SlideShare a Scribd company logo
April 6, 2017
Evolution of Cyber Risk and Its Impact on Insurance
6th Reinsurance Meeting of Rio De Janeiro
| 1
Agenda
Introduction
Cyber Insurance Coverages
Marketplace Update
Underwriting Considerations
Cyber Risk in Other Insurance Lines
Cyber Insurance Obstacles
Claims Environment
TransRe Approach
| 2
Cyber Risk is Global
Source: RSA Conference 2016
| 3
Cyber Risk is Global
| 4
Cyber Risk is Global
In recent years, Internet use has
grown faster in Latin America than in
any other region in the world1
Combine with developing LATAM
economies that are increasingly
technologically savvy2
Source: 1 XL Catlin February 2016, 2 Kaitlin Lavinder – The Cipher Brief
According to Inter-American Development Bank, LATAM faces cybercrime losses
estimated at US$90B a year
| 5
Cyber Insurance at a Glance
Business Interruption
Data Breach Response
Cyber Extortion
Data Recovery
Network Security Liability
Privacy Liability
Regulatory Defense
Traditional
Cyber
Insurance
1st Party 3rd Party
Short to medium tail in nature
No standard form in market
Vendor response services critical
Written on standalone basis or blended
Product has been around ~ 18 years
Evolved from Tech E&O product
Claims-made policy form
Underwriting use of third party analytics
| 6
Marketplace Update
Dowling and Partners: “One of few
growth markets in the P&C industry”
PWC anticipates $7.5B premium by 2020,
Allianz estimates $20B by 2025
Continued Growth
2016 Premium Estimate: $3.5B-$4.5B
• Mostly U.S.
• ~$500M Europe
• $10-$15M Latin America
• Asia Pac emerging
More industries purchasing
Companies of all sizes purchasing
Companies purchasing more limits
Evolving regulatory requirements
Third party requirements
Top concern of Boards
More data being created and stored
Business interruption growing concern
60+ carriers in U.S. market (a lot of supply)
Coverage broadening
Enhancement in modeling and data analytics
| 7
Marketplace Update – Latin America
Early Stages
Carriers: AIG, XL Catlin, Allianz, Chubb, Liberty, SURA, Travelers Brazil
Limits: up to $10M ($5M more common maximum limit)
Financial Institutions, airlines, government entities purchasing
Overall litigiousness low
Lack of common framework regarding Data Protection
• 4 out of 5 countries do not have cybersecurity protection plans in place1
Expect Increase in Demand
11% of business in LATAM hit by a cyber attack in past 12 months2
Brazil saw 197% year-over-year increase in cyberattacks in 2015
Increase in number of countries establishing regulations
Companies are becoming more aware of cyber exposures (Mossak Fonseca)
Source: 1 E&Y 2017 LATAM Insurance Outlook, 2 Grant Thornton
| 8
INSURED
Risk
Management
Data and
Network Security
Terms and
Conditions
Privacy
Underwriting Considerations
 Vendor management
 Business continuity plan
 Employee training
 Disaster recovery plan
 Coverages requested
 Nature of Industry
 Pricing
 SIR
 Loss history
 Network security policy
 Encryption
 Firewalls, logging, etc.
 Physical security
 CISO? / IT Staff
 # and sensitivity of data
 Privacy policy
 CPO?
 Compliance with regulations
 User access controls
Difficult classes include Public Entities, Utilities, Energy, Social Networking, Higher
Education, Large Retail, Healthcare, Payment Card Processors, Adult Websites, etc.
| 9
U.S.
Exposed
Retailer
$12B
revenues
Risk
Management
Data and
Network Security
Terms and
Conditions
Privacy
Underwriting Considerations
 Written contracts with all vendors
 Business continuity plan in place and tested
 Employee training on privacy and network
security
 Disaster recovery plan in place and tested
 Extortion, Fines / Penalties, Breach
Notification, Network security and
privacy liability requested
 No Business Interruption requested
 Industry: Retail
 $25M SIR
 No cyber claims in last 5 years
 Geography: Mostly U.S.
 Written network security policy
 Encryption in transit, mobile devices and at
rest
 VPN / Multi-Factor authentication
 Firewalls, logging, malware protection,
penetration testing
 Physical security controls
 CISO in place
 Records: >5M PII, >5M PHI
 87,900 employees
 Written Privacy policy
 CPO in place
 PCI Compliant
 User access controls
$65M limits requested, 8 carriers
| 10
Cyber Risk is Systemic
Source: CRO Forum Report – “Cyber Resilience – The Cyber risk challenge and the role of insurance”
| 11
Cyber Risk is Systemic
Numerous areas potentially exposed in the event of a cyber-attack:
 Loss of Intellectual Property
 Property damage
 Business interruption
 Reputational damage
 Fines/penalties/regulatory actions
 Bodily injury
 Extortion
 Breach of contract
 D&O and transactional liability
 Product liability and recall
 Stock drops, loss of profits
 Costs to notify/breach response costs
 Lost data
 Loss of monies transferred
“Cyber attacks may stem from a wide array of actors, affect all industries and result
in varying levels of damage to data, critical systems, physical property, and even
disrupt business continuity. For this reason, cyber risks can trigger a variety of
insurance solutions.” Source: CRO Forum Report – “Cyber Resilience – The Cyber risk challenge and the role of insurance”
| 12
Lack of
historical data
Increased and
evolving
regulation
Educational
gap
Treatment of
terrorism
Insurance
talent shortage
Changing
technology
Coverage
broadening
Sophistication
of hackers
Aggregation
concerns
Lack of
catastrophic
events
Inconsistent
case law
IT talent
shortage
Cyber Insurance Obstacles
| 13
Claims Environment
Motives
Crime
Hacktivism
Espionage
War
“Fun”
Industries Targeted
Retail
Healthcare
Education
Utilities / Energy
Financial Services
Sources
Hacker
Malware/Virus
Staff mistake
Nation State
Rogue Employee
Loss Drivers
Severity: # of
records
Frequency: Poor
security and
controls, employee
negligence
Breaches
Demand
Regulation
| 14
Claims Trends
Physical Damage
on the Rise?
Increase in Attacks against
Critical Infrastructure
Airline System
Failures
Rise in
Social Engineering
Growth in
Ransomware Attacks
Internet of Things
Hacks
| 15
Emerging Risks
Internet of
Things
Telematics
Physical
Damage
Critical
Infrastructure
RansomwareCloud Computing
Supply Chain
Risk
Cyber Terrorism
Social
Engineering
Aviation
& Marine
Bodily Injury
Biometrics
Mobile Apps
| 16
TransRe Approach
Global cyber team with four dedicated individuals
Committee with 22 representatives from various product lines, divisions, regions
ERM is key – extreme event scenarios, aggregation tools, risk tolerances,
referrals, tracking across product lines, portfolio management
| 17FOR INTERNAL PURPOSES ONLY – STRICTLY PRIVATE & CONFIDENTIAL
Kara Owens
Global Head of Cyber Risk
T: (1) 212 365 2129
E: kowens@transre.com
Lauren Markowski Rhett Hewitt
AVP, Cyber Risk AVP, Cyber Risk
T: (1) 212 365 2301 T: (44) 20 7204 8676
E: lmarkowski@transre.com E: rhewitt@transre.com
For your cyber treaty and facultative needs across the globe…

