Risk & Economy » Compliance » Beyond compliance: Why the shift to ISO 20022 is more than a messaging upgrade
Beyond compliance: Why the shift to ISO 20022 is more than a messaging upgrade
Maria-Christine Diaz, Senior Business Strategy Manager at Eastnets, explores why ISO 20022 is more than a mandate – it’s a catalyst laying the groundwork for future-proof payment services.
Author
Maria-Christine Diaz, Senior Business Strategy Manager at Eastnets
The SWIFT-mandated migration by November 2025 is set to end MT message processing for interbank cross-border payment instructions and cash management reporting (CBPR+). Yet, according to SWIFT as of December 2024, only 33% of organizations had adopted ISO 20022 for CBPR+. It highlights a deeper issue: many organizations still see it as a technical obligation when really, the migration implications stretch far beyond protocol upgrades and format translations.
ISO 20022 is not a one-off project. It is a multi-year, cross-functional transformation program touching every part of the business. It’s a strategic opportunity and a chance to rethink how financial institutions manage payments infrastructure, compliance and customer value propositions in a rapidly evolving digital economy.
However, it demands a coordinated, business-wide response.
Why tactical fixes won’t solve strategic shifts
At its core, ISO 20022 replaces the flat, ambiguous MT messaging format with structured, contextualized data that applies across all payment types, domestic and cross-border. It allows institutions to capture and exchange richer details – from payment purpose code and country of origin to beneficiary information – with far greater quality, accuracy and completeness.
That quality creates tangible value. It promises to strengthen Straight-Through Processing (STP) efficiency and dramatically improve the effectiveness of fraud detection and anti-money laundering (AML) processes. How? By reducing the number of investigation cases and false positives that have long strained operations teams. ISO 20022 also supports regulatory focus on real-time transaction monitoring and incident transparency, something central to frameworks like the EU’s Payment Services Directive 3, the AML Directives and the Digital Operational Resilience Act (DORA).
But ISO 20022 doesn’t just support regulatory alignment, it fundamentally alters the operational risk landscape. Most institutions still rely on compliance processes and infrastructures built for MT messages, which are poorly suited to handle the granularity and structure of ISO 20022 data. And when this richer data is simply “bolted on” to legacy systems, problems quickly arise.
Many banks are pursuing a tactical fix for what is a strategic shift – it’s like trying to put a square peg into a round hole. Systems and processes were built around the limited MT format which are flat, fixed and often ambiguous. Existing rule sets designed for flat MT messages begin to break down, triggering too many false positives and overwhelming compliance teams with noise instead of insights.
To realize the full value of ISO 20022, institutions need to map how payment data flows across their organization. This helps identify legacy workarounds, uncover operational risks and pinpoint where ISO 20022 adds complexity or unlocks new opportunity. Therefore, a comprehensive business-wide impact assessment is essential to strengthen AML, sanctions screening and fraud detection processes.
With that foundation, banks can sharpen customer insights, strengthen fraud and risk controls, and develop new value-added services. As sanctions lists and fraud rules update in near real-time, combined with financial crime compliance costs surpassing $1 trillion in 2024, the ability to act on cleaner, more contextual data has become business-critical.
Therefore, making ISO 20022 work for the business means moving beyond retrofitting and honing in on three areas that drive real transformation.
More impact than meets the eye
The real opportunity begins when ISO 20022 data is integrated into core systems, not just translated at the edges. Payments data now impacts every business line – from retail and corporate banking to capital markets and trade finance – influencing every process from front to back office.
Again, migration is not a one-off project but something that touches every part of the business, from reconciliation processes to customer-facing services. The key challenge of this transformation is knowing where the payment is, its status, without ambiguity, at any moment. Think of it like tracking an Amazon parcel delivery. To manage this, institutions need lightweight analytics tools to monitor and track payment messages in real-time across systems, to reduce reconciliation errors, manual workarounds and operational risk.
The true value lies not in seeing the information, but in using it to streamline operations, resolve issues faster and deliver better outcomes.
The path to optimized financial crime detection
As ISO 20022 fundamentally offers richer information, one of the most immediate benefits lies in financial crime prevention.
To take advantage, institutions must recalibrate financial crime systems to work with clearer, structured and contextual ISO 20022 data. This isn’t just about better information, it’s about better precision. Finetuning these systems through precise finetuning techniques to improve detection precision and strengthen risk mitigation, all while reducing and operational costs.
Take Sohar International, a bank operating in the Middle East, as an example. It reduced its false positives by 67%, helping to distinguish between legitimate and suspicious transactions, simply by optimizing screening strategies and using structured ISO 20022 data. That kind of result creates space for smarter, faster decisions across the organization, all while strengthening its AML compliance framework.
An opportunity for leaner payment processes
Additionally, ISO 20022 presents the perfect opportunity to modernize payment infrastructures with a modular orchestration layer – a flexible, business-agnostic workflow engine that seamlessly translates and routes messages across systems. This shields core business applications from changes in formats, protocols and standards, reducing maintenance overhead and operational risk and accelerating ISO 20022 adoption without disrupting core operations.
Moreover, it enables real-time monitoring, detection and investigation of issues such as duplicate payments or delayed messages, providing transaction integrity across the entire lifecycle. Having infrastructure agility translates directly into business performance, which can lead to increased cross-jurisdiction visibility in real-time and optimized STP rates, making sure payments move securely, efficiently and in line with market expectations.
By building this agility, financial institutions lay the groundwork to rapidly adapt to future market changes, new services and customer demands without overhauling core systems. It also provides real-time visibility and transaction integrity, making sure payments move securely, efficiently and in line with market expectations.
Unlocking the true value of ISO 20022
Treating compliance as the end goal is a strategic misstep. So, without a coordinated business-wide transformation strategy, supported by optimized financial crime tools, a lean orchestration layer and real-time monitoring, institutions risk operational disruptions and regulatory scrutiny impacting their bottom line.
What’s ultimately at stake is more than a messaging upgrade. It’s the opportunity to reshape financial infrastructure for an era defined by sustainable growth and operational resilience.
The real value of ISO 20022 lies not in translating messages, but in transforming the business. Those who embrace the shift – not just to adopt, but to adapt – will be best positioned to unlock smarter, data-driven growth in the years ahead.
Maria-Christine Diaz, Senior Business Strategy Manager at Eastnets
Seasoned payments professional, Marie-Christine is responsible for the development of the Payments business in Europe at Eastnets since January 2023. Previously, she had various Market and Product Manager and consulting roles at SWIFT, where she developed over the last 20 years the low value and high value payments business, including more recently the Instant Payment business, multi-network interfaces portfolio and resiliency services.