Cyber ​​insurance: The quality of defense determines the premium

Share post

Insurance against cyber crime is now standard protection for companies. But the insurance conditions depend on your own defense quality. The Sophos report on cyber insurance shows that those who have insurance are more likely to pay criminals ransom.

In the new report "The Critical Role of Frontline Cyber ​​Defenses in Cyber ​​Insurance Adoption", Sophos has examined the connections between defense quality, insurability and insurance conditions for companies. 95 percent of organizations that purchased a cyber insurance policy in the last year say the quality of their organization's cyber defenses directly impacts their insurance terms.

  • For 60 percent, the quality influences the possibility of getting insurance cover at all
  • 62 percent indicate an impact on the cost of coverage
  • In 28 percent of the cases, the quality of defense influences the terms of the contract

In the meantime, an extremely large number of insured companies

🔎 Companies that have already been hit by ransomware said that getting coverage affected premiums: the qualities of defense capabilities determine the premium – those who have already been hit by ransomware have a harder time getting a contract (Picture: Sophos).

The report, The Critical Role of Frontline Cyber ​​Defenses in Insurance Adoption, also states that cyber insurance adoption is now the norm. 91 percent of organizations have insurance coverage and 8 percent plan to purchase a policy within the next year. Insurance coverage, in turn, plays a role in companies' ability to recover from an attack.

Those who are insured are four times more likely to pay ransom for their data

Organizations with cyber insurance are better able to recover their data if it was encrypted in a ransomware attack:

  • 98 percent with stand-alone policy and 97 percent with comprehensive insurance coverage are recoverable compared to 84 percent without coverage.
  • Companies with stand-alone policies were almost four times more likely to pay the extortion fee to recover their data than those without insurance: 59 percent of companies with stand-alone cyber insurance paid the claim. In contrast, 37 percent of companies that purchased cyber insurance as part of a broader insurance policy and 15 percent of those that did not have cyber insurance paid the ransom.

"The quality of a company's cybersecurity measures Protection against active attacks is crucial. Organizations need to properly configure and manage security technologies while also responding effectively to threats, which requires expert skills,” said Raja Patel, senior vice president of products at Sophos. "With the industry-first threat detection and response capability Sophos meets its customers where they are and enables them to achieve excellent security results.”

background to the study

The data from The Critical Role of Frontline Cyber ​​Defenses in Cyber ​​Insurance Adoption study comes from an independent global study conducted in January and February 2023 among 3.000 cybersecurity/IT professionals in 14 countries.

More at Sophos.com

 


About Sophos

More than 100 million users in 150 countries trust Sophos. We offer the best protection against complex IT threats and data loss. Our comprehensive security solutions are easy to deploy, use and manage. They offer the lowest total cost of ownership in the industry. Sophos offers award-winning encryption solutions, security solutions for endpoints, networks, mobile devices, email and the web. In addition, there is support from SophosLabs, our worldwide network of our own analysis centers. The Sophos headquarters are in Boston, USA and Oxford, UK.


 

Matching articles on the topic

Cybersecurity platform with protection for 5G environments

Cybersecurity specialist Trend Micro unveils its platform-based approach to protecting organizations' ever-expanding attack surface, including securing ➡ Read more

Data manipulation, the underestimated danger

Every year, World Backup Day on March 31st serves as a reminder of the importance of up-to-date and easily accessible backups ➡ Read more

Printers as a security risk

Corporate printer fleets are increasingly becoming a blind spot and pose enormous problems for their efficiency and security. ➡ Read more

IT security: Basis for LockBit 4.0 defused

Trend Micro, working with the UK's National Crime Agency (NCA), analyzed the unpublished version that was in development ➡ Read more

The AI ​​Act and its consequences for data protection

With the AI ​​Act, the first law for AI has been approved and gives manufacturers of AI applications between six months and ➡ Read more

MDR and XDR via Google Workspace

Whether in a cafe, airport terminal or home office – employees work in many places. However, this development also brings challenges ➡ Read more

Windows operating systems: Almost two million computers at risk

There are no longer any updates for the Windows 7 and 8 operating systems. This means open security gaps and therefore worthwhile and ➡ Read more

AI on Enterprise Storage fights ransomware in real time

NetApp is one of the first to integrate artificial intelligence (AI) and machine learning (ML) directly into primary storage to combat ransomware ➡ Read more