More Related Content

What's hot

Cover and CyberSecurity Essay
Cover and CyberSecurity EssayCover and CyberSecurity Essay
Cover and CyberSecurity Essay
Michael Solomon
 
Cyber Security Tips and Resources for Financial Institutions
Cyber Security Tips and Resources for Financial InstitutionsCyber Security Tips and Resources for Financial Institutions
Cyber Security Tips and Resources for Financial Institutions
Colleen Beck-Domanico
 
Insurance Service Meeting 2016 - Andrea Eichhorn
Insurance Service Meeting 2016 - Andrea Eichhorn Insurance Service Meeting 2016 - Andrea Eichhorn
Insurance Service Meeting 2016 - Andrea Eichhorn
CNseg
 
2018 State of Cyber Resilience for Insurance
2018 State of Cyber Resilience for Insurance2018 State of Cyber Resilience for Insurance
2018 State of Cyber Resilience for Insurance
Accenture Insurance
 
Privacy & Security in Feb 2020: new Fintech regulations on Cyber Security at ...
Privacy & Security in Feb 2020: new Fintech regulations on Cyber Security at ...Privacy & Security in Feb 2020: new Fintech regulations on Cyber Security at ...
Privacy & Security in Feb 2020: new Fintech regulations on Cyber Security at ...
Kevin Duffey
 
Analytics & Insurance. Serene Zawaydeh
Analytics & Insurance. Serene Zawaydeh Analytics & Insurance. Serene Zawaydeh
Analytics & Insurance. Serene Zawaydeh
Serene Zawaydeh
 
Cyber security investments 2021
Cyber security investments 2021Cyber security investments 2021
Cyber security investments 2021
Management Events
 
Cyber Resilience: managing 3rd Party Risks in Financial Services
Cyber Resilience: managing 3rd Party Risks in Financial ServicesCyber Resilience: managing 3rd Party Risks in Financial Services
Cyber Resilience: managing 3rd Party Risks in Financial Services
Kevin Duffey
 
Cost of Cybercrime Study in Financial Services: 2019 Report
Cost of Cybercrime Study in Financial Services: 2019 ReportCost of Cybercrime Study in Financial Services: 2019 Report
Cost of Cybercrime Study in Financial Services: 2019 Report
accenture
 
The 4 Challenges of Managing Privacy Incident Response
The 4 Challenges of Managing Privacy Incident ResponseThe 4 Challenges of Managing Privacy Incident Response
The 4 Challenges of Managing Privacy Incident Response
Elizabeth Dimit
 
Chief Audit Execs speak out: Cybersecurity & risk management
Chief Audit Execs speak out: Cybersecurity & risk managementChief Audit Execs speak out: Cybersecurity & risk management
Chief Audit Execs speak out: Cybersecurity & risk management
Grant Thornton LLP
 
FORUM 2013 Cyber Risks - not just a domain for IT
FORUM 2013 Cyber Risks - not just a domain for ITFORUM 2013 Cyber Risks - not just a domain for IT
FORUM 2013 Cyber Risks - not just a domain for IT
FERMA
 
Innovate for Cyber Resilience
Innovate for Cyber ResilienceInnovate for Cyber Resilience
Innovate for Cyber Resilience
accenture
 
CIS13: FCCX and IDESG: An Industry Perspectives
CIS13: FCCX and IDESG: An Industry PerspectivesCIS13: FCCX and IDESG: An Industry Perspectives
CIS13: FCCX and IDESG: An Industry Perspectives
CloudIDSummit
 
Cyber Insurance - What you need to know
Cyber Insurance - What you need to knowCyber Insurance - What you need to know
Cyber Insurance - What you need to know
FitCEO, Inc. (FCI)
 
Riscos Sistêmicos e o Impacto na Subscrição de RC: Um Novo Enfoque de Modelag...
Riscos Sistêmicos e o Impacto na Subscrição de RC: Um Novo Enfoque de Modelag...Riscos Sistêmicos e o Impacto na Subscrição de RC: Um Novo Enfoque de Modelag...
Riscos Sistêmicos e o Impacto na Subscrição de RC: Um Novo Enfoque de Modelag...
CNseg
 
4th Digital Finance Forum, Simon Brady
4th Digital Finance Forum, Simon Brady4th Digital Finance Forum, Simon Brady
4th Digital Finance Forum, Simon Brady
Starttech Ventures
 
