AML compliancemust balancedata privacy lawswithfinancial crime prevention.
Option A (Correct):FIUsmust document the purpose of SAR-related data sharingunderFATF Recommendation 29andGDPR compliance standards.
Option B (Incorrect):Customers do not have the rightto request redaction of personal data in SARs, as this wouldcompromise AML enforcement.
Option C (Incorrect):Many jurisdictions permit information sharingfor AML purposes underformal agreements (e.g., 314(b) USA PATRIOT Act, GDPR exemptions).
Option D (Incorrect):AML reporting requirementsoverride opt-in privacy preferencesdue to thelegal obligation to report suspicious activity.
[Reference:FATF Recommendation 29 (FIUs), GDPR Article 6(1)(e) (AML Data Processing), USA PATRIOT Act Section 314(b)., , , , ]
Submit