Incident response
Understand the hotline, consent process and specialist services available from the policy.
COMMERCIAL INSURANCE SOLUTION
A cyber event can interrupt operations, expose data and trigger urgent specialist costs. Cyber insurance combines financial protection with access to an incident response team.
Discuss this cover →
WHO IT MAY SUIT
The exposure is not limited to technology companies. Retailers, professional firms, manufacturers, property businesses and community organisations can all depend on data and connected services.
WHAT WE REVIEW
PRACTICAL COVER REVIEW
Insurers increasingly expect clear controls around access, backups, patching and payments. Accurate answers support suitable terms and reduce uncertainty at claim time.
Understand the hotline, consent process and specialist services available from the policy.
Check waiting periods, calculation methods and dependency on cloud or outsourced providers.
Review social engineering, funds transfer fraud and verification conditions separately from data-breach cover.
WHY THE DETAILS MATTER
Legal, forensic, restoration, notification and communications decisions can be urgent. The insurer's response panel should be contacted before major costs are committed, where practicable.
Backups should be protected from the same compromise, retained appropriately and tested for restoration. An untested backup may not support a reliable recovery.
Multi-factor authentication, restricted administrator access and independent call-back verification can reduce common compromise and payment fraud scenarios.
Email, cloud accounting, practice systems, e-commerce, telecommunications and outsourced providers can stop revenue even when the business's own equipment is undamaged.
Cover is subject to insurer acceptance, the policy schedule, applicable policy wording or Product Disclosure Statement, limits, conditions and exclusions. This information is general and does not take into account your objectives, financial situation or needs.
COMMON QUESTIONS
These answers are general. The quotation, schedule and policy wording determine the cover offered.
No. Insurers expect reasonable controls, and security reduces both the likelihood and impact of an event. Insurance provides defined response services and financial cover subject to the policy.
Many policies address ransomware response and interruption, but cover, legality, consent and payment conditions vary. The incident response process must be followed.
Some policies provide limited cyber-crime or social-engineering cover. Sublimits, verification conditions and exclusions are important.
Common questions cover revenue, industry, data, payment methods, MFA, backups, patching, remote access, security providers and prior incidents.
CONNECTED COVER
We consider how this cover interacts with the rest of your insurance program.
A CONSIDERED REVIEW
We can help you prepare the underwriting information, compare response services and understand the controls attached to the quotation.
Request a confidential review →