Latin america cyber security market,symantec market share internet security,m...
Latin america cyber security market,symantec market share internet security,m...Latin america cyber security market,symantec market share internet security,m...
Latin america cyber security market,symantec market share internet security,m...
Ashish Chauhan
 
SYMANTEC_DELOITTE_PARTNERSHIP-UK (3)
SYMANTEC_DELOITTE_PARTNERSHIP-UK (3)SYMANTEC_DELOITTE_PARTNERSHIP-UK (3)
SYMANTEC_DELOITTE_PARTNERSHIP-UK (3)
Sarah Jarvis
 
HEMISPHERE SMB Case Study
HEMISPHERE SMB Case StudyHEMISPHERE SMB Case Study
HEMISPHERE SMB Case Study
Carter Schoenberg
 

What's hot (20)

Cover and CyberSecurity Essay
Cover and CyberSecurity EssayCover and CyberSecurity Essay
Cover and CyberSecurity Essay
 
Cyber Security Tips and Resources for Financial Institutions
Cyber Security Tips and Resources for Financial InstitutionsCyber Security Tips and Resources for Financial Institutions
Cyber Security Tips and Resources for Financial Institutions
 
Insurance Service Meeting 2016 - Andrea Eichhorn
Insurance Service Meeting 2016 - Andrea Eichhorn Insurance Service Meeting 2016 - Andrea Eichhorn
Insurance Service Meeting 2016 - Andrea Eichhorn
 
2018 State of Cyber Resilience for Insurance
2018 State of Cyber Resilience for Insurance2018 State of Cyber Resilience for Insurance
2018 State of Cyber Resilience for Insurance
 
Privacy & Security in Feb 2020: new Fintech regulations on Cyber Security at ...
Privacy & Security in Feb 2020: new Fintech regulations on Cyber Security at ...Privacy & Security in Feb 2020: new Fintech regulations on Cyber Security at ...
Privacy & Security in Feb 2020: new Fintech regulations on Cyber Security at ...
 
Analytics & Insurance. Serene Zawaydeh
Analytics & Insurance. Serene Zawaydeh Analytics & Insurance. Serene Zawaydeh
Analytics & Insurance. Serene Zawaydeh
 
Cyber security investments 2021
Cyber security investments 2021Cyber security investments 2021
Cyber security investments 2021
 
Cyber Resilience: managing 3rd Party Risks in Financial Services
Cyber Resilience: managing 3rd Party Risks in Financial ServicesCyber Resilience: managing 3rd Party Risks in Financial Services
Cyber Resilience: managing 3rd Party Risks in Financial Services
 
Cost of Cybercrime Study in Financial Services: 2019 Report
Cost of Cybercrime Study in Financial Services: 2019 ReportCost of Cybercrime Study in Financial Services: 2019 Report
Cost of Cybercrime Study in Financial Services: 2019 Report
 
The 4 Challenges of Managing Privacy Incident Response
The 4 Challenges of Managing Privacy Incident ResponseThe 4 Challenges of Managing Privacy Incident Response
The 4 Challenges of Managing Privacy Incident Response
 
Chief Audit Execs speak out: Cybersecurity & risk management
Chief Audit Execs speak out: Cybersecurity & risk managementChief Audit Execs speak out: Cybersecurity & risk management
Chief Audit Execs speak out: Cybersecurity & risk management
 
FORUM 2013 Cyber Risks - not just a domain for IT
FORUM 2013 Cyber Risks - not just a domain for ITFORUM 2013 Cyber Risks - not just a domain for IT
FORUM 2013 Cyber Risks - not just a domain for IT
 
Innovate for Cyber Resilience
Innovate for Cyber ResilienceInnovate for Cyber Resilience
Innovate for Cyber Resilience
 
CIS13: FCCX and IDESG: An Industry Perspectives
CIS13: FCCX and IDESG: An Industry PerspectivesCIS13: FCCX and IDESG: An Industry Perspectives
CIS13: FCCX and IDESG: An Industry Perspectives
 
Cyber Insurance - What you need to know
Cyber Insurance - What you need to knowCyber Insurance - What you need to know
Cyber Insurance - What you need to know
 
Riscos Sistêmicos e o Impacto na Subscrição de RC: Um Novo Enfoque de Modelag...
Riscos Sistêmicos e o Impacto na Subscrição de RC: Um Novo Enfoque de Modelag...Riscos Sistêmicos e o Impacto na Subscrição de RC: Um Novo Enfoque de Modelag...
Riscos Sistêmicos e o Impacto na Subscrição de RC: Um Novo Enfoque de Modelag...
 
4th Digital Finance Forum, Simon Brady
4th Digital Finance Forum, Simon Brady4th Digital Finance Forum, Simon Brady
4th Digital Finance Forum, Simon Brady
 
Latin america cyber security market,symantec market share internet security,m...
Latin america cyber security market,symantec market share internet security,m...Latin america cyber security market,symantec market share internet security,m...
Latin america cyber security market,symantec market share internet security,m...
 
SYMANTEC_DELOITTE_PARTNERSHIP-UK (3)
SYMANTEC_DELOITTE_PARTNERSHIP-UK (3)SYMANTEC_DELOITTE_PARTNERSHIP-UK (3)
SYMANTEC_DELOITTE_PARTNERSHIP-UK (3)
 
HEMISPHERE SMB Case Study
HEMISPHERE SMB Case StudyHEMISPHERE SMB Case Study
HEMISPHERE SMB Case Study
 

Similar to 6º Resseguro - A Evolução do Risco Cibernético e seu Impacto no Seguro - Kara Owens

Challenges in the Business and Law of Cybersecurity, CLEAR Cyber Conference, ...
Challenges in the Business and Law of Cybersecurity, CLEAR Cyber Conference, ...Challenges in the Business and Law of Cybersecurity, CLEAR Cyber Conference, ...
Challenges in the Business and Law of Cybersecurity, CLEAR Cyber Conference, ...
Jay Kesan
 
Cloud security law cyber insurance issues phx 2015 06 19 v1
Cloud security law cyber insurance issues phx 2015 06 19 v1Cloud security law cyber insurance issues phx 2015 06 19 v1
Cloud security law cyber insurance issues phx 2015 06 19 v1
Michael C. Keeling, Esq.
 
