Onebeaconpro.com 860.773.6150 t 806.773.6095 f 09.22.2014 Cyber Liability Insurance Coverages and Trends Affecting Community Banks Craig M. Collins President,

Slides:



Advertisements
Similar presentations
Property Inventory Valuation Replacement Cost Value The amount it would take to replace property with like property of the same quality and construction.
Advertisements

Current Fraud Trends Kathy Druckenmiller, CFCI, CIRM, ACT Specialist April 29, /29/2014.
Insurance in the Cloud Ben Hunter, Canadian Underwriting Specialist Technology Insurance Specialty Chubb Insurance Company of Canada.
Copyright © 2012, Big I Advantage®, Inc., and Swiss Re Corporate Solutions. All rights reserved. (Ed. 08/12 -1) E&O RISK MANAGEMENT: MEETING THE CHALLENGE.
Copyright © 2008 Pearson Addison-Wesley. All rights reserved. Chapter 27 Crime Insurance and Surety Bonds.
1.7.2.G1 © Family Economics & Financial Education – Revised February 2008 – Financial Institutions Unit – Electronic Banking Funded by a grant from Take.
The Third International Forum on Financial Consumer Protection & Education “Fostering Greater Consumer Protection & Education” Preventing Identity Theft.
Electronic Funds Transfer Act Presented By: Crystal T. Lloyd.
© 2014 wheresjenny.com Cyber crime CYBER CRIME. © 2014 wheresjenny.com Cyber crime Vocabulary Defacement : An attack on a website that changes the visual.
Financial Institutions – Cyber Risk Managing Cyber Risks In An Interconnected World State Compensation Insurance Fund Audit Committee Meeting – February.
Presented by: Jamie Orye, JD, RPLU Beazley Group Pennsylvania Association of Mutual Insurance Companies Annual Spring Conference March 12, 2015.

Bank Card Protector Policy Frates Insurance & Risk Management By Thomas P Mulligan
1.7.2.G1 Electronic/Online Banking & Bill Pay Take Charge of Your Finances.
BACKGROUND  Hawkes Bay Holdings/Aquila Underwriting LLP  Established 2009 utilising Lloyd’s capacity: Canopius % Hiscox 33 50% to May 2010, replaced.
CAMARGUE COMMERCIAL CRIME Presented by Justin Keevy Senior Underwriter.
Payment Fraud Trends : What Can you do? Protect Yourself and Your Business from Financial Fraud.
Electronic Banking BY Bahaa Abas Noor abo han. Definition * e-banking is defined as: …the automated delivery of new and traditional banking products and.
Cyber Risk Enhancement Coverage. Cyber security breaches are now a painful reality for virtually every type of organization and at every level of those.
XML AND THE LEGAL FOUNDATIONS FOR ELECTRONIC COMMERCE: Making XML Pay: Revising Existing Electronic Payments Law to Accommodate Innovation Copyright (c)
Commercial eSecurity Training and Awareness. Common Online Threats Most electronic fraud falls into one of three categories:  PHISHING – Fraudulent s.
Financial Literacy Vocabulary Terms How is money used in society? How do I pay for goods and services? How do I keep track of my saving and spending? 1.
Cyber crime on the rise. Recent cyber attacks How it happens? Distributed denial of service Whaling Rootkits Keyloggers Trojan horses Botnets Worms Viruses.
Financial Matters Ron Ferrill, District Treasurer 2011 PETS.
PTA Treasurer Training Pam Grigorian August 20, 2015.
Copyright © 2004 by Nelson, a division of Thomson Canada Limited CANADIAN BUSINESS AND THE LAW Second Edition by Dorothy Duplessis Steven Enman Shannon.
Payment Systems Debit Cards. Basic Concepts Cross between checking system and credit card system –No extension of credit; money must be in account at.
1.7.2.G1 © Family Economics & Financial Education – Revised May 2009 – Financial Institutions Unit – Electronic Banking Funded by a grant from Take Charge.
Traditional and Electronic Payment Methods Chapter 3.
1 Wire-transfer system not for the fainthearted 1.Each party in the system responsible for their own error. 2.Parties in the system after an error is committed.
LEGAL CHALLENGES & STRATEGIES IN E-PROCUREMENT IN CONSTRUCTION
Who’s Who Despositary Bank – the first to take check. Payor Bank – the bank that pays the issuer’s check. Intermediary Bank – any bank that handles a.
Chapter 27 Crime Insurance and Surety Bonds. Copyright ©2014 Pearson Education, Inc. All rights reserved.27-2 Agenda ISO Commercial Crime Insurance Program.
Banking How banks work along with checking accounts.
. E-Business Risk and Insurance.
Member Liability  $50 Limit  Notifies credit union within 2 business days  $500 Limit  Does not notify CU within 2 business days  Unlimited Amount.
Tamra Pawloski Jeff Miller. The views, information, and content expressed herein are those of the authors and do not necessarily represent the views of.
Fraudsters’ Accounts Malek Costa, CPA Head of Group Compliance BLOM Bank sal.
Have the Time? Steps to Deal with Cybercrime HFTP Annual Conference Bellevue, Washington October 23, 2015 Presented by: John D. Daum, CPA Scott Perry (Just.
© 2013 BALANCE / REV0513 Identity Theft Identity theft can be one of the most shocking and upsetting events to ever happen to you. Fortunately, there are.
COPYRIGHT © 2010 South-Western/Cengage Learning..
U.S. Businesses Targeted Randy Wolverton Brian J. Koechner.
Proprietary and Confidential Don’t be the Next Cyber Crime Statistic C. Kevin deBrucky, Vice President PINACLE ® Security Manager.
Intellectual Property. Confidential Information Duty not to disclose confidential information about a business that would cause harm to the business or.
Protecting Yourself from Fraud including Identity Theft Personal Finance.
LITHUANIAN CRIMINAL POLICE BUREAU Crimes in Cyberspace – Relevant Issues and Investigation Challenges ID Thefts – Issues, Legal Regulation, International.
The Privacy Symposium: Transferring Risk of a Privacy Event Paul Paray & Scott Ernst August 20, 2008.
Wire Fraud Prevention Training: Setting Your Organizational Structure to Mitigate Fraud Risk and Comply with Regulatory Expectations Presented by: Terri.
MEDICAL OFFICE COVERAGES. This is a short review over many insurance coverage parts necessary to a doctor’s practice. Not all apply, and there are other.
Cyber Liability: New Exposures Presented by: Henriott Group © 2007, , Zywave Inc. All rights reserved.
Cyber Insurance Overview July 30, 2016 Wesley Griffiths, FCAS International Association of Black Actuaries.
Cyber Liability Insurance for an unsecure world
Presented by: Assistant Superintendent Debra Thompson
Financial Institutions – Cyber Risk
E&O Risk Management: Meeting the Challenge of Change
Take Charge of Your Finances
Take Charge of Your Finances
A Project on CYBER SECURITY
Mr. Roeshink – Financial Operations
Cyber Insurance Overview
Cyber Insurance: An Update on the Market’s Hottest Product
Cybersecurity Awareness
Cyber Issues Facing Medical Practice Managers
Cyber Trends and Market Update
Understanding Cyber Insurance NASCUS/CUNA Cybersecurity Symposium
Cyber Exposures The Importance of Risk Identification and Transfer
Business Compromise and Cyber Threat
Retirement Benefit Fund, Trustee and Third Party Provider Insurance
Take Charge of Your Finances
Presentation transcript:

