Let’s talk

Insights for your business.

AML Compliance for Singapore Companies: A 2026 Guide for Business Owners

Anti-money laundering (AML) compliance is not just a concern for banks and financial institutions. Singapore companies across all sectors face obligations under the Corruption, Drug Trafficking and Other Serious Crimes (Confiscation of Benefits) Act (CDSA) and sector-specific regulations to detect, prevent, and report suspicious transactions. Non-compliance can result in criminal prosecution, substantial fines, and reputational damage.

This guide explains what AML compliance means for Singapore companies in 2026, which obligations apply, and the practical steps your business should take.

The AML Framework in Singapore

Singapore’s AML regime is built on a foundation of legislation and regulatory guidelines enforced by multiple authorities:

Who Must Comply with AML Obligations?

All Singapore Companies

Under the CDSA, every person in Singapore — including all companies and their officers — has a duty to file a Suspicious Transaction Report (STR) with the Suspicious Transaction Reporting Office (STRO) if they know or have reasonable grounds to suspect that a transaction involves the proceeds of a criminal offence. This obligation applies regardless of industry sector.

Regulated Sectors with Enhanced Obligations

Certain sectors face more detailed AML/CFT requirements, including formal Customer Due Diligence (CDD), record-keeping, and internal controls:

Key AML Obligations for Singapore Companies

1. Suspicious Transaction Reporting (STR)

Any company that encounters a transaction where it knows or suspects the funds involved are proceeds of crime must file an STR with STRO at the Commercial Affairs Department (CAD) of the Singapore Police Force. Key points:

2. Know Your Customer (KYC) and Customer Due Diligence (CDD)

For regulated sectors, formal CDD processes must be in place before establishing a business relationship or conducting a transaction. CDD involves:

Enhanced Due Diligence (EDD) is required for higher-risk customers, including Politically Exposed Persons (PEPs) and customers from high-risk jurisdictions identified by FATF.

3. Record-Keeping Requirements

Companies in regulated sectors must retain CDD documents and transaction records for a minimum of five years. These records must be made available to authorities upon request. The five-year period generally runs from the end of the business relationship or the date of the transaction.

4. Internal Controls and Compliance Programme

Regulated entities are required to implement an AML/CFT compliance programme that includes:

Register of Registrable Controllers (RORC)

Since 31 March 2017, all Singapore companies and LLPs are required to maintain a Register of Registrable Controllers (RORC). The RORC records the details of individuals and legal entities that have significant interest or significant control over the company.

Key obligations:

The RORC requirement supports Singapore’s beneficial ownership transparency efforts, aligned with FATF recommendations. Failure to maintain the RORC or lodge it with ACRA is an offence under the Companies Act.

Red Flags: Transactions That Should Raise Concerns

Singapore companies should be alert to the following indicators of potential money laundering:

Penalties for AML Non-Compliance

The consequences of AML non-compliance in Singapore are severe:

Directors and officers of companies may also face personal liability for AML offences committed by the company.

Practical Steps: Building AML Compliance for Your Singapore Company

Whether or not your company operates in a regulated sector, here are the essential steps to build a defensible AML posture:

  1. Conduct a risk assessment: Identify the money laundering risks specific to your industry, customer base, and transaction types.
  2. Implement KYC procedures: Verify the identity and beneficial ownership of customers and counterparties before transacting.
  3. Maintain your RORC: Keep the Register of Registrable Controllers current and lodge it with ACRA.
  4. Train your team: Ensure all staff understand the duty to report suspicious transactions and can identify AML red flags.
  5. Designate an MLRO: Appoint a responsible officer to receive internal STR disclosures and make STR filings.
  6. Document everything: Retain CDD records and transaction documentation for at least five years.
  7. Review and update regularly: AML risks evolve; review your policies annually or when your business model changes.

How Raffles Corporate Services Can Help

Raffles Corporate Services assists Singapore companies with AML compliance, including:

Our team stays current with ACRA, MAS, and CAD regulatory updates so that your company’s compliance framework remains robust. Contact us to learn how we can support your AML compliance needs.

Submit a Comment

Your email address will not be published. Required fields are marked *

Real people. Right here in Singapore.

Let’s get to work.

Hop on Raffles Corporate Services