Aon Cyber Newsletter v10
Aon Cyber Newsletter v10Aon Cyber Newsletter v10
Aon Cyber Newsletter v10
Graeme Cross
 
7th ERM - S2 - Cyber security, Cyber Risk and Data Privacy - Kalpesh Doshi (1...
7th ERM - S2 - Cyber security, Cyber Risk and Data Privacy - Kalpesh Doshi (1...7th ERM - S2 - Cyber security, Cyber Risk and Data Privacy - Kalpesh Doshi (1...
7th ERM - S2 - Cyber security, Cyber Risk and Data Privacy - Kalpesh Doshi (1...
TraintechTde
 
Business Law Training: Market Turmoil in D&O Insurance and Is Your Company Pr...
Business Law Training: Market Turmoil in D&O Insurance and Is Your Company Pr...Business Law Training: Market Turmoil in D&O Insurance and Is Your Company Pr...
Business Law Training: Market Turmoil in D&O Insurance and Is Your Company Pr...
Quarles & Brady
 
Cybersecurity: What does Cyber Insurance Cover?
Cybersecurity: What does Cyber Insurance Cover?Cybersecurity: What does Cyber Insurance Cover?
Cybersecurity: What does Cyber Insurance Cover?
Next Dimension Inc.
 
SLVA - Privacy Framework and Approach
SLVA - Privacy Framework and ApproachSLVA - Privacy Framework and Approach
SLVA - Privacy Framework and Approach
SLVA Information Security
 
Nube, Cumplimiento y Amenazas avanzadas: Consideraciones de Seguridad para la...
Nube, Cumplimiento y Amenazas avanzadas: Consideraciones de Seguridad para la...Nube, Cumplimiento y Amenazas avanzadas: Consideraciones de Seguridad para la...
Nube, Cumplimiento y Amenazas avanzadas: Consideraciones de Seguridad para la...
Cristian Garcia G.
 
HBR - Zurich - FERMAZ - PRIMO Cyber Risks Report
HBR - Zurich - FERMAZ - PRIMO Cyber Risks ReportHBR - Zurich - FERMAZ - PRIMO Cyber Risks Report
HBR - Zurich - FERMAZ - PRIMO Cyber Risks Report
FERMA
 
Data Privacy & Security
Data Privacy & SecurityData Privacy & Security
Data Privacy & Security
Eryk Budi Pratama
 
7 Cybersecurity Statistics You Need to Know in 2023.pptx
7 Cybersecurity Statistics You Need to Know in 2023.pptx7 Cybersecurity Statistics You Need to Know in 2023.pptx
7 Cybersecurity Statistics You Need to Know in 2023.pptx
IT Company Dubai
 
Final cyber risk report 24 feb
Final cyber risk report 24 febFinal cyber risk report 24 feb
Final cyber risk report 24 feb
mharbpavia
 
FRISS_Insurance fraud report 2020
FRISS_Insurance fraud report 2020 FRISS_Insurance fraud report 2020
FRISS_Insurance fraud report 2020
FinTech Belgium
 
Discussing Cyber Risk Coverage With Your Commercial Clients by Steve Robinson...
Discussing Cyber Risk Coverage With Your Commercial Clients by Steve Robinson...Discussing Cyber Risk Coverage With Your Commercial Clients by Steve Robinson...
Discussing Cyber Risk Coverage With Your Commercial Clients by Steve Robinson...
Don Grauel
 
WCIT 2014 Som Mittal - Managing risks in an interdependent economy risks rela...
WCIT 2014 Som Mittal - Managing risks in an interdependent economy risks rela...WCIT 2014 Som Mittal - Managing risks in an interdependent economy risks rela...
WCIT 2014 Som Mittal - Managing risks in an interdependent economy risks rela...
WCIT 2014
 
Get Prepared
Get PreparedGet Prepared
Cyber Insurance Temp
Cyber  Insurance  TempCyber  Insurance  Temp
Cyber Insurance Temp
Rohan Sehgal
 
managed-security-for-a-not-so-secure-world-wp090991
managed-security-for-a-not-so-secure-world-wp090991managed-security-for-a-not-so-secure-world-wp090991
managed-security-for-a-not-so-secure-world-wp090991
Jim Romeo
 
Cyber risk reporting aicpa framework
Cyber risk reporting aicpa frameworkCyber risk reporting aicpa framework
Cyber risk reporting aicpa framework
James Deiotte
 
IE_ERS_CyberAnalysisReport
IE_ERS_CyberAnalysisReportIE_ERS_CyberAnalysisReport
IE_ERS_CyberAnalysisReport
Camilo do Carmo Pinto
 

Similar to 6º Resseguro - A Evolução do Risco Cibernético e seu Impacto no Seguro - Kara Owens (20)

Challenges in the Business and Law of Cybersecurity, CLEAR Cyber Conference, ...
Challenges in the Business and Law of Cybersecurity, CLEAR Cyber Conference, ...Challenges in the Business and Law of Cybersecurity, CLEAR Cyber Conference, ...
Challenges in the Business and Law of Cybersecurity, CLEAR Cyber Conference, ...
 
