Regulatory overhaul for a mid-size NBFC
The challenge
A Bengaluru-based non-banking financial company (NBFC) with ₹800 crore in assets under management had received adverse findings from the RBI across three consecutive quarterly reviews. Each review identified similar gaps: fragmented controls, inconsistent documentation, delayed reporting and a compliance team that was firefighting rather than working to a structured framework.
The compounding problem was technology. The organisation's compliance workflows were running across three disconnected systems — a legacy loan management platform, a standalone Excel-based reporting tool and an email-based approval process. None of them talked to each other. When a regulator asked for a complete audit trail, the team spent days reconstructing it manually.
The head of compliance had flagged the issue internally for over a year. Without structural change, the organisation was at risk of a show-cause notice and potential operating restrictions.
What we did
We conducted structured interviews with the compliance, IT, operations and credit teams. We mapped every compliance obligation against the current-state process and identified where gaps originated — distinguishing between process failures, technology failures and people failures.
We designed a three-tier controls framework: preventive controls (built into process design), detective controls (automated alerts and dashboards) and corrective controls (escalation protocols with named owners). Each control was mapped to its corresponding RBI circular obligation, so the compliance team could demonstrate evidence at the point of inspection.
We specified and oversaw the integration of the loan management system with a centralised compliance dashboard — giving the team a single view of all open obligations, deadlines and approvals. Manual Excel reporting was replaced with automated extracts, reducing human error and saving approximately 18 person-hours per week.
We ran structured training sessions for the compliance team on the new framework and tools, created an operations playbook for each compliance process, and established a monthly management review rhythm. We stayed on retainer for the first RBI review under the new system, supporting the team through the inspection and responding to regulator queries in real time.
The outcome
The organisation's next RBI quarterly review — four months after engagement start — returned zero adverse findings. The inspector specifically noted the quality of the audit trail. The compliance function, which had previously operated reactively, now runs on a structured monthly cadence. Manual compliance effort fell by 40%, freeing the team to focus on emerging obligations rather than retrospective documentation.
"POLI didn't just fix our compliance gaps — they redesigned how our finance team thinks about risk. The RBI review that used to keep us up at night was the smoothest we have ever had."— Director of Finance, Mid-size NBFC, Bengaluru