{"id":140630,"date":"2026-08-15T01:20:37","date_gmt":"2026-08-15T01:20:37","guid":{"rendered":"https:\/\/www.europesays.com\/ai\/140630\/"},"modified":"2026-08-15T01:20:37","modified_gmt":"2026-08-15T01:20:37","slug":"insurance-regulators-get-schooled-on-ai-governance","status":"publish","type":"post","link":"https:\/\/www.europesays.com\/ai\/140630\/","title":{"rendered":"Insurance Regulators Get Schooled on AI Governance"},"content":{"rendered":"<p>Insurance regulators are moving artificial intelligence governance from the policy manual into the examination file.<\/p>\n<p>On Thursday (Aug. 13) at its <a href=\"https:\/\/content.naic.org\/sortable_agenda\/summer_agenda.htm\" rel=\"nofollow noopener\" target=\"_blank\">Summer National Meeting<\/a>, the <a href=\"https:\/\/content.naic.org\/\" rel=\"nofollow noopener\" target=\"_blank\">National Association of Insurance Commissioners<\/a> provided an update on its\u202f<a href=\"https:\/\/content.naic.org\/sites\/default\/files\/national_meeting\/materials-big-data-ai-wg081326.pdf\" rel=\"nofollow noopener\" target=\"_blank\">AI Risk Evaluation Supplement<\/a>, a structured set of inquiries designed to help state regulators examine how insurers use and oversee AI.<\/p>\n<p>The working group renamed the document from the \u201cAI Systems Evaluation Tool\u201d to reduce confusion about its purpose. The supplement isn\u2019t a certification program, a rating system or a new insurance law. It gives regulators a common way to gather evidence about AI use during market conduct reviews, financial examinations, financial analysis or stand-alone inquiries.<\/p>\n<p>The distinction is important, but the practical effect may be more important. The NAIC\u2019s\u202f<a href=\"https:\/\/content.naic.org\/insurance-topics\/artificial-intelligence\" rel=\"nofollow noopener\" target=\"_blank\">AI principles and 2023 model bulletin<\/a>\u202festablished expectations for responsible AI use. The supplement begins translating those principles into specific requests for information.<\/p>\n<p>In other words, insurers may need to do more than say they govern AI responsibly. They\u2019ll need to show how.<\/p>\n<p>The pilot includes California, Colorado, Connecticut, Florida, Iowa, Louisiana, Maryland, Pennsylvania, Rhode Island, Vermont, Virginia and Wisconsin. Participating states haven\u2019t followed a single process. Some incorporated the supplement into scheduled examinations while others used it as an ad hoc questionnaire.<\/p>\n<p>The pilot will continue through September, although the NAIC cautioned that every state may not finish by Sept. 30. State feedback and initial company responses will inform version 5.0, which is expected to receive a 30-day public exposure period in September. Version 6.0 is scheduled for a second, 14-day exposure before regulators consider version 7.0 for adoption at the fall national meeting.<\/p>\n<p>The supplement\u2019s emerging scope shows where insurers could face the most scrutiny. Regulators want to understand an AI system\u2019s purpose, data sources, training data, validation procedures and risk classification. They are also looking at documentation, performance monitoring, change histories and whether a company can audit and explain an AI-generated outcome.<\/p>\n<p>Human oversight is part of that review. Regulators are examining who can approve a model, challenge its output, intervene when performance deteriorates and document what happened after a system or vendor changes.<\/p>\n<p>For insurers, that raises the value of a current AI inventory. A company should be able to identify each system, explain what it does, name the data it uses, and map its internal and external dependencies. It should also be able to produce testing results, monitoring records and proof that controls work in practice.<\/p>\n<p>The vendor implications are developing on a parallel track. On Wednesday (Aug. 12), the NAIC\u2019s\u202f<a href=\"https:\/\/content.naic.org\/committees\/h\/third-party-data-models-wg\" rel=\"nofollow noopener\" target=\"_blank\">Third-Party Data and Models Working Group<\/a>\u202freviewed feedback on a proposed framework covering outside data and predictive models used in property and casualty pricing and underwriting.<\/p>\n<p>The proposal could require vendors to provide documentation covering model purpose, assumptions, inputs, limitations, validation and performance. Regulators could also seek data-lineage records, fairness testing, change logs and audit trails. The\u202f<a href=\"https:\/\/content.naic.org\/sites\/default\/files\/national_meeting\/081226-materials-tpdmwg-su-nm.pdf\" rel=\"nofollow noopener\" target=\"_blank\">meeting materials<\/a>\u202fsaid insurers would retain responsibility for validating, testing and monitoring third-party products.<\/p>\n<p>That could create a new commercial dividing line for insurance technology providers. Platforms that can supply audit-ready documentation may become easier for regulated companies to adopt. Vendors that treat model details as off-limits could create compliance friction for their customers.<\/p>\n<p>The message from regulators is becoming harder to miss. An insurer can outsource an AI model, but it can\u2019t outsource accountability.<\/p>\n<p>For all PYMNTS AI coverage, subscribe to the daily <a href=\"https:\/\/pymnts.com\/subscribe\/\" rel=\"nofollow noopener\" target=\"_blank\">AI Newsletter<\/a>.<\/p>\n","protected":false},"excerpt":{"rendered":"Insurance regulators are moving artificial intelligence governance from the policy manual into the examination file. On Thursday (Aug.&hellip;\n","protected":false},"author":2,"featured_media":140631,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[2],"tags":[24,25,5284,66,310,11763],"class_list":["post-140630","post","type-post","status-publish","format-standard","has-post-thumbnail","category-ai","tag-ai","tag-artificial-intelligence","tag-insurance","tag-news","tag-pymnts-news","tag-regulations"],"_links":{"self":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts\/140630","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/comments?post=140630"}],"version-history":[{"count":0,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts\/140630\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/media\/140631"}],"wp:attachment":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/media?parent=140630"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/categories?post=140630"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/tags?post=140630"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}