CYBER RISK MANAGEMENT IN THE BOATING INDUSTRY

Similar documents
Data Breach and Senior Living Communities May 29, 2015

Understanding the Business Risk

H 6191 SUBSTITUTE A AS AMENDED ======= LC02663/SUB A/2 ======= STATE OF RHODE ISLAND IN GENERAL ASSEMBLY JANUARY SESSION, A.D.

Cybersecurity Workshop

Mitigating and managing cyber risk: ten issues to consider

DATA SECURITY: A CRUCIAL TOPIC FOR CORPORATE COUNSEL AND MANAGEMENT

Cyber/Information Security Insurance. Pros / Cons and Facts to Consider

January An Overview of U.S. Security Breach Statutes

Insurance Considerations Related to Data Security and Breach in Outsourcing Agreements

IDENTITY THEFT IN SOUTH CAROLINA: 2014 UPDATE. Marti Phillips, Esq. Director, Identity Theft Unit South Carolina Department of Consumer Affairs

SINGAPORE HEALTHCARE ENTERPRISE RISK MANAGEMENT CONGRESS Data Breach : The Emerging Threat to Healthcare Industry

Managing Cyber Threats Risk Management & Insurance Solutions. Presented by: Douglas R. Jones, CPCU, ARM Senior Vice President & Principal

GALLAGHER CYBER LIABILITY PRACTICE. Tailored Solutions for Cyber Liability and Professional Liability

Cyber Risks Management. Nikos Georgopoulos, MBA, cyrm Cyber Risks Advisor

Cyber and Privacy Risk What Are the Trends? Is Insurance the Answer?

Cyber Insurance Presentation

CYBERSECURITY: THREATS, SOLUTIONS AND PROTECTION. Robert N. Young, Director Carruthers & Roth, P.A. rny@crlaw.com Phone: (336)

Ten Questions Your Board Should be asking about Cyber Security. Eric M. Wright, Shareholder

RISKY BUSINESS SEMINAR CYBER LIABILITY DISCUSSION

Roxio Secure Solutions for Law Firms

Be Afraid, Be Very Afraid!!! Hacking Out the Pros and Cons of Captive Cyber Liability Insurance

Distributor Liability Contract Risk Management THOMAS DOUGLASS APRIL 15, 2015

Privacy Liability & Data Breach Management Nikos Georgopoulos Cyber Risks Advisor cyrm October 2014

Law Firm Cyber Security & Compliance Risks

Network Security & Privacy Landscape

S 0134 SUBSTITUTE B ======== LC000486/SUB B/2 ======== S T A T E O F R H O D E I S L A N D

Managing Cyber & Privacy Risks

Hackers, Slackers & Packers: Preventing Data Loss & Dealing with the Inevitable. Data Breaches Are All Too Common

COMPLIANCE ALERT 10-12

Protecting Your Assets: How To Safeguard Your Fund Against Cyber Security Attacks

The Matrix Reloaded: Cybersecurity and Data Protection for Employers. Jodi D. Taylor

CYBER SECURITY SPECIALREPORT

Cyber Risk Insurance for Agents. Frequently Asked Questions

Cyber Risk, Legal And Regulatory Issues, And Insurance Mitigation ISACA Pittsburgh Information Security Awareness Day

Cyber Risk: Global Warning? by Cinzia Altomare, Gen Re

Prepare for the Worst: Best Practices for Responding to Cybersecurity Breaches Trivalent Solutions Expo June 19, 2014

Cyber/ Network Security. FINEX Global

New Privacy Laws Impacting the Health Care Work Place

Insurance for Data Breaches in the Hospitality Industry

Data Breach Cost. Risks, costs and mitigation strategies for data breaches

Cyber Liability. AlaHA Annual Meeting 2013

Data Security Breaches: Learn more about two new regulations and how to help reduce your risks

What Data? I m A Trucking Company!

Michie's Legal Resources. This part shall be known and may be cited as the Tennessee Identity Theft Deterrence Act of [Acts 1999, ch. 201, 2.

