Guidance Concerning Cyber Liability Insurance Policies Under Terrorism Risk Insurance Program - Insurance News | InsuranceNewsNet

InsuranceNewsNet — Your Industry. One Source.™

Sign in
  • Subscribe
  • About
  • Advertise
  • Contact
Home Now reading Newswires
Topics
    • Advisor News
    • Annuity Index
    • Annuity News
    • Companies
    • Earnings
    • Fiduciary
    • From the Field: Expert Insights
    • Health/Employee Benefits
    • Insurance & Financial Fraud
    • INN Magazine
    • Insiders Only
    • Life Insurance News
    • Newswires
    • Property and Casualty
    • Regulation News
    • Sponsored Articles
    • Washington Wire
    • Videos
    • ———
    • About
    • Meet our Editorial Staff
    • Advertise
    • Contact
    • Newsletters
  • Exclusives
  • NewsWires
  • Magazine
  • Newsletters
Sign in or register to be an INNsider.
  • AdvisorNews
  • Annuity News
  • Companies
  • Earnings
  • Fiduciary
  • Health/Employee Benefits
  • Insurance & Financial Fraud
  • INN Exclusives
  • INN Magazine
  • Insurtech
  • Life Insurance News
  • Newswires
  • Property and Casualty
  • Regulation News
  • Sponsored Articles
  • Video
  • Washington Wire
  • Life Insurance
  • Annuities
  • Advisor
  • Health/Benefits
  • Property & Casualty
  • Insurtech
  • About
  • Advertise
  • Contact
  • Editorial Staff

Get Social

  • Facebook
  • X
  • LinkedIn
Newswires
Newswires RSS Get our newsletter
Order Prints
December 28, 2016 Newswires
Share
Share
Post
Email

Guidance Concerning Cyber Liability Insurance Policies Under Terrorism Risk Insurance Program

Targeted News Service

Targeted News Service

WASHINGTON, Dec. 28 -- The Department of the Treasury published the following notice in the Federal Register:

A Notice by the Treasury Department on 12/27/2016

Printed version: PDF

Publication Date: 12/27/2016

Agency: Department of the Treasury

Dates: December 27, 2016.

Document Type: Notice

Document Citation: 81 FR 95312

Page: 95312-95313 (2 pages)

Document Number: 2016-31244

AGENCY:

Department of the Treasury, Departmental Offices.

ACTION:

Notice of guidance.

SUMMARY:

This notice provides guidance (Guidance) concerning the Terrorism Risk Insurance Program (Program) under the Terrorism Risk Insurance Act of 2002, as amended ("TRIA" or "the Act"). In this notice, the Department of the Treasury (Treasury) provides guidance regarding how insurance recently classified as "Cyber Liability" for purposes of reporting premiums and losses to state insurance regulators will be treated under TRIA and Treasury's regulations for the Program (Program regulations).

DATES:

December 27, 2016.

FOR FURTHER INFORMATION CONTACT:

Richard Ifft, Senior Insurance Regulatory Policy Analyst, Federal Insurance Office, 202-622-2922 (not a toll free number), Kevin Meehan, Senior Insurance Regulatory Policy Analyst, Federal Insurance Office, 202-622-7009 (not a toll free number), or Lindsey Baldwin, Senior Policy Analyst, Federal Insurance Office, 202-622-3220 (not a toll free number).

SUPPLEMENTARY INFORMATION:

This Guidance addresses the application of certain provisions of TRIA[1] and the Program regulations[2] with respect to certain insurance policies covering cyber-related risks. This Guidance may be relied upon by the members of the public unless superseded by subsequent amendments to the Program regulations, or by subsequent guidance.

I. Background

TRIA was enacted following the attacks on September 11, 2001, to address disruptions in the market for terrorism risk insurance, to help ensure the continued availability and affordability of commercial property and casualty insurance for terrorism risk, and to allow for the private markets to stabilize and build insurance capacity to absorb any future losses for terrorism events. TRIA requires insurers to "make available" terrorism risk insurance for commercial property and casualty losses resulting from certified acts of terrorism (insured losses), and provides for shared public and private compensation for such insured losses. The Secretary of the Treasury (Secretary) administers the Program; pursuant to the Dodd-Frank Wall Street Reform and Consumer Protection Act, the Federal Insurance Office assists the Secretary in administering the Program.[3] The Program has been reauthorized three times, most recently on January 12, 2015, when President Obama signed into law the Terrorism Risk Insurance Program Reauthorization Act of 2015, extending the Program until December 31, 2020.[4]

