Comprehensive Customer Information vs Data Privacy
Apply privacy-by-design to AML data collection, gathering only risk-proportionate information and enforcing purpose-limited access with strong encryption.
CyberTRIZ analysis · Banking contradiction AML007 · one of 8,235 worked contradictions published by CyberTRIZ.AI
Regulations
Business Context
AML programmes require extensive customer information to understand ownership, business activity, transaction behaviour, and source of wealth. At the same time, privacy regulations require institutions to collect only information that is necessary.
Banking TRIZ Resolution
Apply privacy-by-design principles by collecting information according to customer risk, protecting sensitive data through encryption, and limiting access according to business purpose.
Recommended Banking TRIZ Principles
Principle 2 - Taking Out
Principle 24 - Intermediary
Principle 30 - Flexible Shells and Thin Films
Principle 39 - Inert Atmosphere
Expected Outcome
Better privacy protection
Stronger AML compliance
Reduced regulatory risk
Improved customer trust