8. Building Effective Security into Acquisitions

Working with Insurance Industry for Standards

There is a rapid increase in cyber insurance across the commercial landscape. This is getting the C-level attention because the risk and costs are being codified into actual numbers, not just fear of something bad happening. The Federal Government should leverage off this trend and require all Government contractors to have a level of insurance, which will likewise drive a level of accountability and measurement. This is no different than current requirements for business and liability insurance requirements levied on Government contractors. Additionally, it then allows for focused regulatory actions because the regulations can be against the insurance industry, which is used to a regulatory environment.

Idea No. 21