Report Helps Gov Agencies Analyze ROI of Cyber Defenses/Insurance 

“Officials can look at the probabilities of attacks succeeding and probabilities that these result in different depths of financial losses. Then officials can factor in how adopting different preventive measures might draw down those costs. This lets officials estimate how much investing in a better backup system or in anti-phishing training, for example, might reduce … Read more

Typical? Iowa City Quadruples Cyber Insurance Coverage 

City council in Oskaloosa increases cyber liability coverage from $250,000 to $1,000,000. “‘One of the most valuable items this service provides is immediate access to forensic experts who can take over with the first phone call, providing staff guidance on what to do, what not to do and to assist in the recovery of lost … Read more

K-12 Cyber Insurance Rates Up 300%? 

Article also warns that many attacks on schools are not reported. “Adequate third-party risk transfer through cyber insurance is becoming increasingly unattainable for school districts, with annual premiums across K-12 cyber policies reportedly soaring more than 300% (according to Aon PLC) and coverage levels shrinking.” Source: US School Districts’ Cyber Risk Heightened by Limited Resources

Barn Door Meet Horse — Baltimore Spent Over $10 Million Responding To 2019 Ransomware Attack; Had No Cyber Insurance

“Instead of paying a $569,000 (cyber insurance) premium to pay the contractors or the ransom, a city pays millions,” says the report, which details some of the expenses after the attack. Another source reports the attack ended up costing Baltimore $18 million in direct expenses and lost revenue. Source: As Baltimore rebuilds from 2019 ransomware … Read more

Insurers: Heal Thyselves. Kentucky Is 21st State to Adopt Model Cyber Security Law for Insurers

“Among other steps, Kentucky’s law requires insurers to ‘identify reasonably foreseeable internal or external threats that could result in unauthorized access, transmission, disclosure, misuse, alteration, or destruction of nonpublic information, including the security of information systems and nonpublic information that are accessible to, or held by, third-party service providers,’ the law reads.” Source: Kentucky Becomes … Read more