Close Menu
  • News
  • Home
  • In Profile
  • Finance
  • Legal
  • Technology
  • Events
  • Features
  • Well Being
  • Marketing
  • HR & Recruitment
  • About
  • Advertise
  • Events Calendar
  • Business Wall
  • Subscribe
  • Contact
  • 0843 289 4634
X (Twitter) LinkedIn YouTube
Trending
  • Developing an AI use policy
  • 3 learnings for SMEs from Climb24, the UK’s festival of innovation
  • Protect your start-up with a simplified shareholders’ agreement
  • Employment Expert Warns of TikTok Career Trends’ Negative Impact: Are Workplaces Falling Short?
  • Simply Asset Finance secures £120m loan facility from Bank of America
  • Campers acknowledges the impact of the North West adoption programme
  • Empowering ESMBs with Cutting-Edge Solutions: An Interview with Giovanni Crispino, Head of EMEA ESMB at Salesforce
  • Louise Hunt Skelley Ply And Samanta Bullock Launch A New Era Of Disability Advocacy
X (Twitter) LinkedIn YouTube
SME Today
  • About
  • Advertise
  • Events Calendar
  • Business Wall
  • Subscribe
  • Contact
  • 0843 289 4634
  • News
  • Home
  • In Profile
  • Finance
  • Legal
  • Technology
  • Events
  • Features
  • Wellbeing
  • Marketing
  • HR & Recruitment
SME Today
  • About
  • Advertise
  • Events Calendar
  • Business Wall
  • Subscribe
  • Contact
  • 0843 289 4634
You are at:Home»Technology»How cybersecurity and cyber insurance can work for SMEs
How cybersecurity and cyber insurance can work for SMEs

How cybersecurity and cyber insurance can work for SMEs

0
Posted By sme-admin on November 15, 2022 Technology

Lawrence Perret-Hall, Director at CYFOR Secure, discusses the benefits of cyber insurance for SMEs and how collaboration with cybersecurity partners and insurers can help overcome the risk of cybercrime

Lawrence Perret-Hall, Director at CYFOR SecureSmall businesses are three times more likely to be targeted by cybercriminals than larger companies. Yet the Department for Digital, Culture, Media & Sport’s annual Cyber Security Breaches Survey this year found less than half of micro, small and medium businesses have a formal cybersecurity strategy. These statistics should raise concern among SMEs. Not only are they more at risk of suffering a cyberattack than large businesses, but they are also less prepared.

Indeed, many SMEs mistakenly assume that ‘higher value targets’ – such as digital bank Revolut, which recently suffered a breach – are more vulnerable to malicious threats. However, cyberattacks can happen to any organisation; some of the most devastating breaches in recent years have used smaller companies as entry-points to larger partner organisations in a supply chain. It is therefore crucial that smaller enterprises look for ways to bolster their security strategies.

It is no secret that these SMEs have fewer resources and face tighter budget constraints than larger corporations, particularly during the current cost of living crisis. Given that smaller to medium sized organisations represent more than 99% of all businesses in the UK, the disproportionate financial, operational and reputational impact a cyberattack can represent for them is deeply concerning. Due to external pressures on already stretched cybersecurity budgets, many SMEs feel they must choose between cybersecurity or cyber insurance; there is simply not the budget for both, especially with rising premiums costs. In fact, only 40% of small businesses and 17% of micro businesses have a cyber insurance policy in 2022.

As such, SMEs face a unique challenge within the cyber threat landscape and arguably work against heavier odds than larger corporations to protect their business. However, there are steps that can be taken by everyone working across the cybersecurity industry to protect SMEs from threats and to enable strategies that are efficient and deliver ROI (Return on Investment).

Building foundational cyber hygiene

SMEs need cost-effective and commercially flexible cybersecurity and insurance solutions. This should start with foundational security preparations that can be implemented quickly and at minimal cost to a smaller business.

Awareness training programs and phishing simulations can be greatly effective and do not pose a significant drain on budgets. Training staff in how to spot signs of phishing emails is a simple but effective way to manage cyber risk and helps to promote a culture of shared responsibility within a business’ workforce. Similarly, something as simple as having a fortified back-up strategy, with data back-ups completed frequently and across different networks, is one of the most effective ways to minimise the impact of a cyberattack.

Incident response (IR) plans are equally as important when building effective cyber defences. Having a strong IR plan proactively implemented and readily deployable in the event of a cyberattack means incidents are responded to rapidly to minimise disruption and downtime, which can be critical for smaller businesses.

All of these measures require a proactive approach from SME leaders but will significantly reduce the potentially devastating impact of a cyberattack. With this foundation, smaller companies can be confident that they have taken the vital first steps towards creating effective cyber risk management.

Collaboration between MSSPs and insurers

Managed security service providers (MSSPs) have a key role to play in supporting SMEs to build a strong foundation of cyber hygiene. And securing cost-effective insurance solutions can be a much easier process when MSSPs collaborate with SMEs, and subsequently insurers too.

Vulnerability assessments are a great example of this collaboration. Regular scanning for vulnerabilities can identify internal and external threats and enable an organisation to respond to and remedy systemic weaknesses before cybercriminals have a chance to exploit them. Vulnerability scanning can also include Dark Web monitoring to detect if compromised business credentials are for sale on the Dark Web. If an SME prioritises regular scanning with support of an MSSP, insurers can receive up-to-date data on their cyber resiliency and thus more accurately measure risk and price premiums.

