INTERPRETATION BULLETIN



Similar documents
Amendments to Insurance Act in Schedule 23 of Ontario Bill 55, Strong Action for Ontario Act (Budget Measures), 2012

Investment Dealers Association of Canada

Canadian Securities Administrators Consultation Paper on Over-the- Counter Derivatives Regulation in Canada

PRIVATE VOCATIONAL TRAINING ACT

ELECTRONIC TRANSACTIONS ACT

POWERS OF ATTORNEY ACT

Health Service Provider Licensing Toolkit for Examinations/Audits

How To Get Insurance In Britain Colony

The Taxation of Corporate Groups Consultation Paper November 2010

PERSONS WITH DEVELOPMENTAL DISABILITIES SERVICES ACT

NURSING HOMES GENERAL REGULATION

Report of the Information & Privacy Commissioner/Ontario. Review of the Canadian Institute for Health Information:

JUDGMENT INTEREST ACT

INSURANCE CONTRACTS (LIFE INSURANCE REPLACEMENT) REGULATION 327/90

MOTOR VEHICLE ACCIDENT CLAIMS ACT

NURSING HOMES OPERATION REGULATION

Review of Alberta and British Columbia Legislative Changes Regarding Annuities, Life and Living Benefits Insurance

Province of Alberta ARCHITECTS ACT. Revised Statutes of Alberta 2000 Chapter A-44. Current as of April 30, Office Consolidation

Minnesota State Colleges and Universities System Procedures Chapter 5 Administration Procedures associated with Board Policy 5.22

EMERGENCY MANAGEMENT ACT

Privacy and Management of Health Information: Standards for CARNA s Regulated Members

Creditor Protection and Life Insurance

LAWS OF MALAYSIA. Act 680 ELECTRONIC GOVERNMENT ACTIVITIES ACT 2007 ARRANGEMENT OF SECTIONS PART I PRELIMINARY PART II

HUMAN TISSUE AND ORGAN DONATION ACT

Interpretive Guideline #16 Issued: June 2016 Records Management

CLHIA - GROUP LIFE AND GROUP ACCIDENT AND SICKNESS INSURANCE GUIDELINES

Application for a. Single Premium Immediate Annuity

on Electronic Signature and change to some other laws (Electronic Signature Act) The Parliament has hereby agreed on this Act of the Czech Republic:

Taking care of what s important to you

HEALTH INSURANCE PREMIUMS ACT

HBF ANCILLARY PROVIDER REQUIREMENTS

Financial Services Commission of Ontario Commission des services financiers de l Ontario. Life Income Fund/Locked-In Retirement Account

Powers of Attorney. This booklet contains forms for Continuing Power of Attorney for Property and Power of Attorney for Personal Care

AVON MAITLAND DISTRICT SCHOOL BOARD ADMINISTRATIVE PROCEDURE NO. 402

Personal Health Information Privacy Policy

LANDLORD S RIGHTS ON BANKRUPTCY ACT

University of St. Thomas. Identity Theft Prevention Program. (Red Flags Regulation Response)

VICTIMS RESTITUTION AND COMPENSATION PAYMENT ACT

USER AGREEMENT FOR: ELECTRONIC DEALINGS THROUGH THE CUSTOMS CONNECT FACILITY

2013 Bill 39. First Session, 28th Legislature, 62 Elizabeth II THE LEGISLATIVE ASSEMBLY OF ALBERTA BILL 39

Detecting, Preventing, and Mitigating Identity Theft

VICTIMS OF CRIME ACT

SELF-DIRECTED RETIREMENT SAVINGS PLAN APPLICATION

How To Ensure Health Information Is Protected

How To Avoid Probate Tax In Australia

Arkansas Department of Information Systems Arkansas Department of Finance and Administration

MINERAL RIGHTS COMPENSATION REGULATION

SCHOOL DISTRICT OF BLACK RIVER FALLS HIPAA PRIVACY AND SECURITY POLICY

THE LAW OF THE REPUBLIC OF ARMENIA ON ELECTRONIC DOCUMENT AND ELECTRONIC SIGNATURE CHAPTER 1. GENERAL PROVISIONS. Article 1. The subject of the Law

Province of Alberta LIMITATIONS ACT. Revised Statutes of Alberta 2000 Chapter L-12. Current as of December 17, Office Consolidation

RSA Personal Accident Insurance

Application for Pharmacy Technician Register

The Beneficiaries, Total Premium and Premium Payment Frequency shown are as of the Policy Summary date at the top of this page.

SAMPLE. means the age of a Life Insured on his or her nearest birthday.