Cloud security law cyber insurance issues phx 2015 06 19 v1
Cloud security law cyber insurance issues phx 2015 06 19 v1Cloud security law cyber insurance issues phx 2015 06 19 v1
Cloud security law cyber insurance issues phx 2015 06 19 v1
 
Aon Cyber Newsletter v10
Aon Cyber Newsletter v10Aon Cyber Newsletter v10
Aon Cyber Newsletter v10
 
7th ERM - S2 - Cyber security, Cyber Risk and Data Privacy - Kalpesh Doshi (1...
7th ERM - S2 - Cyber security, Cyber Risk and Data Privacy - Kalpesh Doshi (1...7th ERM - S2 - Cyber security, Cyber Risk and Data Privacy - Kalpesh Doshi (1...
7th ERM - S2 - Cyber security, Cyber Risk and Data Privacy - Kalpesh Doshi (1...
 
Business Law Training: Market Turmoil in D&O Insurance and Is Your Company Pr...
Business Law Training: Market Turmoil in D&O Insurance and Is Your Company Pr...Business Law Training: Market Turmoil in D&O Insurance and Is Your Company Pr...
Business Law Training: Market Turmoil in D&O Insurance and Is Your Company Pr...
 
Cybersecurity: What does Cyber Insurance Cover?
Cybersecurity: What does Cyber Insurance Cover?Cybersecurity: What does Cyber Insurance Cover?
Cybersecurity: What does Cyber Insurance Cover?
 
SLVA - Privacy Framework and Approach
SLVA - Privacy Framework and ApproachSLVA - Privacy Framework and Approach
SLVA - Privacy Framework and Approach
 
Nube, Cumplimiento y Amenazas avanzadas: Consideraciones de Seguridad para la...
Nube, Cumplimiento y Amenazas avanzadas: Consideraciones de Seguridad para la...Nube, Cumplimiento y Amenazas avanzadas: Consideraciones de Seguridad para la...
Nube, Cumplimiento y Amenazas avanzadas: Consideraciones de Seguridad para la...
 
HBR - Zurich - FERMAZ - PRIMO Cyber Risks Report
HBR - Zurich - FERMAZ - PRIMO Cyber Risks ReportHBR - Zurich - FERMAZ - PRIMO Cyber Risks Report
HBR - Zurich - FERMAZ - PRIMO Cyber Risks Report
 
Data Privacy & Security
Data Privacy & SecurityData Privacy & Security
Data Privacy & Security
 
7 Cybersecurity Statistics You Need to Know in 2023.pptx
7 Cybersecurity Statistics You Need to Know in 2023.pptx7 Cybersecurity Statistics You Need to Know in 2023.pptx
7 Cybersecurity Statistics You Need to Know in 2023.pptx
 
Final cyber risk report 24 feb
Final cyber risk report 24 febFinal cyber risk report 24 feb
Final cyber risk report 24 feb
 
FRISS_Insurance fraud report 2020
FRISS_Insurance fraud report 2020 FRISS_Insurance fraud report 2020
FRISS_Insurance fraud report 2020
 
Discussing Cyber Risk Coverage With Your Commercial Clients by Steve Robinson...
Discussing Cyber Risk Coverage With Your Commercial Clients by Steve Robinson...Discussing Cyber Risk Coverage With Your Commercial Clients by Steve Robinson...
Discussing Cyber Risk Coverage With Your Commercial Clients by Steve Robinson...
 
WCIT 2014 Som Mittal - Managing risks in an interdependent economy risks rela...
WCIT 2014 Som Mittal - Managing risks in an interdependent economy risks rela...WCIT 2014 Som Mittal - Managing risks in an interdependent economy risks rela...
WCIT 2014 Som Mittal - Managing risks in an interdependent economy risks rela...
 
Get Prepared
Get PreparedGet Prepared
Get Prepared
 
Cyber Insurance Temp
Cyber  Insurance  TempCyber  Insurance  Temp
Cyber Insurance Temp
 
managed-security-for-a-not-so-secure-world-wp090991
managed-security-for-a-not-so-secure-world-wp090991managed-security-for-a-not-so-secure-world-wp090991
managed-security-for-a-not-so-secure-world-wp090991
 
Cyber risk reporting aicpa framework
Cyber risk reporting aicpa frameworkCyber risk reporting aicpa framework
Cyber risk reporting aicpa framework
 
IE_ERS_CyberAnalysisReport
IE_ERS_CyberAnalysisReportIE_ERS_CyberAnalysisReport
IE_ERS_CyberAnalysisReport
 

Recently uploaded

BONKMILLON Unleashes Its Bonkers Potential on Solana.pdf
BONKMILLON Unleashes Its Bonkers Potential on Solana.pdfBONKMILLON Unleashes Its Bonkers Potential on Solana.pdf
BONKMILLON Unleashes Its Bonkers Potential on Solana.pdf
coingabbar
 
一比一原版(UCSB毕业证)圣芭芭拉分校毕业证如何办理
一比一原版(UCSB毕业证)圣芭芭拉分校毕业证如何办理一比一原版(UCSB毕业证)圣芭芭拉分校毕业证如何办理
一比一原版(UCSB毕业证)圣芭芭拉分校毕业证如何办理
bbeucd
 
一比一原版(IC毕业证)帝国理工大学毕业证如何办理
一比一原版(IC毕业证)帝国理工大学毕业证如何办理一比一原版(IC毕业证)帝国理工大学毕业证如何办理
一比一原版(IC毕业证)帝国理工大学毕业证如何办理
conose1
 
一比一原版(UoB毕业证)伯明翰大学毕业证如何办理
一比一原版(UoB毕业证)伯明翰大学毕业证如何办理一比一原版(UoB毕业证)伯明翰大学毕业证如何办理
一比一原版(UoB毕业证)伯明翰大学毕业证如何办理
nexop1
 
Does teamwork really matter? Looking beyond the job posting to understand lab...
Does teamwork really matter? Looking beyond the job posting to understand lab...Does teamwork really matter? Looking beyond the job posting to understand lab...
Does teamwork really matter? Looking beyond the job posting to understand lab...
Labour Market Information Council | Conseil de l’information sur le marché du travail
 
