EIOPA published the strategies for cyber underwriting and supervisory technology (suptech), in response to the evolving insurance landscape. Also published was the Supervisory Convergence Plan for 2020, which sets out priorities and activities for the coming year. The convergence plan builds on the work of the previous year while incorporating new priorities to reflect new trends and emerging risks. The three new priorities that have been identified for supervisory convergence for 2020 are the development of suptech solutions, promotion of assessment and mitigation tools to address potential systemic cyber and extreme risks; and identification and monitoring of supervisory risks in the authorization of cross-border institutions for occupational retirement provision (IORPs) to develop appropriate supervisory responses.
EIOPA is of the view that appropriate cyber insurance coverage, underwriting practices, and sound supervision can make a valuable contribution for people, businesses, and economies to manage cyber risk. Thus, EIOPA will undertake specific actions as part of its own supervisory and regulatory priorities as well as in its capacity as a facilitator and catalyst to provide advice on cyber insurance. These actions include periodic assessment and supervision of cyber underwriting and risk management; further investigation into the issue of non-affirmative cyber exposures and accumulation of risk; inclusion of scenarios related to cyber risk events and incidents in the stress testing framework; and working with partners to explore and promote the development of a harmonized cyber incident reporting taxonomy.
The suptech strategy of EIOPA aims to facilitate the establishment of a mid- and long-term coordinated plan for development of suptech-based supervisory tools and processes, in line with the strategic objective and annual supervisory convergence plans. The strategy covers both prudential and conduct of business supervision, policy, and interaction with entities, for insurance and occupational pensions sectors. In 2020, the InsurTech Task Force of EIOPA is also expected to work on the regtech field—that is, the application of new technologies for regulatory and compliance requirements by the undertakings. Intrapreneurship programs have been promoted to identify and develop specific tools by the national competent authorities. Supervisors
were invited to present ideas to improve the efficiency and/or effectiveness of their work. Some projects have been chosen and are under development. In the area of improving supervisory processes and the use of data, both quantitative and qualitative, some of the following examples may be identified:
- Text analysis tool to compare the Solvency and Financial Condition Reports (SFCRs) published with the Quantitative Reporting Templates, including sentiment analysis in both to assess differences
- Structure prospects and yearly reports by using machine learning mechanism from unstructured documents
- Text mining or analysis of narrative data with natural language processing to support the use of qualitative information like Own Risk and Solvency Assessment and SFCR, but also from data on authorizations and other publicly available sources
- Smart search engine to access relevant information during on-site supervision activities
- Monitor social media data to capture consumer sentiment and identify informal complaints, based on a third-party and APIs, then build programs to do the analytics
- Search tool among regulatory, methodology, and doctrine texts relevant to the business of the national competent authorities, developing a relevant content navigation and visualization system that will rely on Text Mining algorithms
- Exploit, through artificial intelligence, the thousands of judicial decisions rendered each year against banking and insurance professionals to guide the supervisory actions of national competent authorities
- The use of machine learning techniques to improve data quality and data analytics through supervised and unsupervised learning. Clustering, outlier detection, identification of patterns, and trends are some examples
- A new financial supervision tool based on predictive analytics that can make sense of a growing set of available data
- Press Release on Cyber Underwriting and Suptech Strategies
- Cyber Underwriting Strategy (PDF)
- Suptech Strategy (PDF)
- Press Release on Supervisory Convergence Plan
- Supervisory Convergence Plan (PDF)
Keywords: Europe, EU, Insurance, Cyber Underwriting, Suptech, Cyber Risk, SREP, Regtech, Fintech, Solvency II, EC, EIOPA
Previous ArticleECB Presents Benchmarking Analysis of Recovery Plans of Banks
The three European Supervisory Authorities (ESAs) issued a letter to inform about delay in the Sustainable Finance Disclosure Regulation (SFDR) mandate, along with a Call for Evidence on greenwashing practices.
The International Sustainability Standards Board (ISSB) of the IFRS Foundations made several announcements at COP27 and with respect to its work on the sustainability standards.
The International Organization for Securities Commissions (IOSCO), at COP27, outlined the regulatory priorities for sustainability disclosures, mitigation of greenwashing, and promotion of integrity in carbon markets.
The European Banking Authority (EBA) issued a statement in the context of COP27, clarified the operationalization of intermediate EU parent undertakings (IPUs) of third-country groups
The Office of the Superintendent of Financial Institutions (OSFI) published an annual report on its activities, a report on forward-looking work.
The Australian Prudential Regulation Authority (APRA) finalized amendments to the capital framework, announced a review of the prudential framework for groups.
The Bank for International Settlements (BIS) Innovation Hubs and several central banks are working together on various central bank digital currency (CBDC) pilots.
The European Central Bank (ECB) published the results of its thematic review, which shows that banks are still far from adequately managing climate and environmental risks.
Among its recent publications, the European Banking Authority (EBA) published the final standards and guidelines on interest rate risk arising from non-trading book activities (IRRBB)
The European Commission (EC) recently adopted regulations with respect to the calculation of own funds requirements for market risk, the prudential treatment of global systemically important institutions (G-SIIs)