General Insurance Article - Insurance Europe develop GDPR data breach template


Insurance Europe has developed a template that could help companies meet the obligation under the General Data Protection Regulation (GDPR) to notify their competent supervisory authority about personal data breaches.

 The template could be of particular interest to SMEs and supervisory authorities. The former could rely on it instead of undertaking a descriptive exercise in the midst of a data breach, for which they may not have the resources. The latter could benefit from a standardised format allowing them to share incident data across borders, to better detect trends and to gain insights about how to combat cyberthreats across Europe.

 The template is set up in such a way that the information gathered can be shared without the need to be anonymised or aggregated, as it will not be possible to identify a company through the information it provides.

 If used widely, the template could contribute to enhancing the information and data that is available on cyber risks, and so increase society’s cyber resilience. Currently, the lack of available information on cyber events hampers a range of stakeholders, notably insurers, which are limited in their ability to offer cyber risk cover and related services. This could change if insurers are granted access to the anonymised data that will be gathered by the national supervisory authorities as a result of the data breach provisions.

 How it works
 The template has three distinct sections:
 • Personal details and information on the affected company (not to be shared with third parties).
 • Details on the data breach incident as per the indications in Article 33 of the GDPR, to be sent to the national supervisory authority, where feasible, no later than 72 hours after having become aware of the breach.
 • A section to be completed following the 72 hour period when more information is available on the data breach, which includes complementary data sets to gain more in-depth knowledge of the nature of the breach.
   

  

  

 Download the Template

Back to Index


Similar News to this Story

IPT receipts for 2024 to 2025 hits over GB7bn in January
According to this morning’s HMRC data, Insurance Premium Tax (“IPT”) receipts stood at £853 million in January 2025, bringing the 10-month total for t
Unlocking the potential of IFRS17 insights and opportunities
As mentioned in part one of this blog series, IFRS 17 has reshaped financial reporting for insurance contracts since its implementation on 1 January 2
Lack of expertise main barrier to AI adoption in insurance
A lack of expertise within insurance companies is the biggest challenge to implementing artificial intelligence (AI) technology. As AI has the potenti

Site Search

Exact   Any  

Latest Actuarial Jobs

Actuarial Login

Email
Password
 Jobseeker    Client
Reminder Logon

APA Sponsors

Actuarial Jobs & News Feeds

Jobs RSS News RSS

WikiActuary

Be the first to contribute to our definitive actuarial reference forum. Built by actuaries for actuaries.