Carnival Hit for Violating Gov MFA Regs; Gov and Cyber Insurance Industry Standards Converging? 

[NY State appeared to gain jurisdiction via Carnival’s former insurance business.] “New York’s Department of Financial Services said Carnival violated a state cyber security regulation by failing to use multi-factor authentication that would make it harder for wrongdoers to access its internal network. It also said Carnival failed to report one breach and conduct adequate … Read more

Cyber Insurance Market Penetration for Several Sectors: Moody’s Report

“Some of the cybersecurity investment increase is also going toward standalone cyber insurance; 65% of public sector organizations carry specialized cyber coverage, as do 57% of financial services companies. No industry is below 46% in this category.” Source: Moody’s Report: Cybersecurity Investment Up, But Preparedness Remains Inconsistent – CPO Magazine

Rhu-row — Cyber Insurance May Not Cover “Phishing” Fund Diversion Scams 

Note the language in the policy that appears to exclude losses from similar scams. It’s in the courts now. “Star Title’s employees purportedly failed to authenticate the perpetrator’s wire instructions. Upon learning that the fraudster had diverted the funds, Star Title tendered a wire fraud claim to its cyber insurance carrier, which denied coverage.” Source: … Read more

×