Majority of cyber policies are 'flawed'

cyber protection

Mactavish has warned that the majority of specialist cyber insurance policies contain significant flaws that could precipitate disputed claims and lower-than-expected settlements.

The warning comes amid a reported surge in business looking to protect themselves with specialist cyber cover.

In a review of around 30 off-the-shelf UK cyber insurance policies, Mactavish identified seven common flaws:

  • Cover could be limited to deliberate attacks and unauthorised activity, leaving business unprotected in the event of incidents caused by accidental errors or omissions.
  • The data breach costs covered could be limited to those which the business is strictly legally required to incur as opposed to much greater costs which would be incurred in practice.
  • In the event of systems interruption, cover can be limited to only the brief period of actual network interruption, ignoring knock-on effects after the repair of the technological fault.
  • Cover for systems delivered by outsourced service providers varies significantly and is often limited or excluded.
  • There were often exclusions for software in development or systems being rolled out. In some cases events involving recently updated systems may be excluded as well.
  • If issues are caused by contractors but the business is legally responsible, policies might not respond
  • Notification requirements are often complex and onerous.

Bruce Hepburn, Mactavish CEO, said: “There are a number of new cyber insurance policies being launched, but despite a sharp increase in cyber incidents this market is very immature and in many respects untested.

“Perhaps some of these policies have been rushed to market by insurers eager to capitalise on the growing cyber risks facing organisations, and their desire to spend significant amounts of money to protect themselves against this.

“Very few claims have been made on these new cyber insurance policies, but my bet is that many will be disputed, or settlements will be much lower than clients expected. However, this can be avoided if organisations first understand the cyber risks they face, and then secure a bespoke policy to meet their needs.”

Only users who have a paid subscription or are part of a corporate subscription are able to print or copy content.

To access these options, along with all other subscription benefits, please contact info@postonline.co.uk or view our subscription options here: http://subscriptions.postonline.co.uk/subscribe

You are currently unable to copy this content. Please contact info@postonline.co.uk to find out more.

Q&A: Nick Pester, Beyond Legal

Nick Pester, founder at Beyond Legal and former general counsel at Zego, spoke to Insurance Post about the changing legal landscape, the pivoting mindsets of insurtech founders, and what he hopes to offer clients with his new legal practice.

Tackling turbulence for pet insurers

The pet insurance market is not short on options - the issue consumers have is understanding the many different choices. With better data though Sara Costantini, CRIF’s regional director for the UK and Ireland, suggests insurers would be better equipped to tailor solutions to meet policyholder needs.

60 Seconds With... Value Space’s Reijo Pold

Reijo Pold, founder of Value Space, a technology company that uses satellites to conduct assessments for commercial properties and infrastructure, reveals he has been working since he was aged seven and doesn't even totally clock off when he goes on holiday.

Q&A: Cameron Shearer, Superscript

Frances Stebbing speaks to Cameron Shearer, CEO of Superscript, about what new entrants in the insurtech space need to do to stay ahead, and how the company’s technology has contributed to driving profitable growth for the year ahead.

You need to sign in to use this feature. If you don’t have an Insurance Post account, please register for a trial.

Sign in
You are currently on corporate access.

To use this feature you will need an individual account. If you have one already please sign in.

Sign in.

Alternatively you can request an individual account here