
Sam is Gallagher's Cyber & Technology Practice Group Managing Director and talks us through the importance of the first 48 hours of a cyber breach, including:
- the importance of having an incident response plan in place
- the role insurance providers play in a cyber breach
- key recommendations for business leaders looking to strengthen their cybersecurity
Preview
Helen Yates: Welcome to the Navigating Risk Podcast, where we take a deep dive into the trend shaping the global risk landscape. In this episode, I talk to Sam Cheshire, Head of Cyber for Gallagher UK. Sam uses his deep knowledge of cyber risks to provide clients with specialist support and help them find the right insurance programmes. He is also on hand to help them in those critical first 48 hours post ransomware attack.
This episode is Part 2 in our series on the hidden challenges of a cyber breach, and I began by asking Sam to talk me through what happens during that period following a breach where the incident response plan is activated.
Sam Cheshire: A key comparison that I like to make with our clients is I'll ask them the question ‘what are you going to do if you have a fire?’, and they'll often list 100 different things; we've got a fire extinguisher in the corner of the room, we've got a sprinkler system installed in the building, we will call the fire brigade. It's a very interesting point and I'll always stop them when they mention they'll call the fire brigade, because if you suffer a cyber incident, what are you going to do? A lot of the time, our clients will say, well, we'll call the IT team.
But who's their fire brigade? Who's going to come and put the fire out for them? I think that's the real key benefit of cyber insurance – you do have 999 for a cyber incident. It is your cyber insurer, and they will bring an incident response team on site to effectively put that fire out for you. This is the bit of cyber insurance that's often overlooked. People look at the financial benefits and the protections on the balance sheet, but that immediate incident response, who are you going to call? What are they going to do? That is the true benefit of cyber insurance.
Find out more by listening to the full Navigating Risk Podcast episode now. Keep an eye out for the next Navigating Risk discussion.