Expert Advice
Jeff Reuter
Insurance Expert
tel: 905.732.2418                 515 Niagara Street, Welland
info@reuter.on.ca                www.reuter.on.ca


What is Cyber Insurance and does my business
really need it?




ANSWER


Cyber Insurance generally covers the costs, up to a specified limit, of dealing with the expenses associated with an electronic privacy breach. In other words, if your client information is somehow obtained by a third party, there would be coverage for associated expenses incurred. It can be stated that any business with customer data is at risk.
The Digital Privacy Act (DPA) was passed into law on June 18, 2015. The DPA makes changes to the Personal Information and Protection of Electronic Documents Act. This amendment will make it mandatory that any business affected by a data security breach would have to report that to the federal Office of the Privacy Commissioner (OPC) and any individual at risk from the breach. The notification will be obligatory when there is a "real risk of significant harm." "Significant harm is defined really broadly," states Patrick Hawkins, a partner with Borden Ladner Gervais LLP. "It includes the potential for damage to reputation... financial loss, identity theft and negative effects on credit records." 
DPA also requires organizations to keep records of data breaches of any kind. This could be something as simple as a misprinted address label that goes out in the mail displaying the party’s age or a printed customer order with personal information left on a counter. It could involve a lost USB key with customer data or a laptop computer or tablet. A breach is a piece of personal information tied to an identifiable individual. A record would have to be kept for each of these instances. Organizations that deliberately cover up privacy breaches and destroy records will face fines of up to $100,000 for every person or client that they intentionally fail to notify.
Cyber insurance helps cover the cost of developing a plan and notifying clients of a breach. It can also provide liability coverage should you be sued after such an event. Some plans will even provide coverage for getting back up and running after a malicious data security breach event that corrupts data. BL