Banking & Financial Services

Bank and insurance training that holds up in an audit

Assign annual conduct, AML and privacy courses with due dates, certify advisors with proctored exams, and give auditors completion records, expiry dates and audit logs.

At a glance

  • Due dates and automatic chasers
  • Proctored sign-off exams
  • Certificates that expire
  • Enterprise identity
  • Audit logs and retention

If you run learning at a bank, credit union, insurer or wealth firm, your year has a familiar shape. Attestations open, reminder emails start, and then compliance or internal audit asks for proof: who completed the anti-money-laundering refresher, when, and with what score. Meanwhile the product team wants every advisor signed off on a new savings product before it reaches the branches.

LMS Advisor was built for that scrutiny. Mandatory courses carry due dates and completion rules, certification exams run with native proctoring, certificates expire on your schedule, and sensitive admin actions land in an audit log. Your security team gets SAML SSO, SCIM provisioning, passkeys and the option to self-host.

The challenge

What makes financial services training hard

Proof, not just completion

Internal audit and examiners rarely stop at “did they finish”. They ask when, with what score, and whether anyone could have edited the record. A spreadsheet from a shared drive does not survive that conversation.

Security reviews that stall the project

Information security wants SSO, provisioning, strong authentication, retention controls and a straight answer on where the data lives. Plenty of LMS pilots end inside that questionnaire.

Advisors signed off before they sell

A new investment product or lending policy often needs a documented competency check. That check has to be a real exam, not a quiz anyone can pass with the policy open in another tab.

Tellers, contact centers and tied agents

Branch staff, call center teams and agents outside your directory need different training on different timelines, and each branch manager wants to see only their own people.

How LMS Advisor helps

How we handle regulated training

We treat every mandatory course as something you may have to defend later: due dates on assignments, completion enforced by rules rather than trust, proctored exams, and records on a platform your IT team can host and lock down.

Due dates and automatic chasers

Assign conduct, AML, sanctions and privacy courses with a due date. Reminders go to anyone who has not started or has stalled, and the overdue report shows who missed the date.

Proctored sign-off exams

ID photo capture, webcam snapshots, AI face monitoring, fullscreen lockdown, tab-switch logging and a violation limit that auto-submits the attempt.

Certificates that expire

Set a validity period in months per course. Certificates show Valid, Expiring soon or Expired, and a reminder email goes out before the lapse date.

Enterprise identity

SAML 2.0 SSO with role mapping, SCIM 2.0 so leavers lose access when HR offboards them, plus passkeys and two-factor authentication.

Audit logs and retention

Admin actions are written to audit logs, and retention settings control how long logs, proctoring snapshots, exam audio and AI tutor chats are kept.

Your servers, if needed

Self-host in your own data center or private cloud when data residency or outsourcing rules make a shared cloud hard to approve.

In depth

Building an annual attestation cycle

Start from the obligation, not the course

Most firms already have the content: an AML refresher from the financial crime team, a conduct module from compliance, a privacy course from the data protection office. What is missing is a clean link between each obligation, the people it applies to and the evidence it must produce. So create an organization for each legal entity or business line, add departments, and decide which courses are mandatory for whom. SCORM 1.2, SCORM 2004, xAPI and cmi5 packages from your authoring tools upload as lessons, so you rarely rebuild anything.

Make completion mean something

Mark the scenario questions in an interactive module as required, so the course cannot complete until they are answered. Interactive video can pause at a timestamp, ask a question and rewind on a wrong answer. Finish with a scored quiz and issue the certificate only on a pass.

Keep learning and certification apart

For product sign-offs, use the Exams module. It runs outside course enrollment, with its own candidate portal, availability window, time limit, attempt limit and pass percentage. Conditional access can require a completed product course, or membership of a group, before the exam opens. Choose what candidates see afterward, from nothing to a full breakdown, so questions do not leak through result screens.

