Module 5 Flashcards

1
Q

Explain why different parts of the same organisation might be subject to different regulatory regimes and/or capital adequacy standards (5)

A
  1. having operations that are regulated by different territories
  2. having subsidiaries that operate in different industry sectors, eg financial and manufacturing
  3. having subsidiaries that operate in different areas within the same sector, eg banking and insurance
  4. having subsidiaries or portfolios within the same sector that are subject to different regulatory requirements, eg traditional insurer and captive insurer
  5. having subsidiaries which are new ventures or acquisitions and are at different lifecycle stages
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

List the types of external entities that may exercise supervision and control over a company (5)

A
  1. professional bodies – eg the Institute and Faculty of Actuaries
  2. professional regulators – eg the Chartered Financial Analyst Institute (CFA)
  3. industry bodies – eg the British Bankers’ Association (BBA)
  4. industry regulators (supervisors) – eg the PRA, FCA and LSE
  5. governments
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

List the five processes that may form part of a prudential supervision system

A
  1. oversight (eg financial)
  2. licensing
  3. a requirement to maintain minimum standards (eg operational)
  4. procedures for monitoring compliance with standards and licences
  5. processes to take action against those who fail to comply
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Outline the UK Senior Insurance Managers Regime (SIMR)

A

There are two main parts to the SIMR:

  1. A governance map giving details of:
    - company and corporate governance structures
    - identified ‘Key Functions’, ‘Key Function Holders’ and ‘Key Function Performers’
    - all individuals within the SIMR regime, their responsibilities and reporting lines
    - the rationale applied in identifying those individuals and allocating responsibilities to them.
  2. An assessment of fitness and propriety of senior insurance managers and directors, based on their responsibilities as allocated through the governance map.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Outline two broad types of regulation

A

Two broad types of regulation:
1. functional regulation – where different authorities oversee different activities (eg banks and charities). This is the system used in the UK.

  1. unified regulation – where a single regulator covers a broad range of activities. This is the system used in Australia.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Outline the advantages and disadvantages of unified regulation

A

Advantages:

  1. easier to regulate financial conglomerates
  2. ensures a consistent approach across financial services activities
  3. limits any incentive for regulatory arbitrage
  4. economies of scale
  5. better sharing of ideas between regulatory staff
  6. improved accountability (less buck-passing between regulators)

Disadvantages:

  1. may become large and bureaucratic
  2. departments within the regulator can end up functioning independently
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

State five factors that an insurer should consider when developing a set of relationship management principles with a regulator

A

The insurer should consider what principles to adopt with respect to:

  1. alignment to supervisory objectives
  2. preservation of the insurer’s reputation
  3. the importance of being proactive and engaging with a regulator as early as possible
  4. transparency of communication
  5. ensuring accountability for and governance of relationship management.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Outline insurer-regulator relationship management principles relating to alignment to supervisory objectives and to preservation of the insurer’s reputation (6)

A
  1. The insurer’s overall corporate strategy should encompass a supervisory strategy.
  2. The supervisory strategy should be communicated to the regulator, in particular how it will lead to compliance with regulation.
  3. The insurer should notify the regulator early of any changes to corporate strategy.
  4. The insurer should have processes in place to ensure supervisory requirements are understood, accepted and met throughout the company.
  5. The insurer should work with the regulator to develop policy as insurers are well-placed to assess the practical implications of changes in policy.
  6. Best practice should be adopted before it becomes mandatory.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Outline insurer-regulator relationship management principles relating to proactive engagement (4)

A
  1. The insurer should be pro-active in its engagement with the regulator, anticipating supervisory changes and seeking out opportunities to work with the regulator.
  2. The insurer should work with a regulator to develop an overall plan of regulatory site visits and assist in the planning and logistics of each individual visit.
  3. Recommendations from the regulator should be welcomed.
  4. A positive perception of the supervisor should be encouraged within the insurer.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Outline insurer-regulator relationship management principles relating to transparency of communication (6)

