Kyc information: the kyc components a customer file is built from, and what a complete kyc profile looks like when somebody asks for it

Updated

KYC information sounds like a list of fields and is really two different things sitting in the same record. Some of it is evidence, collected from the customer or a source and true as of a date. The rest is judgement, made by your firm about that evidence. Files that blur the two are hard to defend, because nobody can tell later which parts you were told and which parts you decided.

The evidence half

Who the customer is, in the terms your policy specifies, with the source and the date of each item. For an individual that is typically the identifying details and how they were verified. For a company it is the entity evidence and the individuals behind it. Everything in this half has a provenance: it came from somewhere, on a day, and somebody put it there. A field with a value and no provenance is the commonest weakness in a customer profile, because it cannot be re-checked without redoing the work.

The judgement half

The risk rating, the reason for it, the level of due diligence applied, the approval where one was needed, and the date of the next review. This half is what your firm decided rather than what it was told, and it is the half an examiner reads first, because it shows whether you have a policy or a habit. Written badly it says standard. Written well it says standard because the product, the geography and the ownership were all inside the ordinary range, decided by a named person on a date.

What complete means

A complete profile is one that can be handed to somebody who has never seen the customer and leaves them with no questions of fact. That is a higher bar than every field being populated. In practice it means each evidence item carries its source and date, the rating carries its reason, the approval carries a name, and there is a next review date in the future. If any of those four is missing, the file will generate a conversation rather than end one.

Questions people ask about kyc information

What are the components of KYC?

Identification of the customer, verification of that identity, identification of beneficial owners where the customer is a company, a risk rating with a reason, and ongoing review. Most descriptions list the first three and stop, which is why so many files are strong at the front and weak after it.

How much KYC information should we collect?

Enough to support the rating you gave, and no more. Over-collection is not a safe default: it slows onboarding, it increases what you have to protect and retain, and it does not make a thin rating defensible.

Does the profile need to show who did what?

Yes, and it is the cheapest thing to record and the most expensive to reconstruct. A name and a date against each item turns a file into a record, and it is what lets somebody answer a question about a customer they have never dealt with.

Sources

Related answers

Start Clientvo ProKeep the files, $29 a month