article thumbnail

How security pros, the insurance industry, and regulators can combat ransomware

SC Magazine

AIG is one of the top cyber insurance companies in the U.S. Today’s columnist, Erin Kennealy of Guidewire Software, offers ways for security pros, the insurance industry and government regulators to come together so insurance companies can continue to offer insurance for ransomware. eflon CreativeCommons CC BY 2.0.

Insurance 113
article thumbnail

Incentives, Insurance and Root Cause

Adam Shostack

Over the decade or so since The New School book came out, there’s been a sea change in how we talk about breaches, and how we talk about those who got breached. In that context, I am very excited to see a proposal from Rob Knake on “ Creating a Federally Sponsored Cyber Insurance Program.”

Insurance 100
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Does Your Business Depend on Stronger Election Security?

Adam Levin

It’s not known yet if these efforts to secure the electoral process worked, but in the mean time there are some takeaways for any organization struggling to define cyber security policies and protect itself from cyberattack. The outcomes of more than one midterm election will very likely enter the history books with an asterisk.

article thumbnail

CynergisTek Announces 3-Year Contract With Leading Medical System Resulting in Highest Annual Bookings in 3 Years

CyberSecurity Insiders

The cost of these cyber events is rising sharply with cyber insurance premiums and compliance requirements increasing. CynergisTek’s Resilience Partner Program is designed to support the needs of its healthcare clients to better position them to protect against cyber threats.

article thumbnail

Play ransomware group claims to have stolen hotel chain data

Malwarebytes

” The release goes on to say that although bookings are still taking place, email is unavailable as H-Hotels examines all systems to ensure they are no longer compromised. Law enforcement, cyber insurance (if you have it), external security contractors may well be some of the first entities on your list.

article thumbnail

Security Compliance & Data Privacy Regulations

eSecurity Planet

The states of Nevada, Minnesota and Washington stand out for having their own laws on the books creating liability in certain situations for businesses that handle credit card transactions and are not in compliance with PCI-DSS. States also differ on other data privacy and IT security compliance laws.

article thumbnail

Thinking About the Future of InfoSec (v2022)

Daniel Miessler

Taking the output of data analysis and dashboards and turning that into narratives for partners, management, investors, insurers, regulators, etc. That’s what happens when you move from wizards to book-keepers. Amaya works for Progressive, which is the main player in auto and Cyber Insurance. That’s the point.

InfoSec 180