Monday, July 10, 2017

AIG Adds Marsh’s Zaffino as Global COO; Former AIG Exec Doyle Named CEO of Marsh

Former Marsh CEO Peter Zaffino has been named global chief operating officer at insurer American International Group (AIG) and John Doyle, formerly CEO of AIG’s commercial insurance unit, was named by Marsh & McLennan Cos. as CEO of Marsh.

Zaffino will lead day-to-day business of all country operations, including US commercial field operations and AIG’s multinational organizations, as well as global business services, administration and communications, AIG said in a statement. He is reunited with Brian Duperreault, AIG’s president and CEO. Duperreault was president and CEO of Marsh & McLennan from 2008 to 2012.


Chad Hemenway, AIG adds Marsh’s Zaffino as global COO; former AIG exec Doyle named CEO of Marsh (July 7, 2017), available with subscription at Advisen Professional Front Page News.

Friday, July 7, 2017

Anthem’s $115M Settlement Likely to Inspire Future Breach Litigation

The announcement of a $115 million settlement by Anthem Inc. over the health insurer’s massive January 2015 data breach suggests that class-action litigation over breaches will likely continue despite failures and relatively low settlements in other cases.

The $115 million agreement, if approved by the court, would be a record settlement and involves no admission of wrongdoing by Anthem, which commented in a statement, “We are pleased to be putting this litigation behind us, and to be providing additional substantial benefits to individuals whose data was or may have been involved in the cyberattack and who will now be members of the settlement class.”


Advisen Ltd., Anthem’s $115M settlement likely to inspire future breach litigation (June 29, 2017), available with subscription at Advisen Cyber Front Page News.

Wednesday, July 5, 2017

Ransomware Attack Affects Computers Worldwide

Computer networks across the globe again fell victim to a strain of ransomware on June 27, taking numerous organizations and infrastructure offline, with Ukrainian government agencies and private firms especially hard hit.

Much as the WannaCry ransomware briefly paralyzed businesses in May, this next wave of attacks locked up computers at Merck Pharmaceuticals; Maersk, a Danish shipping firm; DLA Piper, a global law firm; Rosneft, a Russian energy company; Kiev’s airport, numerous Russian and Ukrainian banks, and even the radiation monitoring systems at Chernobyl. The nuclear plant announced in a statement that monitoring systems are temporarily being run manually. The attack hit computers in Russia, Europe, the UK, and the US, and continues to unfold.


Erin Ayers, Ransomware attack affects computers worldwide (June 28, 2017), available with subscription at Advisen Cyber Front Page News.

Friday, June 30, 2017

Advisen Cyber Risk Awards: You Had To Be There

After a week of recuperation, it is time to reflect on this year’s Advisen Cyber Risk Awards.

Following this one-of-a-kind event each year we seem to share one overwhelming thought: That was great! The bar has been raised. How can we possibly duplicate this next year?

But yet, so far, we’ve done it. And the “we” referenced here isn’t just Advisen (although never underestimate the crazy amount of care and effort Advisen’s events team puts into this show; it is amazing). The “we” is the entire cyber community—the one Advisen is very proud to have a large part in nurturing.


Chad Hemenway, Advisen Cyber Risk Awards: You had to be there (June 22, 2017), available with subscription at Advisen Cyber Front Page News.

Wednesday, June 28, 2017

Advisen Panel: Supply Chain Cyber Risks Can’t Be Ignored Any Longer

Supply chain professionals and their risk and insurance partners must consider not only traditional physical risks, but cyber risks as well, guarding their “digital ecosystem” from disruption, according to a panel of experts speaking during an Advisen webinar June 20.

Emphasizing the need to avoid “unforeseen risks” and shift the cyber risk discussion from the IT department to the full enterprise, panelists noted that organizations need to evaluate their dependence on services, deliveries, and materials provided by outside vendors or suppliers and do an impact analysis. Very few businesses operate nowadays without the use of suppliers or vendors, the panel commented.


Erin Ayers, Advisen panel: Supply chain cyber risks can’t be ignored any longer (June 21, 2017), available with subscription at Advisen Cyber Front Page News.

