Insurance Experts Expect Higher Cyber Losses

Insurance companies are expecting increased cyber-related losses across all business lines over the next 12-months, driven by increasing reliance on technology and high-profile cyberattacks, according to Willis Re's annual Silent Cyber Risk Outlook global survey. 
 
The survey reveals that over 60% of respondents estimate it is likely to incur more than one cyber related loss for every hundred non-cyber covered losses over the next 12 months in all lines of business apart from the worker compensation compared to less than 50% in any line of business in 2017. 
 
Large cyber-attacks, like WannaCry or NotPetya, are also expected to be more frequent, with over 60% of respondents stating they anticipate these occurring at least once every five years. 
 
The increasing frequency of cyber-attacks and resulting threat to utility infrastructure led to the IT/Utilities/Telecom industry group reporting the highest perceived property silent cyber risk factor, with 42% of respondents reporting they are likely to incur ten or more cyber related losses for every hundred non-cyber covered losses. 
 
Anthony Dagostino, Global Head of Cyber Risk Solutions, Willis Towers Watson, said: "The insurance market considers 'silent cyber' or cyber-related losses under policies where cyber risk isn't specifically included, to be a far greater risk than ever before. 
 
"The 2017 WannaCry and NotPetya attacks highlighted this risk and potential damage across all business areas - causing significant concern around silent cyber. This increased risk perception has highlighted the need for specific cyber coverage, but competitive market conditions are limiting the scope for coverage or pricing adjustments to be made in other lines of business." 
 
Mark Synnott, Global Cyber Leader, Willis Re, said: "Willis Re is at the forefront of helping clients assess aggregation risk to silent cyber exposure through our annual silent cyber survey, which we have built into our portfolio analytics. We also have a market-tested reinsurance solution to mitigate this risk - CAStL, a cyber aggregate stop loss that covers all forms of affirmative and silent cyber exposure." 
 
The survey ranks respondents' silent cyber risk factor from <1.01, indicating less than one anticipated cyber related loss per hundred non-cyber covered losses, to 2.0, representing as many cyber losses as non-cyber losses over the next 12 months. 
Close to 700 participants from over 100 insurance and reinsurance companies were surveyed globally across five business lines, including: first party property, other liability (including auto), worker compensation, errors and omissions (E&O) and directors and officers (D&O). 
 
Other findings include: 

Significant increase in 'other liability' silent cyber exposure: 62% believed the silent cyber risk factor is above 1.01 for 'other liability', compared to just 35% in 2017.

  • Perceived cyber risk gap closing between property and 'other liability': The gap between perceived silent cyber risk between property and 'other liability' has been eliminated since 2017. In 2017, 47% of respondents believed the silent cyber risk factor was above 1.01 for property (vs 35% for 'other liability'). In 2018 the comparable percentage for both lines of business is 62%.
  • D&O and E&O lines face significant silent cyber risk: Over 30% of respondents estimate their silent cyber factor is 1.10 or higher.
  • Silent cyber risk grows across all industry groups: In 2018, majority of the respondents believe all industry groups in both property and other liability had a silent cyber risk factor of greater than 1.01 This contrasts with 2017 when only two of the nine industry groups in property and none of the nine industry groups in other liability met this threshold. 
  • Hospitals/Medical Facilities/Life Sciences top 'other liability' silent cyber risk: The industry group with the highest silent cyber for 'other liability' with 34% of respondents view risk to be 1.10 or greater - an increase of 15% on 2017.
Marketwatch
 
You Might Also Read:
 
Cyber Insurance Has Distinctly Risky Characteristics:
 
Cyber Insurance Report 2017 - 2018 (£):
 
« The Maritime Industry's Slow Boat To Cybersecurity
New Phishing Attack Uses An Old Trick »

CyberSecurity Jobsite
Check Point

Directory of Suppliers

TÜV SÜD Academy UK

TÜV SÜD Academy UK

TÜV SÜD offers expert-led cybersecurity training to help organisations safeguard their operations and data.

Syxsense

Syxsense

Syxsense brings together endpoint management and security for greater efficiency and collaboration between IT management and security teams.

ZenGRC

ZenGRC

ZenGRC (formerly Reciprocity) is a leader in the GRC SaaS landscape, offering robust and intuitive products designed to make compliance straightforward and efficient.

XYPRO Technology

XYPRO Technology

XYPRO is the market leader in HPE Non-Stop Security, Risk Management and Compliance.

Resecurity

Resecurity

Resecurity is a cybersecurity company that delivers a unified platform for endpoint protection, risk management, and cyber threat intelligence.

CGI Group

CGI Group

CGI is a leading IT and business process services provider. Services include IT consulting, Systems Integration, Application Development, Infrastructure, Business Processes, Digital IP.

Black Duck Software

Black Duck Software

Black Duck Hub allows organizations to manage open source code security as well as license compliance risks.

Sepio Cyber

Sepio Cyber

Sepio is the leading asset risk management platform that operates on asset existence rather than activity.

Netwrix

Netwrix

Netwrix empowers information security and governance professionals to identify and protect sensitive data to reduce the risk of a breach.

SlashNext

SlashNext

The SlashNext Internet Access Protection System (IAPS) provides Zero-Day protection against all internet access threats including Social Engineering & Phishing, Malware, Exploits and Callback Attacks.

Gilbert + Tobin

Gilbert + Tobin

Gilbert + Tobin is an Australian corporate law firm serving clients throughout Australia, and around the world, on a broad range of legal issues including cyber security.

QSecure

QSecure

QSecure specializes in the provision of information security and risk management services.

Micro Strategies Inc.

Micro Strategies Inc.

Micro Strategies provides IT solutions that help businesses tackle digital transformation in style.

ENLIGHTENi

ENLIGHTENi

ENLIGHTENi are the platform to develop next-gen talent in Technology, Risk, and Cybersecurity. Our mission is to develop next-gen talent through challenge-based learning and team collaboration.

Ensconce Data Technology (EDT)

Ensconce Data Technology (EDT)

EDT’s focus is on providing solutions to properly sanitize Solid State Drives (SSD) and Magnetic Drives (HDD) before they are disposed or redeployed.

Austrian Institute of Technology (AIT)

Austrian Institute of Technology (AIT)

AIT is Austria's largest research and technology organisation and a specialist in the key infrastructure issues of the future including data science and cybersecurity.

SyferLock Technology Corp.

SyferLock Technology Corp.

SyferLock is an innovative provider of next-generation authentication and security solutions.

Aigner Business Solutions

Aigner Business Solutions

Aigner Business Solutions GmbH is a specialist in IT-Security and Data Protection. Concise and focussed.

Truesec

Truesec

TRUESEC has an exceptional mix of IT specialists. We are true experts in cyber security, advanced IT infrastructure and secure development.

Prelude Research

Prelude Research

Prelude offer the first autonomous platform built to attack, defend and train critical assets through continuous red-teaming.

Corporater

Corporater

Corporater provides organizations with integrated solutions for managing governance, performance, risk, and compliance built on a single platform.