<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cyberinsurance is useless in Governance, Risk, Compliance</title>
    <link>https://community.isc2.org/t5/Governance-Risk-Compliance/Cyberinsurance-is-useless/m-p/51288#M679</link>
    <description>&lt;P&gt;Hi All&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;An interesting perspective on cyber-insurance as a last resort from a risk management perspective:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.cisolens.com/reports#h.ayxt7q5ilazk" target="_blank"&gt;https://www.cisolens.com/reports#h.ayxt7q5ilazk&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_Cautim&lt;/P&gt;</description>
    <pubDate>Tue, 31 May 2022 02:12:22 GMT</pubDate>
    <dc:creator>Caute_cautim</dc:creator>
    <dc:date>2022-05-31T02:12:22Z</dc:date>
    <item>
      <title>Cyberinsurance is useless</title>
      <link>https://community.isc2.org/t5/Governance-Risk-Compliance/Cyberinsurance-is-useless/m-p/50917#M667</link>
      <description>&lt;P&gt;Hi All&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I came across this piece about cyber-insurance being useless.&amp;nbsp; What are your thoughts, and what are your thoughts about the Australian Government stating that one should never pay ransomware demands, and thus you should not be insuring organisations who immediately pay up?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Plus weight up that both New Zealand and Australia Privacy Acts, state you must (mandatory) report security incidents involving private data.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But do not, because they decide pay up, before the Media go digging into the Dark Web to find the goodies, when they find out.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.afr.com/technology/cyber-insurance-s-dirty-little-secret-it-s-useless-20220504-p5aig0" target="_blank"&gt;https://www.afr.com/technology/cyber-insurance-s-dirty-little-secret-it-s-useless-20220504-p5aig0&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_Cautim&lt;/P&gt;</description>
      <pubDate>Mon, 09 Oct 2023 10:10:44 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Governance-Risk-Compliance/Cyberinsurance-is-useless/m-p/50917#M667</guid>
      <dc:creator>Caute_cautim</dc:creator>
      <dc:date>2023-10-09T10:10:44Z</dc:date>
    </item>
    <item>
      <title>Re: Cyberinsurance is useless</title>
      <link>https://community.isc2.org/t5/Governance-Risk-Compliance/Cyberinsurance-is-useless/m-p/50984#M673</link>
      <description>&lt;BLOCKQUOTE&gt;@&lt;A href="https://www.myestub.net/" target="_self"&gt;My Estub Login&lt;/A&gt;&amp;nbsp;wrote:&lt;BR /&gt;&lt;P&gt;Hi All&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I came across this piece about cyber-insurance being useless.&amp;nbsp; What are your thoughts, and what are your thoughts about the Australian Government stating that one should never pay ransomware demands, and thus you should not be insuring organisations who immediately pay up?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Plus weight up that both New Zealand and Australia Privacy Acts, state you must (mandatory) report security incidents involving private data.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But do not, because they decide pay up, before the Media go digging into the Dark Web to find the goodies, when they find out.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.afr.com/technology/cyber-insurance-s-dirty-little-secret-it-s-useless-20220504-p5aig0" target="_blank" rel="noopener"&gt;https://www.afr.com/technology/cyber-insurance-s-dirty-little-secret-it-s-useless-20220504-p5aig0&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_Cautim&lt;/P&gt;&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;See this may be help&lt;/P&gt;&lt;P&gt;&lt;A href="https://community.isc2.org/t5/Industry-News/Cyberinsurance-may-not-be-that-good-for-organisations/td-p/31594" target="_blank" rel="noopener"&gt;https://community.isc2.org/t5/Industry-News/Cyberinsurance-may-not-be-that-good-for-organisations/td-p/31594&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 14 May 2022 03:56:43 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Governance-Risk-Compliance/Cyberinsurance-is-useless/m-p/50984#M673</guid>
      <dc:creator>Clay498</dc:creator>
      <dc:date>2022-05-14T03:56:43Z</dc:date>
    </item>
    <item>
      <title>Re: Cyberinsurance is useless</title>
      <link>https://community.isc2.org/t5/Governance-Risk-Compliance/Cyberinsurance-is-useless/m-p/51288#M679</link>
      <description>&lt;P&gt;Hi All&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;An interesting perspective on cyber-insurance as a last resort from a risk management perspective:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.cisolens.com/reports#h.ayxt7q5ilazk" target="_blank"&gt;https://www.cisolens.com/reports#h.ayxt7q5ilazk&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_Cautim&lt;/P&gt;</description>
      <pubDate>Tue, 31 May 2022 02:12:22 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Governance-Risk-Compliance/Cyberinsurance-is-useless/m-p/51288#M679</guid>
      <dc:creator>Caute_cautim</dc:creator>
      <dc:date>2022-05-31T02:12:22Z</dc:date>
    </item>
  </channel>
</rss>

