EP - Cyber Application
  • Basic Information

    Please provide up-to-date information for the company.
  • Security contact information:

    Please provide contact information for follow-up communication about your claim.
  • Format: (000) 000-0000.
  • Insurance and claims:

    Please provide some current insurance information about this company/applicant.
  • Does the applicant currently carry a standalone cyber policy?*
  • Claim activity - In the last 5 years, has the company suffered any cyber event, unscheduled network outage over 4 hours, loss or claim that would fall within the scope of the policy for which the applicant is applying?*
  • Please complete the following details:

  • Security Controls:

    Please provide some security information about this company/applicant.
  • 1. Multi-factor authentication (MFA) - Does the applicant have multi-factor authentication on email access, remote access, and network administration?*
  • 2. How many PII, PHI, or PCI records does the appliant collect, process, store, transmit, or have access to?*
  • 3. How many biometric information records or data (i.e fingerprints, retinal scans, etc.) does the applicant collect, process, store, transmit, or have access to that can be used to uniquely identify a person?*
  • 4. Does the applicant keep offline backups for all critical data that are disconnected from its network or store backups with a cloud service provider?*
  • - How frequently does it run?*
  • 5. Does the applicant implement encryption on laptop computers, desktop computers, and other portable media devices for all sensitive information?*
  • 6. What is the estimated annual volume of payment card transactions (credit cards, debit cards, etc.)?*
  • - Is the applicant or their outsourced payment processor PCI-DSS compliant?*
  • 7. Does the applicant require a secondary means of communication to validate the authenticity of funds transfers (ACH, wire, etc.) requests by at least 2 employees before processing a request in excess of $25,000?*
  • 8. Does the applicant enforce procedures to remove content (including third party content) that may infringe or violate any intellectual property or privacy right?*
  • Should be Empty: