Search for insurance help

A Cyber Insurance Case Study: Denial of Service Attack in the Retail Sector

Cyber risk remains a very hot topic for all businesses, including the retail sector.It is a widespread industry issue for the retail industry as they are prime targets for hackers due to the amount of data they hold on their customers and volume of credit card transactions processed.Hackers are continually finding new ways into the IT infrastructure of retailers to steal data and threaten their financial and operational stability. Distributed Denial of Service (DDoS) attacks are becoming more powerful as the use of easily hacked internet of things devices increases.
 
Here is a cautionary tale from an online retail company that was the target of a DDoS attack.
 
Background: The data centre which hosted the online retailer company's website became the target of a distributed denial-of-service attack. The attack, which utilized hacked internet of things devices, flooded the data centre's network with so much traffic that their network failed. This made the online retail company's website inaccessible for a period of six hours before backup systems were able to restore 100% functionality.
The online retail company had a cyber insurance policy and was able to recover the following costs:
  • Recovery Costs:
    –Increased cost of working required to get website functioning properly—$18,000
    –Costs to subcontract with external service provider. ——————————$23,000
  • Business Interruption:
    –Lost sales and revenue from website downtime. ————————————$142,500
  • Incident Response Expenses:
    –IT forensics firm ————————————————————————————$22,000
    –Legal consultation fees —————————————————————————$15,000
    –Incident Response Manager fees ————————————————————$6,000
                                                                          Total Cost:                    $216,000
DDoS attacks are frequently used as a smokescreen for other attacks, like stealing data or implanting virus or malware. These attacks are stressful and expensive to navigate through.

Three Tips to reduce your cyber risk
  1. Have a business continuity plan that ensures critical business applications, systems, and activities do not rely on one critical IT provider.
  2. Have quality standards in place that third party suppliers must meet to reduce supply chain attacks. According to a survey conducted in 2018 by the Ponemon Institute, 56 % of organizations have had a breach that was caused by one of their vendors. Hackers will find the weakest link
  3. Invest in a Cyber Liability policy. A cyber policy pays for the costs to fix the problem and the loss of profits from the system down time. It gives you access to an incident response team to immediately respond to the attack and a team of consultants and lawyers to help deal with any data breach issues and potential damage to your reputation.

Speak to Cindy Lau a CMX cyber risk specialist to find out how you can protect your business with cyber insurance.

Management Liability insurance is designed to provide protection to both the business and its directors or officers for claims of wrongful acts in the management of the business.

A business insurance pack can provide cover for your business premises and contents, against loss, damage, theft or financial loss from an insured interruption to the business.

Purchase up to six products under one Business Insurance Package. 


Speak to Cindy Lau a CMX cyber risk specialist to find out how you can protect your business with cyber insurance.
General Advice Warning: This advice is general and does not take into account your objectives, financial situation or needs. You should consider whether the advice is appropriate for you and your personal circumstances. Before you make any decision about whether to acquire a certain product, you should obtain and read the relevant product disclosure statement.

All information above has been provided by the author.


Cindy Lau, CMX Insurance Solutions, ABN 41617757892, AFSL 307107

Related articles

Comments (0)

Related insurance brokers

Review rating
25 reviews

Featured Featured

Abbie Wilson

National Insurance Brokers

  • Typically replies within
    a few minutes
  • Review rating
    26 reviews

    Featured Featured

    Tony Venning

    Crucial Insurance and Risk Advisors

  • Typically replies within
    a few hours
  • Review rating
    8 reviews

    Featured Featured

    Madeline Ollett

    Evergreen Insurance Solutions Pty Ltd

  • Typically replies within
    a day