A
  1. Communication with the regulator / supervisor should be proactive, regular and open.
  2. The insurer should respond promptly to data requests / investigations.
  3. The insurer should have processes in place to report breaches, which supervisors understand will occur from time to time.
  4. The insurer should keep the regulator up-to-date with progress on risk management qualification and quantification exercises.
  5. The insurer should aim to submit responses to surveys and consultations in good time and may wish to co-ordinate submissions with other insurers, perhaps through an industry body.
  6. Responses to consultations should be practical and unbiased: the insurer should avoid invoking an argument that it is unique, and should not feel under pressure to comment on every aspect of a proposal.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Outline insurer-regulator relationship management principles relating to accountability for / governance of the relationship

A

There should be clarity as to which individuals are accountable for each of the following broad groups of interactions:

  • operational or procedural
  • unusual or non-standard
  • strategic.

The Chief Risk Officer (or the Chief Financial Officer) should have overall responsibility for the relationship and co-ordinating interactions.

Continuity of the personnel involved in each type of interaction should be maintained as it helps to develop and maintain a trusting relationship.

Boards should encourage an appropriate relationship with regulators by setting the tone and be kept fully informed of insurer-regulator interactions, especially non-standard and strategic interactions.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

List the aspects of an organisation that a risk-based regulator typically seeks to understand (5)

A

Regulators try to understand which companies represent greatest risk by examining:

  1. the nature of the business
  2. governance arrangements
  3. business plans
  4. financial (condition) reports
  5. risk management strategies and processes.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Outline the three pillars of Basel Accords

A

Pillar 1: minimum regulatory capital requirement determined by the amount of credit, market and operational risk exposures

Pillar 2: supervisory review which relates to the bank’s internal risk management processes. Supervisors will assess the bank’s internal systems, processes and risk limits to ensure that the bank has set aside sufficient capital for its risks (additional capital may be required, but this is expected to be rare). Particular attention is paid to liquidity and concentration risks.

Pillar 3: level of disclosure that the bank is required to undertake to the public and the market. Its purpose is to facilitate market discipline on firms through appropriate pricing for capital.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Summarise the main criticisms of the Basel II requirements (7)

A
  1. places too much confidence in a complex model that summarises many diverse risks into a single number
  2. suffers from the difficulties in quantifying certain types of risk, eg operational
  3. gives only cursory consideration to certain risk types, eg liquidity
  4. may create systemic risk – pro-cyclicality and risk herding
  5. uses market values which may under-value certain assets under certain conditions
  6. is very costly to implement, especially the IRB approach and AMA
  7. increased complexity, and implied high levels of confidence, leads to overconfidence in risk controls
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Summarise the main aims of Basel III (5)

A

Basel III works alongside Basel I & II. It:

  1. focuses on specific liquidity risks (eg the risk of a run on the bank) as well as systemic and counterparty risks
  2. strengthens the capital requirements for banks, including limiting cross holdings in other financial institutions and associated assets to limit systemic risk
  3. introduces a conservation buffer to provide breathing space in times of financial stress
  4. changes the minimum ratios of Tier 1 and Tier 2 capital
  5. allows some flexibility in capital requirements in times of financial crisis to limit pro-cyclicality.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Summarise the aims of Solvency II (6)

A
  1. economic risk-based solvency requirements across all EU Member States
  2. more comprehensive requirements than in the past taking account of the asset side as well as liability side risks
  3. requirement to hold capital against market risk, credit risk, operational risk and underwriting (life, non-life and health) risk
  4. emphasis that capital is not the only (or the best) way to militate (this means ‘to have influence on something or to bring about a change’) against failures
  5. more prospective focus
  6. streamlined approach which aims to recognise the economic reality of how groups operate
17
Q

Outline the three pillars of Solvency II

A

Pillar 1: quantitative requirements designed to capture underwriting, credit, market and operational
risk. There are two parts to the requirements: the Solvency Capital Requirement (SCR – below which regulatory action is taken) and the lower Minimum Capital Requirement (MCR – below which authorisation is foregone).

