Skip to main content
  • Claims Center
  • Contact Us
  • Español
  • Brokers
  • Agents
Hiscox Insurance
Menu Toggle
  • Home
  • Small Business Insurance Toggle Menu Toggle Menu
    Protect your business, plan for the unexpected, and help your business grow.
    • Top Coverages

      • General Liability Insurance

        The basic protection for claims against your business.

      • Errors and Omissions

        Protection against claims of negligence

      • Professional Liability

        Protection for specific risks in your field.

      • Business Owner's Policy

        General Liability plus coverage for property.

      • Cyber Security Insurance

        Protection from cyber-related security risks.

      • Workers Compensation

        Protection from work-related illness or injury.

      • Short-Term Liability Insurance

        Purchase coverage for a specific period of time.

      • Medical Malpractice

        Protection for claims against your medical practice.

      • More Coverages

        Umbrella, Auto, Directors and Officers, and more

    • Top Industries

      • Architects & Engineering
      • Beauty
      • Contractors
      • Consulting/Freelancing
      • IT/Technology
      • Landscapers
      • Marketing
      • View All Industries
    • Coverage In 49 States

      • View All States

    Small Business Insurance Main Page

  • Why Hiscox Toggle Menu Toggle Menu
    With a single focus on Small Business Insurance, we provide fast, customized coverage just for you.
      • About Us
      • Customer Stories
      • Ratings & Reviews
      • Our Brand
      • Newsroom

    About Hiscox Main Page

  • Resources Toggle Menu Toggle Menu
    Insights and information to empower you and your business.
    • Blog
      • Start Your Business
      • Grow Your Business
      • Protect Your Business
      • Celebrate Courage
    • Podcast
      • Side Hustle to Small Business
    • Tips and Tools
      • Business Insurance 101
      • Research & Insights
      • Partner Services
      • Insurance Glossary
      • Profit Calculator
      • Business Templates

    Resources Main Page

  • Policy Management Toggle Menu Toggle Menu
    We make it easy for policy-holders to make changes, access documents, and report claims.
    • Manage Your Policy Online

      • Hiscox Policy Management

        • Change Business Address
        • Get an ACORD Certificate
        • Get a Certificate of Insurance
        • Issue an ACORD for an Additional Insured
        • Request Policy Documents
        • And more

    • Claims

      • Claims Center
      • Report a Claim
      • Claims FAQs
      • Claims Customer Reviews
      • Cyber Vendor Services
      • Refer a friend

    Policy Management Main Page

  • Claims Center
  • Contact Us
  • Español
  • Brokers
  • Agents
  • About
  • Get a Quote Get a Quote
  • About
  • Get a Quote Get a Quote
  • Blog Home
    Start Your Business
    Grow Your Business
    Protect Your Business
    Celebrate Courage
    Small Business Insights
    Sign up to get the latest small business news delivered right to your inbox.
    Protect Your Business
    Cyber security IQ. Laptop propped up against library books.

    What’s your cyber security IQ?

    Cyber

     | 

    Insurance 101

    By:
    Karen Doyle

    Share Image

    Embed Image

    Copy

    Share Article:

    How much do you know about protecting your business from cyber criminals? See if you can answer these questions: 

    1. What is the best way to protect your business against a cyber attack?
      A. Use strong passwords and multi-factor authentication
      B. Keep all software updated and patched
      C. Train yourself and your staff to recognize a phishing email
      D. All of the above 
       
    2. What is the most common way for a ransomware attack to be launched?
      A. Through a VPN or software vulnerability
      B. Credential theft (stolen login information)
      C. Via a phishing email 
       
    3. If you get a ransomware demand, should you pay it?
      A. Yes
      B. No
      C. It depends 
       
    4. True or false: Cyber criminals target big companies. Smaller companies like mine aren’t worth bothering with.
      A. True
      B. False 

    Let’s see how you did. 

    What is the best way to protect your business against a cyber attack?

    The answer to this question is D, all of the above. Let’s talk about each of these.  

    A strong password has a mix of numbers, letters and symbols, and doesn’t use ‘real’ words. (For goodness sake, don’t use ‘password!’) Use a different password for each website or account and change them frequently. Multi-factor authentication makes you enter a code from your phone to confirm that it’s you trying to log on. Annoying, yes, but not as annoying as having your data compromised.  

    Be sure to install software updates and patches as soon as they are available. If a software program you use is no longer supported by the developer, find a new program as soon as possible. Exploiting software vulnerabilities is a popular way for hackers to gain access to your system, and keeping your software up to date is the best way to thwart them.  

    Train yourself and your staff to recognize phishing emails. Look for spelling and grammatical mistakes, and double-check that the sender’s address is correct – it can be off by just one letter. And look carefully – AI is making it easier than ever for hackers to create emails that look legitimate. If you get an email asking for immediate payment, or to change the account you typically send payment to, verify by phone before sending any money. 

    What is the most common way for a ransomware attack to be launched?

    The correct answer is C, via a phishing email, although all of these methods are used. According to the Hiscox Cyber Readiness Report™ 2023, phishing was used as a point of entry 53% of the time, unpatched servers or VPNs 38% and credential theft 29%. (Some attacks were made via multiple points of entry.) 

    Clicking on a link in a malicious email is the most common way for hackers to gain access to your system, lock up your files and demand a ransom to unlock the data. If you click on a link by mistake and nothing happens, don’t assume you’re out of the woods. Some bad actors will release malicious code on your system that will stay dormant for a while, and then activate when you least expect it.  

    It's also common for a hacker to gain access to your system through an unpatched server or VPN, or by stealing credentials. 

    Related: A cyber security expert answers your ransomware questions

    If you get a ransomware demand, should you pay it?

