When a single virus can wipe out computers worldwide in 24 hours, who picks up the pieces?
Meena Wahi, Australia's first cyber insurance broker and founder of Cyber & Data Risk Managers, reveals how the cyber insurance landscape has evolved since 2013—and where it's headed next. From the CrowdStrike outage that shocked boards worldwide to the fragmented nature of supply chain risk, Meena breaks down why cyber resilience isn't just a buzzword and how specialist insurers are winning the market share battle. She shares eye-opening insights from ASX 200 boardrooms, explains why Australian regulators might be too "benign," and predicts the convergence of cybersecurity and insurance. Whether you're a startup founder wondering if cyber insurance is worth it or a director trying to understand your organization's risk exposure, this conversation demystifies one of the fastest-evolving sectors in insurance. Host Nigel Fellowes-Freaman asks the questions everyone wants answered but few dare to ask.
Timestamps
• 00:00 - Introduction to cyber insurance and today's guest
• 02:15 - Meena's background: MBA at Monash, consulting at Pricewaterhouse
• 03:15 - The origin story: Researching privacy legislation and discovering cyber insurance
• 04:05 - Getting invited to New York, meeting with AIG and Chubb
• 04:35 - Becoming Australia's first cyber insurance broker in 2013
• 05:30 - Evolution of the cyber insurance market over the past decade
• 06:20 - London market perspective: CFC's leadership and market share battles
• 07:45 - How cyber wording has evolved globally and locally
• 08:50 - The role of specialist MGAs: Emergence, CFC, Coalition
• 09:20 - Why only specialists will survive in cyber insurance
• 10:30 - The aggregated risk problem: 1,000 claims in one day scenario
• 11:45 - 2017 statistic: 4 billion data breaches and $500M in claims
• 12:30 - Key changes in cyber policy coverage and trends
• 13:45 - Supply chain risk has increased dramatically
• 14:30 - The fragmented nature of internet risk and liability ownership
• 16:05 - IT supply chain partners and contingent business interruption coverage
• 17:20 - CPS 230/234 impact on technology vendors and value chains
• 18:45 - How prudential standards are driving demand for cyber insurance
• 19:45 - Why Australian regulators are 'benign and friendly' compared to the US
• 21:10 - Will increased regulatory oversight aid or hinder innovation?
• 22:15 - The board perspective: Generational gaps and skill matrix
• 23:15 - Key insights from ASX 200 AGMs and boardroom conversations
• 24:20 - The information flow problem: Board oversight vs operational reality
• 25:40 - What is cyber resilience? Breaking down the buzzword
• 27:00 - Cyber resilience as risk acceptance and resourcefulness
• 28:30 - Recovery timeframes: Hours vs months
• 29:10 - The CrowdStrike outage: What it revealed
• 29:45 - Outage vs cyber incident: Why definitions matter for coverage
• 30:45 - Are we prepared for the next global cyber incident?
• 31:30 - Educating startups and SMEs about cyber insurance
• 32:40 - The implementation challenge: Cybersecurity maturity levels
• 33:20 - Difference between education and training
• 34:00 - Affordability challenges for small businesses
• 34:45 - The underinsurance problem: $250K extensions on PI policies
• 35:30 - Future trends: Convergence of cybersecurity and insurance
• 36:10 - Warranty insurance from cybersecurity providers
• 36:45 - The need for better collaboration and feedback mechanisms
• 37:30 - Customization of cyber insurance policies
• 38:15 - Fun question: Unconventional insurance ideas
• 39:00 - The concept of subscription cyber insurance with bank accounts
• 39:50 - Final thoughts and wrap-up