Done!
Two Years After the FinCEN Files: What the Leaked SARs Taught Us About AML Programs
Compliance Strategy

Two Years After the FinCEN Files: What the Leaked SARs Taught Us About AML Programs

7 min read
ShareLinkedInXFacebook

The 2020 FinCEN Files leak exposed the inner workings of the global AML system. Two years later, here's what the revelations mean for how regulated businesses should think about their compliance programs.

The FinCEN Files - a cache of leaked Suspicious Activity Reports published by BuzzFeed News and the International Consortium of Investigative Journalists in September 2020 - provided an unprecedented public window into the global AML system. The leaked documents revealed that major financial institutions had filed SARs on transactions they suspected were linked to money laundering, corruption, and financial crime - and then continued to process those transactions for years. The revelations sparked significant debate about the effectiveness of the SAR-based AML framework.

The most important lesson from the FinCEN Files for regulated businesses is about SAR quality, not SAR volume. The leaked documents showed that many SARs were filed as a defensive measure - to document that the institution had noticed suspicious activity - rather than as a genuine effort to provide law enforcement with actionable intelligence. SARs with vague narratives, incomplete transaction information, and no analysis of why the activity was suspicious are not effective compliance tools. They're paper shields.

The FinCEN Files also revealed the limitations of a compliance framework that relies primarily on financial institutions to identify and report suspicious activity without adequate feedback from law enforcement about whether those reports are useful. Financial institutions that file SARs rarely learn whether those SARs led to investigations or prosecutions. This feedback gap makes it difficult to calibrate monitoring programs and SAR filing decisions. The AMLA's provisions for improved information sharing between financial institutions and law enforcement are a direct response to this problem.

For small and mid-sized financial businesses, the FinCEN Files reinforced the importance of SAR narrative quality. A SAR that tells a specific, factual story - who did what, when, how much, and why it was suspicious - is a materially more valuable compliance document than a SAR that checks the filing box without providing useful information. Investing in training your staff to write high-quality SAR narratives is one of the highest-value compliance investments you can make.

The broader lesson from the FinCEN Files is that AML compliance is not just a regulatory obligation - it's a genuine contribution to the effort to prevent financial crime. Financial institutions that treat their AML programs as genuine crime-prevention tools, rather than regulatory compliance exercises, build programs that are both more effective and more defensible. The distinction between a compliance culture and a compliance checkbox culture is visible in SAR quality, training depth, and the seriousness with which the BSA officer role is resourced.

Tags

FinCEN FilesSAR QualityAML EffectivenessCompliance CultureBSA Reform
ShareLinkedInXFacebook
EV
Elena Vargas

BSA/AML Principal Consultant · Soflo Consulting

33 more articles
Soflo Consulting

Elena Vargas is a BSA/AML Principal Consultant at Soflo Consulting with over a decade of experience building and auditing compliance programs for regulated businesses across the United States. She specializes in enforcement action remediation, risk assessment development, and examination preparation for money services businesses, mortgage lenders, and fintech companies.

BSA Risk AssessmentEnforcement Action RemediationExamination PreparationAML Policy Development
In This Article

5 sections

Key Takeaways

  • 1The FinCEN Files revealed that many SARs were filed defensively rather than as genuine law enforcement intelligence
  • 2SAR quality - specific, factual narratives - matters more than SAR volume
  • 3The feedback gap between financial institutions and law enforcement limits program calibration
  • 4AMLA provisions for improved information sharing are a direct response to FinCEN Files revelations
  • 5AML programs treated as genuine crime-prevention tools are both more effective and more defensible

Need Expert Guidance?

Put these insights into action. Schedule a free consultation with a Soflo Consulting compliance specialist.

Stay Ahead of Compliance

Get FinCEN updates, BSA/AML guidance, and federal compliance news delivered to your inbox - no fluff.

No spam. Unsubscribe any time.

Category

Compliance Strategy
Continue Reading

You Might Also Like

Handpicked articles to deepen your compliance knowledge

Browse all insights
OFAC Sanctions Compliance Is No Longer Just for Banks: What Schools, Businesses, and Professional Services Can Learn from IMG Academy's $1.7M Settlement
Compliance Strategy
AG
Argenis Galez
10 min read

OFAC Sanctions Compliance Is No Longer Just for Banks: What Schools, Businesses, and Professional Services Can Learn from IMG Academy's $1.7M Settlement

Most businesses assume OFAC sanctions compliance is a bank problem. IMG Academy's $1.7 million settlement proves otherwise. When a world-renowned sports academy gets penalized for accepting tuition payments from sanctioned-country nationals, it signals that OFAC's enforcement reach has expanded far beyond financial institutions - and that any business accepting international payments needs to rethink its exposure.

May 15, 2026Read article
What Happens After a Bad AML Program Review: A Recovery Checklist
Compliance Strategy
EV
Elena Vargas
10 min read

What Happens After a Bad AML Program Review: A Recovery Checklist

You had a review. The report came back with findings - or you have since realized the review itself was inadequate. Either way, you are now in recovery mode. This is the step-by-step checklist for what to do next: how to assess the damage, prioritize the fixes, document the remediation, and rebuild a program that will hold up the next time someone looks at it.

May 12, 2026Read article
What a Real AML Program Review Should Include (And What to Do If Yours Didn't)
Compliance Strategy
EV
Elena Vargas
9 min read

What a Real AML Program Review Should Include (And What to Do If Yours Didn't)

A genuine AML program review is not a document scan. It is a structured evaluation of whether your program actually works - not just whether it exists on paper. If you have had a review and are not sure it covered the right ground, this is the standard it should have been held to.

May 12, 2026Read article

Explore the full Insights library

50+ articles on BSA/AML compliance, FinCEN requirements, and industry-specific guidance

View all articles
Talk with Us