Problem Statement
Determining investor risk profiles manually is resource-intensive and creates compliance risk. Figg Wealth needed a system that could automate risk profiling at scale while maintaining strict adherence to MiFID II and FCA regulatory standards — producing consistent, auditable outcomes for every user.
Proposed Solution & Architecture
- Rule-based scoring engine calculating both Risk Capacity and Risk Appetite from structured financial and behavioural inputs
- MiFID II and FCA-compliant questionnaire design assessing income, net worth, financial obligations, investment goals, and market volatility comfort
- Five-category risk classification aligned to FCA definitions — from conservative to aggressive growth
- Serverless, event-driven architecture scaling with user growth without infrastructure changes
- Secure data handling — user financial data encrypted at rest and in transit with IAM least-privilege access
- Role-based access for business, compliance, and technical stakeholders with full audit trail
AWS Services & Technologies
What We Delivered
- Designed the risk scoring logic with Figg Wealth compliance stakeholders — mapping MiFID II requirements to specific questionnaire inputs and scoring weights.
- Built the Lambda-based scoring engine calculating Risk Capacity and Risk Appetite independently, combining them into a final Overall Risk Score.
- Developed the FCA-aligned questionnaire flow with branching logic, validation, and regulatory checkpoint enforcement.
- Built user-facing interface with secure authentication, profile management, and risk profile display.
- Implemented full encryption, IAM access controls, and audit logging for regulatory compliance readiness.
- Validated scoring consistency across all user scenarios — ensuring reliable, repeatable risk category assignment.
Outcomes & Success Metrics
- Investor risk profiling automated at scale — consistent, auditable outcomes for every user without manual intervention.
- MiFID II and FCA compliance validated — architecture and outputs reviewed by compliance stakeholders.
- Risk Capacity and Risk Appetite calculated independently and combined into a clear, actionable risk category.
- Platform handles growing user volumes without performance degradation or architectural changes.
- Business, compliance, and technical stakeholders all confirmed functional reliability and regulatory fit.