For MLROs, AML & Compliance Teams

Audit-ready workflow — from alert to STR.

Bucephalus is built around the regulatory obligations your team actually works against: EU AMLR / AMLD6, the AML Authority (AMLA) regime, EBA Guidelines, sanctions screening and national FIU reporting. Every alert arrives with its detection rationale, every case with an auditable decision trail, and every report in the format your FIU expects.

Controlled workflow Triage → investigation → decision → filing Role-based queues, SLA tracking, four-eyes review and mandatory rationale on every decision.
Explainability Every score, every rule, cited Detection output links back to the model, rule or list that triggered it — no unexplained "AI said so".
Regulatory readiness STR/SAR templates and FIU formats Jurisdiction-aware case packs, retention controls, and exportable audit evidence for supervisory inspection.

Compliance claims on this page map directly to EU AMLR, AMLD6, EBA ML/TF Risk Factors Guidelines and applicable national FIU reporting regimes. Coverage per jurisdiction is agreed in scope during the pilot.

Compliance & Audit

Regulation-first architecture.

Bucephalus is designed around the regulatory reality of European banking — not retrofitted for it. The same audit trail that satisfies your internal audit also satisfies AMLA, the ECB, the EBA and your national supervisor.

GDPR

Data minimisation & sovereignty by design

PSD2 / PSD3

Strong Customer Authentication & fraud reporting

AMLD 6 / AMLR

Designed to meet AMLD 6 / AMLR requirements

DORA

Operational resilience for critical ICT

ISO 27001

Aligned with ISO 27001 controls

EU

EU AI Act

Transparent, explainable AI decisions

AML / CFT

  • Risk-based KYC and CDD with tiered onboarding
  • Continuous AML monitoring with typology coverage
  • Structured STR / SAR workflow with FIU-ready exports
  • Sanctions and PEP screening (EU, OFAC, UN, national)
  • Aligned with the EU AML Package (AMLR / AMLD 6 / AMLA)

PSD2 / PSD3

  • Real-time fraud detection on payment initiation
  • SCA decisioning with TRA exemption support
  • Article 96 fraud reporting (transaction-level statistics)
  • Dispute and chargeback evidence packs
  • Open Banking risk scoring on third-party calls

DORA

  • Critical ICT classification and risk register support
  • Incident detection, classification and reporting workflow
  • Threat-led penetration testing readiness (TLPT)
  • Third-party register and concentration-risk views
  • Operational resilience telemetry exposed to your CISO

Audit & Recordkeeping

  • Immutable, hash-chained event log
  • 5–10 year retention with WORM-style storage options
  • End-to-end traceability of every alert and decision
  • Model lineage: training data window, version, validation
  • Supervisor-grade export and inspection mode
Detection Methodology

A multi-layered detection model — with an explanation for every decision.

No single technique catches modern financial crime. Bucephalus combines four detection layers and surfaces the reason for every alert, so analysts and supervisors can see why, not just what.

01

Rule-Based Scenarios

Expert-authored scenarios for known typologies — structuring, smurfing, layering, suspicious payment corridors. Tunable per institution and product line, no coding required.

02

Statistical Anomaly Detection

Distribution and threshold deviation against the customer's own history and peer-group baselines. Catches the slow drift that rule libraries always miss.

03

Machine Learning Models

Supervised gradient-boosted models for fraud scoring and unsupervised models for emerging-pattern discovery. Continuously retrained on confirmed labels and analyst feedback.

04

Graph & Network Analysis

Beneficiary, device and counterparty graphs reveal mule networks, fan-out structures and circular flows that look innocent transaction-by-transaction.

Core Risk Indicators

A composite score is built from dozens of signals — these are the most influential ones that show up in nearly every alert explanation.

Transaction amount and structuring patternsVelocity (count, value, frequency)New payee or new beneficiaryNew device or unusual channelGeographic deviation and corridor riskBehavioural baseline driftCounterparty network riskTime-of-day and session anomalies

Explainability First

Every alert, score and block carries a structured explanation:

  • Reason codes mapped to AML typologies and fraud patterns
  • Feature contribution showing which signals drove the decision (SHAP-style)
  • Input traceability — every data point used, with timestamps and sources
  • Model lineage — exact model version, training window and validation metrics

Required by the EU AI Act for high-risk AI systems and by supervisors auditing automated decisioning under DORA.[1][2]

Operating Model

A platform designed around real compliance teams.

Bucephalus is more than software — it's an operating model. Roles, workflows, SLAs and escalation paths are built in, so the platform reflects how supervisors expect AML and fraud to actually run.

Roles & Responsibilities

AML Officer

Owns AML scenarios, manages alerts, signs off on STR/SAR submissions and is accountable to the supervisor for the bank's AML posture.

Fraud Analyst

Investigates fraud alerts in real time, manages case workflows, calibrates thresholds for fraud-specific scenarios.

Compliance

Sets the policy framework, reviews controls, runs the four-eyes approval process for high-impact changes.

