8% of AML/CTF Act 2006 (Australia) you already have
AWWA Cybersecurity Guidance for the Water Sector (American Water Works Association) already covers about 8% of AML/CTF Act 2006 (Australia), leaving
36 of 39 controls as genuinely new work.
Already covered 2
Likely covered 1
New work 36
What is genuinely new work
Nothing in AWWA Cybersecurity Guidance for the Water Sector (American Water Works Association) reaches these. This is the list to scope.
AMLCTF-107General Record-Keeping
AMLCTF-108Customer Identification Records
AMLCTF-111Transaction Records
AMLCTF-114Electronic Funds Transfer Records
AMLCTF-34Customer Identification Obligation
AMLCTF-41Suspicious Matter Reports (SMRs)
AMLCTF-43Threshold Transaction Reports (TTRs)
AMLCTF-45International Funds Transfer Instructions (IFTIs) - Sending
AMLCTF-46International Funds Transfer Instructions (IFTIs) - Receiving
AMLCTF-47Annual AML/CTF Compliance Reports
AMLCTF-81Program Obligation
AMLCTF-84Standard AML/CTF Program
AMLCTF-85Joint AML/CTF Program
AMLCTF-AGENT-OVERSIGHTAgent Oversight (Remittance/DCE)
AMLCTF-ENROLAUSTRAC Enrolment
AMLCTF-NEW-PRODUCTSNew Product and Channel Risk
AMLCTF-PART-AAML/CTF Program Part A
AMLCTF-PART-BAML/CTF Program Part B (Customer Due Diligence)
AMLCTF-PartA-EDDEmployee Due Diligence
AMLCTF-PartA-OCDDOngoing Customer Due Diligence
AMLCTF-PartA-OfficerAML/CTF Compliance Officer
AMLCTF-PartA-ReviewIndependent Review
AMLCTF-PartA-TrainingAML/CTF Risk Awareness Training
AMLCTF-PartA-TxnMonTransaction Monitoring
AMLCTF-PartB-BOBeneficial Ownership
AMLCTF-PartB-ECDDEnhanced Customer Due Diligence
AMLCTF-PartB-PEPPolitically Exposed Persons
AMLCTF-PartB-RBARisk-Based Approach to CDD
AMLCTF-PartB-SCDDSimplified Customer Due Diligence
AMLCTF-PenaltyNon-Compliance Penalties
AMLCTF-REGISTERAUSTRAC Registration (Remittance/DCE)
AMLCTF-RELIANCEReliance on Third Parties
AMLCTF-Retention7-Year Retention Period
AMLCTF-SANCTIONSSanctions Screening
AMLCTF-StructuringStructuring Offence
AMLCTF-TIPPINGTipping Off Prohibition
Show the 3 you already have
AMLCTF-35Identity Verification Standard
AMLCTF-PartA-RiskAssessML/TF Risk Assessment
AMLCTF-82Part A Compliance
How this is calculated
Already covered means a mapping runs from a control in AWWA Cybersecurity Guidance for the Water Sector (American Water Works Association) to that control. Likely
covered means no direct mapping exists but both frameworks map to the same control in a third
standard. New work means neither. We keep those separate rather than adding them into one
friendlier number, because blending them would present a two-hop inference as a verified
fact.
Coverage is not symmetric.
Run it the other way and you will get a
different number; both are correct.
From 332,959 cross-framework control
mappings across 723 frameworks, 531 of them verified against
their source documents. It does not tell you that you are compliant: a mapped control means
the two standards ask for the same thing, not that you have done it.
Try another pair ยท
Today's edition