Insurers also have a role to play in making cybersecurity more accessible to SMEs, but a shift is needed in the way they approach risk. Currently, premiums are priced on the estimated cost of a breach. Instead, insurers should be looking at the data they receive on an organisation’s cyber hygiene via solutions such as regular vulnerability scanning. They should be asking how mature the company’s cybersecurity is, how many attacks they have mitigated, and how regularly they can provide a reliable report on risk posture. For this bigger shift to occur, real-time security data should play a more central role in building the trust and transparency between MSSPs and cyber insurance partners.

With this collaborative approach, SMEs are much better positioned to secure lower premiums. Cost is a key reason SMEs fail to take up cyber insurance, so reducing premiums is one of the most effective ways barriers between small businesses and cybersecurity can be abolished. Ultimately, outsourcing to an MSSP is one of the best steps SMEs can take. With cyber insurance premiums rising, working with a trusted security partner can reassure an insurer that your security is in safe hands, thus reducing an insurance plan’s potential cost.

Bespoke solutions for growing threats

Once cyber hygiene foundations are built, regular vulnerability scanning is implemented and insurance premiums are reduced, SMEs need to identify a way to make sure their business stays secure, always. Many are turning to cyber retainers that guarantee ROI by rolling over time and money not spent on incident response to improving a company’s overall cybersecurity posture. The small, regular cost of a retainer can be planned and budgeted for, while also demonstrating the continued proactiveness and prioritisation of a business’ approach to cybersecurity.

Becoming a target for a hacker is no longer a question of ‘if’ but ‘when’. SMEs therefore need to adopt a proactive mindset and prepare as best they can for what is now considered the inevitable. Cyber insurance is a crucial part of an effective security strategy, but we need to see greater collaboration with MSSPs to make this achievable for SMEs. And for these smaller businesses, co-operating with insurance and security partners is the most effective way to bolster cyber defences while keeping costs to a minimum.

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

The Steps to eCommerce Engagement are Now Easier than Ever

UK fails to break out as tech skills superpower on global skills leaderboard

Option to upgrade Euro 5 LCVs to Euro 6 emission standards

Comments are closed.

Follow SME Today on Linkedin and share all the topics you find interesting

The Newsletter

Join our mailing list to receive the latest news and updates from SMEToday
Read our Latest Newsletter:

Sign Up
Events Calendar
    • Marketing
    June 27, 2024

    Empowering ESMBs with Cutting-Edge Solutions: An Interview with Giovanni Crispino, Head of EMEA ESMB at Salesforce

    June 24, 2024

    Why Human Storytelling is Vital for Every Startup Marketing Strategy

    • Finance
    June 28, 2024

    Simply Asset Finance secures £120m loan facility from Bank of America

    June 19, 2024

    Do You Need To Insure Your Side Hustle?

    • Health & Safety
    April 15, 2024

    Careless Driving Habits Common Practice Among Motorists

    March 20, 2024

    Cleaning stairs, climbing ladders and changing light bulbs: which of these activities are allowed under health and safety rules?

    The Great British Expos 2024
    The Great British Expo's
    • Events
    June 18, 2024

    Get the Most Out of Your Ideas with IP. BWR IP Seminar

    June 3, 2024

    Nicola Peake Launches Peakefest to Inspire and Rejuvenate Business Founders

    • Community
    June 24, 2024

    Festivals Unite to Launch National Green Events Code

    May 10, 2024

    Breast Cancer Consultant Dr Hugo De La Pena Has Raised More Than £10,000 For Cancer Research

    • Food & Drink
    May 24, 2024

    Devon distillery raises a glass to future growth with £100k funding deal

    May 13, 2024

    Sussex mum toasts success as small business grows

    • Books
    March 5, 2024

    No Silver Bullet: Bursting the bubble of the organisational quick fix

    January 12, 2024

    Top lessons all entrepreneurs can learn from the boy who survived the wild

    About

    SME Today is published by the same team who deliver The Great British Expos’. We have been organising various corporate events for the last 10 years, with a strong track record of producing well managed and attended business events across the UK.

    Join Our Mailing List

    Receive the latest news and updates from SMEToday.
    Read our Latest Newsletter:


    Sign Up
    X (Twitter) YouTube LinkedIn
    Most Recent Posts
    July 2, 2024

    Developing an AI use policy

    July 2, 2024

    3 learnings for SMEs from Climb24, the UK’s festival of innovation

    July 1, 2024

    Protect your start-up with a simplified shareholders’ agreement

    June 28, 2024

    Employment Expert Warns of TikTok Career Trends’ Negative Impact: Are Workplaces Falling Short?

    June 28, 2024

    Simply Asset Finance secures £120m loan facility from Bank of America

    Categories
    • Books
    • Community
    • Education and Training
    • Environment
    • Events
    • Features
    • Finance
    • Food and Drink
    • Health & Safety
    • HR & Recruitment
    • In Profile
    • Legal
    • Marketing
    • News
    • Property & Development
    • Sponsored Content
    • Technology
    • Transport & Tourism
    • Well Being
    Copyright © 2024 SME Today.
    • ABOUT SME TODAY: THE GO TO RESOURCE FOR UK BUSINESSES
    • Privacy
    • Contact

    Type above and press Enter to search. Press Esc to cancel.