Hawk
AI-native anti-money laundering and fraud prevention for banks and payment firms
About Hawk
Hawk (legally Hawk AI GmbH, originally HAWK:AI) is a Munich, Germany-based financial crime technology company founded in 2018 by Tobias Schweiger and Wolfgang Berner. Its platform unifies anti-money laundering (AML) transaction monitoring, customer screening, customer risk rating and fraud prevention (a combined FRAML approach), layering explainable AI on top of traditional rule-based monitoring to surface more genuine crime while reducing false-positive alerts by a reported 70%+. The company serves more than 80 customers globally, ranging from Tier-1 banks to digital-first fintechs and payment providers (including names such as Ecobank, Vodafone, Worldline, VR Payment and Volt). Forrester named Hawk a Strong Performer in The Forrester Wave: Anti-Money-Laundering Solutions, Q2 2025, noting its innovation leadership. As a European company, Hawk states full compliance with the EU GDPR and CCPA, and its information-security program is certified to ISO/IEC 27001:2022 and SOC 2 Type 2, with alignment to ISO 22301 and GDPR audits. Data is encrypted in transit and at rest, secrets are managed via HashiCorp Vault for GDPR-aligned PII protection, and access controls include RBAC, MFA, VPN-protected access and SSO. Hawk offers both SaaS and private-cloud deployment options, making it well suited to BaFin- and ECB-regulated institutions. Hawk raised a $56M (about EUR 52M) Series C round in April 2025 led by One Peak, bringing total funding to roughly EUR 174M, following earlier Series A ($10M) and Series B ($17M) rounds. The exact production data-residency region is not publicly published; prospective EU customers should confirm EU-only hosting and the absence of model training on their data via Hawk's DPA and Trust Center documentation.
TrustKit Score Breakdown
?88% ExcellentPricing
CustomQuick Facts
Frequently Asked Questions
Is Hawk GDPR compliant?
Hawk has a TrustKit compliance score of 88% (Excellent). Data Residency: European company offering SaaS or private-cloud deployment and GDPR compliance, but no publicly published EU-only data-residency commitment or named region. EU customers should confirm EU hosting via the DPA. Scored conservatively pending explicit residency disclosure.. Legal Jurisdiction: Incorporated as Hawk AI GmbH in Munich, Germany (EU/EEA), with no US parent. Falls fully under EU/GDPR jurisdiction — ideal for EU regulated institutions..
Where does Hawk store data?
Hawk hosts data in: Cloud (SaaS) or private-cloud deployment; European company, GDPR-compliant. Specific EU data-residency region not publicly disclosed — confirm via DPA.. European company offering SaaS or private-cloud deployment and GDPR compliance, but no publicly published EU-only data-residency commitment or named region. EU customers should confirm EU hosting via the DPA. Scored conservatively pending explicit residency disclosure.
Does Hawk train on user data?
Hawk: No public statement that customer data is used to train shared models; AI learns from analyst decisions within the customer environment. Confirm no-training terms in DPA.. Offers DPAs, encryption, GDPR-aligned PII handling and private-cloud isolation; AI learns from analyst feedback within the customer tenant. No public explicit shared-model no-training clause, so scored 4 pending DPA confirmation of retention and training terms.
What certifications does Hawk hold?
Hawk holds: ISO/IEC 27001:2022, SOC 2 Type 2, ISO 22301 (alignment), GDPR. Holds ISO/IEC 27001:2022 and SOC 2 Type 2, with ISO 22301 alignment and GDPR audits — a strong stack including sector-relevant resilience certification for a financial-crime vendor.