Compliance Hub

Enhanced Due Diligence Policies for KYC

Site Logo
Tookitaki
1 min
read

Know Your Customer (KYC) is the process of obtaining information and data in order to authenticate clients' identities and ensure that they are not involved in money laundering or other financial crimes.

The following are the best KYC practices:

  • Make sure the customer is who he says he is.
  • Identify the nature of the client's activity.
  • Evaluate the money laundering risks associated with that customer in order to keep track of their activities.

What is KYC Enhanced Due Diligence, and how does it work?

Enhanced Due Diligence (EDD) is a variation on the KYC process of gathering data and information to authenticate a client's identification but with extra information necessary to lessen the client's risk. Regular KYC policies are distinguished from EDD policies by a number of criteria. EDD rules are regarded as "rigorous and robust," implying that they need the collection of substantially more proof and thorough information.

The whole EDD process must be well recorded, and regulators should have rapid access to the information. Professionals are frequently recruited to analyse data obtained from clients, and the credibility of information sources is critical.

When computing a KYC risk assessment, EDD also wants "reasonable certainty." This means that the experts in charge of making a choice must have gone through all of the essential research stages and used professional expertise and care in arriving at their conclusion.

EDD takes into account any pertinent negative facts. Any information relating to money laundering or corruption, whether it is found in an official document or on the Internet, must be carefully evaluated. There is no place for forbearance when clients or transactions are substantial enough to justify EDD, and no chances should be taken.

The same rules that apply to ordinary KYC processes also apply to EDD. Any suspicious activity discovered by a firm or institution must always be reported to authorities. Furthermore, constant monitoring is essential, and the usage of compliance software is strongly recommended.

Talk to an Expert

Ready to Streamline Your Anti-Financial Crime Compliance?

Our Thought Leadership Guides

Blogs
11 Jun 2026
6 min
read

How Tookitaki Helps New Zealand Banks Meet AML/CFT Act Requirements

New Zealand's AML/CFT Act 2009 requires transaction monitoring, SAR filing, and a mandatory Section 59 audit every two years. See how Tookitaki helps NZ banks and reporting entities stay compliant.

How Tookitaki Helps New Zealand Banks Meet AML/CFT Act Requirements
Blogs
11 Jun 2026
6 min
read

How Tookitaki Helps Australian Banks Meet AUSTRAC Transaction Monitoring Requirements

Australian banks and fintechs must meet AUSTRAC's transaction monitoring, SMR and TTR requirements under the AML/CTF Act. See how Tookitaki's FinCense platform is built for AUSTRAC compliance.

How Tookitaki Helps Australian Banks Meet AUSTRAC Transaction Monitoring Requirements
Blogs
09 Jun 2026
6 min
read

KYC Requirements in Malaysia: BNM's CDD Framework for Banks and Fintechs

Malaysia's KYC requirements are set out in BNM's AML/CFT Policy Document under AMLATFPUAA. This guide covers the three-tier CDD framework, eKYC digital onboarding, UBO identification, and EDD for PEPs and high-risk customers.

KYC Requirements in Malaysia: BNM's CDD Framework for Banks and Fintechs