Industries
Reconstruct the decision.
A bank does not get asked "was the answer right?" It gets asked "show us how you reached it, who approved it, and what the system knew at the time." Cogniveil is built for that second question.
01 · The regulatory frame
The frame you operate under
DORA governs ICT risk, incident reporting, and the register of information for third-party arrangements. Basel standards shape capital and risk reporting. MiFID II sets conduct and recordkeeping duties. Anti-money-laundering law sets customer due diligence and reporting obligations. The EU AI Act, GDPR, and NIS2 add AI, personal-data, and cybersecurity duties. Above them sits the supervisor, with the power to ask for the record.
A bank is asked to show how a decision was reached, who approved it, and what the system knew at the time.
Article 28
DORA
ICT third-party risk, the information register, and contractual provisions for ICT services.
- Scope
- Entity and activity
- Evidence
- Approved sources
- Decision
- Accountable owner
United Kingdom frame
FCA and PRA
Applicable handbook and supervisory rules
Conduct, prudential, governance, operational-resilience, and outsourcing expectations.
Consumer Duty
Customer-outcomes evidence
Evidence that products and services deliver the required retail-customer outcomes.
UK GDPR and ICO
Accountability framework
Personal-data controls and the evidence expected by the Information Commissioner’s Office.
02 · The work in banking
Named in this sector’s language
Each card describes the job from this industry’s operating frame, then opens the one canonical solution page that runs it.
The DORA register and third-party file
Vendor contracts checked against the register of information, gaps flagged with the clause that creates them.
Run by Third-party and ICT register workContract gap analysis across the vendor portfolio
Sub-outsourcing, exit, testing, audit, data, and incident terms, checked portfolio-wide in one pass.
Run by DORA contract gap matrixCustomer due diligence and onboarding
Individual KYC, entity KYB with ultimate beneficial owner chains, source of funds against policy.
Run by KYC, KYB and onboardingRegulatory change into the policy stack
New and amended legislation tracked, old policy checked against new law, findings mapped to the instrument.
Run by Regulatory intelligence and policy gap analysisClose evidence and reconciliation
Deterministic reconciliation and journal entry testing, with the working shown.
Run by Financial close evidenceSupplier and network contracts
Contract review against several bodies of law at once, each finding mapped to the correct instrument.
Run by Contract analysisTender and supplier files
Supplier verification against public registries, evidence packs assembled.
Run by Supplier verification03 · Solutions that serve this sector
Ordered by the buyer’s first door
The order follows the way buyers enter the problem. Each link opens the specialist solution behind that work.
Next step
Start with one workflow
Bring the work, the approved sources, and the people who must stand behind the answer.
Or contact sales@cogniveil.ai