CBN AML/CFT Compliance
CBN AML/CFT Compliance is the regulatory obligation imposed by the Central Bank of Nigeria under the Money Laundering (Prevention and Prohibition) Act 2022 and the CBN AML/CFT Framework, requiring all licensed financial institutions and fintechs to implement transaction monitoring, tiered KYC/CDD with BVN/NIN verification, sanctions and PEP screening, and suspicious transaction reporting (STR) and currency transaction reporting (CTR) via the NFIU GoAML platform.
Also known as: CBN AML compliance · CBN AML/CFT · Nigerian AML compliance · GoAML filing
Explanation
The CBN framework is not a checkbox exercise -- examiners test whether controls actually operate. Transaction monitoring must run against Nigerian typologies, KYC must verify identity through BVN/NIN, and STR/CTR filing must meet NFIU deadlines with dual-review workflows.
Compliance is not "we have a policy" -- it is evidenced operation: monitoring rules with alert-to-disposition trails, verification records captured at onboarding, screening runs with match reviews, and filing receipts from GoAML.
The cost of non-compliance is direct: penalties, licence restrictions, and reputational damage that kills enterprise deals and investor confidence.
Why it matters
Every Nigerian fintech and financial institution is subject to CBN examination -- readiness is not optional.
Evidence must be continuous: examiners test live operation, not documentation assembled for the visit.
How StackWeaver applies it
StackWeaver engineers the CBN AML/CFT controls into the client's stack -- monitoring rules tuned to Nigerian typologies, KYC/CDD wired to onboarding with BVN/NIN, screening integrated with OFAC/UN/EU/NFIU lists, and STR/CTR workflows with GoAML submission tracking. This applies <a href="/library/compliance-engineering/">Compliance Engineering</a> to the specific CBN framework, producing evidence that feeds the <a href="/library/evidence-architecture/">Evidence Architecture</a>.
The <a href="/solutions/cbn-aml/">CBN AML solution</a>, <a href="/cbn-calculator/">CBN AML Calculator</a>, and <a href="/library/cbn-aml-cft-implementation-guide/">CBN AML/CFT Implementation Guide</a> provide the complete implementation path. The <a href="/evidence/novapay-aml/">NovaPay case study</a> shows a real engagement outcome; the <a href="/resources/trust-readiness-playbook/">Trust Readiness Playbook</a> includes the full multi-framework roadmap.
What this relates to
- Continuous ComplianceA state in which compliance evidence is generated and verified continuously, so readiness is always current rather than reconstructed for each audit.
- Evidence-Native SystemsSystems where compliance proof is a property of how they operate -- captured at the source -- not a document produced under deadline.
- Compliance EngineeringTreating compliance as something built into systems through engineering -- enforced, tested, and monitored -- rather than added through documentation.
- CBN AML/CFT Implementation Guide 2026A practical, control-by-control implementation guide for CBN AML/CFT — CDD/KYC, transaction monitoring, sanctions & PEP screening, STR/CTR filing to NFIU GoAML, governance, and record-keeping, mapped to CBN expectations. The definitive CBN AML implementation guide for Nigerian fintechs.
- StackWeaver Trust Readiness Playbook 2026The complete engineering-led guide to preparing for SOC 2, CBN AML/CFT, NDPA, ISO 27001 and continuous audit readiness — frameworks, a searchable control library, a six-phase roadmap, and evidence examples. The playbook for fintech compliance engineering.