Last Updated on: October 2, 2025

Cyber Insurance Risk Management with Zane Goldthorp, Shoptalk Episode #195

Cyber Insurance Risk Management with Zane Goldthorp
Facebook
Twitter
LinkedIn

In the third installment of this Shoptalk series, host David Carothers and guest Zane Goldthorp of ProWriters shift the focus to proactive risk management for cyber insurance. They make the case that even in a soft market, a responsible business owner’s focus should be on security, not just on meeting minimum carrier requirements. The conversation covers the essential security controls every business should have, including MFA, MDR, and employee training. They also dive into a real-world claim scenario that highlights a critical coverage gray area—the “Bring Your Own Device” (BYOD) issue—and discuss the potential conflicts between carrier-provided security services and an agent’s referral relationships with Managed Service Providers (MSPs).

 

Key Highlights:

Essential Risk Management Controls

Zane Goldthorp outlines the foundational security measures agents should be discussing with their clients. While carriers may have relaxed some requirements, essentials like MFA (Multi-Factor Authentication), regular backups, and email security are non-negotiable. He also notes the industry’s shift from EDR (Endpoint Detection and Response) to the more proactive MDR (Managed Detection and Response).

 

The Human Element: Employee Training

The conversation stresses that one of the most effective and overlooked risk management tools is consistent employee training. With phishing and business email compromise being the source of most breaches, training employees to spot increasingly sophisticated attacks can be the make-or-break difference in preventing a major claim.

 

A Critical Coverage Lesson: The BYOD Problem

David shares a story from a real claim that exposed a major potential coverage gap: whether a breach is covered if it originates on a personal device not owned by the company. This “Bring Your Own Device” (BYOD) issue highlights the critical importance of understanding policy nuances and working with an expert wholesaler who knows the forms inside and out.

 

Navigating Carrier Services and MSP Relationships

Many cyber carriers now offer security services as part of their policies. While valuable, David cautions agents to be mindful of their referral relationships with MSPs (Managed Service Providers). An MSP may view these carrier offerings as direct competition, potentially damaging a crucial referral source. The key is clear communication to ensure all parties are aligned.

 

Connect with:

Visit Websites:

The Power Producers Podcast where we are refining and redefining the sales game.

Kyle Houck

Cyber

Why Standalone Cyber Insurance Beats BOP Extensions Every Time: Protecting Clients from Modern Threats

The insurance industry is full of shortcuts. Some producers look for ways to streamline the quoting process, others avoid hard conversations with clients, and many rely on endorsements or extensions because they are “easier” than diving into the details. Nowhere is this more dangerous than in the world of cyber insurance.
Too many agents assume that a cyber endorsement on a BOP or commercial package policy is “good enough.” It isn’t. In fact, treating a BOP cyber extension as a replacement for a standalone cyber policy leaves clients dangerously exposed, puts producers at risk of losing accounts, and opens the door to costly errors and omissions (E&O) claims.
Cyber threats evolve faster than any other area of risk, and endorsements simply can’t keep up. If producers want to protect their clients and themselves, it’s time to understand why standalone cyber insurance is non-negotiable.

Read More »

Cyber Insurance Risk Management: Why MFA, MDR, and BYOD Policies Can’t Wait for a Hard Market

The cyber insurance market has softened in recent years. Requirements that were once rigid — like mandatory multi-factor authentication (MFA) or endpoint detection and response (EDR) tools — have been relaxed by many carriers. But here’s the danger: just because carriers aren’t demanding these safeguards today doesn’t mean businesses can afford to ignore them.

Read More »

AI, Authenticity, and the Future of Elite Production: What the Insurance Industry Must Learn from Craig Bender’s InsureU2 Revolution

The insurance industry is entering one of the most transformative seasons in its history. For decades, our world has been shaped by carriers, underwriting cycles, prospecting methods, and the grit of producers willing to outwork their competition. But today, a new force is reshaping the landscape—and most producers, agency leaders, and industry professionals aren’t ready for it.

Read More »

Test Message

Killing Commercial Login