Role of Information Technology in Revenue - Prof Oyedokun.pptx
Role of Information Technology in Revenue  - Prof Oyedokun.pptxRole of Information Technology in Revenue  - Prof Oyedokun.pptx
Role of Information Technology in Revenue - Prof Oyedokun.pptx
Godwin Emmanuel Oyedokun MBA MSc PhD FCA FCTI FCNA CFE FFAR
 
Introduction to Value Added Tax System.ppt
Introduction to Value Added Tax System.pptIntroduction to Value Added Tax System.ppt
Introduction to Value Added Tax System.ppt
VishnuVenugopal84
 
falcon-invoice-discounting-a-strategic-approach-to-optimize-investments
falcon-invoice-discounting-a-strategic-approach-to-optimize-investmentsfalcon-invoice-discounting-a-strategic-approach-to-optimize-investments
falcon-invoice-discounting-a-strategic-approach-to-optimize-investments
Falcon Invoice Discounting
 
Pensions and housing - Pensions PlayPen - 4 June 2024 v3 (1).pdf
Pensions and housing - Pensions PlayPen - 4 June 2024 v3 (1).pdfPensions and housing - Pensions PlayPen - 4 June 2024 v3 (1).pdf
Pensions and housing - Pensions PlayPen - 4 June 2024 v3 (1).pdf
Henry Tapper
 
Instant Issue Debit Cards - High School Spirit
Instant Issue Debit Cards - High School SpiritInstant Issue Debit Cards - High School Spirit
Instant Issue Debit Cards - High School Spirit
egoetzinger
 
Sources of Revenue for State Government - Prof Oyedokun.pptx
Sources of Revenue for State Government - Prof Oyedokun.pptxSources of Revenue for State Government - Prof Oyedokun.pptx
Sources of Revenue for State Government - Prof Oyedokun.pptx
Godwin Emmanuel Oyedokun MBA MSc PhD FCA FCTI FCNA CFE FFAR
 
DEMAND AND SUPPLY.docx Notes for Economics
DEMAND AND SUPPLY.docx Notes for EconomicsDEMAND AND SUPPLY.docx Notes for Economics
DEMAND AND SUPPLY.docx Notes for Economics
Opanga1
 
This assessment plan proposal is to outline a structured approach to evaluati...
This assessment plan proposal is to outline a structured approach to evaluati...This assessment plan proposal is to outline a structured approach to evaluati...
This assessment plan proposal is to outline a structured approach to evaluati...
lamluanvan.net Viết thuê luận văn
 
SWAIAP Fraud Risk Mitigation Prof Oyedokun.pptx
SWAIAP Fraud Risk Mitigation   Prof Oyedokun.pptxSWAIAP Fraud Risk Mitigation   Prof Oyedokun.pptx
SWAIAP Fraud Risk Mitigation Prof Oyedokun.pptx
Godwin Emmanuel Oyedokun MBA MSc PhD FCA FCTI FCNA CFE FFAR
 
Tdasx: Unveiling the Trillion-Dollar Potential of Bitcoin DeFi
Tdasx: Unveiling the Trillion-Dollar Potential of Bitcoin DeFiTdasx: Unveiling the Trillion-Dollar Potential of Bitcoin DeFi
Tdasx: Unveiling the Trillion-Dollar Potential of Bitcoin DeFi
nimaruinazawa258
 
1:1制作加拿大麦吉尔大学毕业证硕士学历证书原版一模一样
1:1制作加拿大麦吉尔大学毕业证硕士学历证书原版一模一样1:1制作加拿大麦吉尔大学毕业证硕士学历证书原版一模一样
1:1制作加拿大麦吉尔大学毕业证硕士学历证书原版一模一样
qntjwn68
 
1.2 Business Ideas Business Ideas Busine
1.2 Business Ideas Business Ideas Busine1.2 Business Ideas Business Ideas Busine
1.2 Business Ideas Business Ideas Busine
Lawrence101
 
What's a worker’s market? Job quality and labour market tightness
What's a worker’s market? Job quality and labour market tightnessWhat's a worker’s market? Job quality and labour market tightness
What's a worker’s market? Job quality and labour market tightness
Labour Market Information Council | Conseil de l’information sur le marché du travail
 
在线办理(GU毕业证书)美国贡萨加大学毕业证学历证书一模一样
在线办理(GU毕业证书)美国贡萨加大学毕业证学历证书一模一样在线办理(GU毕业证书)美国贡萨加大学毕业证学历证书一模一样
在线办理(GU毕业证书)美国贡萨加大学毕业证学历证书一模一样
5spllj1l
 
G20 summit held in India. Proper presentation for G20 summit
G20 summit held in India. Proper presentation for G20 summitG20 summit held in India. Proper presentation for G20 summit
G20 summit held in India. Proper presentation for G20 summit
rohitsaxena882511
 

Recently uploaded (20)

BONKMILLON Unleashes Its Bonkers Potential on Solana.pdf
BONKMILLON Unleashes Its Bonkers Potential on Solana.pdfBONKMILLON Unleashes Its Bonkers Potential on Solana.pdf
BONKMILLON Unleashes Its Bonkers Potential on Solana.pdf
 
一比一原版(UCSB毕业证)圣芭芭拉分校毕业证如何办理
一比一原版(UCSB毕业证)圣芭芭拉分校毕业证如何办理一比一原版(UCSB毕业证)圣芭芭拉分校毕业证如何办理
一比一原版(UCSB毕业证)圣芭芭拉分校毕业证如何办理
 
一比一原版(IC毕业证)帝国理工大学毕业证如何办理
一比一原版(IC毕业证)帝国理工大学毕业证如何办理一比一原版(IC毕业证)帝国理工大学毕业证如何办理
一比一原版(IC毕业证)帝国理工大学毕业证如何办理
 
一比一原版(UoB毕业证)伯明翰大学毕业证如何办理
一比一原版(UoB毕业证)伯明翰大学毕业证如何办理一比一原版(UoB毕业证)伯明翰大学毕业证如何办理
一比一原版(UoB毕业证)伯明翰大学毕业证如何办理
 
Does teamwork really matter? Looking beyond the job posting to understand lab...
Does teamwork really matter? Looking beyond the job posting to understand lab...Does teamwork really matter? Looking beyond the job posting to understand lab...
Does teamwork really matter? Looking beyond the job posting to understand lab...
 