onebeaconpro.com t f Cyber Liability Insurance Coverages and Trends Affecting Community Banks Craig M. Collins President, Financial Services OneBeacon Professional Insurance

onebeaconpro.com t f LEGAL DISCLOSURE The diverse views expressed are solely those of the respective presenters and are not those of OneBeacon Professional Insurance or any of its affiliates.

onebeaconpro.com t f WHAT DO THESE HAVE IN COMMON?

onebeaconpro.com t f THE SCARY STUFF The Scams: Malware-infected software (mainly keystroke viruses) Tech support scams Phishing (fake from a trusted source) Spear phishing ( from a trusted source) Smishing (compromising your smart phone) Traditional social engineering

onebeaconpro.com t f THE SCARY STUFF The Trends: One in seven American networks has malware Phishing s have a 70% “open” rate Gas pump skimmers are now “Bluetooth enabled” Majority of wire fraud activity comes from outside the US Estonia, Latvia, Russia, Ukraine, China, African Countries Political cyber attacks China, Iran, Russia, North Korea (US alleged creator of Stuxnet) Technological innovations in banking – New ATM machines, Online banking, remote capture, ACH, Check 21, etc.

onebeaconpro.com t f INSURANCE COVERAGES Financial Institution Bond (1 st Party) Electronic / Computer Systems Fraud (includes online funds transfers) Telefacsimile, and Voice Instruction Transactions Coverage Cyber Liability Cyber Liability (3 rd Party) Intellectual Property (3 rd Party) Breach Event Expense (1 st Party)

onebeaconpro.com t f FINANCIAL INSTITUTION BOND Coverages: Electronic / Computer Systems Fraud – Protects the Bank (1 st Party) for loss due to theft occurring within the Bank’s own Computer System. (A direct “hack” of funds in your care/custody/control within the bank). Example:

onebeaconpro.com t f FINANCIAL INSTITUTION BOND Coverages: Telefacsimile, and Voice Instruction Transactions Coverage – Protects the bank for loss due to a fraudulent Fax, , or Voice Instruction. However, to have Financial Institution Bond coverage, the bank MUST: Have a pre-arranged written agreement with the customer, authorizing transfers AND If the transfer is larger than the bank’s bond deductible, there must be a call back to the customer verifying the transfer request.

