Skip to content

Financial services

Answers an examiner can follow to the source.

Run it as a container in your own tenant: the network controls, key management and logging your reviewers have already approved govern it.

Who runs it

Six institutions, six shapes of the same platform.

M&A research at one end, high-volume customer answering at the other, and internal knowledge in the middle — from Tokyo to Montevideo. Each runs on the same governed platform; what changes is what it reads and where it answers.

  • Trading house · M&A

    An M&A intelligence portal for one of Japan's largest trading houses.

    • A data-room portal replaces manually assembled evaluation decks
    • Pre-built research agents for capital structure, leadership, geography and financials
    • Bilingual Japanese and English PowerPoint output, generated on every upload
    • One governed platform, reusable across divisions
    Regulated M&A intelligenceRead the story
  • Retail & commercial banking

    A customer-facing digital banking assistant with guided loan applications.

    • A customer assistant for general digital banking questions
    • Loan application journeys with GDPR-compliant data handling
    • Internal system integration governed by NeuralSeek Guardrails
    • Every regulated customer interaction under the same policy
    Digital banking · GDPR
  • M&A advisory

    A research assistant that joins outside market data with the firm's own SharePoint, Outlook and Salesforce.

    • External market and sector research across filings, the web and news
    • Grounded in internal SharePoint, Outlook and Salesforce records
    • Analyst-grade synthesis with every claim cited back to its source
    • One pane of glass over the whole advisory workflow
    Cross-border M&A research
  • Universal banking · State bank

    An employee assistant over process and policy documentation — on premises, governed.

    • Verified process and policy answers for every employee
    • No-code authoring, so the bank extends it without an IT queue
    • On-premises, with guardrails and audit logging built in
    • A foundation for extending the same service to retail customers
    Employee productivity · On-prem
  • Pension fund administration

    One answer engine behind every support channel.

    • A single response engine across IVR, WhatsApp, the website and internal platforms
    • Consistent, policy-compliant answers from one verified knowledge base
    • Routine enquiries answered before they reach the support team
    • Guardrails enforce pension-sector rules on every reply
    Support offload · Multi-channel
  • Fintech · Digital payments

    A retrieval-grounded virtual assistant for Mexico's first payments unicorn, wired into Salesforce.

    • Real-time retrieval over product, fee and account-setup knowledge
    • Salesforce integration for leads, second-line cases and identity checks
    • Intent recognition, with guided suggestions when a question is vague
    • Live on public cloud since 2022
    Digital payments · Public cloud

Story 1 of 6: Itochu

Also running NeuralSeek in financial services

What a security review checks

The four questions that decide the review.

These are not a finance-specific tier — they ship in every deployment, including the managed one you would evaluate on. They are listed here because in a bank they are the four that get asked first.

  • PII detection and redaction

    13 detector categories and five enforcement actions — mask, flag, hide, delete, or pass through with a warning — configurable per intent.

  • A forensic audit trail

    Every question, answer, score and configuration change logged, timestamped, attributable, and exportable to S3, Splunk or Datadog.

  • Per-tenant isolation

    Separate keys per tenant. Your prompts, documents and outputs never train shared models and never co-mingle.

  • No training on your data

    Your data stays yours. NeuralSeek does not train models on your prompts, documents or interaction logs.

The governance surface

Three pages your risk function will actually read.

Each one is the detail behind a claim above, written for the person who has to sign rather than the person who has to buy.

Behind them sits the packaging question: what is in the container, which marketplace agreements it arrives under, and what your platform team is actually taking on operationally. The systems this connects to, and the audit destinations the log exports to, are set out by family on the connectors page.

Guardrails

A secrets table in the console: one entry listed by name, its value shown masked, with controls to remove it, propose changes or save.
Secrets an agent flow uses are held under a name you choose, with the value kept out of view in the console.

The frameworks a finance review works through.

Drop the container into an environment your auditors have already signed off and it inherits that boundary: your network controls, your key management, your logging, your incident process. That is why the honest answer to “is it certified?” is mostly a question about your tenant — and why the one thing attested at the vendor level is stated separately from everything that is not.

Attested

SOC 2 Type II

Attested at the vendor level and audited annually. The report is available under NDA.

The frameworks below are not certifications NeuralSeek holds. They are requirements it is built to meet inside your environment, where your own controls and your own audit apply.

Control mappings, not compliance claims. Validate your posture against your own obligations, with your own counsel — the certifications page sets out where the line between the two sits.

Three questions from the second meeting.

The first meeting is about whether it works. These three are the ones that decide whether it ships.

  1. Can you show us why it answered that way?

    Every answer carries the passages it was grounded in and a confidence score, and the run behind it is replayable: which agent ran, which model was called at which step, what each step returned, and how long it took. Configuration is versioned with a visible history, so a question about behaviour six months ago is answered from the record rather than from memory. All of it exports to the collector you already run rather than living in a vendor console.

  2. Our data is not allowed to leave our tenant.

    Then it does not. NeuralSeek is a container you run in your own account, your own region or your own datacentre, and retrieval, orchestration, logging and the audit trail run there with it. The one boundary crossing left is the model call, and that is a choice: bring your own provider keys, or point it at an open-weight model on hardware you own and nothing leaves at inference time either. Fully air-gapped is a standard topology, not a special engagement.

  3. We already have a model provider — and half a team building on it.

    That is the normal starting point, and the model is not what NeuralSeek replaces. The model is one configurable layer inside the container; what sits around it is the retrieval, the enforcement and the record, which is the part hand-built projects tend to leave until an audit asks for it. Swapping the provider later is a configuration change rather than a migration, and the applications built on top do not move when it happens.

See it running inside your own boundary.

Talk to a NeuralSeek expert about how it fits your stack, where your data has to live, and the governance your auditors already expect.