Enhanced Customer Due Diligence

March 19, 2026|10:00 AM AEDT

As global AML fines exceeded $3 billion in 2025, enhanced customer due diligence stands as the frontline defense against surging financial crimes and imminent regulatory overhauls set for 2026.

Key takeaways

  • Recent EU and Australian reforms mandate stricter ECDD by mid-2026, forcing financial institutions to revamp onboarding processes or face multimillion-dollar penalties.
  • Non-compliance with ECDD has led to real-world consequences like TD Bank's $1.3 billion fine in 2024, highlighting risks of reputational damage and operational shutdowns for banks worldwide.
  • Trade-offs in ECDD implementation include balancing rigorous checks against customer privacy, potentially excluding low-risk clients while enabling AI-driven efficiencies that reduce false positives but introduce bias risks.

ECDD in Focus

Enhanced customer due diligence has surged in importance amid a wave of regulatory tightenings driven by persistent financial crimes. In the EU, the impending AML overhaul and eIDAS 2.0 mandate by end-2026 require less mandatory data collection but enforce dynamic triggers for EDD, harmonizing digital identities across member states. This shift aims to combat fragmented compliance, yet it pressures institutions to integrate EU Digital Identity Wallets, escalating operational demands.

Australia's Tranche 2 reforms, effective July 1, 2026, extend AML obligations to professionals like lawyers and real estate agents, modernizing transaction tracing. Globally, FATF's updated guidance on high-risk jurisdictions, including calls for countermeasures against Iran and North Korea as of October 2025, compels enhanced monitoring. These changes stem from illicit flows estimated at $3.6 trillion annually, amplified by crypto and AI-fueled fraud.

Impacts ripple through sectors: banks face remediation costs in the millions, while fintechs grapple with AI integration for screening. High-risk clients, such as PEPs or those in complex structures, trigger deeper scrutiny, affecting onboarding times and costs. Consequences of inaction include fines like Goldman Sachs' $2.9 billion in 2020, plus lost revenue from reputational hits that deter clients.

Less obvious tensions arise in privacy versus security trade-offs; stringent EDD may alienate customers through invasive data requests, risking financial exclusion. AI tools promise cost reductions up to 50 percent but carry biases in adverse media screening. Stakeholder conflicts emerge between regulators pushing centralization, like EU's AMLA operational in 2025, and institutions seeking flexibility amid varying jurisdictional standards.

Sources

We use cookies to measure site usage. Privacy Policy