CYBER INSURANCE


Lloyd’s of London has announced that its insurance policies will no longer cover losses resulting from certain nation-state cyber attacks or acts of war.

This could be soon followed by other insurers. In fact a similar stand was taken by Zurich American that had insured Mondolez in 2019.

Cyber Insurers are grappling with the risk of these cyber threats become more widespread, and having bigger impact, as such the policies could “expose the market to systemic risks that syndicates could struggle to manage”. 

The current war between Russia and Ukraine, is a case in point.

Given the scale of these attacks, Lloyd’s said that policies that don’t already have a war exclusion must not cover – at a minimum – losses arising from war, whether one has been declared or not.

Policies must also exclude nation-state cyber attacks that “significantly impair the ability of a state to function or that significantly impair the security capabilities of a state”.

These changes will take effect from 31 March 2023, and will become binding at the inception or renewal of each policy.

But the bigger question here being about Attribution!
It has been difficult and will remain so in the near future, how will the cyber insurance industry grapple with this?

Would love to hear from my connects in the IH & DF domain.
#cyber #cyberwars #attribution #cyberincident #cyberinsurance #actofwar #Security #risktransfer #incidenthandling #digitalforensics

About pawaskar

Strategist, change leader and driving force behind security improvements that safeguard data, ensure compliance, and facilitate informed advancements towards organizational goals. Expert at leveraging existing resources to bring effective, actionable security and risk management vision to complex enterprises with minimal budget. Define and execute improvements in process, internal controls and IT infrastructure with measurable, positive results. Engineer simple-but-powerful, cost-effective solutions. Deep understanding of compliance and auditing principles. Strong consensus builder, forming cooperative relationships across internal / external stakeholders and suppliers that contribute to the success of project.
This entry was posted in APT, Cyber Insurance, cyber security, Cyber Warfare, Data Breaches, Information Security, Threats. Bookmark the permalink.