Risk Manager

Reads aggregate dashboards, defines risk appetite by product / segment / region, owns the risk register.

System Administrator

Operates the platform, manages identities, deploys updates and rotates secrets — explicitly separated from any AML or fraud decision authority.

Process-Based Operation

Detection feeds investigation feeds decision feeds reporting — and every step writes to the same audit log.

1

Automated Detection

Inbound events scored in real time across rules, statistics, ML and graph layers.

2

Manual Investigation

Alerts auto-routed to the right analyst queue with evidence, history and recommended actions.

3

Structured Decision

Decisions follow defined workflows with mandatory four-eyes approvals on irreversible actions.

4

Audited Reporting

STR / SAR, PSD2 fraud reports and supervisory exports generated from the same auditable record.

Bucephalus is not just technology — it is an operating model that compliance, fraud and risk teams can adopt as their day-to-day way of working.
Geographic & Linguistic Coverage

Built for Europe and its associated economic areas.

Bucephalus is designed to meet the legislative and supervisory expectations of the European Union, the European Economic Area and the broader cluster of associated and candidate economies. Local language, local currency, local FIU formats — without forking the platform.

European Union (EU-27)

Full coverage of the EU acquis: AML Regulation (AMLR), AMLD 6, PSD2 / PSD3 / PSR, EU AI Act, DORA, GDPR and the EBA Guidelines on ML/TF risk factors and on the use of Remote Customer Onboarding (EBA/GL/2022/15).

AustriaBelgiumBulgariaCroatiaCyprusCzechiaDenmarkEstoniaFinlandFranceGermanyGreeceHungaryIrelandItalyLatviaLithuaniaLuxembourgMaltaNetherlandsPolandPortugalRomaniaSlovakiaSloveniaSpainSweden

EEA / EFTA

European Economic Area members applying EU financial-services directives via the EEA Agreement, plus Switzerland which mirrors core AML and prudential standards through bilateral agreements and FINMA rules.

NorwayIcelandLiechtensteinSwitzerland

Associated & Candidate Economies

Jurisdictions in the EU enlargement and association process whose AML/CFT and supervisory frameworks are converging with the EU acquis. Bucephalus' rules and reporting templates can be configured for each national FIU.

United KingdomAlbaniaBosnia and HerzegovinaGeorgiaMoldovaMontenegroNorth MacedoniaSerbiaTürkiyeUkraine

International Standards

Aligned with the recommendations of the global standard-setters that shape European supervisory expectations.

FATF 40 RecommendationsWolfsberg Group principlesBCBS guidance on AML/CFTEgmont Group FIU formatsISO 20022 messagingISO 27001 / 27701

Multi-Language

The analyst console, customer-facing decisioning messages and regulatory exports localise to the language(s) of each operating jurisdiction. STR / SAR narratives are generated in the FIU's required language with audit-grade translation lineage.

EnglishGermanFrenchItalianSpanishPortugueseDutchPolishCzechSlovakHungarianRomanianBulgarianCroatianSlovenianGreekSwedishDanishNorwegianFinnishEstonianLatvianLithuanianUkrainianSerbianTurkishArabic (RTL)

Plus on-request locale onboarding for any additional jurisdiction supported by your operations.

Multi-Currency & FX

Bucephalus is multi-currency by design. Every amount is stored in its original ISO 4217 code, normalised against trusted reference rates, and used in FX-aware risk scoring and reporting.

EUR Euro
GBP Pound sterling
CHF Swiss franc
USD US dollar
PLN Polish złoty
HUF Hungarian forint
CZK Czech koruna
RON Romanian leu
ALL Albanian lek
SEK Swedish krona
NOK Norwegian krone
DKK Danish krone
ISK Icelandic króna
TRY Turkish lira
UAH Ukrainian hryvnia
RSD Serbian dinar

Plus all other ISO 4217 currencies — including precious metals (XAU, XAG) and CBDC pilots where applicable.

FX & Cross-Border Detection Capabilities

Multi-Currency Native

Every transaction is stored in its original currency and in a configurable reporting currency, with reference-rate snapshots from the ECB, SNB, BoE and national central banks.

FX-Aware Scoring

Risk thresholds and behavioural baselines are normalised across currencies — a HUF 5 M and a EUR 12 500 transfer trigger comparable scrutiny.

Cross-Border Typologies

Detection of FX-based laundering patterns: layering through high-volatility corridors, round-trip currency arbitrage, mirror trades and hawala-like structures.

Sanctions by Corridor

Currency- and corridor-specific sanctions logic (e.g. RUB / BYN restrictions, dual-use export corridors, embargoed counterparties) applied at the message level.

Regulatory Self-Assessment

See which regulations apply to your institution.

Answer five short questions. The tool will identify the applicable EU and international AML / CFT / fraud regulations and recommend the Bucephalus modules your institution needs to comply. Results are generated in your browser — nothing is transmitted until you choose to send them to us.

Question 1 of 5

1. What type of financial institution are you?

Select the option that best describes your licence.