PDO — CSI Partners, Directors and Senior Officers Course Cheat Sheet

Cheat sheet: exam-prep reference for the Canadian Securities Institute CSI Partners, Directors and Senior Officers Course (PDO).

Use this Cheat Sheet as independent review support for the Canadian Securities Institute CSI Partners, Directors and Senior Officers Course (PDO), exam code PDO. It is organized around the decisions, governance duties, supervisory controls, and regulatory distinctions that senior investment dealer personnel are expected to understand.

Use the tables for a quick pre-exam check. Expand a topic’s notes for explanations, examples, and additional distinctions.

High-Yield PDO Exam Lens

Exam areaWhat to know coldCommon trap
Governance and accountabilityDirectors, partners, and senior officers must set expectations, allocate resources, and oversee controlsDelegating work does not eliminate accountability
Regulatory frameworkSecurities commissions, CSA, CIRO, CIPF, FINTRAC, marketplaces, and privacy bodies have different rolesConfusing investor protection fund coverage with market-loss protection
Registration and proficiencyFirms and individuals need appropriate registration, approvals, supervision, and updatesAssuming a title alone permits trading, advising, or supervision
KYC, KYP, suitabilityClient profile, product knowledge, and client-interest suitability must alignTreating product approval as automatic suitability
Conflicts of interestIdentify, avoid or control, and disclose material conflicts in the client’s interestDisclosure alone is not always enough
Supervision and compliancePolicies, surveillance, escalation, remediation, testing, and reporting must operate togetherTreating compliance as only the CCO’s responsibility
Market conductBest execution, client priority, gatekeeper duties, insider trading, manipulation, and fair dealingIgnoring red flags because a client initiated the order
Financial operationsCapital adequacy, segregation, margin, liquidity, books and records, and reportingEquating profitability with regulatory capital sufficiency
Complaints and enforcementFair complaint handling, recordkeeping, cooperation with regulators, and remediationDismissing a complaint because the client also had market risk
Ethics and cultureTone from the top, escalation culture, and client-focused decision-makingOver-relying on technical compliance while ignoring fairness

Canadian Regulatory Ecosystem

Body / frameworkCore rolePDO exam relevance
Provincial and territorial securities regulatorsAdminister securities law in each jurisdictionRegistration, prospectus exemptions, enforcement, market conduct, public interest powers
Canadian Securities Administrators (CSA)Coordination forum for Canadian securities regulatorsNational instruments, harmonized policy approaches, client-focused reforms
Canadian Investment Regulatory Organization (CIRO)Self-regulatory organization for investment dealers, mutual fund dealers, and marketplace integrityDealer member rules, supervision, business conduct, financial compliance, enforcement, proficiency
Universal Market Integrity Rules (UMIR)CIRO-administered trading conduct rules for marketplacesManipulation, best execution, short sales, client priority, gatekeeper duties
Canadian Investor Protection Fund (CIPF)Protects eligible client property if a member firm becomes insolventDoes not protect against bad investments, market losses, or unsuitable recommendations by itself
FINTRACCanada’s financial intelligence unitAML/ATF compliance, suspicious activity, client identification, reporting obligations
Exchanges and marketplacesOperate trading venues and impose marketplace requirementsOrder handling, marketplace access, trading halts, execution rules
OBSI and dispute mechanismsIndependent dispute resolution for participating firms and clientsComplaint escalation and client redress process
Privacy regulators / privacy lawProtect personal informationClient data collection, use, safeguarding, breach response, vendor oversight
Notes and examples

Regulatory Role Distinctions

If the issue is…Think first of…Why
Insolvent dealer member and missing client assetsCIPF plus trustee/insolvency processFocus is eligible customer property protection
Misleading sales communicationSecurities law, CIRO conduct rules, firm supervisionFocus is fair dealing and accurate disclosure
Suspicious source of fundsFINTRAC / AML controlsFocus is money laundering or terrorist financing risk
Manipulative orders on a marketplaceUMIR / CIRO market regulationFocus is market integrity
Registration category or proficiencySecurities regulators, CIRO, National Registration Database processFocus is authority to act in a regulated capacity
Client alleges unsuitable recommendationCIRO conduct, securities law, complaint processFocus is KYC, KYP, suitability, supervision, and remediation

Governance Accountability Model

    flowchart LR
	    A[Board / partners / senior management] --> B[Risk appetite and strategy]
	    B --> C[Policies, procedures, resources]
	    C --> D[Supervision and compliance testing]
	    D --> E[Exceptions, complaints, breaches]
	    E --> F[Escalation and remediation]
	    F --> G[Management and board reporting]
	    G --> A
Notes and examples
Governance functionSenior-level expectationEvidence examiners like to see
Tone from the topEthical culture, client-focused conduct, no tolerance for concealmentClear policies, escalation channels, discipline, training
Resource allocationCompliance, supervision, technology, finance, and operations are adequately staffed and fundedBudgets, reporting lines, qualified personnel, system capacity
Risk oversightMaterial risks are identified, measured, monitored, and reportedRisk registers, dashboards, committee minutes, exception reports
Policy approvalPolicies match business activities and regulatory obligationsWritten policies, version control, periodic review
DelegationDuties may be delegated to qualified personsAccountability remains with the firm and responsible senior personnel
Independent challengeCompliance, risk, finance, audit, and supervision can challenge revenue unitsEscalation without retaliation, objective testing
RemediationDeficiencies are corrected, not merely documentedRoot cause analysis, assigned owners, deadlines, follow-up testing

Governance and Senior Accountability

PDO candidates should be comfortable distinguishing oversight, management, and front-line execution. Senior people are not expected to personally perform every control, but they are expected to ensure an effective control framework exists.

Core Governance Rule

A senior person may delegate tasks, but remains accountable for ensuring the task is delegated to qualified people, with clear authority, adequate resources, monitoring, escalation, and documentation.

Role or FunctionCore Exam FocusCommon Trap
Partners/directorsGovernance, oversight, strategic risk, conflicts, culture, major controlsThinking the board must run daily operations
Senior officers/executivesImplementation, resources, supervision, tone from the topClaiming ignorance when warning signs existed
Ultimate senior accountability rolesOverall compliance culture and reporting structureTreating compliance as “only the CCO’s job”
Chief compliance functionPolicies, monitoring, advice, escalation, reportingConfusing advice/monitoring with business-line ownership
Supervisors/branch managersDaily conduct, trade/account supervision, exception handlingIgnoring red flags from high producers
Registered representatives/advisorsClient-facing conduct, KYC, suitability, disclosure, fair dealingAssuming client consent removes regulatory duties
Operations/financeRecords, reconciliations, capital, custody, reportingTreating operational control failures as non-compliance issues

Delegation Checklist

A delegation answer is strong only if it includes:

  • Competent delegate with proper registration, proficiency, and experience.
  • Clear mandate: what authority is granted and what is not.
  • Written policies and procedures.
  • Supervision and exception reporting.
  • Escalation path for breaches, complaints, conflicts, and unusual activity.
  • Evidence: minutes, approvals, reviews, testing results, and remediation records.