Pillar 2: qualitative requirements on undertakings such as risk management well as supervisory activities. Specifically, insurers must carry out their Own Risk and Solvency Assessment (ORSA) to quantify their ability to continue to meet the SCR and MCR in the near future, given their identified risks and associated risk management processes and controls.

Pillar 3: supervisory reporting and disclosure

18
Q

Outline the purpose and requirements of an Own Risk and Solvency Assessment (ORSA)

A

The purpose of the ORSA is to provide the board and senior management of an insurance company with an assessment of:

  • the adequacy of its risk management, and
  • its current, and likely future, solvency position.

The ORSA requires each insurer to:

  1. identify the risks to which it is exposed,
  2. identify the risk management processes and controls in place, and
  3. quantify (using long-term projections) its ongoing ability to continue to meet its solvency capital requirements (both MCR and SCR)
  4. analyse quantitative and qualitative elements of its business strategy
  5. identify the relationship between risk management and the level and quality of financial resources needed and available.
19
Q

Compare Basel II and Solvency II

A

Key similarities:

  1. three-pillar structure
  2. risk-based, at least in part (unlike volume-based Solvency I)
  3. suitable for multi-nationals

Key differences:

  1. Solvency II not designed with systemic risk in mind
  2. Solvency II is more principles based, Basel II has more prescriptive rules
  3. Solvency II is EU, whereas Basel is global
20
Q

Outline the key features of the Sarbanes-Oxley Act (7)

A
  1. formation of a Public Accounting Oversight Board (PAOB) – to inspect the published accounts of quoted firms and prosecute any accountancy firm breaching the regulations
  2. increased accountability of CEOs and CFOs of public companies – requiring them to certify that financial reports do not contain any untrue facts and making them personally responsible for these financial disclosures
  3. published reports must contain an internal control report (ICR), which commits management to maintain and review proper internal controls
  4. audit committee and external auditors must have independence
  5. strengthened separation of analyst and investment bankers
  6. management interference with the audit process is made illegal
  7. destroying records or documents with intent to influence an investigation is made illegal
21
Q

Outline key themes for management to consider as part of their governance, risk and compliance (GRC) systems

A

Key themes for management to consider include:

  1. are controls identified and documented?
  2. are controls consistent across the business?
  3. do controls address the critical factors – ie are the right controls in place?
  4. do the controls include risk management?
  5. what testing procedures are required before signing off the ICR?
22
Q

Outline the COSO Integrated Framework

A

The Committee of Sponsoring Organizations of the Treadway Commission (COSO) is a US private sector organisation, sponsored by professional accounting associations.

The framework it has set out definitions and standards which organisations can use to assess their internal RM control systems.

The framework considers different aspects of a business across three dimensions (often represented as a cube):

  1. activities required to demonstrate internal controls
  2. business areas covered
  3. level of application.

The contents of each cell is considered in terms of whether there are adequate internal controls (eg reporting of risk assessments at divisional level) to demonstrate compliance with Sarbanes-Oxley.

23
Q

State the principles embedded in the COSO framework (7)

A

The principles embedded in the COSO framework include:

  1. ERM should be integrated into an organisation’s strategy
  2. risk represents opportunity as well as potential downside
  3. ERM is a multi-dimensional and iterative ongoing process
  4. it should be integrated into everyday processes
  5. everyone has a role in risk management (at all levels), but ultimate responsibility is with the CEO
  6. any risk management process is imperfect
  7. implementation of risk management must balance cost with potential benefit.
24
Q

Outline the Swiss solvency test (3)

A
  1. is a risk-based regulatory capital regime
  2. takes a market consistent approach and has similarities with the Solvency II Pillar 1 requirements, but uses a Tail Value at Risk (TVaR) measure at 99% confidence rather than Value at Risk (VaR) at 99.5% confidence
  3. extreme scenarios have to be evaluated and the impact on the target capital has to be estimated