Frequently asked questions and answers about the Marsh/Chubb Cyber Insurance Policy.
What is cyber insurance?
No, cyber insurance is not compulsory for law firms. Only professional indemnity insurance is compulsory. Although there can be some overlap, cyber insurance and professional indemnity insurance are different types of insurance.
Yes, LPLC’s policy does cover certain cyber risks. LPLC’s broad professional indemnity policy includes cover for damages/compensation claims in connection with the firm’s legal practice arising from cyber-related events.
Examples of cyber-related claims covered by LPLC’s policy include:
- compensation claims for breach of confidential information or breach of privacy
- damages claims for defamation committed on-line
- claims for loss of client funds through business email compromise (i.e. email hacking by fraudsters redirecting settlement money).
However, LPLC’s professional indemnity policy does not cover a firm for its own losses arising from cyber-related events or for regulatory prosecutions, fines, penalties or ransom payments.
The Marsh/Chubb cyber insurance policy is an optional insurance policy available for law firms to purchase (through Marsh, international insurance brokers) to insure themselves against the specified cyber risks covered by the policy. The policy is underwritten by Chubb Insurance Australia Ltd (ABN 23 001 642 020; AFSL 239687).
Marsh have negotiated with Chubb to arrange the policy wording and premium rates. Marsh is offering the policy and premium rates to law firms who have their professional indemnity insurance policy with LPLC, and the policy wording is tailored accordingly.
Cyber incidents are a growing threat to law practices. In recent years many law firms have experienced cyber incidents such as ransom attacks, denial of service attacks and other network breaches causing business interruption, incident-response costs and reputational damage to firms unable to respond quickly and effectively.
LPLC’s professional indemnity policy covers claims made against the firm for compensation or damages arising from cyber incidents but it does not cover a firm for its own costs to investigate, respond and remediate a cyber incident or for business interruption costs, loss of profits, regulatory fines or penalties, and ransom payments.
With cyber-crime on the rise, many law firms have been looking to buy additional insurance protection beyond LPLC’s professional indemnity policy. There are several commercial insurers offering cyber insurance, but the Marsh/Chubb cyber policy has been tailored to sit alongside LPLC’s professional indemnity policy.
LPLC is not receiving any remuneration in relation to the Marsh/Chubb cyber insurance offering for law firms.
The Marsh/Chubb cyber insurance policy is a separate (optional) policy to LPLC’s (compulsory) professional indemnity policy. It is available for purchase through Marsh insurance brokers.
The Marsh/Chubb policy covers specified cyber-related first-party losses incurred by an insured firm. The LPLC policy does not cover first-party loss cyber losses.
The Marsh/Chubb cyber policy also acts as an excess liability insurance policy sitting above LPLC’s professional indemnity policy in relation to specified third-party cyber liability risks as detailed in the Marsh/Chubb policy wording.
Where the Marsh/Chubb cyber insurance policy sits above LPLC’s professional indemnity policy in relation to a claim for third-party loss, it will respond in accordance with its own policy terms and conditions. Full details of cover under the Marsh/Chubb policy can be obtained from Marsh.
There is no alteration in cover under LPLC’s professional indemnity policy for any practitioner or firm who elects to purchase the Marsh/Chubb cyber insurance policy.
A range of different cyber insurance limits are available from Marsh/Chubb. All questions in relation to premiums, cover and excesses must be directed to Marsh. More information and contact details are available on the Marsh website.
Practitioners and firms must contact Marsh. More information, the application form and contact details are available via the Marsh website.
Chubb has arranged a 24/7 cyber incident response hotline with Clyde & Co Lawyers.
The hotline will receive all notifications of claims and circumstances under the Marsh cyber insurance policy and act as a breach coach to provide immediate incident co-ordination to insured firms.
For more information about the notification of claims under the Marsh cyber insurance policy visit the Marsh website.
Yes. Various cyber insurance policies are available for purchase in the commercial insurance market and firms must make their own assessment of the cover that is best suited to their circumstances.
No. Practitioners and firms must make their own assessment and seek their own advice about the Marsh/Chubb cyber insurance offering.
LPLC’s statutory function is to provide professional indemnity insurance to law firms in accordance with Part 4.4 of the Legal Profession Uniform Law. LPLC is not authorised to deal in other general insurance products or financial products or to give financial product advice.
Practitioners seeking further information about the Marsh cyber insurance policy should contact Marsh via their website.