Knowledge Base · Concepts · Regulations · Standards

A common vocabulary for financial-defence work.

Silbad's products sit at the intersection of finance, law, security engineering and AI. Decision-makers, practitioners and interested members of the public arrive with very different starting points — and sometimes with partial or outdated information about the same terms. This Knowledge Base is the short, neutral, professionally accurate ground that every Silbad page can link back to.

Each entry is intentionally brief — the goal is to bring readers up to speed quickly, not to substitute for the regulatory texts or the ISO documents themselves. Authoritative source links are at the bottom of every entry.

Core concepts

The terms that name the problem space and the methods we work with.

EU regulations

The legal frame within which European financial-defence work is actually carried out — and that Silbad's products are built to satisfy by design.

International frameworks

The intergovernmental bodies whose standards anchor the EU AML/CFT framework and the wider global financial-crime regime.

National frameworks (non-EU)

Non-EU national rules and supervisors that are not legally binding on EU institutions but that any holistic financial-defence team encounters in practice — through correspondent relationships, USD or GBP clearing, listed-issuer status, or cross-border investigations.

BSA (US) The 1970 US Bank Secrecy Act — foundation of modern AML reporting (CTR, SAR, customer recordkeeping). FinCEN (US) The US Financial Intelligence Unit — bureau of the US Treasury that receives BSA filings and issues advisories. OFAC (US) The US sanctions authority — SDN list, country programmes and sectoral sanctions with extraterritorial reach. SOX (US) The Sarbanes-Oxley Act 2002 — financial reporting and internal-control regime that shaped corporate governance worldwide. FCPA (US) The 1977 Foreign Corrupt Practices Act — US anti-bribery statute with global reach. FFIEC (US) The interagency US bank-examination body — its BSA/AML Examination Manual is a global de-facto reference. POCA (UK) Proceeds of Crime Act 2002 — UK money-laundering offences, asset confiscation and SAR regime via the NCA. UK FCA The UK Financial Conduct Authority — post-Brexit conduct regulator for banks, payments, asset managers and crypto. UK Bribery Act The 2010 UK anti-bribery statute — broader than the FCPA, with a corporate failure-to-prevent offence. AML/CTF Act + AUSTRAC (AU) Australia's AML statute and AUSTRAC, the regulator and FIU — well-known globally for the CBA and Westpac enforcement actions. APTCP + JAFIC (JP) Japan's principal AML statute and the JAFIC FIU inside the National Police Agency. NIST CSF The US NIST Cybersecurity Framework — voluntary in origin, the de-facto common language for cyber risk in finance. MAS (SG) The Monetary Authority of Singapore — central bank and integrated regulator for one of Asia's principal financial centres. FINMA (CH) The Swiss integrated financial-market regulator — non-EU but tightly aligned with EU practice through equivalence agreements.

ISO standards

The international standards that anchor information security, privacy management and financial messaging.

Marengo modules

Marengo's second core capability and the optional supervisory modules that extend the Marengo platform beyond the SFMA core.

Knowledge Base entries are working summaries, not legal advice. The authoritative reading of any rule remains in the official EU, national or ISO document — and, where uncertainty bears on a real decision, in advice from qualified counsel.