Key Roles and Responsibilities

RolePrimary responsibilityNot the same as
Partners / directorsOverall governance, fiduciary-like oversight of the firm, strategic direction, risk appetiteDay-to-day trade review for every account
Senior officersManage business units and ensure controls operate in their areaBeing exempt from supervision because of seniority
Ultimate Designated Person (UDP)Promotes compliance culture and supervises compliance system at the firm levelReplacing the board’s oversight role
Chief Compliance Officer (CCO)Establishes and monitors compliance policies and reports significant issuesOwning every business decision or every first-line control
Chief Financial Officer (CFO) / financial operations leadershipFinancial reporting, capital adequacy, books and records, regulatory financial filingsSales supervision
Branch manager / supervisorFront-line supervision, account approvals, trade review, issue escalationMerely an administrative manager
Registered representative / advising individualClient-facing recommendations and orders within approved authorityAutomatic authority for discretionary trading
Investment representative / order-takerExecutes orders within permitted scope, often without adviceProviding suitability-based recommendations unless permitted
Compliance departmentMonitoring, testing, policy support, advice, escalationA substitute for business-line accountability
Internal audit / independent reviewIndependent assurance over controlsDaily compliance monitoring
Notes and examples

Accountability Traps

TrapCorrect exam answer
“The CCO approved the policy, so directors are not responsible.”Directors and senior management still oversee whether the compliance system is effective and resourced
“A senior producer can supervise themselves.”Supervision must be independent and effective; conflicts require controls
“A branch manager missed red flags because head office also reviews trades.”Both branch and head office controls may be relevant; one layer does not erase another
“No client loss means no compliance issue.”Rule breaches, conflicts, misleading communications, and weak supervision can exist without realized loss
“Regulators only care about written policies.”They also assess implementation, evidence, escalation, and remediation

Registration, Approval, and Proficiency Reference

ConceptPractical meaningExam focus
Firm registration / membershipEntity must be authorized for the business it conductsBusiness model must match registration and approvals
Individual registrationPerson must be approved for the activity performedDo not advise, trade, supervise, or manage outside authority
Permitted individualIndividual associated with the firm, often due to control or senior role, subject to disclosure and screeningNot automatically registered to trade or advise
ProficiencyRequired education, courses, experience, and continuing obligationsProficiency must be maintained, not just obtained once
Outside activityExternal employment, business, directorship, position of influence, or compensated activityMust be disclosed, reviewed for conflicts, and approved where required
Material changeSignificant change in personal, business, or registration informationRequires timely disclosure/update through prescribed channels
SponsorshipFirm supports and supervises an individual’s registrationFirm must assess fitness and monitor conduct
Suspension / terminationRegistration may end or be restrictedContinuing activity after loss of authority is a serious breach
Notes and examples

“Can This Person Do This?” Decision Table

ScenarioLikely issueProper response
Unregistered assistant recommends a stockAdvising without registrationStop, escalate, supervise communications, remediate client impact
Registered representative wants to sell outside private investmentsOutside activity, conflict, possible off-book dealingRequire disclosure, review, approval decision, monitoring; prohibit if inappropriate
Senior officer wants access to MNPI and to trade personallyInsider trading and conflict controlsRestrict access/trading, maintain watch/restricted list, escalate to compliance
Representative changes branch or roleRegistration/supervision updateEnsure approvals, supervision assignment, client communication where needed
Supervisor lacks product knowledge for complex product areaProficiency and effective supervision riskAdd qualified supervision, training, or restrict activity

Registration, Proficiency, and Fitness

Registration questions often turn on whether the person is approved for the activity and whether the firm is properly supervising them.

Key Review Points

  • Do not allow individuals to perform registrable activities unless they are properly registered, approved, and supervised.
  • Registration is tied to role, activity, firm, jurisdiction, and conditions.
  • Fitness generally includes integrity, competence, solvency, and conduct history.
  • Material changes, outside activities, conflicts, disciplinary issues, financial problems, or criminal/regulatory matters may require internal escalation and regulatory updates under current rules.
  • Titles and marketing descriptions must not mislead clients about registration status, expertise, or authority.

Common Registration Traps

TrapWhy It Is Wrong
“They passed a course, so they can advise immediately.”Proficiency alone is not the same as registration/approval.
“They are only helping a few clients temporarily.”Temporary activity can still be registrable and supervised.
“The activity is outside the firm, so the firm has no concern.”Outside activities can create conflicts, client confusion, and reputational risk.
“The client is sophisticated, so registration rules matter less.”Client sophistication does not eliminate registration requirements.
“The title is just marketing.”Titles can mislead and may imply unapproved expertise or authority.

Client Relationship Core: KYC, KYP, Suitability, Conflicts

DutyKey questionRequired mindset
Know your client (KYC)Who is the client and what are their financial circumstances, needs, objectives, time horizon, risk profile, and constraints?Current, accurate, and sufficient information
Know your product (KYP)What are the product’s structure, risks, costs, liquidity, conflicts, and target investor profile?Firm-level approval plus representative-level understanding
SuitabilityIs the recommendation, order, strategy, or account action suitable and in the client’s interest?Client-specific, not product-generic
Account appropriatenessIs the account type or service appropriate for the client?Consider before or at account opening and when circumstances change
Conflict managementDoes the firm or individual have an interest that could affect client duty?Avoid, control, and disclose in the client’s interest
Relationship disclosureDoes the client understand services, fees, limitations, conflicts, and responsibilities?Clear, timely, and not misleading
Notes and examples

KYC Information Checklist

KYC elementWhy it matters
Identity and legal capacityConfirms who can open and operate the account
Employment, income, net worth, liquidity needsSupports affordability and risk capacity assessment
Investment objectivesDefines what the account is meant to accomplish
Time horizonAffects liquidity, volatility tolerance, and product suitability
Risk toleranceClient’s willingness to accept volatility and loss
Risk capacityClient’s financial ability to withstand loss
Investment knowledge and experienceDetermines complexity and explanation required
Tax status and account typeRelevant to registered accounts, taxable accounts, withholding, and suitability
Concentration and existing holdingsAvoids assessing one transaction in isolation
Insider, control person, or reporting issuer statusImpacts trading restrictions and disclosure
Third-party instructions / power of attorneyConfirms authority and detects undue influence
Vulnerability indicatorsMay require enhanced care, trusted contact procedures, or escalation
Margin, options, derivatives permissionsRequires added approval and risk disclosure

Suitability Trigger Reference

TriggerWhat to do
New accountDetermine account appropriateness and investment profile before activity
Recommendation or solicited orderAssess suitability before acting
Client-directed order that raises concernsConsider gatekeeper, suitability, risk disclosure, or escalation obligations depending on account type and context
Material KYC changeUpdate profile and reassess holdings or strategy
Change in representative or supervisorReview account for suitability and supervision continuity
Deposit, transfer, withdrawal, or major life eventReassess objectives, liquidity needs, and concentration
Product or strategy changeReassess KYP and suitability
Complaint or red flagReassess account, supervision, disclosure, and remediation
ConceptFocusExample
KYCClient profileClient is retired, needs income, low risk tolerance
KYPProduct profileProduct is illiquid, leveraged, complex, high-fee
SuitabilityMatch between client and actionLeveraged ETF may be unsuitable for long-term conservative income client
Best executionQuality of trade executionDealer seeks most advantageous execution terms reasonably available
Fair dealingHonest and fair treatmentNo misleading statements, pressure tactics, or hidden conflicts
Fiduciary-like discretionHigher authority over client assetsManaged accounts require special authorization and controls

KYC, KYP, and Suitability

KYC, KYP, and suitability are connected. A recommendation cannot be properly assessed unless the firm understands both the client and the product.

