1. Estimate incident frequency
Enter the average number of claim-relevant cyber incidents expected per year.
2. Enter gross loss severity
Use the total average financial impact before insurance.
3. Set the eligible share
Enter the percentage of gross loss expected to qualify as covered loss.
4. Add deductible and limit
Use per-incident values from the policy scenario being evaluated.
5. Review retained loss
Compare gross expected loss, expected insurance recovery, and the amount retained by the organization.
6. Test policy alternatives
Change deductible, limit, and eligible share to compare structures while keeping the incident scenario constant.