Joe A. Ramirez Catherine Crane

IDENTIFYING AND RESPONDING TO DATA BREACHES

Cyber-Security Risk- IP Theft and Data Breaches Protecting your Crown Jewels Internally and with Your Key Third Parties

Is Cyber Insurance the Next Big Think? 2nd Digital Payments Summit - May Nikos Georgopoulos, MBA, cyrm Cyber Risks Advisor

Cyber Risk State of the Art

Don t Be a Victim to Data Breach Risks Protecting Your Organization From Data Breach and Privacy Risks

Cyber Insurance: How to Investigate the Right Coverage for Your Company

cyber invasions cyber risk insurance AFP Exchange

Comparison of US State and Federal Security Breach Notification Laws. Current through August 26, 2015

PLEASE READ. The official text of New Jersey Statutes can be found through the home page of the New Jersey Legislature

Internet Gaming: The New Face of Cyber Liability. Presented by John M. Link, CPCU Cottingham & Butler

CYBER LIABILITY AND PRIVACY CRISIS MANAGEMENT EXPENSE APPLICATION

Reducing Risk. Raising Expectations. CyberRisk and Professional Liability

Nerds and Geeks Re-United: Towards a Practical Approach to Health Privacy Breaches. Gerard M. Stegmaier gstegmaier@wsgr.

Lessons Learned from Recent HIPAA and Big Data Breaches. Briar Andresen Katie Ilten Ann Ladd

Managing Your Cyber & Data Risk 2010 NTA Convention Montreal, Quebec

Implementing Electronic Medical Records (EMR): Mitigate Security Risks and Create Peace of Mind

The Dish on Data and Disks HIPAAPrivacy and Security Breach Developments. Robin B. Campbell Ethan P. Schulman Jennifer S. Romano

Cyber Threats: Exposures and Breach Costs

Data security: A growing liability threat

Privacy / Network Security Liability Insurance Discussion. January 30, Kevin Violette RT ProExec

CONNECTICUT IDENTITY THEFT RANKING BY STATE: Rank 19, 68.8 Complaints Per 100,000 Population, 2409 Complaints (2007) Updated November 28, 2008

How To Buy Cyber Insurance

Cyber Liability. Michael Cavanaugh, RPLU Vice President, Director of Production Apogee Insurance Group Ext. 7029

CYBER RISK SECURITY, NETWORK & PRIVACY

THE NEW REALITY OF RISK CYBER RISK: TRENDS AND SOLUTIONS

Cyber Liability Insurance

THE HIGH PRICE OF MEDICAL RECORD PRIVACY BREACHES

Data breach! cyber and privacy risks. Brian Wright Michael Guidry Lloyd Guidry LLC

Security Breach Notification Laws. Data Privacy Survey 2014

Data breach, cyber and privacy risks. Brian Wright Lloyd Wright Consultants Ltd

Data Breaches and Trade Secrets: What to Do When Your Client Gets Hacked

CYBER & PRIVACY LIABILITY INSURANCE GUIDE

APIP - Cyber Liability Insurance Coverages, Limits, and FAQ

Beyond Data Breach: Cyber Trends and Exposures

MANAGING Cybersecurity Risk AND DISCLOSURE OBLIGATIONS

CHAPTER 226. C.56:11-44 Short title. 1. This act shall be known and may be cited as the "Identity Theft Prevention Act."

Cyber Risks in Italian market

4/30/2015 CYBER LIABILITY AND AVIATION AGENDA LEARNING OBJECTIVES. Presented by Hal Hunt May 3, 2015

Understanding. your Cyber Liability coverage

Embracing Cyber Risk: Insurance Solutions

Rogers Insurance Client Presentation

Internet Stolen: The Fastest Growing White Collar Crime

CYBER INSURANCE. Cyber Insurance and Gaps in Traditional Insurance. Cyber and E&O Team Willis FINEX North America

Business Associates and Breach Reporting Under HITECH and the Omnibus Final HIPAA Rule

Cybersecurity. Shamoil T. Shipchandler Partner, Bracewell & Giuliani LLP

DATA BREACH CHARTS (Current as of December 31, 2015)

Senate Committee on Commerce, Science, and Transportation March 19, 2015, Hearing Examining the Evolving Cyber Insurance Marketplace

Procedure for Managing a Privacy Breach

Cyber Security Protecting critical health care information

Data Security and Breach in Outsourcing Agreements

Demystifying Cyber Insurance. Jamie Monck-Mason & Andrew Hill. Introduction. What is cyber? Nomenclature

4/21/2015. Jim Reavis CEO, Cloud Security Alliance. Cloud Security Alliance, Agenda

HIPAA In The Workplace. What Every Employee Should Know and Remember

The Institute of Professional Practice, Inc. Business Associate Agreement

The need for companies to have a predetermined plan in place in the

Transcription:

CYBER RISK MANAGEMENT IN THE BOATING INDUSTRY Carmelo Torraca, Esq. New Jersey Marine Trades Association March 2015

E-commerce has permanently transformed the way business-to-business and business-to-customer interactions occur.