KYC Review Table

KYC ElementWhy It MattersCommon Trap
Investment objectivesDetermines purpose and acceptable strategyVague objectives like “growth and income” without detail
Risk toleranceClient’s willingness to accept volatility/lossTreating aggressive product choice as proof of tolerance
Risk capacityClient’s financial ability to absorb lossConfusing wealth with capacity for concentrated loss
Time horizonDetermines liquidity and volatility toleranceRecommending illiquid products for short-term needs
Financial circumstancesIncome, net worth, liquidity, debt, obligationsIgnoring leverage or cash-flow stress
Investment knowledgeAffects explanation and product complexityAssuming professional status equals product understanding
Tax and liquidity needsAffects suitability and account strategyIgnoring tax impact or withdrawal needs
ConcentrationMeasures exposure to issuer, sector, strategy, product typeTreating each trade as suitable in isolation
Use of leverageMagnifies gains and lossesRelying on signed risk disclosure only

KYP Review Table

Product FeatureQuestion to Ask
StructureHow does the product work, and what drives return?
RiskWhat can go wrong, and under what market conditions?
LiquidityCan the client exit, at what cost, and when?
CostsWhat fees, embedded compensation, spreads, or penalties apply?
ComplexityCan the representative and client understand it?
LeverageDoes it multiply exposure or downside?
ConflictsIs the firm, issuer, representative, or affiliate benefiting?
Target investorFor whom is this product appropriate or inappropriate?
DisclosureAre risks and limits clear, accurate, and not misleading?

Suitability Decision Rules

  • “The client asked for it” is not a complete suitability answer.
  • A signed risk acknowledgment does not make an unsuitable recommendation suitable.
  • Suitability should consider the whole account, not only one trade.
  • Concentration, liquidity, leverage, time horizon, and risk capacity are frequent exam triggers.
  • If KYC information is stale, incomplete, or inconsistent, update it before relying on it.
  • If the representative does not understand the product, the recommendation is suspect.
  • If a product cannot be explained clearly, it is a red flag for retail suitability.

Product and Service Selection Matrix

Product / serviceChoose whenExtra supervision focusCommon trap
Full-service advisory accountClient wants recommendations and adviceKYC, KYP, suitability, conflicts, feesTreating client consent as curing unsuitable advice
Order-execution-only accountClient wants self-directed trading without recommendationsNo advice, clear disclosure, account appropriateness, AML, gatekeeper controlsAccidentally giving advice through “helpful” suggestions
Managed / discretionary accountClient delegates investment decisionsWritten authority, mandate, IPS/constraints, portfolio management controlsExercising discretion in a regular advisory account
Fee-based accountClient pays asset-based or fixed feeCost-benefit, inactive accounts, double charging, service levelCharging ongoing fees without meaningful services
Margin accountClient can borrow against securitiesLeverage risk, margin calls, concentration, affordabilityAssuming margin is suitable because collateral exists
Options / derivativesClient has knowledge, risk capacity, and approvalStrategy approval, risk disclosure, volatility, leverageApproving advanced strategies based only on high income
New issue / underwriting allocationClient fits product and allocation is fairConflicts, selling group compensation, related/connected issuer disclosurePushing inventory to clients to benefit firm
Proprietary productFirm or affiliate benefitsConflict controls, comparable alternatives, disclosureAssuming proprietary product is best because firm approved it
Illiquid / exempt productClient can tolerate illiquidity and complexityEligibility, concentration, valuation, disclosureTreating high yield as equivalent to low risk
Registered accountTax-advantaged savings or retirement purposeContribution rules, eligibility, prohibited/qualified investments where applicableGiving tax advice beyond competence

Conflict of Interest Cheat Sheet

ConflictRed flagsControls / responses
Compensation conflictHigher commission product recommended over lower-cost alternativeProduct shelves, compensation review, disclosure, suitability documentation
Proprietary productFirm earns manufacturing or affiliate revenueIndependent product review, alternatives analysis, clear disclosure
Referral arrangementClient directed to third party for compensationWritten agreement, disclosure, due diligence, supervision
Outside activityRepresentative sells or promotes outside businessPre-approval, conflict review, monitoring, possible prohibition
Personal financial dealingsBorrowing from or lending to clientsGenerally high-risk; avoid or tightly restrict where rules permit
Gifts and entertainmentExcessive benefits from issuers, clients, or vendorsLimits, logs, approvals, conflict assessment
Underwriting roleFirm distributes securities while earning feesDue diligence, disclosure, suitability, allocation controls
Research / investment bankingPressure on analyst independenceInformation barriers, disclosure, restricted lists
Personal tradingTrading ahead of clients or MNPI misusePre-clearance, blackout periods, surveillance
Family or related accountsPreferential treatment or allocationSupervision, disclosure, fair allocation
Notes and examples

Conflict Decision Rule

QuestionIf yes
Could the firm or individual benefit at the client’s expense?Treat as a potential conflict
Is the conflict material?Avoid it or apply strong controls and disclosure
Can it be addressed in the client’s interest?Document rationale and controls
Would disclosure alone leave the client exposed?Disclosure is insufficient; avoid or change the arrangement
Would a reasonable client consider it important?Disclose clearly and timely

Conflicts of Interest

PDO questions often test whether the candidate recognizes that disclosure alone may not be enough. The stronger answer is to identify the conflict, assess materiality, avoid or control it where needed, disclose clearly where appropriate, and monitor the result.

Conflict Review Table

ConflictRiskStrong Response
Proprietary product recommendationFirm revenue may influence adviceCompare alternatives, disclose, supervise, ensure suitability
Referral feeClient may not understand compensation linkWritten disclosure, approval, monitoring, suitability maintained
Outside business activityClient confusion, divided loyalty, undisclosed compensationPre-approval, conflict review, restrictions or prohibition
Personal lending/borrowing with clientUndue influence, exploitation, repayment disputeUsually avoid or prohibit except limited approved cases
Gifts and entertainmentInfluence or appearance of influenceApply policy limits, approval, records
Allocation of scarce securitiesFavouritism, unfair treatmentFair allocation policy and documentation
Research and investment bankingPressure on objectivityInformation barriers and conflict controls
Personal tradingFront-running or misuse of informationPre-clearance, restricted lists, monitoring
Compensation grids/sales contestsIncentive to recommend unsuitable productsReview incentives, disclosure, supervision, redesign if needed
Related issuer/connected issuerDisclosure and suitability concernsClear disclosure and enhanced review

Conflict Traps

  • Assuming “the client signed” resolves the conflict.
  • Disclosing a conflict in technical language the client is unlikely to understand.
  • Letting the conflicted person approve their own conduct.
  • Treating a recurring conflict as a one-time issue.
  • Ignoring conflicts because the product performed well.
  • Forgetting that conflicts can be actual, potential, or perceived.

