The European Union’s (EU) General Data Protection Regulation (GDPR) comes into play on May 25, 2018, and does not solely affect companies operating in the EU. Learn more.
Recent cyber regulations including the NYDFS Cybersecurity Rule, the EU’s General Data Protection Regulation, and the recently adopted NAIC Cybersecurity Model Law, have initiated the conversation regarding cybersecurity legislation.
The National Association of Insurance Commissioners (NAIC) adopted its Insurance Data Security Model Law, plus select studies on Cyber Risk.
October 20, 2017 The recent Equifax breach has rekindled the conversation for a federal standard for data breach notification, a position The Council supports. Recently introduced in the House of
October 20, 2017 The Council’s General Counsel John Fielding also attended a joint cybersecurity forum hosted by the National Association of Insurance Commissioners (NAIC) and the Stanford Cyber Initiative on

Despite consistent growth in the cyber insurance industry over the last two years, the industry faces a key underwriting obstacle that could potentially limit growth in the market: data.
Delaware Gov. John Carney signed legislation amending its data breach notification law, making it more explicative & encompassing. This continues the trend of data security interest & data breach reporting across states.
The National Association of Insurance Commissioners’ (NAIC) Cybersecurity (Ex) Working Group has finally adopted its long-awaited Insurance Data Security Model Law, paving the way for adoption of the model by the full NAIC membership.
July 21, 2017 Inga Beale, Lloyd’s CEO, discusses managing risk after Brexit and offering cyber protection. Beale explains that as we saw in the States, Regulation coming in Australia and
Come August 28, insurance brokerage firms licensed to do business in New York will be required to submit and maintain a written cybersecurity policy, appoint a chief information security officer (CISO) and more.