Role of Information Technology in Revenue - Prof Oyedokun.pptx
Role of Information Technology in Revenue  - Prof Oyedokun.pptxRole of Information Technology in Revenue  - Prof Oyedokun.pptx
Role of Information Technology in Revenue - Prof Oyedokun.pptx
 
Introduction to Value Added Tax System.ppt
Introduction to Value Added Tax System.pptIntroduction to Value Added Tax System.ppt
Introduction to Value Added Tax System.ppt
 
falcon-invoice-discounting-a-strategic-approach-to-optimize-investments
falcon-invoice-discounting-a-strategic-approach-to-optimize-investmentsfalcon-invoice-discounting-a-strategic-approach-to-optimize-investments
falcon-invoice-discounting-a-strategic-approach-to-optimize-investments
 
Pensions and housing - Pensions PlayPen - 4 June 2024 v3 (1).pdf
Pensions and housing - Pensions PlayPen - 4 June 2024 v3 (1).pdfPensions and housing - Pensions PlayPen - 4 June 2024 v3 (1).pdf
Pensions and housing - Pensions PlayPen - 4 June 2024 v3 (1).pdf
 
Instant Issue Debit Cards - High School Spirit
Instant Issue Debit Cards - High School SpiritInstant Issue Debit Cards - High School Spirit
Instant Issue Debit Cards - High School Spirit
 
Sources of Revenue for State Government - Prof Oyedokun.pptx
Sources of Revenue for State Government - Prof Oyedokun.pptxSources of Revenue for State Government - Prof Oyedokun.pptx
Sources of Revenue for State Government - Prof Oyedokun.pptx
 
DEMAND AND SUPPLY.docx Notes for Economics
DEMAND AND SUPPLY.docx Notes for EconomicsDEMAND AND SUPPLY.docx Notes for Economics
DEMAND AND SUPPLY.docx Notes for Economics
 
This assessment plan proposal is to outline a structured approach to evaluati...
This assessment plan proposal is to outline a structured approach to evaluati...This assessment plan proposal is to outline a structured approach to evaluati...
This assessment plan proposal is to outline a structured approach to evaluati...
 
SWAIAP Fraud Risk Mitigation Prof Oyedokun.pptx
SWAIAP Fraud Risk Mitigation   Prof Oyedokun.pptxSWAIAP Fraud Risk Mitigation   Prof Oyedokun.pptx
SWAIAP Fraud Risk Mitigation Prof Oyedokun.pptx
 
Tdasx: Unveiling the Trillion-Dollar Potential of Bitcoin DeFi
Tdasx: Unveiling the Trillion-Dollar Potential of Bitcoin DeFiTdasx: Unveiling the Trillion-Dollar Potential of Bitcoin DeFi
Tdasx: Unveiling the Trillion-Dollar Potential of Bitcoin DeFi
 
1:1制作加拿大麦吉尔大学毕业证硕士学历证书原版一模一样
1:1制作加拿大麦吉尔大学毕业证硕士学历证书原版一模一样1:1制作加拿大麦吉尔大学毕业证硕士学历证书原版一模一样
1:1制作加拿大麦吉尔大学毕业证硕士学历证书原版一模一样
 
1.2 Business Ideas Business Ideas Busine
1.2 Business Ideas Business Ideas Busine1.2 Business Ideas Business Ideas Busine
1.2 Business Ideas Business Ideas Busine
 
What's a worker’s market? Job quality and labour market tightness
What's a worker’s market? Job quality and labour market tightnessWhat's a worker’s market? Job quality and labour market tightness
What's a worker’s market? Job quality and labour market tightness
 
在线办理(GU毕业证书)美国贡萨加大学毕业证学历证书一模一样
在线办理(GU毕业证书)美国贡萨加大学毕业证学历证书一模一样在线办理(GU毕业证书)美国贡萨加大学毕业证学历证书一模一样
在线办理(GU毕业证书)美国贡萨加大学毕业证学历证书一模一样
 
G20 summit held in India. Proper presentation for G20 summit
G20 summit held in India. Proper presentation for G20 summitG20 summit held in India. Proper presentation for G20 summit
G20 summit held in India. Proper presentation for G20 summit
 

6º Resseguro - A Evolução do Risco Cibernético e seu Impacto no Seguro - Kara Owens

