You are using an outdated browser and your browsing experience will not be optimal. Please update to the latest version of Microsoft Edge, Google Chrome or Mozilla Firefox. Install Microsoft Edge

December 21, 2018

Thailand’s OIC Issues New Regulations for Providing Insurance, Effective January 1, 2019

Thailand’s Office of Insurance Commission (the OIC) has issued two sets of requirements—collectively called the OIC Notifications Re: Conditions Relating to Issuing and Offering Insurance Policies of Insurance Companies, and Duties of Non-life Insurance Agents, Brokers and Banks 2018 (the Notifications)—imposing practical new requirements on life and non-life insurance and reinsurance companies in Thailand.

The key provisions are listed below, and are applicable to both life and non-life insurance unless expressly specified otherwise. All provisions come into force on January 1, 2019.

Corporate Culture

  • The board of directors and the executives must produce an internal policy, a business plan, and a business strategy, in writing, for the purpose of promoting tangible and effective fair dealing with customers. These must be rolled out to all of the company’s employees and insurance intermediaries.
  • Companies must conduct risk management in respect of conducting business, exercising fair treatment, and dealing with customers, including:
  • Preparing and developing product wording and premium rates;
  • Advertising and the offering insurance products;
  • Collecting, storing, and securing customers’ personal data;
  • Servicing insureds;
  • Handling claim compensation and monitory benefits according to policies; and
  • Handling complaints.

Conduct in respect to the issuance of insurance products

  • After concluding a sale, companies must issue the policy and send it to the insured with a summary of the coverage and the exclusions. In the case of a group policy, the documents must be sent to the policy holder or the insured. The insured members of the group policy must be provided with an insurance certificate, including a summary of the coverage, the exclusions and the conditions.
  • In the event of a renewal, where there is no change to the coverage and conditions, the company may choose to send a renewal certificate to the policy holder/insured/group members, upon their request, instead of the whole policy. This is not applicable insurance products that the insured is legally required to procure.

Conduct in respect to the issuance of insurance products

  • Conduct in respect to offering insurance products
  • Companies must ensure that their intermediaries comply with the Notifications. If they do not comply, and the intermediary fails to rectify their incompliance, they must be de-authorized no later than seven days from the deadline that the company provides for rectification. The company must notify the OIC of the non-compliance and the outcome.
  • Permitted distribution channels include offering by:
  1. Employees or staff;
  2. Phone (telesales);
  3. Bancassuance;
  4. Post;
  5. Electronic means; and
  6. Other means.

Premium remittances can only be made to the company’s account for products offered through channels (2), (3) and (4).

  • Companies must publicly disclose the details of their intermediaries (e.g. names and license numbers).
  • When offering insurance products, the company/intermediary must:
  • Explain that the information provided in the application must be true and complete and the consequence of incompliance;
  • Clearly identify the insurer, which is the product issuer;
  • Create no disturbance or annoyance to the customer and immediately stop the sale when the customer declines;
  • Provide information about the premium amount, payment period, and insured period (separately from any other financial product offered together in a bundle—customers must be informed of any such bundling);
  • State how the customer information was obtained upon the customer’s request;
  • NOT, in order to procure a sale, induce the insured to cancel another insurance policy; provide untrue or misleading information, or omit any material information; or require the customers to buy insurance as a condition for providing other services.
  • Telesales:
  • The offering must be by employees, staff, agents, brokers, or banks, which have been authorized by the company. Companies must submit the name of authorized persons to the OIC within 7 days of authorization.
  • Calls can only be made from Monday to Saturday between 8.30am and 7.00pm.
  • For non-life products, a minimum 30-day free look period is required, except for compulsory motor and micro-insurance (fire).
  • Calls cannot be made to the customers who have made a “do not call” request for a period of at least six months. Companies must keep a “do not call list” and make it readily available upon request from the OIC.
  • Calls must be recorded, and recordings can only be made with the prior consent of the customers. Telesales scripts must be approved by the company in advance.
  • A confirmation call must be made within seven days.
  • Sales by post
  • Sales can only be made by the company, agent, broker, and bancassurance, and the customer must express their intention to buy the insurance policy by post.
  • The company must provide (and ensure that its intermediaries provide):
  • Name, address, and phone number, by which the company can be contacted;
  • OIC approved product wording;
  • Payment channel and coverage commencement date;
  • Insured term; and
  • Certificate of insurance (if applicable).

The name and the contact details of any intermediaries must also be provided to the customer.