ALBERTA BILL OF RIGHTS

NEW HOME BUYER PROTECTION (GENERAL) REGULATION

Bare Trust from Aviva

Pronouncement of Death: Guidelines for Regulated Members

AGRICULTURAL PESTS ACT

Security Awareness Training

Opening Your Retail Account

Member s Right to Information: Annual Statements, Termination Statements, Notices. PBA, 1990, s , 42, O. Reg. 909 s.

SAMPLE DEFINITIONS. means the age of a Life Insured on his or her nearest birthday.

Information Folder and Annuity Policy Client Document Package M.V.P. - RIF. insured by Sun Life Assurance Company of Canada

THE PERSONAL INFORMATION PROTECTION AND ELECTRONIC DOCUMENTS ACT (PIPEDA) PERSONAL INFORMATION POLICY & PROCEDURE HANDBOOK

Victims of Crime Financial Benefits Program

United States Citizenship and Immigration Services (USCIS) Enterprise Service Bus (ESB)

GENERAL REQUIREMENTS FOR AN APPLICATION FOR AUTHORISATION TO CONDUCT INTERNET BETTING ON RACING OR SPORTS EVENTS

[Brought into force by appointed day notice on 16 th June 2003.]

COLLEGE OF OCCUPATIONAL THERAPISTS OF ONTARIO

Section V. Jurisdictional Requirements (Section V) General Instructions

Application for Fixed and Life Annuity For registered and non registered contract

MACHINISTS LODGE 692 HEALTH AND BENEFIT PLAN

PAYABLE ON DEATH (POD) AND DEPOSIT TRUST ACCOUNTS

Law Firm Compliance: Key Privacy Considerations for Lawyers and Law Firms in Ontario

Human Resources Policy No. HR46

Privacy Breach Protocol

SAMPLE DEFINITIONS. means the age of a Life Insured on his or her nearest birthday.

Transcription:

INTERPRETATION BULLETIN BULLETIN NUMBER: 04-2014 TITLE: Electronic Declarations DATE: July 2014 PURPOSE The Insurance Act sets out the statutory framework which permits an insured, under a contract of life or accident and sickness insurance, to make a declaration designating, altering or revoking the designation of the insured, the insured s personal representative or a beneficiary as one to whom or for whose benefit insurance money is to be payable. Section 547 of the Insurance Act allows insurance records to be provided in electronic form in accordance with the Electronic Transactions Act ( the ETA ). However, there are certain exclusions. Section 5.4 of the Fair Practices Regulation excludes declarations unless, in addition to meeting the requirement of the ETA, declarations are made a) directly between the insurer and the insured, and b) in accordance with procedures approved by the Superintendent. The CLHIA Process on Designating, Altering or Revoking Declarations Electronically sets out procedures approved by the Superintendent of Insurance which permits an insured, under a contract of life or accident and sickness Insurance, to electronically make a declaration designating, altering, or revoking the designation of the insured, the insured s personal representative or a beneficiary as one to whom or for whose benefit insurance money is to be payable. In addition, life and health insurers must self-evaluate adherence to this process and update it as needed. This self-evaluation may be done as a part of the organization s Legislative Compliance Management System with approval at the senior level (e.g., Chief Compliance Officer, Chief Risk Officer). Life and health insurers are responsible to ensure their practices are compliant with future changes to technology and law.

Any questions regarding the contents of this bulletin may be directed to the Office of the Superintendent of Insurance at 780-427-8322, or toll-free by dialing 310-0000, then 780-427-8322, or email at tbf.insurance@gov.ab.ca [ORIGINAL SIGNED] Mark Prefontaine Superintendent of Insurance Superintendent of Insurance 402 Terrace Building 9515 107 Street Edmonton, AB T5K 2C3 Telephone: 780-427-8322 Facsimile: 780-420-0752 www.finance.alberta.ca