TRIA requires participating insurers to "make available" terrorism risk insurance in connection with "property and casualty insurance" as defined in the Act.[5] By regulation, Treasury has further defined "property and casualty insurance" by reference to the classification of certain lines of commercial insurance set forth in the National Association of Insurance Commissioner's Exhibit of Premiums and Losses (commonly known as Statutory Page 14).[6] Pursuant to the Program regulations, insurance reported on Statutory Page 14 under "Line 17--Other Liability" is generally subject to TRIP. However, insurance reported on that page as "Professional Errors and Omissions Liability Insurance," a sub-line within "Other Liability" for state regulatory purposes, is expressly excluded from TRIP by the Act.[7] Under the Program regulations, "professional liability insurance" is defined consistently with "Professional Errors and Omissions Liability Insurance" as that term is defined for state law purposes.[8]

Cyber risk insurance is a broad term that includes insurance products covering risks arising "from the use of electronic data and its transmission, including technology tools such as the internet and telecommunications networks," as well as "physical damage that can be caused by cyber attacks, fraud committed by misuse of data, any liability arising from data storage, and the availability, integrity, and confidentiality of electronic information."[9] The cyber risk insurance market has evolved significantly since it first emerged approximately two decades ago and is expected to continue experiencing rapid growth.[10] A 2016 report on cyber insurance noted that 19 different categories of coverage are available to a greater or lesser extent in the cyber insurance market, including first and third party coverage related to data breaches, cyber extortion, business interruption, data and software loss, physical damage, and death and bodily injury.[11]

Cyber risk insurance remains an evolving insurance market, both in terms of product development and regulatory oversight. Certain insurance policies that may contain a "cyber risk" component or which do not exclude losses arising from a cyber event continue to be written in existing TRIP-eligible lines of insurance and are thus subject to the provisions of the Program.[12] Prior to 2016, some insurers that wrote stand-alone cyber risk insurance may have offered and reported it for state regulatory purposes as Professional Errors and Omissions Liability Insurance, which, as noted above, is expressly excluded under TRIA from the definition of "property and casualty insurance."

As of January 1, 2016, however, state regulators introduced a new sub-line of insurance, identified as "Cyber Liability," under the broader "Other Liability" line. "Cyber Liability" is defined for state regulatory purposes as follows:

Stand-alone comprehensive coverage for liability arising out of claims related to unauthorized access to or use of personally identifiable or sensitive information due to events including but not limited to viruses, malicious attacks or system errors or omissions. This coverage could also include expense coverage for business interruption, breach management and/or mitigation services. When cyber liability is provided as an endorsement or as part of a multi-peril policy, as opposed to a stand-alone policy, use the appropriate Sub-TOI of the product to which the coverage will be attached.[13]

This Guidance confirms that stand-alone cyber insurance policies reported under the "Cyber Liability" line are included in the definition of "property and casualty insurance" under TRIA and are thus subject to the disclosure requirements and other requirements in TRIA and the Program regulations as specified in the following Section.

II. Guidance

Treasury provides this Guidance to clarify that the requirements of TRIP apply to stand-alone cyber insurance policies reported under a TRIP-eligible line of insurance.[14] This Guidance is designed to address the application of TRIA and the Program regulations to such cyber risk insurance policies due to the aforementioned developments in this area, which may have caused some marketplace uncertainty.

Guidance One (Cyber Liability Included in Property and Casualty Insurance)

Effective January 1, 2016, policies reported for state regulatory purposes under the Cyber Liability sub-line on Line 17--Other Liability of the NAIC's Exhibit of Premiums and Losses (commonly known as Statutory Page 14) are considered "property and casualty insurance" under TRIA.

Guidance Two (Application to In-Force Policies)

(a) An in-force policy reported under the Cyber Liability sub-line on Line 17--Other Liability of the NAIC's Exhibit of Premiums and Losses (commonly known as Statutory Page 14), and which provides coverage for insured losses under TRIA, is not eligible for reimbursement of the Federal share of compensation unless:

(i) The insurer offered coverage for insured losses subject to the required disclosures under 31 CFR 50 Subpart B; or

(ii) The insurer demonstrates that the appropriate disclosures were provided to the policyholder before the date of any certification of an act of terrorism.[15]

(b) An insurer that did not make an offer for coverage for insured losses under an in-force policy reported under the Cyber Liability sub-line on Line 17--Other Liability of the NAIC's Exhibit of Premiums and Losses (commonly known as Statutory Page 14) is not required to do so at this time. Guidance Three (Application to New Offers and Renewals of Coverage)

Effective April 1, 2017, and consistent with TRIA and the Program regulations, an insurer must provide disclosures and offers that comply with TRIA and the Program regulations on any new or renewal policies reported under the Cyber Liability sub-line on Line 17--Other Liability of the NAIC's Exhibit of Premiums and Losses (commonly known as Statutory Page 14).

Dated: December 20, 2016.

Michael T. McRaith,

Director, Federal Insurance Office.