Supervision and Control Framework

Control typePurposeExamples
PreventiveStop issues before they occurAccount approvals, product approval, restricted lists, access controls
DetectiveIdentify issues after or during activityTrade surveillance, exception reports, communication review, complaint tracking
CorrectiveFix issues and prevent recurrenceRemediation, discipline, training, revised procedures
DirectiveTell staff what is expectedPolicies, manuals, training, attestations
CompensatingReduce risk where primary control is limitedSecondary review, independent approval, enhanced monitoring
Notes and examples

Three-Lines View for Dealer Oversight

LineOwns whatPDO emphasis
First line: business and supervisionDay-to-day conduct, client relationships, initial approvals, branch controlsRevenue units own compliance in their activities
Second line: compliance, risk, financePolicies, monitoring, advice, testing, challenge, regulatory reportingMust be independent enough to escalate
Third line: internal audit / independent reviewAssurance that controls are designed and operating effectivelyReports should reach senior management or board level

Supervision Red Flags

Red flagWhy it matters
Frequent KYC changes before unsuitable tradesPossible papering of file
High concentration in one issuer or sectorSuitability and risk disclosure issue
Elderly or vulnerable client trading aggressivelyCapacity, undue influence, or suitability concern
Large losses followed by product switchingChurning, risk mismatch, complaint risk
Repeated cancellations and correctionsOperational or unauthorized trading concern
Representative with high complaint rateConduct and supervision risk
Off-channel communicationsRecordkeeping and supervision gap
Client signatures missing or alteredSerious documentation and integrity breach
Unusual deposits, wires, or third-party paymentsAML and fraud risk
Trades near market close affecting priceMarket manipulation concern

Financial Operations and Capital Concepts

ConceptMeaningExam distinction
Regulatory capitalCapital recognized for regulatory purposes after deductions and chargesNot the same as accounting equity
Risk adjusted capitalCapital available after prescribed risk adjustmentsFocus is solvency and protection of clients and markets
Minimum capitalRequired capital floor for the businessBreach requires escalation and regulatory response
Early warningRegulatory monitoring when financial metrics deteriorateIt is preventive, not a punishment by itself
LiquidityAbility to meet obligations as they come dueA profitable firm can still have liquidity stress
SegregationKeeping client assets separate from firm assets as requiredNot insurance against market loss
MarginCredit extended against collateralIncreases both client and firm risk
Concentration chargeCapital charge for excessive exposureReduces regulatory capital cushion
Counterparty riskRisk another party fails to performImportant in financing, derivatives, securities lending
Books and recordsAccurate, current records supporting reporting and supervisionPoor records can be a breach even without client loss
Notes and examples\[ \text{Regulatory capital cushion} = \text{allowable regulatory capital} - \text{required regulatory capital} \]\[ \text{Working capital} = \text{current assets} - \text{current liabilities} \]

Capital and Operations Traps

TrapCorrect view
“The firm is profitable, so capital is fine.”Profitability and regulatory capital are different
“Client assets are safe because the firm has good earnings.”Client asset protection depends on segregation, custody, controls, and insolvency protection rules
“A capital issue can wait until month-end.”Material capital concerns require prompt escalation and required reporting
“Only finance staff need to understand capital.”Senior officers and directors must understand capital risk at an oversight level
“Margin risk belongs only to the client.”Firm faces credit, concentration, and liquidation risk

Market Conduct and Trading Reference

Conduct rule areaCore ideaRed flags
Best executionSeek advantageous execution terms reasonably available for client ordersRouting based only on dealer economics
Client priorityClient orders generally must not be disadvantaged by firm or employee tradingEmployee trades ahead of clients
Fair pricingPrices and markups must be fair and reasonableExcessive spreads in less liquid securities
Manipulation / deceptionNo artificial prices, false activity, or misleading ordersWash trades, matched orders, spoofing, layering, marking the close
Insider tradingNo trading with material non-public informationClient or employee trades before announcement
TippingNo improper disclosure of material non-public information“Heads up” to friend, client, or favoured account
Gatekeeper dutyDealer must not facilitate suspicious or improper tradingIgnoring unusual trading patterns
Short sale controlsProper marking, borrowing, settlement, and rule complianceRepeated failed settlements or mismarked orders
Trade correctionsMust be legitimate and documentedCorrections used to shift losses
Marketplace accessAccess must be controlled and monitoredUnsupervised direct electronic access
Notes and examples

Insider Information Distinctions

TermMeaningExam cue
Material informationInformation a reasonable investor would likely consider importantPrice impact or investment decision relevance
Non-public informationNot generally disclosed to the marketSelective disclosure risk
Insider tradingTrading while in possession of material non-public informationProhibit trade and escalate
TippingImproperly passing material non-public information to another personLiability can exist even if tipper does not trade
Information barrierControls to restrict flow of sensitive informationWatch lists, restricted lists, access controls
Restricted listSecurities with trading restrictions due to conflicts or MNPIBlocks or limits trading activity

Market Integrity and Trading Conduct

Market conduct questions usually require fast recognition of red-flag trading behaviour. The safest answer often involves stopping the activity, restricting trading, escalating to compliance/supervision, preserving records, and following the firm’s reporting process.

ConductWhy It Is a ProblemStrong Response
Trading on material non-public informationUnfair market advantage and serious regulatory riskDo not trade or tip; restrict and escalate
TippingPassing confidential material information to othersStop communication, document, escalate
Front-runningTrading ahead of client or firm informationReview records, restrict, escalate
Manipulative ordersCreates false or misleading market activityStop orders, investigate, report as required
Wash trades or matched ordersArtificial activity or priceSurveillance and escalation
Marking the close/openArtificially influencing benchmark priceEscalate market conduct concern
Spoofing/layering-type patternsNon-bona fide order activityReview intent and order pattern; escalate
Ignoring client priorityUnfair treatment of client ordersApply priority and allocation rules
Poor best execution reviewClient may receive inferior executionReview routing, execution quality, policies
Inadequate information barriersConfidential information may leakReinforce barriers, restrict lists, training

Insider Information Decision Rule

Ask four questions:

  1. Is the information material? Would it reasonably affect price or an investment decision?
  2. Is it non-public? Has it been broadly disseminated?
  3. Is the person in a special or confidential relationship? Consider employment, advisory, deal, issuer, or tipper relationships.
  4. Is trading, recommending, or communicating occurring? If yes, stop and escalate.

