COMMERCIAL INSURANCE SOLUTION

Cyber insurance

A cyber event can interrupt operations, expose data and trigger urgent specialist costs. Cyber insurance combines financial protection with access to an incident response team.

Discuss this cover
Technology professional reviewing cyber security information
INTAPP / Cyber insurance

WHO IT MAY SUIT

Businesses that rely on systems, hold personal information, use cloud providers or make and receive electronic payments.

The exposure is not limited to technology companies. Retailers, professional firms, manufacturers, property businesses and community organisations can all depend on data and connected services.

WHAT WE REVIEW

  • 01Multi-factor authentication
  • 02Backups and recovery testing
  • 03Patching and endpoint protection
  • 04Email and payment controls
  • 05Data held and privacy exposure
  • 06Incident history and response planning

PRACTICAL COVER REVIEW

Good cyber placement starts before the application form.

Insurers increasingly expect clear controls around access, backups, patching and payments. Accurate answers support suitable terms and reduce uncertainty at claim time.

01

Incident response

Understand the hotline, consent process and specialist services available from the policy.

02

Business interruption

Check waiting periods, calculation methods and dependency on cloud or outsourced providers.

03

Cyber crime

Review social engineering, funds transfer fraud and verification conditions separately from data-breach cover.

WHY THE DETAILS MATTER

Insurance and security controls work together.

Prepare for the first hours

Legal, forensic, restoration, notification and communications decisions can be urgent. The insurer's response panel should be contacted before major costs are committed, where practicable.

Test backups, not just their existence

Backups should be protected from the same compromise, retained appropriately and tested for restoration. An untested backup may not support a reliable recovery.

Protect identities and payments

Multi-factor authentication, restricted administrator access and independent call-back verification can reduce common compromise and payment fraud scenarios.

Map critical dependencies

Email, cloud accounting, practice systems, e-commerce, telecommunications and outsourced providers can stop revenue even when the business's own equipment is undamaged.

Cover is subject to insurer acceptance, the policy schedule, applicable policy wording or Product Disclosure Statement, limits, conditions and exclusions. This information is general and does not take into account your objectives, financial situation or needs.

COMMON QUESTIONS

Questions about cyber insurance.

These answers are general. The quotation, schedule and policy wording determine the cover offered.

Does cyber insurance replace IT security?

No. Insurers expect reasonable controls, and security reduces both the likelihood and impact of an event. Insurance provides defined response services and financial cover subject to the policy.

Can it cover ransomware?

Many policies address ransomware response and interruption, but cover, legality, consent and payment conditions vary. The incident response process must be followed.

Does it cover fraudulent payments?

Some policies provide limited cyber-crime or social-engineering cover. Sublimits, verification conditions and exclusions are important.

What information is needed for a quote?

Common questions cover revenue, industry, data, payment methods, MFA, backups, patching, remote access, security providers and prior incidents.

CONNECTED COVER

Look beyond one policy.

We consider how this cover interacts with the rest of your insurance program.

A CONSIDERED REVIEW

Review cyber cover before an incident.

We can help you prepare the underwriting information, compare response services and understand the controls attached to the quotation.

Request a confidential review
Call a brokerInsurance review