
OneTick Trade and Market Surveillance
Detect and alert on complex trading patterns and evolving market misconduct activities with OneTick Surveillance.
Upgrade your surveillance
OneTick Trade Surveillance gives you the power to monitor and protect your trading in both fully hosted and deployed configurations. Our solution is used by tier 1 banks, exchanges and market centers, routing and executing brokers, clearing firms, FCMs, market-makers, retail brokers, and buy-side firms.
OneTick includes coverage of MAR, MiFID II, SEC, FINRA, and IIROC trade surveillance regulation.
SPECIFIC MISCONDUCT CATEGORIZATION
Comprehensive coverage
Detect a wide range of market misconduct with OneTick
Spoofing and layering
Detect spoofing and layering across order books, market data, and imbalance signals, including cross-product and FX patterns.
Front-running
Spot stop-loss triggers, take-profit front running, tailgating, and trade-along behaviors in real time.
Insider trading
Identify position accumulation, insider trading patterns, and conflicts of interest, with optional news and aggressiveness checks.
Market manipulation
Uncover pump and dump, marking the close or open, unusual activity, and dark pool price manipulation.
Wash trading & cross trading
Detect wash and cross trading, including circular patterns often linked to market abuse and money laundering risk.
Other manipulative behaviors
Monitor advancing the bid, quote stuffing, pinging, painting the tape, withholding trades, and more.
ACCURACY & EFFICIENCY
Advanced analytics & alert management
OneTick Surveillance uses advanced techniques to improve alert accuracy and efficiency
ML & AI
Use ML and AI to reduce false positives with self-tuning models that adapt to market conditions.
Alert Scoring with ML
Score and rank alerts using ML, so you focus investigations on the highest-risk behaviors first.
Explainability
Access white-box models and full traceability, with control over inputs, outputs, and data access.
Dynamic thresholds
Adjust thresholds automatically based on real-time and historical market conditions.
Pattern alerts
Layer alerts on top of existing rules to detect complex behaviors with fewer overlapping checks.
DETECT MANIPULATION ACROSS CORRELATED INSTRUMENTS
Cross-product and cross-market surveillance
See the full picture across products and markets
Markets are interconnected and so is risk. You need to monitor behavior across related instruments, venues, and asset classes in real time.
OneTick lets you detect manipulation across structurally linked products, such as equities and their derivatives, as well as non-structural correlations driven by market behavior. You can ingest your own correlation matrices or generate them directly from OneMarketData.
That means you uncover patterns that span products, issuers, and markets, even when links aren’t obvious.
Examples include mini manipulation across equity and futures underliers and options, imbalanced trading such as ramping and momentum ignition, and insider dealing across issuer-related instruments.
ENSURING EMPLOYEE COMPLIANCE
Personal Account Dealing (PAD) surveillance module
Strengthen oversight of employee trading
Employee trading requires clear visibility, controlled access, and defensible processes. You need a structured way to monitor activity, enforce internal policies, and demonstrate compliance when regulators ask questions.
OneTick’s Personal Account Dealing (PAD) surveillance module gives you a dedicated framework to supervise employee trading with precision. You can monitor activity, apply tailored alert logic, and maintain documented investigations within a controlled environment designed for compliance teams.

dashboard
Give compliance teams a focused workspace to review alerts, analyze employee activity, and record decisions efficiently.

Limit access to sensitive PAD data through role-based controls that protect confidentiality and support governance standards.

perimeters
Set thresholds and surveillance logic specific to employee trading to reflect your internal policies and risk appetite.

Maintain complete investigation records with documented actions, commentary, and time-stamped audit trails to support regulatory inquiries.
FROM DETECTION TO RESOLUTION
Efficient alert management and compliance workflows
Flexible alert run modes
Run alerts in real-time (CEP) for immediate market disruption events, intraday for most market abuse scenarios, or T+1/daily for multi-day and profile-based alerts.
Multiple alert output types
Generate alerts, exceptions, pattern alerts, reports, and data quality checks from a single surveillance workflow.
Integration with Case Management System (CMS)
Route alerts into your CMS with workflow controls, case merging, attachments, search, comments, and reminders.
Sandbox testing and calibration
Test and tune alert parameters in a sandbox environment to adjust and test alert parameters without affecting the production environment.
THE DATA CAPABILITIES YOU REQUIRE
Intuitive investigation & comprehensive data handling
Highly performant & customizable user interface with all of the data capabilities you require
Triage dashboards
Offers web-based dashboards for efficient review, rapid triage, assigning, reviewing, annotating, and archiving alerts. Features include flexible filtering and grouping, contextual visualizations showing order states and market data, and multi-day/multi-quote views.
Order book replay (OBR)
Provides a dynamic, visual representation of the order book, allowing users to step through interleaved market and firm/customer orders state by state. It can be launched directly from an alert, with the relevant instrument and time range pre-selected, and allows filtering by specific participants. News and alerts can be overlaid on the market timeline for enhanced context.
Smart Compliance Insights Lab (SC(A)IL)
A SaaS environment based on JupyterLab for deep compliance investigations. It allows users to ask ad-hoc questions using SQL, Python & Pandas, or natural language (via an AI query assistant), create custom visualizations, and generate aggregate reports. It also supports creating “guest alerts” that integrate into the surveillance system.
Robust data ingestion
The OneTick engine supports the simultaneous collection of many real-time data sources, including FIX, Kafka, AMQP, and various proprietary feeds, with high-performance collectors tested at over 500,000 messages per second. It handles diverse data types like reference data, orders, trades, news, and corporate actions.
Data quality assurance (QA)
The system performs dynamic data QA at several stages, including during loading and normalization, and prior to alert generation. It includes a large set of standard “sanity checks” to assess data quality and completeness, which can be configured to block downstream processing if issues are detected.
ONGOING SUPPORT
Robust support & implementation partnership
The OneTick team is here to help you manage your projects with ongoing support.
Project framework
OMD employs a hybrid project methodology combining elements of Waterfall, Scrum, and Kanban to ensure efficient implementation. There is a strong emphasis on a transparent project framework, providing customers with full access to project management tools like Jira and Confluence to track tasks, participate in planning, and monitor progress.
Comprehensive support
Includes product support (updates, troubleshooting, issue resolution with defined SLAs), managed services (24×6 system monitoring and remediation for SaaS/PaaS customers), and professional services for customization work. Detailed escalation procedures are in place for complex issues.
Training
Offers various types of training, including business end-user training (triage, deeper investigation, CMS workflows), quantitative developer training (alerts development in Python/OneTick Query Language), and access to the OneTick Academy online learning platform.
Trusted by
Demo real-time surveillance built for modern market complexity
Strengthen your compliance framework with scalable analytics and full market context.
- Detect market abuse across asset classes and venues
- Investigate alerts with complete historical and real-time data
- Reconstruct trading activity with precision and audit-ready transparency
- Scale surveillance across the cloud or on-prem with consistent performance
Book a demo with an expert
「*」は必須フィールドを示します






