Do not choose an answer that allows trading simply because “the client wants to act quickly” or because “the information will be public soon.”

AML, Fraud, and Financial Crime Controls

Obligation areaPractical focusExam cue
Client identificationVerify identity using permitted methodsNo account activity before required ID steps are complete
Beneficial ownershipKnow who ultimately owns or controls entity clientsShell companies and nominees are red flags
Third-party determinationIdentify whether someone else is directing or benefitingPayments from unrelated third parties
Source of funds / wealthUnderstand legitimacy of assets where risk warrantsUnexplained wires, cash-like activity, rapid movement
Politically exposed persons / high-risk clientsEnhanced due diligence and monitoringSenior foreign or domestic public roles
Suspicious transactionsDetect and report suspicious activity as requiredDo not tip off the client
Sanctions / terrorist propertyScreen and respond to prohibited persons or propertyImmediate escalation required
RecordkeepingMaintain prescribed AML recordsMissing records are control failures
TrainingStaff must recognize red flagsFront-line staff are critical detectors
Independent effectiveness reviewPeriodic review of AML programProgram must be tested, not just written
Notes and examples

AML Red Flags

Red flagPossible concern
Client refuses to provide identification or beneficial ownershipConcealment
Funds move in and out quickly without investment purposeLayering
Third party funds account and unrelated party withdrawsNominee or laundering activity
Activity inconsistent with client profileSuspicious transaction
Client is unconcerned with fees, losses, or economicsNon-investment motive
Multiple accounts with no clear business purposeStructuring or concealment
Client pressures staff to avoid documentationEvasion
Use of complex entities without rationaleBeneficial ownership opacity

Complaints, Investigations, and Enforcement

ItemProper handlingTrap
Client complaintAcknowledge, investigate fairly, document, respond, escalate where requiredDismissing because complaint is verbal or emotional
Allegation of misconductTreat as regulatory risk even if loss is smallLooking only at dollar amount
Market loss complaintDetermine whether suitability, disclosure, or supervision issues existAssuming market risk eliminates misconduct
Representative under investigationPreserve records, supervise, consider restrictionsWaiting until guilt is proven
Regulatory inquiryCooperate, respond accurately, preserve documentsInformal or incomplete responses
RemediationFix client impact and root causeRefunding client without correcting control failure
DisciplineConsistent and documentedTreating top producers differently
SettlementMay resolve dispute but does not erase regulatory dutiesUsing confidentiality to block regulatory reporting
Notes and examples

Complaint File Checklist

  • Client identity, account, representative, and dates.
  • Nature of allegation: suitability, unauthorized trading, misrepresentation, fees, service, fraud, discrimination, privacy, execution.
  • Relevant KYC, account documents, notes, communications, trade records, and approvals.
  • Supervisor and compliance review notes.
  • Analysis of rule, policy, and client impact.
  • Response to client and escalation options.
  • Remediation, discipline, training, or policy changes.
  • Follow-up testing if control weakness is identified.

Complaints, Investigations, and Enforcement

Complaint questions often turn on whether the issue is handled through a formal, objective, documented process.

Complaint Handling Principles

  • Treat complaints seriously, including verbal or informal complaints.
  • Preserve emails, notes, recordings, order records, forms, and account history.
  • Do not allow the subject of the complaint to control the investigation.
  • Assess whether supervision failed, not just whether one representative acted badly.
  • Communicate through approved channels.
  • Consider client remediation where appropriate.
  • Escalate and report according to current firm and regulatory requirements.
  • Watch for repeat patterns involving the same representative, branch, product, or supervisor.

Enforcement-Style Red Flags

  • Altered documents or forged signatures.
  • Private settlements outside firm process.
  • Destroyed or missing records.
  • Retaliation against complainants or whistleblowers.
  • Misleading regulators, auditors, or compliance staff.
  • Failure to supervise known issues.
  • Repeat exceptions without discipline or remediation.
  • Senior management ignoring compliance warnings.

Books, Records, Communications, and Reporting

AreaRequirement themeSenior oversight question
Account documentationAccurate, complete, current, approvedAre accounts opened and updated consistently?
Trade recordsOrders, execution, allocation, corrections, cancellationsCan the firm reconstruct activity?
Client statements / confirmationsAccurate reporting of holdings, transactions, feesAre clients receiving clear information?
CommunicationsFair, balanced, approved or supervised as requiredAre email, chat, social media, and texts captured?
Advertising and sales materialsNot misleading; risks and costs disclosedAre performance claims substantiated?
ComplaintsCentral tracking and reportingAre trends reported to management?
Regulatory filingsAccurate and timelyWho reviews before submission?
Financial recordsSupport capital and reportingAre reconciliations performed and exceptions resolved?
Vendor recordsOutsourcing does not remove firm responsibilityCan records be accessed during outage or regulator review?
Privacy and cybersecurity recordsEvidence of safeguards and incident responseAre breaches escalated and documented?

Account Types and Special Situations

Account / situationMain riskControls
Individual accountCapacity and suitabilityVerify identity, KYC, authority
Joint accountTrading and withdrawal authorityClear account agreement and instructions
Corporate accountAuthority and beneficial ownershipCorporate documents, signing authority, AML review
Trust or estateFiduciary authority and permitted investmentsTrust/estate documents, trustee/executor authority
Registered accountTax and plan rulesConfirm account type, avoid unsupported tax claims
Margin accountLeverage and liquidationMargin agreement, suitability, risk disclosure
Options accountComplexity and leverageStrategy-level approval and supervision
Discretionary / managed accountFiduciary-like control over assetsWritten mandate, qualified manager, oversight
Power of attorney / trading authorizationAbuse or unauthorized controlValidate authority, monitor unusual activity
Senior or vulnerable clientDiminished capacity, undue influence, fraudEnhanced supervision, trusted contact where applicable, escalation
Institutional clientSophistication and negotiated relationshipConfirm classification, disclosures, and any permitted waivers
Related employee accountConflicts and personal tradingPre-clearance, duplicate statements, surveillance

Communications and Sales Practice Rules

Communication issueAcceptable approachAvoid
PerformanceBalanced, supportable, relevant time period, fees consideredCherry-picked returns
RiskPlain-language explanation of material risks“Low risk” label on volatile or illiquid products
GuaranteesOnly state guarantees that legally exist and identify guarantorImplied principal protection
ComparisonsFair comparison of similar products or strategiesComparing yield without risk, liquidity, or cost
TitlesUse titles that accurately reflect registration and roleInflated senior or specialist titles
Social mediaSupervised, retained, policy-compliantOff-channel recommendations
Client testimonials / endorsementsUse only if compliant with current rules and firm policyMisleading client success stories
New issuesBalanced disclosure of issuer, underwriter, fees, risksSales pressure based on scarcity
Complex productsExplain structure, risks, costs, liquidity, and scenariosFocusing only on upside

Risk Inventory for Partners, Directors, and Senior Officers

Risk typeBoard / senior management question
Regulatory riskAre we complying with securities law, CIRO rules, AML, privacy, and reporting obligations?
Conduct riskAre incentives, culture, and supervision producing fair client outcomes?
Credit riskCould clients, counterparties, or financing arrangements fail to perform?
Market riskCould market movements affect capital, inventory, margin, or liquidity?
Liquidity riskCan the firm meet obligations under stress?
Operational riskAre processes, reconciliations, and controls reliable?
Technology riskAre trading, recordkeeping, cybersecurity, and business continuity systems resilient?
Outsourcing riskCan vendors meet regulatory, privacy, continuity, and record access expectations?
Model riskAre pricing, risk, and surveillance models validated and monitored?
Reputational riskCould conduct, complaints, or control failures damage trust?
Strategic riskIs the firm entering businesses it cannot supervise or capitalize properly?
People riskAre key roles competent, supervised, and succession-planned?