After sales service

Companies must have a complaints system and process, including provisions on policy cancellation and premium refunds.

For advice on how to comply with these new regulations, or for any other information, please contact Athistha (Nop) Chitranukroh on [email protected] or +662 056 5600

RELATED INSIGHTS​ 

February 19, 2021
Insurance specialists from Tilleke & Gibbins’ Bangkok office have provided an update to the Thailand chapter of Thomson Reuters’ Practical Law guide to insurance and reinsurance. The guide is a Q&A-style overview of insurance and reinsurance law in 41 jurisdictions worldwide. The Thailand contribution opens with a detailed overview of the insurance and reinsurance market in Thailand, including information on market trends, the available corporate structures, and relevant regulations. The Q&A is then separated into three main sections: Operating restrictions: licensing, ownership restrictions, ongoing requirements (compliance) and penalties for noncompliance, selling restrictions, and monitoring and disclosure requirements. Insurance and reinsurance policies: establishing an insurance claim, third party insurance claims, time limits, enforcement, remedies, and punitive damage claims. Other business concerns for insurance and reinsurance providers: insolvency, taxation, insurance and reinsurance dispute resolution, and legal reform. Practical Law produces a numbers of guides to key legal practice areas around the world for business lawyers. Tilleke & Gibbins contributes many overviews to these guides for all of the firm’s jurisdictions in Southeast Asia. To read the full Thailand insurance and reinsurance chapter, please visit the Practical Law website.
February 18, 2021
As you will no doubt know, on February 1, 2021, the Myanmar military declared a state of emergency in Myanmar for a period of one year. State Counsellor Daw Aung Sang Su Kyi was detained, as were the president and various significant political and civil leaders. Min Aung Hlaing, commander-in-chief of the Tatmadaw (Myanmar armed forces) has installed himself as chairman of the State Administration Council, the current administration. New sanctions The reaction of the Biden administration has been swift. On February 10, 2021, President Biden issued Executive Order 14014, which provides bases to impose sanctions on individuals and companies deemed by the US to, among other things: operate in the defense sector of Myanmar; be responsible for policies that undermine democratic processes in Myanmar; have taken actions to undermine democratic processes or institutions, or prohibit, limit, or penalize the exercise of free speech, in Myanmar; or be a spouse or child of the foregoing. On the next day, February 11, the US Office of Foreign Assets Control (OFAC), imposed sanctions under the new executive order on ten individuals—including General Min Aung Hlaing—and three companies, including Cancri Gems & Jewelry Co, Myanmar Imperial Jade Co, and Myanmar Ruby Enterprise.  All such individuals and companies have now been designated on the US list of specially designated nationals (SDNs). Effect of sanctions As a result of such sanctions, the property of these individuals or companies that is located in the US or is under the possession or control of US companies and citizens is frozen, and US companies and citizens are generally prohibited from dealing deal with any such property.  Reportedly, roughly USD 1 billion of funds belonging to the individuals and companies blocked on February 11 are located in the US and thus now frozen. The SDN list As many
January 13, 2021
Thailand’s Office of the Insurance Commission (OIC) recently issued two notifications—one for life-insurance companies and another for insurance companies—establishing key criteria and requirements for insurance companies to manage risks relating to IT and cybersecurity. The notifications, entitled Notifications Re: Criteria for the Supervision and Management of Risks Relating to Information Technology for Life/Non-life Insurance Companies B.E. 2563 (2020) came into effect on January 1, 2021, and cover eight major aspects of IT risk management as detailed below. IT Governance Insurance companies are required to monitor and manage IT risks and cyber threats in accordance with the size, characteristics, complexity, and context of their business operations, and each company should have at least one director with knowledge of, or past experience in, the field of information technology. IT Project Management Insurance companies are required to develop a written framework for IT project management, covering at least the commencement, implementation, and control of the project, as well as the project closing and post-project auditing. Companies must also appoint a committee for supervising and monitoring IT projects. IT Security Insurance companies are required to institute a written IT security policy, which must be reviewed at least once a year or upon implementing any significant changes. The policy must be approved by the board of directors, or a relevant subcommittee appointed by the board of directors. In outsourcing IT activities to third-party service providers, or entering into any arrangement that allows business partners to connect to or access the company’s IT system, insurance companies are required to specify their own criteria and procedures for the selection of third-party service providers, enter into a written service agreement and a service level agreement with the third-party provider, and conform with other requirements under the notifications. Insurance companies will also be required to comply with the OIC’s forthcoming