While the cyber insurance market may categorize business email compromise (BEC) claims as more attritional and frequency-driven, a new report from Guy Carpenter, sheds light on the potentially devastating financial consequences of this often-overlooked threat. |
The report, Cyber's Sleeper Threat: Business Email Compromise, was published in conjunction with Marsh McLennan’s Cyber Risk Intelligence Center and investigates the threat and impact of BEC attacks – sophisticated forms of phishing that exploit human vulnerabilities rather than technical weaknesses. In these scenarios, attackers impersonate trusted entities to deceive employees into transferring funds, making it difficult for traditional security measures to detect and mitigate the risk effectively. An analysis of Marsh’s proprietary claims database over the last five years found more than 550 successful BEC events impacting Marsh clients with either a cyber or crime insurance policy in place. Of these events for which loss data is available, the report reveals the greatest number have a loss around 0.1% of the company revenue. For a company with $1 billion in revenue that amounts to a $1 million loss. Despite the considerable financial threat, commercially available cyber vendor models have mixed approaches as to whether BEC claims should be accounted for in their catastrophe event catalogue, the report says. The report found that only one industry-leading vendor has incorporated BEC as an explicit cyber peril into its models. “Cyber threats such as ransomware attacks, zero-day vulnerability exploits, and cloud service provider outages dominate the headlines. The consequences of a successful BEC attack, however, can also be devastating for an organization and create large losses for cyber (re)insurers,” said Erica Davis, global co-head of cyber, Guy Carpenter. “By driving awareness of the right cybersecurity measures, we can collectively improve the resilience of organizations against BEC threats and mitigate its impact on underwriting profitability.” |
|
|
|
P&C Consulting Actuary | ||
London / hybrid - Negotiable |
Senior Actuarial Pensions Consultant:... | ||
Fully remote - Negotiable |
Join the Pensions FinTech Revolution | ||
Flex / hybrid - Negotiable |
Consultant - Pensions Risk Settlement | ||
Flex / hybrid 2 days p/w office-based - Negotiable |
Senior Associate - Pensions Risk Sett... | ||
Flex / hybrid 2 days p/w office-based - Negotiable |
Pricing Analyst - Specialty Insurance | ||
London / hybrid with 2 days p/w office-based - Negotiable |
London Market Capital Leader | ||
London - Negotiable |
CONTRACT: Reserving Actuary | ||
London / hybrid 2 days p/w office-based - Negotiable |
Tech GMP actuary (no prior GMP experi... | ||
Any UK Office location / Hybrid working, 1-2 days p/w in the office - Negotiable |
GMP Proposition Lead, 18 month FTC, f... | ||
UK wide 100% remote working (must be UK based) - Negotiable |
Pensions Scheme Secretarial role (PMI... | ||
London / hybrid 3 dpw office-based - Negotiable |
Move to Bermuda | ||
Bermuda - Negotiable |
Pricing Actuary - Casualty | ||
London - £85,000 to £130,000 Per Annum |
Senior Risk Actuary - Actuarial Assur... | ||
London/Hybrid - Negotiable |
Senior Risk Actuary - Matching Fund A... | ||
London/Hybrid - Negotiable |
Actuary - Investments Business Partne... | ||
London/Hybrid - Negotiable |
Investment Analyst | ||
Hybrid/London - Negotiable |
Data Science Manager | ||
South East / hybrid 2 dpw in the office - Negotiable |
NEW Opportunity - In-House Pensions L... | ||
North / hybrid 2 dpw office-based - Negotiable |
The Price Is Right - Multiple GI Pric... | ||
London - Negotiable |
Be the first to contribute to our definitive actuarial reference forum. Built by actuaries for actuaries.