4 Steps to Help Manage a Data Breach

Travelers T logo
By Travelers
2 minutes
Last updated 1 March 2022
Server room illustration with node base programming data design element concept of big data storage and cloud computing technology. server room 3d illustration with node base programming data design element.

Recent data breaches have made it clear that, people, businesses and infrastructure are all vulnerable to cyber attacks. Unfortunately, many organisations are not prepared to quickly recover after an attack even though they may have taken some steps to protect their business.

It is critical that business owners know what to do to secure their systems and mitigate financial and reputational damage in the event they are breached. These four steps can help keep your business S.A.F.E. from a cyber data breach.

S: Set the strategy

Thinking about how to respond to a cyber event after it happens is a poor strategy. Business owners need to consider cyber attacks just as they would any other risk - like fire, theft or severe weather - and plan for it as part of their business continuity strategy.

A post-cyber event plan should consider a number of issues, including:

  • Notifying customers
  • Assessing the scope of the breach
  • Handling legal policies and procedures to report the event
  • Contacting your insurance broker and carrier
  • Managing communications

There also must be a clear protocol in place to identify which employees are managing each component of the plan. For example, it is important to determine who will be responsible for informing the insurance provider and what information he or she needs to provide in the event of a breach. The plan should also delineate which departments, including IT, HR, public relations, legal and operations, are on the incident response team.

Identifying how you will respond to a cyber breach in advance will help save time, and money, in the recovery.

A: Assess the breach

If an event occurs and data is exposed, it is important to quickly ascertain how widespread the breach was and if systems are secure. Data should also be categorised to determine whether personal information was compromised, such as medical records or financial information. This will enable the company to accurately and quickly notify customers about what took place.

F: Fix the problem

Companies should identify and use external resources to assist in managing a cyber event. A “breach coach” or attorney experienced in security and privacy compliance issues can assist with this. The “breach coach” can also help gather facts to develop the communication strategy surrounding the incident, such as when and where the breach occurred and actions being taken to recover. In addition, the breach coach can assist with documenting expenses, such as time spent recovering and estimates for the overall cost of remediation. These details are necessary to help re-secure a company’s data network, refine the internal and external communications plan and serve as evidence if the data breach results in a legal battle.

Your cyber insurance carrier or broker should be able to connect your business with an experienced “breach coach” to help it recover from an event.

E: Examine your systems

Once a company determines how, when and where the breach occurred, its IT staff should check to ensure that the data is secured with necessary patches or fixes. Systems should be tested and re-tested thoroughly to help identify process gaps and confirm that sensitive company and client data are secure.

Remembering the S.A.F.E. acronym and following each of the steps will help give your business an effective plan to make it through a cyber attack.

be-cyber-confident.jpg

Cyber insurance with Travelers

Travelers can help with cyber insurance solutions for your business.

Let's start the right conversation

 
For business

Find a broker

If you’re looking for covers and have a broker, ask about Travelers products.

If you need a broker, start with the right broker directory.

Find a broker

Need to call us directly? Contact us.

 
For brokers

Ready to chat?

Let’s work together to build the right cover for your client.

Contact us

More insights & expertise

Thinking Beyond Insurance to Manage Evolving Cyber Risks

Travelers prepares to bring new cyber services to the UK and Ireland market following its acquisition of Corvus.

Matt Waller, formerly of Corvus and now head of the combined cyber underwriting team at Travelers Europe, and Chris McMurray, managing director for cyber at Travelers Europe

More insights & expertise

Managing Cyber Threats in a Law Firm’s Supply Chain

If cyber threats to your law firm keep you awake at night, you’re not alone.

A businessman working late in an office.

More insights & expertise

Interview: Travelers Comprehensive Cyber Solutions | Chris McMurray and James Doswell

What are the top cyber threats facing UK businesses right now? This video explores Travelers’ cyber proposition in the UK.

Man holding smart phone with data security on display at office