Exam Decision Tables

If the Question Mentions a Client Order

Fact patternBest first response
Solicited recommendationApply KYC, KYP, suitability, conflict review
Unsolicited but suspicious orderConsider gatekeeper obligations and escalation
Order in execution-only accountDo not provide advice; maintain required controls
Order based on rumour or possible MNPIHalt action and escalate to compliance
Order creates concentrationSuitability/risk discussion and documentation
Order violates account restrictionsDo not proceed without resolving authority/mandate
Order appears manipulativeEscalate and consider refusing order
Notes and examples

If the Question Mentions a Product

Fact patternKey issue
New product added to shelfProduct due diligence and approval
Complex or leveraged productKYP, representative training, suitability, disclosure
Illiquid productLiquidity needs, valuation, concentration
Proprietary or related issuer productConflict management
High commission productCompensation conflict and cost suitability
Guaranteed productIdentify guarantor and guarantee limits
Tax-driven productAvoid unsupported tax advice; ensure suitability beyond tax benefit

If the Question Mentions a Representative

Fact patternKey issue
High sales volume in one productConcentration, compensation conflict, supervision
Many complaintsTrend analysis and enhanced supervision
Off-book businessOutside activity, client harm, books and records
Altered formsIntegrity breach and documentation failure
Personal financial dealings with clientConflict and potential exploitation
Uses personal messaging appsRecordkeeping and supervision breach
Trades before clientsClient priority and front-running
Receives issuer giftsConflict and inducement risk

If the Question Mentions Senior Management

Fact patternExpected answer
Compliance reports recurring deficienciesRequire remediation, accountability, and follow-up
Business wants to launch new product quicklyEnsure risk, compliance, capital, operations, and training are ready
Capital cushion is deterioratingEscalate, investigate, restrict risk if needed, meet reporting duties
CCO lacks access to executivesGovernance weakness
Branch supervision under-resourcedManagement must allocate resources or restrict business
Significant breach discoveredPreserve evidence, assess client impact, report/escalate as required, remediate
Vendor outage affects recordsBusiness continuity and outsourcing oversight issue

Common PDO Traps and Corrections

Trap answerBetter answer
“The client signed the form, so the recommendation is suitable.”Signature is evidence of disclosure, not proof of suitability
“The product is approved by the firm, so any representative can sell it.”Representative must understand it and assess suitability for each client
“The client asked for the trade, so the firm has no responsibility.”Responsibilities may still include gatekeeper, account appropriateness, disclosure, AML, and supervision
“Disclosure cures all conflicts.”Material conflicts must be addressed in the client’s interest; some must be avoided
“Only compliance staff are responsible for compliance.”Business lines, supervisors, senior officers, and directors all have roles
“No written complaint means no complaint file.”Firms should capture and assess complaints consistently, including verbal allegations where relevant
“CIPF protects clients from unsuitable investments.”CIPF is insolvency protection for eligible client property, not market-loss insurance
“A sophisticated client makes all trades suitable.”Sophistication is relevant but does not eliminate all obligations
“Policies are enough.”Regulators expect implementation, evidence, supervision, testing, and remediation
“A regulator inquiry is adversarial, so delay responses.”Cooperate, preserve records, and respond accurately through proper channels

Compact Ethics Checklist

When uncertain, test the answer against these questions:

  1. Authority: Is the firm or individual permitted to do this?
  2. Client interest: Is the action fair and suitable for the client’s profile and objectives?
  3. Conflict: Who benefits, and has the conflict been avoided or controlled?
  4. Disclosure: Would a reasonable client understand the material facts, risks, fees, and conflicts?
  5. Supervision: Who approved, reviewed, and monitored the activity?
  6. Evidence: Is the decision documented with accurate records?
  7. Escalation: If a red flag exists, was it escalated promptly?
  8. Remediation: If harm or weakness occurred, was the root cause corrected?

Final Review Checklist

  • Distinguish governance oversight from day-to-day compliance execution.
  • Know the roles of Canadian Securities Administrators, CIRO, CIPF, FINTRAC, and marketplaces.
  • Apply KYC + KYP + suitability + conflicts as a combined decision framework.
  • Remember that delegation does not eliminate accountability.
  • Treat conflicts, complaints, MNPI, AML red flags, capital issues, and weak supervision as escalation triggers.
  • Separate market loss from misconduct, but investigate whether misconduct contributed.
  • For senior-level questions, choose answers that show resources, controls, reporting, remediation, and culture.

Next step: use this Cheat Sheet to drill scenario questions, especially those asking who is accountable, when to escalate, and which control best addresses the risk.

Notes and examples

Final PDO Checklist

Before you move into mock exams, make sure you can explain:

  • Why delegation does not remove senior accountability.
  • How to identify the accountable person in a scenario.
  • When to escalate to compliance, senior management, AML, privacy, or supervision.
  • Why disclosure alone may be insufficient for conflicts.
  • How KYC, KYP, and suitability connect.
  • Why concentration and leverage are high-risk suitability factors.
  • How to respond to insider information or suspicious trading.
  • Why verbal complaints still matter.
  • How records, reconciliations, and operations controls affect compliance.
  • Why AML concerns must follow approved escalation procedures.
  • How cybersecurity and privacy incidents become governance issues.
  • How to choose the answer that protects clients, markets, and firm integrity.

Cheat Sheet for PDO Candidates

Use this page as a fast, independent review companion for the Canadian Securities Institute CSI Partners, Directors and Senior Officers Course (PDO), exam code PDO. It is designed for candidates who already have the course material and want to consolidate the most testable ideas before working through topic drills, mock exams, and detailed explanations.

The PDO mindset is not “memorize isolated rules.” It is: who is accountable, what risk is present, what control should exist, what must be escalated, and how should the firm protect clients, markets, and regulatory integrity?

