Insurance Regulations: When Regulators Take Control



Insurance regulations govern how companies are licensed, what rates they can charge, and when a regulator can take control of a carrier's operations.

Every insurance company operating in the United States is subject to the regulatory authority of each state where it sells policies, and those regulatory frameworks differ in ways that matter operationally. A rate that is approved in one state may be disapproved in another using the same actuarial data. A policy form that is standard in one market may require material revision to comply with another state's mandatory provision rules. And a carrier whose financial condition deteriorates below required thresholds faces regulatory intervention that can escalate from a corrective action plan to rehabilitation to liquidation without any criminal conduct involved. An attorney who handles insurance regulations matters can identify where a carrier's multistate compliance structure creates gaps before a regulator identifies them first.

Insurance regulation in the United States operates primarily at the state level under the framework established by the McCarran-Ferguson Act of 1945, codified at 15 U.S.C. § 1011, which exempts the business of insurance from most federal antitrust laws and affirms state regulatory primacy. Federal regulation applies to specific product types including flood insurance under the National Flood Insurance Program, terrorism risk coverage under the Terrorism Risk Insurance Act, and health insurance under the Affordable Care Act.


Contents


1. What Insurance Regulations Require of Licensed Carriers and Producers


Insurance companies must obtain a certificate of authority from each state's insurance department before selling policies in that state, and the licensing requirements, the financial standards, and the product approval processes each differ across jurisdictions.

A carrier seeking to enter a new state market must demonstrate minimum capital and surplus, submit its organizational documents and business plan, file its proposed policy forms and rates for regulatory review, and in many states submit to a pre-licensing financial examination. The minimum capital and surplus requirements vary by line of business and by state, with life insurance companies and property-casualty companies facing different minimum standards and different risk-based capital formulas for determining whether additional capital is required.

Policy forms and rates must be filed with and, depending on the state's regulatory approach, approved by the state insurance department before they can be used. States use three primary filing systems: prior approval, which requires department sign-off before the rate or form can be used; file and use, which allows immediate use while the department reviews; and use and file, which requires submission after the fact. A carrier that uses a rate or form that has not been approved in a prior approval state faces administrative penalties and may be required to refund premium charged under the unapproved rate.



How Rate and Form Filing Requirements Work and What Disapproval Means


A rate disapproval means the state insurance department has determined that the proposed rate is excessive, inadequate, or unfairly discriminatory, and the carrier cannot charge that rate to policyholders in that state until a revised filing is approved.

The most common grounds for rate disapproval are actuarial deficiency, meaning the supporting data does not justify the proposed rate level, and unfair discrimination, meaning the rating plan treats similarly situated risks differently without a valid actuarial basis for the distinction. A carrier whose rate filing is disapproved can request a hearing before the insurance department or seek judicial review of the disapproval order in the state's administrative courts.

Form disapprovals focus on policy language that violates mandatory provision requirements, uses ambiguous terms that could disadvantage policyholders, or fails to include required disclosures. Every state has a body of mandatory provisions that certain types of insurance policies must contain, and policy forms that omit or modify these provisions are subject to disapproval. An attorney who handles insurance regulatory compliance matters can review a proposed rate or form filing against the specific requirements of each target state and identify the changes needed to support approval before the filing is submitted.

Regulatory SystemHow It WorksWhen Filing Is EffectiveEnforcement Risk
Prior approvalDepartment must approve before useAfter written approval is receivedUsing unapproved rate or form is immediate violation
File and useFiling required, immediate use permittedUpon filing with departmentDisapproval requires withdrawal and rate refund
Use and fileUse permitted, filing required within set periodUpon first useLate filing triggers penalty regardless of rate adequacy
Exempt filingSome lines or sizes exempt from filingImmediatelyLimited to eligible product types and purchasers


2. How Insurance Regulations Are Enforced through Market Conduct Examinations


Market conduct examinations are the primary regulatory tool for evaluating whether an insurance company's practices in the field match its filed forms and its internal compliance representations, and the results of a market conduct exam can produce consent orders, license suspensions, and civil money penalties.

A market conduct examination reviews a carrier's claims handling practices, its underwriting and rating practices, its sales and marketing materials, its complaint handling processes, and its producer oversight program. Examiners select files for review using statistical sampling methodologies, and findings are extrapolated from the sample to the full population of affected transactions. A 10 percent error rate in a claims file sample, applied to a population of 100,000 claims, becomes the basis for an enforcement action covering the full extrapolated universe.

Violations found in a market conduct exam are documented in a draft exam report that is provided to the company for a formal response period, typically 30 to 60 days. The company can dispute the examiners' findings, provide additional documentation, and present evidence that the violations identified in the sample do not accurately represent company-wide practices. A well-prepared response that reduces the number of sustained violations and demonstrates a credible corrective action plan consistently produces more favorable final orders than a response that minimally contests findings without addressing the systemic issues the exam identified.