Friday, June 23, 2017

Shipping Losses Drop, But ‘Perfect Storm’ of Maritime Cyber Risks Remain: Allianz

Shipping losses and casualties decreased overall in 2016 by about 16 percent, according to a new report from Allianz Global Corporate and Specialty (AGCS), but Allianz warned that the maritime industry – and their insurers — shouldn’t expect entirely smooth sailing in the future due to regional disparities, regulatory constraints, and cyber risks.

“We continue to see improvements in maritime safety, but the price of safe navigation is constant vigilance,” said Captain Andrew Kinsey, senior marine risk consultant at AGCS. “The maritime sector is entering a period of considerable change and unrest from economic pressures, technology and political factors. There is a perfect storm of increasing regulation and narrowing margins.”


Erin Ayers, Shipping losses drop, but ‘perfect storm’ of maritime cyber risks remain: Allianz (June 14, 2017), available with subscription at Advisen Professional Front Page News.

Wednesday, June 21, 2017

WannaCry Provides Latest Glimpse at Nightmare Cyber Aggregation Potential

CHICAGO—The WannaCry ransomware attack will likely be a manageable loss event for the insurance industry, but the event offers a new perspective on potential aggregation.

Though the worm known as WannaCry spread rapidly to about 150 countries starting May 12, the number of network computers infected and held for ransom is actually a small percentage of all possible global endpoints, according to Pascal Millaire, vice president and general manager at Symantec.

Millaire gave an impromptu presentation on WannaCry during lunch at Advisen’s Cyber Risk Insights Conference here.

“This may not be as bad as one might have thought,” he said. “This is a relatively good-news story.”


Chad Hemenway, WannaCry provides latest glimpse at nightmare cyber aggregation potential (May 18, 2017), available with subscription at Advisen Cyber Front Page News.

Monday, June 19, 2017

With Targets on Their Backs, Healthcare CISOs Fight to Protect Data

Healthcare chief information security officers (CISOs) know their organizations offer an appealing target for cybercriminals – and they’re doing everything they can to avoid being the next victims, according to a panel speaking during Advisen’s Cyber Risk Insights Conference here.

Panelists described the many moving parts to their organizations, with hundreds of healthcare professionals requiring access to sensitive information, cross-border compliance issues, legacy IT systems and medical devices, and vast networks of third-party partners.

“It’s really hard to go to a doctor who’s an expert in his field and say he needs to get rid of his X-ray machine that runs on Windows XP or Windows 98 when he says that’s the system that gives him the image he needs to save the patient,” said Robert Hill, CISO of the Mayo Clinic.”


Erin Ayers, With targets on their backs, healthcare CISOs fight to protect data (May 17, 2017), available with subscription at Advisen Professional Front Page News.

Friday, June 16, 2017

Security Expert Warns Insurers on the Realities of Cyber Risk

CHICAGO – Insurers need to understand the realities of cyber risk, why the risk has expanded so dramatically in recent years, and why no organization can ever be fully protected, according to Adam Tyler, chief innovation officer with CSID, now a part of Experian Partner Solutions, speaking during the keynote speech at Advisen’s Cyber Risk Insights Conference.

The insurance industry needs to know the “reality of the situation you’re facing,” Tyler told the audience here in Chicago. “You need to know the reality of the premiums and policies you’re writing.”

The Dark Web isn’t well understood, he explained, and news reports usually feature cyberattacks as stunningly complex.


Erin Ayers, Security expert warns insurers on the realities of cyber risk (May 18, 2017), available with subscription at Advisen Cyber Front Page News.

Wednesday, June 14, 2017

FICO Survey: 40 Percent of Organizations Do Not Have Cyber Insurance

More than 60 percent of organizations from a recent survey said they expect levels of cyber threats against them to increase, but 40 percent reported not having cyber risk insurance.

According to the results from the survey conducted by Ovum for analytics firm FICO, only about 20 percent of organizations said they have comprehensive cyber insurance to cover all likely risks.


Chad Hemenway, FICO survey: 40 percent of organizations do not have cyber insurance (June 1, 2017), available with subscription at Advisen Cyber Front Page News.