Coordination of cybersecurity risk management in the UK insurance sector

被引:1
|
作者
Klumpes, Paul [1 ]
机构
[1] Aalborg Univ, Business Sch, Fiberstraede 2-41, DK-9200 Aalborg, Denmark
关键词
Coordination; Cyberattack; Regulators; U; K; INFORMATION SECURITY; CYBER RISK;
D O I
10.1057/s41288-023-00287-9
中图分类号
F8 [财政、金融];
学科分类号
0202 ;
摘要
The increasing threat of cyberattacks has resulted in increased efforts by both the U.K. government and regulatory authorities to coordinate efforts to influence cybersecurity risk management practices in the U.K. insurance sector, focusing on cyber risk underwriters. This paper provides an evaluation of these arrangements. It first provides a descriptive overview of the key U.K. regulatory authorities and the evolution of their efforts over the past decade, as well as the scope for broader collaborations with industry and member-based associations and international organisations. It then evaluates the effectiveness of these efforts by providing a multi-method study of the incidence, nature and evolution of cost of data breaches, investment in computer systems and software intangible assets at risk of cyberattack, and a content analysis of annual reports of both U.K. regulators and a sample of U.K. insurers. The findings suggest that while both the total costs of data breaches and the size of investment in computer systems and software intangibles at risk of cyberattack have gradually increased over time, the degree of engagement with cyber as a reporting issue by both cyber insurers and financial regulators has not. It is concluded that while these efforts have been apparently successful in avoiding a large-scale, systemic cyberattack on the U.K. insurance industry, there are significant gaps and overlaps in the system of cyber regulatory oversight.
引用
收藏
页码:332 / 371
页数:40
相关论文
共 50 条
  • [1] Coordination of cybersecurity risk management in the U.K. insurance sector
    Paul Klumpes
    The Geneva Papers on Risk and Insurance - Issues and Practice, 2023, 48 : 332 - 371
  • [2] RISK MANAGEMENT IN THE AGRICULTURAL SECTOR WITH SPECIAL ATTENTION TO INSURANCE
    Lorant, A.
    Farkas, M. F.
    POLISH JOURNAL OF MANAGEMENT STUDIES, 2015, 11 (02): : 71 - 82
  • [3] Cybersecurity insurance and risk-sharing
    Bodin, Lawrence D.
    Gordon, Lawrence A.
    Loeb, Martin P.
    Wang, Aluna
    JOURNAL OF ACCOUNTING AND PUBLIC POLICY, 2018, 37 (06) : 527 - 544
  • [4] Cyber Risk Insurance - An Effective Risk Management Tool for SMES in the UK?
    Soyer, B.
    Nicholas, A.
    Leloudas, G.
    EDINBURGH LAW REVIEW, 2023, 27 (02) : 157 - 184
  • [5] Cybersecurity Risk Management
    Katsumata, Peter
    Hemenway, Judy
    Gavins, Wes
    MILITARY COMMUNICATIONS CONFERENCE, 2010 (MILCOM 2010), 2010, : 890 - 895
  • [6] The UK financial sector and risk management in PFI projects: A survey
    Asenova, D
    Beck, M
    PUBLIC MONEY & MANAGEMENT, 2003, 23 (03) : 195 - 202
  • [7] Systemic risk in the insurance sector
    Czerwiliska, Teresa
    PROBLEMY ZARZADZANIA-MANAGEMENT ISSUES, 2014, 12 (04): : 41 - 63
  • [8] Recovery and Resolution - New Mechanisms for Systemic Risk Management in the Insurance Sector
    Czerwinska, Teresa
    PROBLEMY ZARZADZANIA-MANAGEMENT ISSUES, 2015, 13 (03): : 220 - 236
  • [9] Accounting and Cybersecurity Risk Management
    Eaton, Tim V.
    Grenier, Jonathan H.
    Layman, David
    CURRENT ISSUES IN AUDITING, 2019, 13 (02): : C1 - C9
  • [10] Insurance and sustainability in flood-risk management: the UK in a transitional state
    Ball, Tom
    Werritty, Alan
    Geddes, Alistair
    AREA, 2013, 45 (03) : 266 - 272