corporate law
The Insurance Regulatory and Development Authority of India (IRDAI) has announced the “Maintenance of Information by the Regulated Entities and Sharing of Information by the Authority” Regulations, 2025, effective upon its publication in the Official Gazette. These regulations require insurers and intermediaries to safeguard key operational data electronically, ensuring security and legal compliance. Their primary purpose is to enhance data governance and preparedness for regulatory inquiries as stipulated in the Insurance Act, 1938.
This article outlines the provisions pertaining to data sharing, confidentiality, and record maintenance required under the new regulations.
The regulations are designed to achieve the following objectives:
Data Maintenance: Insurers must store operational data in an electronic format while maintaining compliance with applicable laws and integrating a structured data governance framework.
Investigative Readiness: Insurers and intermediaries are required to maintain relevant data essential for investigations conducted by officers under Section 33 of the Insurance Act, 1938.
Confidential Information Sharing: The regulations outline stringent guidelines for the sharing of confidential information, necessitating consent from affected entities. Information release is contingent on legal and public interest considerations.
Board-Approved Policies: Insurers must develop and maintain board-approved records on data management, security measures, and disaster recovery.
Geographic Record Storage: All records should be stored solely within India to ensure accessibility for regulatory oversight.
5. Information Categorization
6. Purpose of Information Requests
7. Disclosure Protocol
8. Record Keeping Obligations
9. Board Policies for Record Maintenance
10. Optimizing Accessibility of Records
11. Insurer Requirements
12. Intermediary Requirements
The IRDAI’s 2025 regulations are pivotal to enhancing the integrity and transparency of India's insurance industry. By mandating robust data maintenance practices and ensuring proper information sharing protocols, these regulations will aid in fostering public trust and regulatory compliance. Entities within the insurance sector are urged to adapt their operations in line with these requirements to maintain compliance and safeguard confidential information effectively.