Insurance Experts Expect Higher Cyber Losses

Insurance companies are expecting increased cyber-related losses across all business lines over the next 12-months, driven by increasing reliance on technology and high-profile cyberattacks, according to Willis Re's annual Silent Cyber Risk Outlook global survey. 
 
The survey reveals that over 60% of respondents estimate it is likely to incur more than one cyber related loss for every hundred non-cyber covered losses over the next 12 months in all lines of business apart from the worker compensation compared to less than 50% in any line of business in 2017. 
 
Large cyber-attacks, like WannaCry or NotPetya, are also expected to be more frequent, with over 60% of respondents stating they anticipate these occurring at least once every five years. 
 
The increasing frequency of cyber-attacks and resulting threat to utility infrastructure led to the IT/Utilities/Telecom industry group reporting the highest perceived property silent cyber risk factor, with 42% of respondents reporting they are likely to incur ten or more cyber related losses for every hundred non-cyber covered losses. 
 
Anthony Dagostino, Global Head of Cyber Risk Solutions, Willis Towers Watson, said: "The insurance market considers 'silent cyber' or cyber-related losses under policies where cyber risk isn't specifically included, to be a far greater risk than ever before. 
 
"The 2017 WannaCry and NotPetya attacks highlighted this risk and potential damage across all business areas - causing significant concern around silent cyber. This increased risk perception has highlighted the need for specific cyber coverage, but competitive market conditions are limiting the scope for coverage or pricing adjustments to be made in other lines of business." 
 
Mark Synnott, Global Cyber Leader, Willis Re, said: "Willis Re is at the forefront of helping clients assess aggregation risk to silent cyber exposure through our annual silent cyber survey, which we have built into our portfolio analytics. We also have a market-tested reinsurance solution to mitigate this risk - CAStL, a cyber aggregate stop loss that covers all forms of affirmative and silent cyber exposure." 
 
The survey ranks respondents' silent cyber risk factor from <1.01, indicating less than one anticipated cyber related loss per hundred non-cyber covered losses, to 2.0, representing as many cyber losses as non-cyber losses over the next 12 months. 
Close to 700 participants from over 100 insurance and reinsurance companies were surveyed globally across five business lines, including: first party property, other liability (including auto), worker compensation, errors and omissions (E&O) and directors and officers (D&O). 
 
Other findings include: 

Significant increase in 'other liability' silent cyber exposure: 62% believed the silent cyber risk factor is above 1.01 for 'other liability', compared to just 35% in 2017.

  • Perceived cyber risk gap closing between property and 'other liability': The gap between perceived silent cyber risk between property and 'other liability' has been eliminated since 2017. In 2017, 47% of respondents believed the silent cyber risk factor was above 1.01 for property (vs 35% for 'other liability'). In 2018 the comparable percentage for both lines of business is 62%.
  • D&O and E&O lines face significant silent cyber risk: Over 30% of respondents estimate their silent cyber factor is 1.10 or higher.
  • Silent cyber risk grows across all industry groups: In 2018, majority of the respondents believe all industry groups in both property and other liability had a silent cyber risk factor of greater than 1.01 This contrasts with 2017 when only two of the nine industry groups in property and none of the nine industry groups in other liability met this threshold. 
  • Hospitals/Medical Facilities/Life Sciences top 'other liability' silent cyber risk: The industry group with the highest silent cyber for 'other liability' with 34% of respondents view risk to be 1.10 or greater - an increase of 15% on 2017.
Marketwatch
 
You Might Also Read:
 
Cyber Insurance Has Distinctly Risky Characteristics:
 
Cyber Insurance Report 2017 - 2018 (£):
 
« The Maritime Industry's Slow Boat To Cybersecurity
New Phishing Attack Uses An Old Trick »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

CSI Consulting Services

CSI Consulting Services

Get Advice From The Experts: * Training * Penetration Testing * Data Governance * GDPR Compliance. Connecting you to the best in the business.

The PC Support Group

The PC Support Group

A partnership with The PC Support Group delivers improved productivity, reduced costs and protects your business through exceptional IT, telecoms and cybersecurity services.

MIRACL

MIRACL

MIRACL provides the world’s only single step Multi-Factor Authentication (MFA) which can replace passwords on 100% of mobiles, desktops or even Smart TVs.

Alvacomm

Alvacomm

Alvacomm offers holistic VIP cybersecurity services, providing comprehensive protection against cyber threats. Our solutions include risk assessment, threat detection, incident response.

Syxsense

Syxsense

Syxsense brings together endpoint management and security for greater efficiency and collaboration between IT management and security teams.

European Council on Foreign Relations (ECFR)

European Council on Foreign Relations (ECFR)

ECFR is a pan-European think-tank conducting research and promote informed debate on European foreign policy. Cyber security is becoming an intrinsic element of foreign policy debate.

Graphus

Graphus

Graphus provides a simple, powerful, automated solution that eliminates 99% of social engineering and spear phishing attacks against G Suite business Gmail users.

Viasat

Viasat

Viasat is a provider of high-speed satellite broadband services and secure networking systems covering military and commercial markets.

AKS IT Services

AKS IT Services

AKS IT Services (an ISO 9001:2015 and ISO 27001:2013 certified company) is a leading IT Security Services and Solutions provider.

RangeForce

RangeForce

RangeForce delivers the only integrated cybersecurity simulation and skills analysis platform that combines a virtual cyber range with hand-on training.

Exeon Analytics

Exeon Analytics

Exeon Analytics is a Swiss cyber security company that is specialized in detecting hidden data breaches and advanced cyber attacks.

Beazley

Beazley

Beazley are a specialist insurer with three decades of experience in providing clients with the highest standards of underwriting and claims service worldwide.

TrustMAPP

TrustMAPP

TrustMAPP automates cybersecurity & privacy assessments, with universal workflow, allowing teams to generate analytics and recommendations to align priorities for improvement.

Scythe

Scythe

SCYTHE is a next generation red team platform for continuous and realistic enterprise risk assessments.

Censys

Censys

Our customers rely on Censys data to get the global visibility they need of their attack surfaces in order to proactively prevent nation-state attacks and emerging threats.

EDGE Group

EDGE Group

EDGE is one of the world’s leading advanced technology groups, established to develop agile, bold and disruptive solutions for defence and beyond.

DruvStar

DruvStar

DruvStar provides B2B cybersecurity around threat management to strengthen businesses across attack vectors.

Vercara

Vercara

Vercara offers a purpose-built, global cloud security platform that provides layers of protection to safeguard businesses’ online presence, no matter where an attack comes from or where it is aimed.

WaveLink

WaveLink

WaveLink offers low risk, results-oriented Engineering Services and best-of-class Technical Support Services. Areas of expertise include cyber and security engineering.

Transcendental Technologies

Transcendental Technologies

Transcendental is a consulting organization which specializes in customized assurance services in the fields of Localization, Mobile Software Solutions, Web Design, Cyber Security & Cyber Forensics.

Cybersecurity Agency of Catalonia - Spain

Cybersecurity Agency of Catalonia - Spain

Cybersecurity Agency of Catalonia is responsible for implementing public policies in the field of cybersecurity and developing the cybersecurity strategy of the Generalitat de Catalunya.