American Oil and Gas Reporter - August 2023 - 66
SpecialReport: Cybersecurity
FIGURE 2
U.S. Cyber Insurance Rate Changes by Quarter
25
30
35
40
20
15
10
5
-5
34.3
27.6
25.5
11.1
18.0
6.5
1.4
0.0 0.4
-0.7
0.1 0.0 0.3 1.2
4.4
-0.2
2.9
7.7
8.4
15.0
27.5
26.8
20.3
Source: The Council of Insurance Agents and Brokers
digital assets, and repairing or replacing
computers and other hardware. These direct
costs come alongside business interruptions
that can reduce revenue
significantly.
Then there is the matter of cybersecurity
compliance. Federal authorities such
as the Transportation Security Administration
are expanding cybersecurity regulations
and therefore firms' potential
exposure to fines and penalties.
A cyber insurance policy can cover all
these costs. Several vendors provide financial
loss modeling services to help
upstream companies evaluate their
unique risks and financial exposure to cyberattacks
and weigh different insurance
options. In general, the cost of cybersecurity
insurance is small compared with
the potential losses from a cyber-incident.
Cyber insurance often comes with side
benefits. For example, some insurers have
partnered with cybersecurity software
providers to offer policyholders discounts
on their software and services. If a cyberincident
occurs, the insurer likely has prenegotiated
rates with incident response
firms and other vendors that can help during
the claim and incident response
process. Tapping these resources rather
than spending time finding the right vendor
can enable a fast response, which is
critical to limiting the incident's impacts.
A Strong Defense
As the insurance market stabilizes, upstream
firms can focus on implementing
policy and technology changes to soften
66 THE AMERICAN OIL & GAS REPORTER
premiums and, hopefully, reduce the
threat or consequences of a cyberattack.
One of the best steps a company can
take is to upgrade its technologies. This
advice applies not only to corporate information
technology but also to the operational
technology that helps
companies manage drilling platforms,
well sites, facilities and pipelines, such as
SCADA systems, network operations
centers and industrial control systems.
Underwriters want access to both the OT
and IT environments to be governed by
strong cybersecurity controls.
Speaking of strong controls, implementing
multifactor authentication
(MFA) is a good start. MFA can help prevent
bad actors from accessing networks,
cloud applications, corporate email accounts,
special privileges or backups by
requiring employees, contractors and
vendors to verify their identity in at least
two ways, often by pairing a password
with something physical. For example,
online bank accounts may require users
to enter a password, then text a number
to their smartphone or ask them to provide
a number from an authentication app
it contains.
There are other ways to authenticate,
such as fingerprints or flash drives. The
more required, the less likely an attacker
will be able to replicate them all.
Although MFA is powerful, it is not a
silver bullet. To prevent bad actors from
entering internal networks, companies
should also:
· Use Web and email security tools
to filter out emails that contain malicious
links and attachments, block malicious
websites or downloads and automatically
evaluate suspicious files in an isolated
sandbox before they reach the end user;
· Implement a process to scan for
and identify software vulnerabilities so
they can be patched quickly, with priority
going to patching critical security vulnerabilities;
and
· Protect the network with a next-generation
antivirus firewall that is smart
enough to identify previously unseen threats.
To bypass some of these defenses, bad
actors often attempt to trick users into
sharing passwords and other sensitive information,
a practice called phishing.
Training can make employees aware of
the most common phishing tactics and
encourage them to respond appropriately
(meaning they avoid opening a suspicious
message, report it and delete it).
The training usually takes the form of
Web-based lectures with quizzes to ensure
attentiveness, understanding and retention.
Blunting
Impacts
Preventing access to networks is a
vital part of an effective cybersecurity
strategy, but it is only the beginning.
Even with the best protections, bad actors
eventually may find a way in.
These actors may be external threats or
disgruntled employees. With that in
mind, many companies divide their networks
into segments to limit how much
information is revealed when one segment
is compromised.
In case bad actors gain users' log-in
credentials, companies should practice
privileged access management (PAM).
PAM has several components, but the key
idea is to limit users' capabilities within
a network to the ones they need to perform
day-to-day tasks, with other capabilities
unlocked only when they are
needed through separate credentials. This
approach restricts the changes attackers
can make and the information they can
retrieve. Modern PAM solutions monitor,
detect and prevent unauthorized access to
accounts-including service providers'
accounts-and critical resources.
Companies with intellectual property
or sensitive information about employees
or customers should consider implementing
data loss prevention tools.