When Financial Insolvency Triggers Regulatory Receivership


When an insurance company's financial condition deteriorates to the point where it can no longer meet its obligations to policyholders, the state insurance department has authority to place the company into regulatory receivership, which can take the form of rehabilitation or liquidation depending on whether the company's condition is recoverable.

The National Association of Insurance Commissioners' risk-based capital framework requires insurance companies to maintain capital above a minimum threshold relative to their risk exposure. When a company's risk-based capital ratio falls below the Authorized Control Level, the insurance department is authorized to take regulatory action including issuing a corrective action plan, placing the company under regulatory supervision, or initiating rehabilitation. When rehabilitation is not feasible, the department petitions a court to place the company into liquidation, which results in the orderly wind-down of the company's operations and the claims adjudication process through the state guaranty fund system.

Receivership proceedings affect not only the carrier's policyholders but also its reinsurers, its producing agents, its lenders, and any business partners with contractual relationships that the receiver can accept or reject as part of the rehabilitation or liquidation process. An attorney who handles reinsurance and insurance regulatory receivership matters can evaluate a reinsurer's rights against a company in rehabilitation, protect a producer's book of business during a carrier insolvency, and navigate the claims adjudication process through the guaranty fund system.


Market conduct examinations are conducted without advance notice of the specific practices that will be reviewed. The carrier learns the scope of the examination after the examiners arrive and begins producing files. Companies that maintain clean, organized, and consistently documented claim files, underwriting records, and complaint logs throughout their operations are in a fundamentally different position than those that attempt to reconstruct documentation after an examination scope is revealed. The examination record is built during normal operations, not during the examination itself.



3. How Insurance Regulations Apply to Health Plans, Erisa, and Emerging Insurtech Products


Three areas of insurance law create compliance complexity that goes beyond standard state licensing and rate filing: health insurance regulation under the Affordable Care Act, the interaction between ERISA and state insurance law, and the regulatory treatment of technology-driven insurance products.

Health insurers selling individual and small group plans through the ACA marketplace must comply with a comprehensive set of federal requirements including guaranteed issue, community rating limitations, essential health benefits mandates, medical loss ratio minimums of 80 to 85 percent depending on market segment, and annual rate increase review processes for increases above a defined threshold. States that operate their own ACA marketplaces add state-specific requirements on top of the federal floor, which means a health insurer operating in multiple states faces a layered compliance obligation that differs materially by market.

Employer-sponsored health plans governed by ERISA present a different compliance structure. ERISA-governed plans are not subject to state insurance regulations in the same way that commercial insurance products are, which means the mandatory provision requirements, prompt payment laws, and claims handling regulations that apply to fully insured commercial products do not apply to self-funded ERISA plans. This distinction creates a compliance boundary that plan sponsors, third-party administrators, and stop-loss carriers must understand to avoid misapplying state regulatory requirements to federally governed plan arrangements.



How Erisa Preemption Limits State Insurance Regulation over Employer Benefit Plans


ERISA's preemption provision at 29 U.S.C. § 1144 supersedes state laws that relate to employee benefit plans, with a savings clause that preserves state laws regulating insurance from preemption, and a deemer clause that prevents states from treating self-funded ERISA plans as engaged in the business of insurance.

The practical consequence of this three-part structure is that fully insured ERISA plans purchase coverage from commercial insurers that are subject to state insurance regulation, while self-funded ERISA plans that pay claims directly from employer assets are not. A self-funded employer plan that retains stop-loss insurance is purchasing insurance from a state-regulated carrier, but the plan itself is not an insurer and is not subject to state insurance department regulation.

State laws that mandate specific benefits, regulate claims handling, or set reserve requirements create compliance issues primarily for commercial insurers selling fully insured products. Self-funded employers and their administrators must focus on ERISA's own claims procedure requirements under 29 C.F.R. § 2560.503-1 and the fiduciary obligation standards under ERISA § 404, which are enforced by the Department of Labor rather than state insurance departments. An attorney who handles ERISA law and ERISA litigation matters can identify the applicable regulatory framework for a specific plan arrangement and advise on the compliance obligations that correspond to that structure.



How Insurtech Products Navigate State Insurance Licensing Requirements


Technology-driven insurance products, including embedded insurance, parametric insurance, peer-to-peer models, and AI-underwritten policies, present licensing and regulatory compliance challenges because they do not fit cleanly into the product categories and distribution models that existing state insurance regulations were designed to govern.

Embedded insurance, in which coverage is automatically included in the purchase of a non-insurance product or service, raises questions about whether the embedding company is acting as an unlicensed insurance agent or broker and whether the insurance product embedded must be filed and approved as a separate policy form. Parametric insurance, which pays a defined benefit upon the occurrence of a triggering event regardless of actual loss, raises questions about whether it constitutes insurance under state law definitions and whether its pricing methodology satisfies actuarial filing requirements. Several states have enacted regulatory sandbox programs that allow InsurTech companies to test products under regulatory supervision without full compliance with standard licensing requirements for a defined period.