Notes and examples

Common PDO Candidate Mistakes

  1. Delegation mistake: Believing a senior officer is safe because a subordinate handled the file.
  2. Disclosure mistake: Treating disclosure as a universal cure for conflicts or unsuitable recommendations.
  3. Outcome bias: Assuming profitable trades prove suitability.
  4. Client-consent mistake: Assuming a client can waive core regulatory protections.
  5. Sophistication mistake: Assuming wealthy or institutional clients eliminate all conduct concerns.
  6. Documentation mistake: Choosing an answer with action but no record.
  7. Escalation mistake: Keeping serious issues within the sales branch.
  8. Policy-only mistake: Assuming a policy is effective without training, testing, and enforcement.
  9. Revenue bias: Giving high producers more flexibility on compliance.
  10. Privacy mistake: Treating client data as available to anyone in the firm.
  11. AML mistake: Asking the client suspicious questions in a way that could tip them off.
  12. Complaint mistake: Ignoring a complaint because it was verbal, emotional, or withdrawn.
  13. Market conduct mistake: Treating suspicious trading as acceptable because the order came from a client.
  14. Product mistake: Recommending complex products without representative and client understanding.
  15. Leverage mistake: Relying only on a signed margin or leverage form.
  16. Conflict mistake: Allowing conflicted people to approve their own activities.
  17. Operations mistake: Dismissing reconciliations, records, or custody issues as “back office only.”
  18. Cyber mistake: Treating cybersecurity as an IT issue rather than a firm governance issue.
  19. Registration mistake: Confusing course completion with approval to act.
  20. Supervision mistake: Reviewing isolated exceptions without looking for patterns.

PDO Exam Mindset: What the Best Answer Usually Does

In scenario questions, the strongest answer usually:

  1. Protects clients and market integrity first.
  2. Recognizes senior accountability. Delegation is allowed; abdication is not.
  3. Stops or controls questionable conduct promptly.
  4. Escalates to the correct person or function.
  5. Documents the facts, decision, rationale, and follow-up.
  6. Fixes the root control weakness, not just the immediate symptom.
  7. Avoids “disclosure only” answers where a conflict, suitability issue, AML concern, or market conduct issue needs stronger action.

Common weak answers include: “wait and see,” “let the representative handle it,” “accept the client’s consent without analysis,” “ignore because revenue is high,” “handle informally,” or “document after the fact only if questioned.”

High-Yield PDO Topic Map

AreaWhat to ReviewTypical Exam CueStrong Answer Pattern
Governance and accountabilityDuties of partners, directors, senior officers, executives, supervisorsSenior person “was not directly involved”Oversight still matters; assess delegation, reporting, monitoring, and escalation
Regulatory frameworkSecurities regulators, SRO rules, market integrity rules, federal compliance areasWhich rule source applies?Identify the highest applicable standard and current course rule reference
Registration and proficiencyApproved persons, registration categories, fitness, proficiency, disclosuresUnregistered activity or new roleDo not permit activity until approved/qualified; supervise and update records
Compliance systemPolicies, testing, supervision, CCO/UDP-style accountability, reportingPolicy exists but is not followedTrain, monitor, test, escalate, document, remediate
SupervisionBranch, account, trade, product, complaint, and employee supervisionRed flags ignored by supervisorEscalate; increase supervision; investigate pattern, not just one event
KYC/KYP/suitabilityClient profile, product knowledge, recommendations, concentration, leverage“Client insisted” or signed waiverSuitability analysis still required; disclosure does not cure unsuitable advice
Conflicts of interestIdentify, control, avoid, disclose, monitorProprietary products, referral fees, outside activitiesManage in client interest; avoid if material conflict cannot be controlled
Market integrityManipulation, insider information, frontrunning, client priority, best executionSuspicious orders or MNPIStop, restrict, escalate, review records, apply barriers/reporting process
Financial and operations controlsCapital, custody, books, records, reconciliations, reporting“Back-office issue”Treat as regulatory risk; fix controls and accountability
AML, sanctions, privacy, cyberClient ID, beneficial ownership, suspicious activity, records, safeguardsUnusual transactions or information misuseFollow policy, escalate, avoid tipping off, protect data
Complaints and enforcementComplaint intake, investigation, reporting, disciplinePrivate settlement or informal complaintPreserve records, investigate objectively, respond through approved process

Regulatory Framework Quick Sort

The PDO exam may test whether you know which regulatory lens to apply. Use current CSI course material for exact rule references, terminology, and updates.

If the Scenario Mentions…Think About…Exam Decision Point
Registration, proficiency, KYC, conflicts, supervisionSecurities legislation and registration/compliance rulesIs the person or firm properly approved and supervised?
Investment dealer conduct, books and records, complaints, margin, supervisionCIRO dealer/member rules in current materialsDoes the firm’s policy meet SRO expectations?
Marketplace trading, order handling, manipulation, insider-type conductMarket integrity rules, including UMIR concepts where applicableShould the order/trading be stopped, reviewed, or escalated?
Disclosure documents, prospectus exemptions, offering materialsSecurities law disclosure and misrepresentation riskIs the disclosure accurate, complete, and appropriate for the investor?
Suspicious funds, unusual transactions, beneficial owners, sanctionsAML/ATF, sanctions, and financial crime controlsShould the activity be escalated under the firm’s AML process?
Personal information, client files, cyber incidentPrivacy, confidentiality, and information securityWas information collected, used, shared, and protected properly?
Fraud, forgery, theft, market abuseEnforcement, discipline, possible criminal/regulatory implicationsPreserve records, escalate, investigate, and report where required

Compliance System and Supervision

A firm’s compliance system should not be a binder on a shelf. PDO questions often test whether the system is designed, implemented, tested, and improved.

Supervision Control Cycle

StageWhat It MeansEvidence to Look For
PolicyWritten standard for the activityManual, procedures, approval matrix
TrainingPeople understand the requirementTraining logs, attestations, refreshers
Pre-approvalHigher-risk activity is reviewed before executionNew product approvals, outside activity approvals
MonitoringOngoing review of activity and exceptionsTrade reviews, surveillance reports, branch reviews
EscalationIssues reach the right level quicklyEscalation logs, compliance memos
InvestigationFacts are gathered objectivelyInterview notes, account review, trade blotter
RemediationRoot cause is fixedRevised controls, discipline, client remediation
TestingControls are independently checkedAudit/compliance testing reports
Notes and examples

Red Flags Requiring Escalation

  • Repeated unsuitable trades or concentration issues.
  • Unauthorized trading or discretionary activity without proper authority.
  • Pre-signed forms, altered documents, forged signatures, or backdated records.
  • Outside activities, referral arrangements, or personal financial dealings with clients.
  • Complaints, even if verbal or “minor.”
  • Suspicious transactions, unexplained source of funds, or sanctions concerns.
  • Trading ahead, insider information concerns, or suspicious order patterns.
  • High-producing representative with many exceptions.
  • Vulnerable client concerns, financial exploitation indicators, or unusual third-party influence.
  • Margin deficiencies, unresolved breaks, capital pressure, or reporting concerns.

Product, Margin, Leverage, and Credit Risk

Senior officers and supervisors must understand how product and credit risks connect to client protection and firm risk.

Product Approval and Ongoing Review

A strong product governance process considers:

  • Product structure and payoff.
  • Issuer, counterparty, liquidity, and valuation risk.
  • Target market and unsuitable client profiles.
  • Costs, compensation, and conflicts.
  • Required representative training.
  • Required client disclosure.
  • Supervision and exception reporting.
  • Stress scenarios and liquidity events.
  • Ongoing monitoring after launch.