    The answer to this question is C, it depends. More specifically, the answer is that you typically should not pay, but there may be situations where you should. The key is to know the difference, and you will probably need help to figure that out.  

    Let’s look at some statistics around ransom demands, from the Hiscox Cyber Readiness Report 2023. The average U.S. small business that received a ransomware demand paid over $16,000 in ransom over a 12-month period. Yet just half of those who paid recovered all their data – the other half had to rebuild their systems. And more than a quarter (27%) who paid up were attacked again, and the same percentage were asked for more money after the original ransom was paid.  

    If you receive a ransom demand, your best course of action is to consult with a cyber security expert, who can help you determine who is likely to be behind the attack and what you should do. If you have Hiscox cyber security insurance for your business, the services of breach response experts are included with your policy.

    True or false: Cyber criminals target big companies. Smaller companies like mine aren’t worth bothering with.

    The answer to this question is B, false. Data breaches at big companies make the headlines, but small companies get attacked too.  

    Cyber criminals are opportunistic, and they will attack any company at which they think they will be successful. Since small companies often have fewer safeguards in place to thwart an attack, making them easier targets.

    Related: Is your business prepared for a cyber attack?

    A 3-step plan for cyber security

    There are three important steps you can take to prevent a cyber criminal from bringing down your business.  

    1. Prevent an attack from happening in the first place. Train your employees to detect phishing emails. Ensure that whoever has responsibility for upgrading and patching software is making this a top priority. And emphasize that everyone in the company is responsible for data security, which means protecting their passwords and changing them frequently.  
       
    2. Detect an attack early. As soon as you think a malicious link on an email has been clicked, or if there is some other indication that there may be a breach, isolate the computer involved. Take it off the network and run a virus scan. 
       
    3. Mitigate the damage. Make sure you have your data backed up either on a remote drive or in the cloud, so you can replace it without having to pay a ransom. Invest in cyber liability insurance, to protect your business from the costs of having to comply with notification regulations, restoring your data, and even paying a ransom if that is necessary.  

    How much does cyber security insurance cost?

    It depends on the type, size and location of your business, but it’s probably less than you think. To find out how much you would pay for this valuable protection, get a fast, free quote. We’ll help you decide what you need, and we’ll tell you exactly what it will cost. Your company could be covered today.  
     


    Bettering Your Business

    Protect the business you’ve worked so hard to build. Get a fast, free quote and your business could be covered today.

    Get a Quote
    Get a Quote
    Subscribe to our newsletter

    Subscribe to the Hiscox Entrepreneurial Digest on LinkedIn

    Entrepreneurial Digest Graphic and Hiscox Logo
    QR Code Linking to https://www.linkedin.com/newsletters/hiscox-entrepreneurial-digest-7138188446967160832

    Get valuable business resources, timely tips and inspiring success stories in your LinkedIn feed every month.

    Subscribe
    Subscribe

    Related Articles

    6 Min Read
    Man sitting on couch wearing tan sweater with his arm in a red sling.

    What to do when a customer gets injured at your business

    Management

     | 

    Insurance 101

    Learn the steps to take when a customer gets injured at your business and how general liability insurance can protect you from potential claims and lawsuits. 

    Get the details

    5 Min Read
    Businesswoman standing to the right side, arms crossed. On the left black background with FACTS and myths running through

    5 Common misconceptions about General Liability insurance debunked

    General Liability

     | 

    Insurance 101

    Don't let these common misconceptions about general liability insurance hold you back. Get the facts and debunk the myths with this informative guide.

    Just the facts

    6 Min Read
    cookie in business owners hand as it crumbles in two pieces in front of light blue background

    Crumbling under bad press? Lessons from the Girl Scouts on handling tough headlines

    Management

     | 

    Entrepreneur

    Discover how the Girl Scouts are addressing health concerns about their cookies and what small business owners can learn from their approach to negative media.

    Spin the narrative


    We’re here to help.
    We provide tailored insurance for the specific risks you face, so you can take the right risks to grow your business.
    Get a Quote
    Get a Quote

    Footer menu 1

    • What We Cover
      • Business Insurance
      • General Liability Insurance
      • Professional Liability Insurance
      • Errors and Omissions
      • Cyber Security Insurance
      • Workers Compensation
      • Other Coverage
    • Who We Cover
      • Small Business Owners
      • LLC
      • Sole Proprietors
      • Entrepreneurs
      • Side Hustle
      • Contractors
      • Home Businesses
    • For Our Customers
      • Refer a Friend Program
      • Claims Center
    • For Business Owners
      • Save with our Partners
      • Blog
    • About Hiscox
      • About Us
      • Careers
      • Contact Us
      • Hiscox Corporate
      • Investors
      • Foundation
      • Newsroom
      • Diversity, Equity and Inclusion
      • Affiliate Partner Program

    Footer menu 2

    • Accessibility
    • Site Map
    • Privacy Policy
    • Terms of Use
    • Legal Notices
    • Español

    Your privacy choices Privacy opt-out icon

    Feefo Reviews: Hiscox rated 4.7/5 with 1,312 reviews between January 1, 2024 - January 1, 2025

    © 2025 Hiscox Inc. All rights reserved. Underwritten by Hiscox Insurance Company Inc., 30 N. LaSalle St., Suite 1760, Chicago, IL 60602. As of December 31, 2024, HICI had admitted assets of $1,985,481,103 and policyholders surplus of $558,441,204. Total liabilities were $1,427,039,899 (inclusive of $846,124,559 of loss reserves) and paid-up capital stock was $4,242,000.

    icon-facebook
    icon-youtube
    icon-twitter
    icon-linkedin