Quarterly Rate Change (%)
3Q17
4Q17
1Q18
2Q18
3Q18
4Q18
2Q19
3Q19
4Q19
1Q20
2Q20
4Q20
1Q21
2Q21
3Q21
4Q21
1Q22
2Q22
3Q22
4Q22
1Q23
1Q19
3Q20
American Oil and Gas Reporter - August 2023
Table of Contents for the Digital Edition of American Oil and Gas Reporter - August 2023
Contents
American Oil and Gas Reporter - August 2023 - Intro
American Oil and Gas Reporter - August 2023 - Cover1
American Oil and Gas Reporter - August 2023 - Cover2
American Oil and Gas Reporter - August 2023 - 3
American Oil and Gas Reporter - August 2023 - 4
American Oil and Gas Reporter - August 2023 - Contents
American Oil and Gas Reporter - August 2023 - 6
American Oil and Gas Reporter - August 2023 - 7
American Oil and Gas Reporter - August 2023 - 8
American Oil and Gas Reporter - August 2023 - 9
American Oil and Gas Reporter - August 2023 - 10
American Oil and Gas Reporter - August 2023 - 11
American Oil and Gas Reporter - August 2023 - 12
American Oil and Gas Reporter - August 2023 - 13
American Oil and Gas Reporter - August 2023 - 14
American Oil and Gas Reporter - August 2023 - 15
American Oil and Gas Reporter - August 2023 - 16
American Oil and Gas Reporter - August 2023 - 17
American Oil and Gas Reporter - August 2023 - 18
American Oil and Gas Reporter - August 2023 - 19
American Oil and Gas Reporter - August 2023 - 20
American Oil and Gas Reporter - August 2023 - 21
American Oil and Gas Reporter - August 2023 - 22
American Oil and Gas Reporter - August 2023 - 23
American Oil and Gas Reporter - August 2023 - 24
American Oil and Gas Reporter - August 2023 - 25
American Oil and Gas Reporter - August 2023 - 26
American Oil and Gas Reporter - August 2023 - 27
American Oil and Gas Reporter - August 2023 - 28
American Oil and Gas Reporter - August 2023 - 29
American Oil and Gas Reporter - August 2023 - 30
American Oil and Gas Reporter - August 2023 - 31
American Oil and Gas Reporter - August 2023 - 32
American Oil and Gas Reporter - August 2023 - 33
American Oil and Gas Reporter - August 2023 - 34
American Oil and Gas Reporter - August 2023 - 35
American Oil and Gas Reporter - August 2023 - 36
American Oil and Gas Reporter - August 2023 - 37
American Oil and Gas Reporter - August 2023 - 38
American Oil and Gas Reporter - August 2023 - 39
American Oil and Gas Reporter - August 2023 - 40
American Oil and Gas Reporter - August 2023 - 41
American Oil and Gas Reporter - August 2023 - 42
American Oil and Gas Reporter - August 2023 - 43
American Oil and Gas Reporter - August 2023 - 44
American Oil and Gas Reporter - August 2023 - 45
American Oil and Gas Reporter - August 2023 - 46
American Oil and Gas Reporter - August 2023 - 47
American Oil and Gas Reporter - August 2023 - 48
American Oil and Gas Reporter - August 2023 - 49
American Oil and Gas Reporter - August 2023 - 50
American Oil and Gas Reporter - August 2023 - 51
American Oil and Gas Reporter - August 2023 - 52
American Oil and Gas Reporter - August 2023 - 53
American Oil and Gas Reporter - August 2023 - 54
American Oil and Gas Reporter - August 2023 - 55
American Oil and Gas Reporter - August 2023 - 56
American Oil and Gas Reporter - August 2023 - 57
American Oil and Gas Reporter - August 2023 - 58
American Oil and Gas Reporter - August 2023 - 59
American Oil and Gas Reporter - August 2023 - 60
American Oil and Gas Reporter - August 2023 - 61
American Oil and Gas Reporter - August 2023 - 62
American Oil and Gas Reporter - August 2023 - 63
American Oil and Gas Reporter - August 2023 - 64
American Oil and Gas Reporter - August 2023 - 65
American Oil and Gas Reporter - August 2023 - 66
American Oil and Gas Reporter - August 2023 - 67
American Oil and Gas Reporter - August 2023 - 68
American Oil and Gas Reporter - August 2023 - 69
American Oil and Gas Reporter - August 2023 - 70
American Oil and Gas Reporter - August 2023 - 71
American Oil and Gas Reporter - August 2023 - 72