FINAL Process: Dated April 3, 2014 Submitted to Alberta for Approval CLHIA Process on Designating, Altering or Revoking Declarations Electronically Declarations in a Paper-Based Environment Alberta's Insurance Act 1 sets out the statutory framework which permits an insured 2, under a contract of life or accident and sickness insurance, to make a declaration designating, altering or revoking the designation of the insured, the insured's personal representative or a beneficiary as one to whom or for whose benefit insurance money is to be payable. For example, in the case of a declaration used to designate the beneficiary of life insurance proceeds payable on death of the insured, the declaration must be signed by the insured, describe the insurance and identify the person who is to benefit. Additionally, it is understood that such a declaration must be made while the insured is still living. Life and health insurers have designed processes to assist in ensuring that an insured's requests, made by declaration, are met. Throughout their long history of use, these paper-based processes have proven to be an effective tool for both insureds and insurers. Consequently, an insurer's existing processes should not be changed but instead adapted for the electronic environment. In general, s. 547 of the Insurance Act allows insurance records to be provided in electronic form in accordance with Alberta's Electronic Transactions Act ("the ETA"). 3 There are, however, exclusions 4 to this general rule. Indeed, s. 5.4 of Alberta's Fair Practices Regulation, 5 excludes declarations from the application of the general rule unless, in addition to meeting the requirements of the ETA, declarations are made: a) directly between the insurer and insured, and b) in accordance with a process to be approved by the Superintendent of Insurance. 1 R.S.A. 2000, c. I-3 (in particular s. 637(g), s. 660, s. 695(g) and s. 724). 2 As defined by the Insurance Act. 3 S.A. 2001, c. E-5.5. 4 Subsection 547(4) states that "The Electronic Transactions Act and subsection (2) do not apply to a record under, or in relation to a provision of, this Act that is excluded by regulation." 5 Alta. Reg. 128/2001. 1 Queen Street East Suite 1700 Toronto, Ontario M5C 2X9 Tel: (416) 777-2221 Fax: (416) 777-1895 www.clhia.ca 1, rue Queen Est Bureau 1700 Toronto (Ontario) M5C 2X9 Tél.: (416) 777-2221 Fax: (416) 777-1895 www.accap.ca Toronto Montreal Ottawa

Purpose This document sets out a process approved by the Alberta Superintendent of Insurance under which such declarations may be made electronically. Declarations in the Electronic Environment The ETA contains important safeguards that protect both insureds and insurers in the context of accepting electronic declarations. One of the main principles of the ETA is consent; no person is required to accept a document in electronic form. If the insured or the insurer is unwilling or unable to meet these minimum safeguards, then the document cannot be accepted in electronic format. Pursuant to the ETA, a legal requirement that a declaration, instrument or other document be in writing is satisfied by an electronic record if the declaration, instrument or other document is submitted to and maintained by the insurer in accordance with a process established by the insurer for the purpose of receiving such documents as an electronic record. The insurer's process must, in light of all of the circumstances, provide reasonable safeguards as to the integrity of the information contained in the electronic record. The process with respect to declarations, in light of all circumstances, must: 1. Be supported by a system designed or adopted by the insurer which includes the purpose of accepting declarations directly between the insured and the insurer; 2. Provide assurances of the insured s identity through a verification system allowing: a) the identity of the person and his/her link to the document to be confirmed by having appropriate authentication safeguards such as the use of: i. password log-ins; ii. personal verification questions; iii. logical and operational security measures; or iv. a signature pad; and b) the document to be identified and, if required, allowing its origin and destination at any given time to be determined; 3. Provide for the electronic record to be: a) accessible so as to be usable for subsequent reference; and b) stored (electronically or otherwise) so as to be protected against unauthorized access; 4. Provide an acknowledgment of receipt by electronic or other means; and 2

5. Require that the declaration be signed. A legal requirement that the declaration, instrument or document must be signed is satisfied by an electronic signature if: a) the electronic signature is made in accordance with a process designed or adopted by, or otherwise acceptable to, the insurer for the purpose of facilitating electronic signatures, that is reliable for the purpose of identifying the person; and b) the association of the electronic signature with the declaration is reliable. The characteristics of a process, as described immediately above, serve to provide greater clarity and outline the necessary safeguards where the insured chooses to utilize electronic means and where the insurer has reliable procedures in place to accept electronic declarations. Additional Safeguards Insurers should have their electronic declaration processes reviewed by experienced information security professionals both before implementation and on a regular basis thereafter to ensure they are consistent with the criteria detailed above. This would include reviewing to determine whether: if passwords are used: o there are processes that help the insured select a password; o the passwords are difficult to guess; o passwords are stored securely; and o processes for password resets are well designed to mitigate the risk of fraud and impersonation; if personal verification questions are used: o the questions cannot easily be guessed; and o processes to update the questions are well designed to mitigate the risk that an unauthorized person successfully answers the questions or changes the questions; if signature pads are used: o the signature pad technology is up to date; and o signatures cannot be altered or attached to documents other than the one intended by the client; or where other electronic signature processes are used: o processes are consistent with existing good systems design and information security practices and standards. In addition, life and health insurers should self-evaluate adherence to this process and are encouraged to update it as needed. As appropriate, this self-evaluation could be done as part of the organization's Legislative Compliance Management System with appropriate approval at a senior level (e.g., Chief Compliance Officer, Chief Risk Officer). 3

Life and health insurers are responsible to ensure their practices are compliant with changes to technology and law. Summary This document sets out a process approved by the Alberta Superintendent of Insurance which permits an insured, under a contract of life or accident and sickness insurance, to electronically make a declaration designating, altering or revoking the designation of the insured, the insured's personal representative or a beneficiary as one to whom or for whose benefit insurance money is to be payable. 4