Interactive map

What a compliance and financial crime framework actually looks like

Governance on top, three lines of defence holding it up, enablers underneath. Click any part of the diagram to open it, then click a component for who owns it, what it looks like on day one against at scale, and how it usually fails.

30 components · click the diagram

The model in 37 seconds, if you'd rather watch than click. The map below is the full version.

GOVERNANCE AND ACCOUNTABILITY Board, appetite, policy, MI 5 → THREE LINES OF DEFENCE FIRST LINE Owns and operates Takes the risk, runs the control 8 components → SECOND LINE Sets and challenges Writes the rules, tests the first line 8 components → THIRD LINE Assures independently Reports to the board, not to compliance 3 components → ENABLERS Systems, data, records, people 6 →
Written in a personal capacity for education. General information about how compliance frameworks are structured, not legal or regulatory advice, and not the view of any employer. Obligations differ by jurisdiction, licence and business model, so always work from your own regulator and your own permissions. UK references are to the Money Laundering Regulations 2017 and the FCA Handbook including the Consumer Duty.