Footnotes omitted. It can be viewed at: https://www.federalregister.gov/documents/2016/12/27/2016-31244/guidance-concerning-stand-alone-cyber-liability-insurance-policies-under-the-terrorism-risk

[FR Doc. 2016-31244 Filed 12-23-16; 8:45 am]

BILLING CODE 4810-25-P

Myron Struck, editor, Targeted News Service, Springfield, Va., 703/304-1897; editor@targetednews.com; http://www.targetednews.com

18QamarN-1286966

Older

Official’s opening year: Mayor Kitchell reflects on first year in office, looks forward to 2017

Newer

A month after historic fire, Gatlinburg rebuilding

Advisor News

  • A rising retirement challenge: The license to spend
  • Financial stress leaves less room for retirement saving
  • Giving while you’re living: 3 frequently asked questions about gifting
  • Helping clients prepare for one of their biggest retirement expenses
  • Important year-end financial conversations every advisor must have
More Advisor News

Annuity News

  • A rising retirement challenge: The license to spend
  • What lower interest rates mean to annuity payouts
  • AM Best downgrades A-Cap insurers amid financial and regulatory troubles
  • Lawsuit claims Delaware Life hid billions in insurer-linked investments
  • AM Best to Deliver Presentation at 2026 ACLI Annual Conference
More Annuity News

Health/Employee Benefits News

  • What will California's next governor do about healthcare? Here are Becerra and Hilton's plans
  • Studies from Cardiovascular Research Foundation in the Area of Managed Care Reported (Temporal Trends in Mitral Valve Repair Procedures and Outcomes Among Older U.S. Adults): Managed Care
  • Researchers from Dartmouth College Geisel School of Medicine Describe Findings in Managed Care (Integrating Peer Support Into Medicare-Funded Care: A Qualitative Study of System-Level Insights From Early Implementation): Managed Care
  • Thousands of immigrants in Maryland to lose Medicaid coverage under H.R. 1
  • REPRESENTATIVE OCASIO-CORTEZ AND SENATOR SCHUMER INTRODUCE BICAMERAL LEGISLATION TO RESTORE HEALTH COVERAGE FOR 450,000 NEW YORKERS
Sponsor
More Health/Employee Benefits News

Life Insurance News

  • U.S. News & World Report Announces Winners of the 2027 Life Insurance Companies Awards
  • New York Life Investment Management Launches NYLIM MacKay Muni High Income ETF
  • When life changes, coverage should too
  • Trust emerges as key battleground for distribution, LIMRA panel agrees
  • AM Best Affirms Credit Ratings of OneAmerica Group Members
Sponsor
More Life Insurance News

NEWS INSIDE

  • Companies
  • Earnings
  • Economic News
  • INN Magazine
  • Insurtech News
  • Newswires Feed
  • Regulation News
  • Washington Wire
  • Videos

FEATURED OFFERS

Press Releases

  • Lauren Sinnott Named to Ragan’s Top Women in Marketing Awards, Class of 2026 
  • Classic Car Insurer OpenRoad Insurance Expands to 40 U.S. States in Two Years
  • How Aspire General Turned an Early Technology Bet Into Claims Automation at Scale with Kyber
  • Adjusto launches AI-Native contents claims services powered by its technology platform
  • URL Insurance Group Celebrates 40 Years of Service, Growth, and Industry Leadership
More Press Releases > Add Your Press Release >

How to Write For InsuranceNewsNet

Find out how you can submit content for publishing on our website.
View Guidelines

Topics

  • Advisor News
  • Annuity Index
  • Annuity News
  • Companies
  • Earnings
  • Fiduciary
  • From the Field: Expert Insights
  • Health/Employee Benefits
  • Insurance & Financial Fraud
  • INN Magazine
  • Insiders Only
  • Life Insurance News
  • Newswires
  • Property and Casualty
  • Regulation News
  • Sponsored Articles
  • Washington Wire
  • Videos
  • ———
  • About
  • Meet our Editorial Staff
  • Advertise
  • Contact
  • Newsletters

Top Sections

  • AdvisorNews
  • Annuity News
  • Health/Employee Benefits News
  • InsuranceNewsNet Magazine
  • Life Insurance News
  • Property and Casualty News
  • Washington Wire

Our Company

  • About
  • Advertise
  • Contact
  • Meet our Editorial Staff
  • Magazine Subscription
  • Write for INN

Sign up for our FREE e-Newsletter!

Get breaking news, exclusive stories, and money- making insights straight into your inbox.

select Newsletter Options
Facebook Linkedin Twitter
© 2026 InsuranceNewsNet.com, Inc. All rights reserved.
  • Terms & Conditions
  • Privacy Policy
  • InsuranceNewsNet Magazine

Sign in with your Insider Pro Account

Not registered? Become an Insider Pro.