A collaborative and valuable engagement. Stratiformis helped break down a complex regulatory subject matter into clear, actionable plans and business outcomes, and supported the end-to-end shaping and implementation of the program over 18 months. Having a trusted advisor and SME alongside our team meant a more efficient and focused delivery overall.
The Challenge
Few of our insurance clients need independent expertise and support to perform comprehensive Regulatory Gap Analyses performed against new and evolving requirements as they arise. This analysis is typically a timeboxed and focussed piece of work aimed at review and assessment of existing policies, processes, controls, and governance arrangements to identify gaps, prioritise remediation, and produce a high level, meaningful compliance roadmap.
Our Approach
Working closely with the primary stakeholder group (typical sponsor for such activities would be COO, CRO, CCO), we delivered an end-to-end Regulatory Gap Analysis covering all key requirements against current state capabilities. This was conducted in a structured manner, and with focus on identifying and agreeing the key areas of risk remediation.
- Regulatory scoping & interpretation: Identified applicable regulatory requirements and guidance; translated requirements into practical assessment criteria
- Current-state maturity assessment: Reviewed policies, standards, procedures, controls, and governance structures across all lines of defence.
- Mapping: Mapped regulatory requirements to existing controls to establish traceability and identify overlaps and gaps.
- HL Remediation roadmap: Prioritised gaps based on regulatory risk and implementation complexity, producing a high level phased delivery roadmap.
A key success factor for such an exercise is to ensure the gap analysis becomes a catalyst for long-term improvement rather than a one-off exercise.
The Outcome
- Regulatory Gap Assessment and traceability report (Management)
- Regulatory requirement Traceability Matrix (supporting report)
- Prioritised HL remediation roadmap aligned to regulatory risk