You probably have a cyber-insurance problem, but don’t know it

by | Jun 14, 2021 | Security

 

Good practice last year isn’t good enough anymore. 

Even cyber-insurance providers are getting more selective before accepting cover, or worse, before paying claims.

With the number of claims skyrocketing insurers are increasingly asking, “What did you do to protect yourself from the obvious and known risk from cyberhackers?”

The levels of protection you put in place 1 or 2 years ago probably aren’t adequate for the threats today.  They are evolving so rapidly.

 

So what can you do?

Hackers aren’t waiting for you to make a decision to put protections in place.

They are spending every waking moment trying to find new ways of stealing your data. They have set themselves up as businesses to do evil. They hire the best and brightest talent, and have the latest tech – simply because it’s worth it. Its organised crime and these guys are the mafia of the modern age.

We see continuous hacks on most of our clients. These are attempts to penetrate their firewalls, or guess their passwords on Office 365. We see fake webpages through phishing attempts, and we see techniques to harvest password reset questions by asking for favourite teachers, or first cars, or favourite band on platforms like FaceBook.

That’s why your cyber-insurance and business continuity insurance providers will be starting to ask more demanding questions when you renew your cover. They are well aware of the risk and they want to know that you have taken all reasonable steps.

You need to be able to reassure them that you have:

  • deep endpoint protection
  • a penetration and vulnerability assessment
  • data governance that is fit for purpose
  • awareness programmes for all users and verification
  • dark web monitoring
  • multi-factor authentication and complex passwords

and so much more – the very items we have included in our KARE for Security services. 

The question for you, and your insurer, is what level of protection is appropriate for your organisation so your insurer will cover you if you need to claim?  That is why we have two levels of cyber-protection, and, because this isn’t static, it is why we keep investing and researching additional tools to help defend you from harm.

The Hackers are turning up their attacks on you – are you turning up your defences to match?

One quote we saw recently that rang true was:

“A cybercriminal only has to be lucky once, while a defender has to be lucky every minute of every day.”

 

What’s your next step? We’ve created a simple 9-point checklist to help you navigate the cyber-risk landscape and find the right solution for you.

What is Malvertising?

What is Malvertising?

Malvertising is appearing more frequently on search engines. More people are starting to experience frustration with search engines, partly due to occasional inaccuracies in AI-driven overlays and an excess of advertisements. Another emerging concern is “malvertising”...

Check out the NZ 2024 SME Cyber Behaviour Tracker

Check out the NZ 2024 SME Cyber Behaviour Tracker

As cyber threats proliferate, small businesses find themselves not just in the crosshairs but also facing the daunting financial repercussions of a breach. There is an urgent need for robust cyber security measures. With the staggering average cost of $173,000 per...

Urgent Security Advisory (from Microsoft)

Urgent Security Advisory (from Microsoft)

We have been alerted to an issue with some Microsoft Office products.  The vulnerability is reported to be actively exploited and we expect Microsoft will expedite the release of fixes.  Zero-day means that this is an immediate high risk and we are advised that it is...

Free resource: Business Cloud Security Checklist

Free resource: Business Cloud Security Checklist

Essential Business Cloud Security Checklist for 2024 In today’s digital age, securing your business’s cloud environment is more critical than ever. With cyber threats evolving rapidly, it’s essential to have a robust cloud security strategy. Here’s a checklist to help...

TeamViewer Compromise

TeamViewer Compromise

TeamViewer is a common piece for software that allows IT businesses to remotely access, control, manage, monitor, and repair devices – from laptops and mobile phones to industrial machines and robots. Many software vendors include it to allow them to remotely support...

Cert NZ Business online security assessment tool

Cert NZ Business online security assessment tool

A Personal Encounter with Cert NZ's Assessment Tool. Have you recently received an email about cyber-security that set off your system's alarms? It's ironic isn't it? That was my recent experience with an email from Cert NZ. Despite the initial warning, the email...

Avoid the IT Travel Woes

Avoid the IT Travel Woes

Free Webinar Replay : Avoid the IT Travel WoesBusiness travel is fraught enough.  It's a nightmare to balance tight connections, and tough time zones with work colleagues that are accustomed to being able to link you into Teams meetings and urgent chats.How can you...