Client stories
What remained after the memo landed
These notes come from compliance and finance leads who commissioned audits for fintech control environments — readiness, CDD sampling, monitoring, and diligence packs.
Extended story
Licensing file, eight weeks out
A payment institution approaching a licence variation asked for a regulatory readiness audit with a hard board date. Evidence intake showed three overlapping AML policy versions and an undated remediation list from a prior internal review.
Fieldwork sampled onboarding files, reconciliation packs, and two monitoring scenarios. The graded memo listed twelve findings; four were graded high, mostly around policy version control and overdue enhanced due diligence refreshes. The closing brief gave the compliance officer a calendar the board could approve the following week.
Leadership later noted that the calendar, not the length of the memo, was what their FSC correspondence ultimately referenced.
Extended story
Diligence room before a Series B
A lending fintech’s counsel asked for an independent challenge of the controls appendix two weeks before first-round meetings. The folder looked complete but buried open monitoring backlog metrics without explanation.
Our investor diligence engagement rebuilt the metrics page with caveats, ran a half-day Q&A dry run, and flagged three documents that still carried draft watermarks. Founders reported that subsequent investor questions stayed on product and unit economics rather than circling back to unexplained alert drops.