The producer licensing requirements that govern traditional insurance agents and brokers apply to any person or entity that sells, solicits, or negotiates insurance for compensation, and technology platforms that connect consumers with insurers through digital channels are increasingly subject to producer licensing requirements regardless of how the platform characterizes its role. An attorney who handles insurance law and InsurTech regulatory matters can evaluate whether a specific technology platform's activities trigger producer licensing requirements and identify which states' regulatory sandbox programs are available for testing products that do not fit existing regulatory frameworks.

Insurance regulatory filings, examinations, and licensing obligations in multiple states create compliance deadlines that do not align with each other and do not pause for operational priorities. A rate filing due in one state, a market conduct response deadline in another, and a financial examination document request in a third can each be running simultaneously. The calendar management for a multistate carrier's regulatory obligations is a compliance function in itself, and deadlines missed without regulatory engagement produce automatic consequences that negotiated extensions would have prevented.



4. Frequently Asked Questions about Insurance Regulations


Carrier compliance teams, insurance producers, and InsurTech founders each approach insurance regulations from a different starting point and with different urgent questions about what is required, what is permitted, and what happens when either is violated. The questions arising most consistently across those three groups are answered here.



What Are Insurance Regulations and Who Enforces Them? I


Insurance regulations are the body of state and federal laws governing how insurance companies are licensed, how they price and design their products, how they handle claims and treat policyholders, and how they maintain the financial reserves required to meet their obligations. Primary enforcement authority rests with each state's insurance department, which licenses carriers and producers, reviews rate and form filings, conducts market conduct and financial examinations, and has authority to suspend, revoke, or condition licenses for regulatory violations. The McCarran-Ferguson Act, 15 U.S.C. § 1011, affirms state regulatory primacy over the business of insurance.



What Is a Market Conduct Examination and What Triggers One?


A market conduct examination is a regulatory review of an insurance company's operational practices, including claims handling, underwriting, rating, producer oversight, and complaint handling. Examinations can be targeted, focusing on a specific practice or product, or comprehensive, reviewing all major business functions. They are triggered by a high complaint ratio, patterns of policyholder complaints, findings from prior examinations, or routine scheduling as part of the department's examination cycle. Companies that receive an examination notice typically have limited time to prepare before examiners arrive and begin requesting files.



Can an Insurance Company'S License Be Revoked?


Yes. State insurance departments can suspend or revoke a carrier's certificate of authority for regulatory violations including using unapproved rates or forms, failing to maintain required capital and surplus, engaging in unfair claims settlement practices, and making material misrepresentations in license applications or financial filings. License revocation prevents the company from writing new business in the state and can trigger policyholder notification requirements. A revocation can be contested through the administrative hearing process before the insurance department and, if necessary, through state court review of the department's order.



What Is the Difference between a Rehabilitation and a Liquidation in Insurance Insolvency?


Rehabilitation is a regulatory proceeding in which the state insurance department takes control of a financially troubled carrier with the goal of restoring it to sound financial condition and returning it to private management. Liquidation is ordered when rehabilitation is not feasible and results in the permanent wind-down of the company's operations, with claims paid through the state guaranty fund up to applicable limits. Both proceedings are initiated by the insurance department through a court petition and are supervised by the state court with jurisdiction over the proceedings.



Does Erisa Preempt State Insurance Regulations for Employer Health Plans?


It depends on the plan structure. Self-funded ERISA plans, in which the employer pays claims directly from its own assets, are not subject to state insurance regulation because they are not engaged in the business of insurance under ERISA's deemer clause. Fully insured ERISA plans purchase coverage from commercial insurers that remain subject to state insurance regulation, but the plan itself is governed by ERISA rather than state law. This distinction determines which mandatory benefit requirements, claims handling standards, and external review rights apply to a specific plan and its participants.



What Licensing Does an Insurtech Platform Need to Sell Insurance?


Any platform that sells, solicits, or negotiates insurance for compensation requires a producer license in each state where it conducts those activities, regardless of whether it characterizes its role as technology provider, marketplace, or referral service. The specific license type required, and the line of authority it must cover, depends on the products involved and the platform's role in the transaction. Several states offer regulatory sandbox programs that allow InsurTech companies to test products with regulatory supervision and limited licensing requirements during the sandbox period. An attorney who handles insurance advisory and InsurTech regulatory matters can evaluate the licensing requirements in each target state before the platform launches.


24 Jun, 2025


La información proporcionada en este artículo es únicamente con fines informativos generales y no constituye asesoramiento legal. Los resultados anteriores no garantizan un resultado similar. La lectura o el uso del contenido de este artículo no crea una relación abogado-cliente con nuestro despacho. Para asesoramiento sobre su situación específica, consulte a un abogado calificado autorizado en su jurisdicción.
Ciertos contenidos informativos en este sitio web pueden utilizar herramientas de redacción asistidas por tecnología y están sujetos a revisión por parte de un abogado.

Reservar una consulta
Online
Phone