Bangkok · GRC Strategy · Business Consulting

Governance that moves at digital speed

Licence application advisory, GRC and operating design for businesses regulated by the SEC and the Bank of Thailand.

What we do

Three disciplines, one regulated business ready to operate on day one.

01 — Licence application advisory

From eligibility to a complete application file

  • The right licence type confirmed, with an eligibility gap analysis
  • Business plan, policies and systems documentation prepared to submission standard
  • Regulator questions handled with a prepared, consistent file
SEC and BOT licence application advisory

02 — GRC design & management

Governance, risk and compliance that stands up to inspection

  • Board and committee structure with clear lines of accountability
  • Risk framework with appetite, indicators and reporting that is actually used
  • Compliance programme covering AML/CFT, IT risk and PDPA
GRC strategy & frameworks

03 — Business operations

An operating model built around the licence conditions

  • Target operating model, processes and controls documented end to end
  • Organisation, roles and key-person responsibilities defined
  • Go-live readiness checked against every commitment made in the application
Business operations design

How it fits together

Three disciplines feed one file. The business runs what the file says.

What we design with you

Licence application advisoryLicence path, eligibility, business plan
GRC frameworkGovernance, risk appetite, compliance, AML/CFT
Operating modelProcesses, controls, roles, systems
One consistent file
  • Business plan and projections
  • Policies and procedures
  • Systems and control matrix
  • Key persons and accountabilities

Where it is used

What the regulator reviewsThe application you submit
What the business runsThe same policies and controls, every day
What inspection testsEvidence that operations match the file
Regulator questions and inspection findings return to the same file, and are fixed at source.

Licence path finder

Three questions. A suggested pathway.

A starting point in under a minute. We confirm the path in your first assessment.

1What do you do?

2Which regulator?

3Where are you now?

Suggested pathway

0 / 3

Answer three questions to see your pathway

We will suggest the regulator, the licence family and the first three steps.

How we work

One connected programme, from first assessment to the first year of operation.

01

Assess

Licence-path confirmation, eligibility review and a gap analysis against the conditions you will have to meet.

Output · Readiness report & roadmap

02

Design

Governance structure, risk and compliance frameworks, policies and the operating model, written to work together.

Output · Framework & policy set

03

Submit

Application file assembled with you and reviewed before you submit; responses to regulator questions prepared from one consistent source.

Output · Submission-ready file

04

Operate

Go-live readiness, interim compliance support, inspection preparation and regulatory change monitoring.

Output · Operating compliance calendar

Licence types we advise on

Digital asset exchangeDigital asset brokerDigital asset dealerCustodial wallet providerICO portalDigital asset fund manager / advisorE-moneyPayment service providerPersonal loan / nano financeSecurities businessFund managementInvestment advisory

Start here

Planning a regulated business? Start with a 30-minute assessment.