This message was posted by a user wishing to remain anonymous
We have a department wanting to onboard an Investment firm/Financial Advisor. This is the response I received from them regarding me stating they have access NPPI/PII even if we aren't sharing with them.
In their interactions with us, there is no NPI, and there is no consumer data exchanged. They act only as an investment firm and financial advisor to the actual bank and holding company.
My question is, what would you request in due diligence documentation? They are wanting them rated as Low risk since our bank won't be sharing NPPI.