Navigate risk, create value — expertise you can trust

Insurance Risk and Regulatory services

Hero Image

PwC’s team of insurance risk and regulatory compliance professionals

We are a multidisciplinary team helping insurers navigate complexity with confidence. Drawing on deep expertise across life and property & casualty insurance, we work with clients to anticipate regulatory change, manage risk holistically, and embed technology-enabled solutions that drive resilience and sustained performance. Our professionals combine industry insight, regulatory fluency, and operational know-how to deliver risk-informed, high-impact solutions that build trust and create lasting value in an evolving insurance landscape.

Our insurance regulatory services

Regulatory compliance

  • Compliance assessments / lines of defense (LOD) governance / cost transformation – Evaluation and enhancement of compliance programs, governance structures across the lines of defense (LOD), and operational cost models to improve effectiveness and reduce redundancies​

  • Generative AI use cases & AI governance – Development of AI governance frameworks, execution of regulatory readiness assessments (e.g., NAIC Model Bulletin, Colorado, NYDFS), and implementation of generative AI use cases within risk and compliance functions

  • Insurance managed services – Ongoing operational support for risk and compliance functions, including regulatory monitoring, control execution, testing, and reporting—delivered through an outsourced or co-sourced model to drive efficiency and scale​

  • SOX / ICFR – Support for internal control design, documentation, testing, and optimization incompliance with SOX and internal control over financial reporting (ICFR) requirements​

  • NAIC / regulatory developments – Ongoing monitoring and analysis of regulatory updates, including NAIC priorities, with translation into actionable compliance strategies and organizational impact assessments​

  • Transactions / deals – Advisory services throughout the deal lifecycle, including risk and compliance due diligence, regulatory assessments, and integration planning to preserve value and manage exposure

Risk​

  • Risk assessments & implementation – Structured evaluation of key operational, financial, and regulatory risks, followed by implementation of customized frameworks, controls, and action plans to strengthen risk management practices​

  • Enterprise / operational risk program design – Design and buildout of scalable enterprise and operational risk programs, integrated with business processes and aligned to regulatory expectations and industry standards​

  • Technology risk – Identification, assessment, and mitigation of risks related to cybersecurity, data privacy, third-party technology, and IT infrastructure resilience​

  • Control automation – Digitization and automation of control activities through workflows and tools that enhance accuracy, consistency, and traceability while reducing manual burden​

  • Capital / financial risk – Assessment and management of capital adequacy, liquidity, and financial risk through modeling, stress testing, and compliance with regulatory capital frameworks such as RBC and ORSA​

  • Tools & technology – Deployment of third-party and alliance-driven technology solutions that enhance risk oversight, automate compliance tasks, and improve reporting and decision-making

Internal audit

  • Internal audit – Modernization of internal audit functions through risk-based planning, use of data analytics, and alignment with governance and regulatory requirements to deliver strategic value​

Next in Insurance

Visit Banking and Capital Markets Risk & Regulatory

Looking for our banking-focused services?

Visit Asset and Wealth Management Risk & Regulatory

Looking for our asset and wealth management-focused services?

Contact us

Jim Quick

Insurance Advisory Sector Leader, PwC US

Chris Joline

Principal, PwC US

Jason Weile​

Principal, PwC US

David Sherwood

Managing Director, PwC US

Follow us

Required fields are marked with an asterisk(*)

Your personal information will be handled in accordance with our Privacy Statement. You can update your communication preferences at any time by clicking the unsubscribe link in a PwC email or by submitting a request as outlined in our Privacy Statement.

Hide