Plan the annual cycle once

Set certificate validity to 12 months. Learners see Expiring soon on their certificate list, the reminder emails them, and renewal resets the enrollment so they work through the course again. The public verification page shows whether any single certificate is valid, expiring or expired, which is handy for a second-line spot check.

What to hand the auditor

Completion and score exports by organization and course, certificate issue and expiry dates, the exam evidence trail for any disputed attempt, and audit log entries for admin changes. Keep audit logs long, and keep proctoring snapshots and exam audio only as long as a result can still be challenged. We do not claim certification against any regulation or security standard. We provide the controls and the records, and your compliance team maps them to the rules you answer to.

Workflow

From policy change to signed-off staff

Connect identity

Point SAML SSO at your identity provider, map groups to roles, and switch on SCIM so joiners, movers and leavers flow in from HR.

Map obligations to people

Create organizations per entity or business line, add departments, and assign each mandatory course with its due date.

Train and chase

Staff learn at their desk or on the installable web app, reminders go out automatically, and managers watch their own team’s status.

Certify with proctored exams

Advisors and agents sit product exams under the controls you chose, and a pass issues a certificate with an expiry date.

Produce the evidence

Export results, pull audit logs and exam evidence for any query, and let renewals restart as certificates near expiry.

Use cases

Where banks and insurers use it

Annual financial crime refreshers

AML, sanctions and fraud awareness for every employee, with required scenario questions and a scored check at the end.

Advisor product sign-off

A course on a new mortgage or investment product, then a proctored exam the advisor must pass before selling it.

Contact center onboarding

Complaints and vulnerable-customer modules, followed by short recorded audio answers to realistic customer questions for a supervisor to review.

Agent and broker networks

Agents outside your directory get their own organization, sit exams through the candidate portal and hold certificates anyone can verify.

Benefits

What compliance and IT get out of it

  • Completion records you can put in front of an auditor without cleaning them up first
  • A security review with real answers on SSO, provisioning, logging and hosting
  • Product sign-offs based on proctored exams rather than honor-system quizzes
  • Renewals that start themselves as certificates approach expiry
  • Branch managers who see their own people, and only their own people
FAQ

Questions from risk, audit and IT

Is LMS Advisor SOC 2 or ISO 27001 certified?
No, and we will not suggest otherwise. Your security team can assess the controls we do provide: SAML SSO, SCIM, passkeys, two-factor authentication, audit logs, retention settings, and self-hosting under the controls your firm already runs.
Can we keep all learner data in our own data center?
Yes. LMS Advisor runs on your own servers with PHP and MySQL, so learner records, exam evidence and files stay on infrastructure you control. In-app migrations, backups and system-health tools help your team maintain it.
How do we show an auditor that someone actually did the training?
Completion records hold the learner, course, dates and scores, and certificates carry issue and expiry dates with public verification. Proctored exams add an evidence trail of snapshots, logged violations and any recorded audio, within your retention settings.
What happens to records when someone leaves?
Their history stays. Deactivating someone in your identity provider deactivates the LMS account through SCIM, and even a SCIM delete deactivates rather than erases. Completion records and certificates remain for later review.
Can we switch off the AI features?
Yes, entirely. When AI is on, your admin picks Anthropic or OpenAI, every call is recorded in the AI Usage log with who asked, what and at what cost, and AI drafts are never published without a person approving them.
How strict can exam proctoring be?
You set it per exam: ID photo capture, webcam snapshots at your chosen interval, AI face monitoring, fullscreen lockdown, single-session and device lock, virtual-machine detection and a violation limit that auto-submits. Lighter settings suit practice quizzes.
Get in touch

Bring your compliance and security questions

Tell us which obligations you train against, how many staff and agents are in scope, and if you need cloud or self-hosting. We will build the demo around your attestation cycle and bring answers to the usual security questions.

  • Personalized demo
  • Deployment and security answers
  • Reply within one business day

Request a tailored demo