Leverage and Margin Traps

TrapBetter PDO Answer
“The client is wealthy, so leverage is suitable.”Assess risk capacity, knowledge, liquidity, objectives, and downside.
“The client signed the leverage disclosure.”Disclosure is not a substitute for suitability.
“The account is profitable, so supervision is fine.”Suitability and risk controls are assessed independently of outcome.
“Margin deficiency can wait because the client is important.”Apply firm and regulatory requirements consistently.
“The representative understands the product.”The client’s profile and understanding still matter.

Financial, Operations, Books, and Records

PDO candidates sometimes under-review operations. That is a mistake. Operations failures can become compliance, client asset, reporting, capital, and enforcement issues.

Control AreaWhy It MattersRed Flags
Capital and liquidityFirm must remain financially soundUnexplained losses, late reporting, pressure to defer issues
Custody and segregationProtects client assetsReconciliation breaks, unexplained transfers
Books and recordsSupports supervision and regulatory reviewMissing approvals, backdated notes, incomplete files
ReconciliationsDetects errors, fraud, and control gapsRepeated unresolved breaks
Trade processingAccurate settlement and client reportingManual overrides, failed trades, allocation errors
Fee and compensation systemsPrevents billing and conflict issuesUndisclosed fees, incorrect rates
Vendor and outsourcing controlsFirm remains accountable for outsourced functionsNo due diligence, weak service-level monitoring
Business continuityMaintains critical services during disruptionUntested plans, key-person dependency
Notes and examples

Records Rule of Thumb

If a firm cannot show what happened, who approved it, why it was reasonable, and how exceptions were handled, the exam answer should treat that as a control failure.

AML, Sanctions, Privacy, and Cybersecurity

Financial crime and information protection topics are often tested through red flags. Use the current CSI material for exact obligations, reporting steps, and timing.

AML/ATF Review Points

An effective AML/ATF control environment generally includes:

  • Client identification and verification processes.
  • Beneficial ownership and control understanding.
  • Third-party determination where relevant.
  • Risk-based client and transaction monitoring.
  • Enhanced review for higher-risk clients or activity.
  • Suspicious activity escalation.
  • Sanctions screening and escalation.
  • Training, testing, and recordkeeping.
Notes and examples

AML Red Flags

  • Client refuses to provide basic identification or ownership information.
  • Transactions inconsistent with known business or financial profile.
  • Unusual movement of funds with no clear economic purpose.
  • Frequent deposits and withdrawals without investment rationale.
  • Use of third parties without explanation.
  • Pressure to avoid normal documentation.
  • Jurisdictions, entities, or counterparties raising sanctions or financial crime concerns.
  • Client appears to be acting on behalf of an undisclosed person.

Exam trap: Do not alert the client in a way that could compromise a suspicious activity review. Escalate through the firm’s approved AML process.

Privacy and Cybersecurity Review Points

TopicWhat the Exam May Test
ConfidentialityClient information should be accessed and shared only for proper purposes
Consent and purposeInformation collection/use should match legitimate business needs
SafeguardsPhysical, administrative, and technical controls matter
Breach responseEscalate quickly; preserve facts; follow incident process
Remote workSecure devices, approved channels, no informal file sharing
Vendor riskOutsourcing does not remove firm accountability
Cyber incidentTreat as operational, client, legal, and regulatory risk

Scenario Triage Framework: A.C.T.E.D.

Use this framework when a PDO question gives you a messy fact pattern.

StepAskWhat to Do
A — Assess facts and roleWho knew what, when, and what authority did they have?Identify accountable persons and missing facts
C — Control immediate riskIs there client harm, market abuse, AML risk, privacy breach, or financial exposure?Stop, restrict, freeze process, or prevent further harm where appropriate
T — Tie to rule/policyWhich regulatory, firm, or supervisory standard applies?Apply current course rule concepts and firm procedures
E — Escalate and documentWho must know? What record is needed?Notify supervisor/compliance/senior management/AML/privacy as applicable
D — Design remediationWhat caused the problem?Fix training, systems, supervision, incentives, discipline, or controls
Notes and examples

When Two Answers Look Plausible, Prefer the One That…

  • Escalates earlier rather than later.
  • Uses independent review rather than self-review.
  • Protects the client rather than revenue.
  • Addresses root cause rather than only the immediate transaction.
  • Documents contemporaneously rather than after discovery.
  • Applies policy consistently rather than making exceptions for top producers.
  • Recognizes reputational and regulatory risk, not just legal minimums.

Quick Self-Test Scenarios

Use these prompts before starting your next question bank session. For each one, decide: issue, accountable person, immediate action, escalation, documentation, remediation.

ScenarioBest Answer Pattern
A top producer repeatedly submits corrected KYC forms after trades.Investigate pattern, review suitability, escalate, retrain/discipline, improve controls.
A representative wants to trade after hearing confidential issuer news.Do not trade or tip; restrict and escalate to compliance.
A client complains verbally about unauthorized trades but refuses to write a letter.Treat as a complaint; document, investigate, preserve records, follow complaint process.
A new high-commission product is being pushed to retirees.Conduct KYP/product review, conflict review, suitability controls, training, supervision.
A branch manager ignores repeated exception reports because the advisor is profitable.Escalate supervisory failure; review branch controls and management accountability.
A client sends funds from unrelated third parties with vague explanations.Escalate under AML process; review client profile and source-of-funds concerns.
A director learns of unresolved reconciliation breaks.Treat as governance/control issue; require investigation, reporting, remediation.
A representative borrows money from an elderly client.Conflict/exploitation concern; escalate, investigate, protect client, apply policy.
Marketing uses a title implying expertise not actually approved.Stop or revise communication; review registration/title rules and approval process.
Client accepts full risk of a concentrated leveraged strategy.Suitability still required; assess risk capacity, concentration, leverage, documentation.

Last-Week Review Plan

Time AvailableWhat to Do
30 minutesReview the high-yield topic map and common traps. Mark weak areas.
60 minutesDo one focused topic drill on governance/supervision and one on client conduct. Review every explanation.
2 hoursComplete mixed questions, then build an error log by topic and mistake type.
Half dayRotate: quick notes review, topic drills, detailed explanations, then a timed mixed set.
Final dayFocus on error log, red flags, escalation rules, and scenario triage. Avoid learning entirely new detail unless it is repeatedly missed.

Error Log Categories

Track missed questions under these headings:

  • Governance/accountability.
  • Registration/proficiency.
  • Supervision.
  • KYC/KYP/suitability.
  • Conflicts.
  • Market integrity.
  • AML/privacy/cyber.
  • Complaints/enforcement.
  • Financial/operations controls.
  • “I knew it but chose the weaker action.”

That last category is important. Many PDO misses happen because the candidate recognized the issue but chose a passive or incomplete response.

Put the review into practice

Browse Practice Tests & Interview Prep