onebeaconpro.com t f FIRST COMMERCIAL STATE BANK FRAUDULENT WIRE ATTEMPT Wire Transfer Included: A written wire transfer agreement with customer Authorization Form Call Back Procedure

onebeaconpro.com t f FIRST COMMERCIAL STATE BANK EXCHANGES: From: Johnson, James Sent: Tuesday, August 26, :24 PM To: Hartman, Sarah Hello, I need to make an international wire transfer, please forward a copy of the form I need to complete. James LAW OFFICE OF JAMES JOHNSON TELEPHONE- (816)

onebeaconpro.com t f FIRST COMMERCIAL STATE BANK From: Hartman, Sarah Sent: Tuesday, August 26, :33 PM To: Johnson, James Hello, Attached is the wire transfer form. As you know since this is not an “In Person” wire transfer, Henry will have to confirm with you by phone once the form is received. He is in a meeting right now but should be out shortly. Sarah First Commercial State Bank From: Johnson, James Sent: Tuesday, August 26, :46 PM To: Hartman, Sarah The completed form is attached. Are you available in the office? I am in a meeting, but I can be reached on my cell at and I just want to know if you are available in the office. James LAW OFFICE OF JAMES JOHNSON TELEPHONE- (816)

onebeaconpro.com t f FIRST COMMERCIAL STATE BANK From: Johnson, James Sent: Tuesday, August 26, :15 PM To: Hartman, Sarah. Sarah, Are you available in the office? I can be reached on my cell at LAW OFFICE OF JAMES JOHNSON TELEPHONE- (816) From: Baker, Henry Sent: Tuesday, August 26, :33 PM To: Johnson, James James, I am out of my meeting and I will give you a call to confirm the wire transfer. Henry First Commercial State Bank

onebeaconpro.com t f FIRST COMMERCIAL STATE BANK Fraudulent Attempt: International wire transfer request received Policy and procedures were followed correctly The fraud was prevented!

onebeaconpro.com t f CYBER LIABILITY INSURANCE Coverages: Cyber Liability is designed to protect the bank from losses/litigation coming from 3 rd parties (mainly customers, suppliers, other banks, etc.) due to an error/omission/breach of duty in which the bank is legally obligated to pay.

onebeaconpro.com t f CYBER LIABILITY INSURANCE Coverages: Parts of a Cyber Liability Policy Basic Cyber Liability (3 rd Party) Failure to protect private or confidential information from unauthorized access Libel, slander, defamation Denial of access and/or service Loss or damage to Electronic Data of a customer Claims Example: “Electronic Statement Error”

onebeaconpro.com t f CYBER LIABILITY INSURANCE Coverages: Parts of a Cyber Liability Policy Intellectual Property (3 rd Party) Protects the bank from litigation/loss involving infringement of copyright, trademark, trade name, etc. Claims Example : “Interest rate Error”

onebeaconpro.com t f CYBER LIABILITY INSURANCE Coverages: Parts of a Cyber Liability Policy Breach Event Expense (1 st Party Coverage) -Reimburses the bank for certain costs incurred due to the unauthorized access to, or acquisition of, customer information that is in the care, custody, or control of the bank. Costs of Notification to the customers. Costs to change account numbers/reissue cards Provides credit monitoring services to impacted customers Claim Example: “Debit Card Error – Bank responsible”

onebeaconpro.com t f WIRE TRANSFER ROOM Some Employee “Best Practices”. Train, re-train employees on policies and procedures. Violations of policy should become a terminable offense. Allow wire employees the ability to reasonably “upset” a customer because of the need to follow policies and procedures to the letter. Test wire room by having members of Sr. Management or members of the Board of Directors call to attempt to make transfers in excess of the policies and procedures (a new approach by fraudsters).

onebeaconpro.com t f CORPORATE ACCOUNT TAKEOVERS Corporate Account Takeovers are the fastest growing “criminal actions” being reported to bank insurers. Issues: Customer service is in direct conflict with proper internal controls Social engineering scams are much more successful in smaller companies Customer’s internal controls are significantly less sophisticated than the banks. Claims Example:

onebeaconpro.com t f CORPORATE ACCOUNT TAKEOVERS Some Customer “Best Practices”: Have the proper written agreement with the customer that includes “Hold Harmless” wording and specifically spells out who/what/where/when and how. Require customers who have higher frequency or dollar amount transactions to have a stand alone computer. No browsing No No USB capabilities Require customers who have higher frequency or dollar amount transactions to have computer crime insurance - ask for a certificate of insurance

onebeaconpro.com t f Questions?