The Benefits of ecommerce Online Services Research, Analytics and Management

The Benefits of ecommerce 84% New boat purchasers conducted online research National Marine Manufactures Association Recreation Boating Statistical Abstract

The Benefits of ecommerce 25% New boats purchased online National Marine Manufactures Association Recreation Boating Statistical Abstract

The Benefits of ecommerce $1,887,500,000 Estimated value of new boats purchased online in the U.S. National Marine Manufactures Association Recreation Boating Statistical Abstract

The Benefits of Online Services $121,500,000,000 Estimated economic value of recreational boating in the U.S. National Marine Manufactures Association Recreation Boating Statistical Abstract

The costs of protecting ecommerce benefits has been largely, and dangerously, ignored.

The Risks of Online Services Data breach in the marine trade and marina industries

The Risk of Online Services First Party Risks: Loss of a Portable Device Business Interruption Shut down from external / power outage Insider Threats

The Risk of Online Services Third Party Risks Man-in-the-Middle Attack Stolen Data Customer Personal Identifying Information (PII) Notice Credit reporting Fix the problem Regulations/fine Employee Liability (PII) Extortion Goodwill / Reputation Lawsuits Failure to Deliver Goods & Services Failure to Provide Obligatory Access Lack of Security Claims Federal and State Regulations creating Negligence Per Se Class Action Lawsuits

The Risks of Online Services $5,900,000 Average cost of data breach Ponemon Institute and IBM Cost of Data Breach Study: United States

The Risks of Online Services 27% Portion of all U.S. data breach cases occur in the retail, transportation and consumer services sectors Ponemon Institute and IBM Cost of Data Breach Study: United States

The Risks of Online Services $202 Average per record cost of data breach in retail, transportation and consumer services Ponemon Institute and IBM Cost of Data Breach Study: United States

Developing a Strategy Creating a Cyber Risk Management Policy 1. Identify Risk 2. Avoid Risk 3. Mitigate Risk 4. Crisis Management 5. Risk Monitoring

Cyber Risk Management 30% Reduction in cost of data breach for implementing cyber risk management plan and policies Ponemon Institute and IBM Cost of Data Breach Study: United States

Identifying Risk: Customer Personal Identifying Information Protected by statute in New Jersey N.J. Stat. Ann. 56:8-163 Any business that conducts business in New Jersey, or any public entity that compiles or maintains computerized records that include personal information, shall disclose any breach of security of those computerized records following discovery or notification of the breach to any customer who is a resident of New Jersey whose personal information was, or is reasonably believed to have been, accessed by an unauthorized person. The disclosure to a customer shall be made in the most expedient time possible and without unreasonable delay, consistent with the legitimate needs of law enforcement, as provided in subsection c. of this section, or any measures necessary to determine the scope of the breach and restore the reasonable integrity of the data system.

Identifying Risk: Customer Personal Identifying Information Liability for Failure to Comply: Penalties and Fines Law Enforcement Investigation State Prosecution Civil Litigation

Identifying Risk: Customer Personal Identifying Information $2,242,000 Average lost customer business for data breach Ponemon Institute and IBM Cost of Data Breach Study: United States

Identifying Risk: Business Operations Protection of Employee PII Communications and Scheduling Control of Online Presence Control of Real World Operations

Avoiding Risk: Employee Polices Terms of Employment Competence Training Computer Software Computer Monitoring

Avoiding Risk: Customer Policies Terms of Use Disclaimer Termination Policy

Mitigating Risk: Insurance Policies Data Privacy Insurance Technology Errors & Omissions Insurance General Commercial Liability w/ Cyber Rider Comprehensive Cyber Insurance

Crisis Management Pre-Planned Policies and Procedures On-Call Legal & Technical Assistance

Other Issues Downstream Impact: Contracts State Agencies Valuation Goodwill & Reputation