations under the AML/CTF framework.

(3) Foreign-owned organisations unaware of their obligations.

45 % of the ASX market is owned by foreign entities. 31% of suspicious transactions related to the behaviour of entities in foreign jurisdictions. Any organisation operating in Australian markets need to be aware of their legal obligations when operating here.

To see other areas for improving compliance read the full report.

If you think we could be of assistance in developing appropriate risk management procedures and mechanisms, please don’t hesitate to get in contact.

More to explorer

werribee park mansion

Victoria consults on lower prices for embedded network customers

The Victorian Government has opened consultation on proposed pricing reforms for embedded networks, following its announcement that it intends to require lower energy prices for households and small businesses in those networks. The consultation is relevant to residential and small commercial embedded network customers, embedded network operators, exempt sellers and suppliers, licensed retailers operating in embedded networks, owners corporations, retirement villages, caravan parks, shopping centres and providers of bundled energy-related services such as bulk hot water, centralised heating and cooling.

smartphone beside a magnifying glass

Energy Retailer Assurance Audits in 2026: An Australian Guide

Assurance audits used to be a tick-the-box exercise. They are not anymore. With the Australian Energy Regulator (AER) refreshing its Compliance Procedures and Guidelines and releasing an updated Practice Guide for Compliance Audits last year energy retailers in Australia are operating in a sharper, more evidence-driven assurance environment than at any point in the National Energy Retail Law’s history. This post explains, in plain English, what an assurance audit looks like under the current settings, where the AER is looking hardest in 2025/26, and

street road near green and yellow trees

Embracing the uncertainty of rapid advancement and adoption of general artificial intelligence for energy businesses

The way businesses and professionals interact with artificial intelligence has changed. Over the past two months, we have observed a shift across our client base and the broader regulatory and legal community that goes beyond curiosity or experimentation. Professionals who were previously sceptical are now actively engaging with AI tools. Those who were already experimenting are finding that the tools have become materially more capable than they were even six months ago.

Leave a Reply

Your email address will not be published. Required fields are marked *