  • 1. April 6, 2017 Evolution of Cyber Risk and Its Impact on Insurance 6th Reinsurance Meeting of Rio De Janeiro
  • 2. | 1 Agenda Introduction Cyber Insurance Coverages Marketplace Update Underwriting Considerations Cyber Risk in Other Insurance Lines Cyber Insurance Obstacles Claims Environment TransRe Approach
  • 3. | 2 Cyber Risk is Global Source: RSA Conference 2016
  • 4. | 3 Cyber Risk is Global
  • 5. | 4 Cyber Risk is Global In recent years, Internet use has grown faster in Latin America than in any other region in the world1 Combine with developing LATAM economies that are increasingly technologically savvy2 Source: 1 XL Catlin February 2016, 2 Kaitlin Lavinder – The Cipher Brief According to Inter-American Development Bank, LATAM faces cybercrime losses estimated at US$90B a year
  • 6. | 5 Cyber Insurance at a Glance Business Interruption Data Breach Response Cyber Extortion Data Recovery Network Security Liability Privacy Liability Regulatory Defense Traditional Cyber Insurance 1st Party 3rd Party Short to medium tail in nature No standard form in market Vendor response services critical Written on standalone basis or blended Product has been around ~ 18 years Evolved from Tech E&O product Claims-made policy form Underwriting use of third party analytics
  • 7. | 6 Marketplace Update Dowling and Partners: “One of few growth markets in the P&C industry” PWC anticipates $7.5B premium by 2020, Allianz estimates $20B by 2025 Continued Growth 2016 Premium Estimate: $3.5B-$4.5B • Mostly U.S. • ~$500M Europe • $10-$15M Latin America • Asia Pac emerging More industries purchasing Companies of all sizes purchasing Companies purchasing more limits Evolving regulatory requirements Third party requirements Top concern of Boards More data being created and stored Business interruption growing concern 60+ carriers in U.S. market (a lot of supply) Coverage broadening Enhancement in modeling and data analytics
  • 8. | 7 Marketplace Update – Latin America Early Stages Carriers: AIG, XL Catlin, Allianz, Chubb, Liberty, SURA, Travelers Brazil Limits: up to $10M ($5M more common maximum limit) Financial Institutions, airlines, government entities purchasing Overall litigiousness low Lack of common framework regarding Data Protection • 4 out of 5 countries do not have cybersecurity protection plans in place1 Expect Increase in Demand 11% of business in LATAM hit by a cyber attack in past 12 months2 Brazil saw 197% year-over-year increase in cyberattacks in 2015 Increase in number of countries establishing regulations Companies are becoming more aware of cyber exposures (Mossak Fonseca) Source: 1 E&Y 2017 LATAM Insurance Outlook, 2 Grant Thornton
  • 9. | 8 INSURED Risk Management Data and Network Security Terms and Conditions Privacy Underwriting Considerations  Vendor management  Business continuity plan  Employee training  Disaster recovery plan  Coverages requested  Nature of Industry  Pricing  SIR  Loss history  Network security policy  Encryption  Firewalls, logging, etc.  Physical security  CISO? / IT Staff  # and sensitivity of data  Privacy policy  CPO?  Compliance with regulations  User access controls Difficult classes include Public Entities, Utilities, Energy, Social Networking, Higher Education, Large Retail, Healthcare, Payment Card Processors, Adult Websites, etc.
  • 10. | 9 U.S. Exposed Retailer $12B revenues Risk Management Data and Network Security Terms and Conditions Privacy Underwriting Considerations  Written contracts with all vendors  Business continuity plan in place and tested  Employee training on privacy and network security  Disaster recovery plan in place and tested  Extortion, Fines / Penalties, Breach Notification, Network security and privacy liability requested  No Business Interruption requested  Industry: Retail  $25M SIR  No cyber claims in last 5 years  Geography: Mostly U.S.  Written network security policy  Encryption in transit, mobile devices and at rest  VPN / Multi-Factor authentication  Firewalls, logging, malware protection, penetration testing  Physical security controls  CISO in place  Records: >5M PII, >5M PHI  87,900 employees  Written Privacy policy  CPO in place  PCI Compliant  User access controls $65M limits requested, 8 carriers
  • 11. | 10 Cyber Risk is Systemic Source: CRO Forum Report – “Cyber Resilience – The Cyber risk challenge and the role of insurance”
  • 12. | 11 Cyber Risk is Systemic Numerous areas potentially exposed in the event of a cyber-attack:  Loss of Intellectual Property  Property damage  Business interruption  Reputational damage  Fines/penalties/regulatory actions  Bodily injury  Extortion  Breach of contract  D&O and transactional liability  Product liability and recall  Stock drops, loss of profits  Costs to notify/breach response costs  Lost data  Loss of monies transferred “Cyber attacks may stem from a wide array of actors, affect all industries and result in varying levels of damage to data, critical systems, physical property, and even disrupt business continuity. For this reason, cyber risks can trigger a variety of insurance solutions.” Source: CRO Forum Report – “Cyber Resilience – The Cyber risk challenge and the role of insurance”
  • 13. | 12 Lack of historical data Increased and evolving regulation Educational gap Treatment of terrorism Insurance talent shortage Changing technology Coverage broadening Sophistication of hackers Aggregation concerns Lack of catastrophic events Inconsistent case law IT talent shortage Cyber Insurance Obstacles
  • 14. | 13 Claims Environment Motives Crime Hacktivism Espionage War “Fun” Industries Targeted Retail Healthcare Education Utilities / Energy Financial Services Sources Hacker Malware/Virus Staff mistake Nation State Rogue Employee Loss Drivers Severity: # of records Frequency: Poor security and controls, employee negligence Breaches Demand Regulation
  • 15. | 14 Claims Trends Physical Damage on the Rise? Increase in Attacks against Critical Infrastructure Airline System Failures Rise in Social Engineering Growth in Ransomware Attacks Internet of Things Hacks
  • 16. | 15 Emerging Risks Internet of Things Telematics Physical Damage Critical Infrastructure RansomwareCloud Computing Supply Chain Risk Cyber Terrorism Social Engineering Aviation & Marine Bodily Injury Biometrics Mobile Apps
  • 17. | 16 TransRe Approach Global cyber team with four dedicated individuals Committee with 22 representatives from various product lines, divisions, regions ERM is key – extreme event scenarios, aggregation tools, risk tolerances, referrals, tracking across product lines, portfolio management
  • 18. | 17FOR INTERNAL PURPOSES ONLY – STRICTLY PRIVATE & CONFIDENTIAL Kara Owens Global Head of Cyber Risk T: (1) 212 365 2129 E: kowens@transre.com Lauren Markowski Rhett Hewitt AVP, Cyber Risk AVP, Cyber Risk T: (1) 212 365 2301 T: (44) 20 7204 8676 E: lmarkowski@transre.com E: rhewitt@transre.com For your cyber treaty and facultative needs across the globe…