American Oil and Gas Reporter - August 2023 - 73
American Oil and Gas Reporter - August 2023 - 74
American Oil and Gas Reporter - August 2023 - 75
American Oil and Gas Reporter - August 2023 - 76
American Oil and Gas Reporter - August 2023 - 77
American Oil and Gas Reporter - August 2023 - 78
American Oil and Gas Reporter - August 2023 - 79
American Oil and Gas Reporter - August 2023 - 80
American Oil and Gas Reporter - August 2023 - 81
American Oil and Gas Reporter - August 2023 - 82
American Oil and Gas Reporter - August 2023 - 83
American Oil and Gas Reporter - August 2023 - 84
American Oil and Gas Reporter - August 2023 - 85
American Oil and Gas Reporter - August 2023 - 86
American Oil and Gas Reporter - August 2023 - 87
American Oil and Gas Reporter - August 2023 - 88
American Oil and Gas Reporter - August 2023 - 89
American Oil and Gas Reporter - August 2023 - 90
American Oil and Gas Reporter - August 2023 - 91
American Oil and Gas Reporter - August 2023 - 92
American Oil and Gas Reporter - August 2023 - 93
American Oil and Gas Reporter - August 2023 - 94
American Oil and Gas Reporter - August 2023 - 95
American Oil and Gas Reporter - August 2023 - 96
American Oil and Gas Reporter - August 2023 - 97
American Oil and Gas Reporter - August 2023 - 98
American Oil and Gas Reporter - August 2023 - 99
American Oil and Gas Reporter - August 2023 - 100
American Oil and Gas Reporter - August 2023 - 101
American Oil and Gas Reporter - August 2023 - 102
American Oil and Gas Reporter - August 2023 - 103
American Oil and Gas Reporter - August 2023 - 104
American Oil and Gas Reporter - August 2023 - 105
American Oil and Gas Reporter - August 2023 - 106
American Oil and Gas Reporter - August 2023 - 107
American Oil and Gas Reporter - August 2023 - 108
American Oil and Gas Reporter - August 2023 - 109
American Oil and Gas Reporter - August 2023 - 110
American Oil and Gas Reporter - August 2023 - 111
American Oil and Gas Reporter - August 2023 - 112
American Oil and Gas Reporter - August 2023 - 113
American Oil and Gas Reporter - August 2023 - 114
American Oil and Gas Reporter - August 2023 - Cover3
American Oil and Gas Reporter - August 2023 - Cover4
https://www.nxtbook.com/nxtbooks/aogr/202501
https://www.nxtbook.com/nxtbooks/aogr/202412
https://www.nxtbook.com/nxtbooks/aogr/202411
https://www.nxtbook.com/nxtbooks/aogr/202410
https://www.nxtbook.com/nxtbooks/aogr/202409
https://www.nxtbook.com/nxtbooks/aogr/202408
https://www.nxtbook.com/nxtbooks/aogr/202407
https://www.nxtbook.com/nxtbooks/aogr/202406
https://www.nxtbook.com/nxtbooks/aogr/202405
https://www.nxtbook.com/nxtbooks/aogr/202404
https://www.nxtbook.com/nxtbooks/aogr/202403
https://www.nxtbook.com/nxtbooks/aogr/202402
https://www.nxtbook.com/nxtbooks/aogr/202401
https://www.nxtbook.com/nxtbooks/aogr/202312
https://www.nxtbook.com/nxtbooks/aogr/202311
https://www.nxtbook.com/nxtbooks/aogr/pbios_202310
https://www.nxtbook.com/nxtbooks/aogr/202309
https://www.nxtbook.com/nxtbooks/aogr/202308
https://www.nxtbook.com/nxtbooks/aogr/202307
https://www.nxtbook.com/nxtbooks/aogr/202306
https://www.nxtbook.com/nxtbooks/aogr/202305
https://www.nxtbook.com/nxtbooks/aogr/202304
https://www.nxtbook.com/nxtbooks/aogr/202303
https://www.nxtbook.com/nxtbooks/aogr/202302
https://www.nxtbook.com/nxtbooks/aogr/202301
https://www.nxtbook.com/nxtbooks/aogr/202212
https://www.nxtbook.com/nxtbooks/aogr/202211
https://www.nxtbook.com/nxtbooks/aogr/202210
https://www.nxtbook.com/nxtbooks/aogr/202209
https://www.nxtbook.com/nxtbooks/aogr/202208
https://www.nxtbook.com/nxtbooks/aogr/202207
https://www.nxtbook.com/nxtbooks/aogr/202206
https://www.nxtbook.com/nxtbooks/aogr/202205
https://www.nxtbook.com/nxtbooks/aogr/202204
https://www.nxtbook.com/nxtbooks/aogr/202203
https://www.nxtbook.com/nxtbooks/aogr/202202
https://www.nxtbook.com/nxtbooks/aogr/202201
https://www.nxtbook.com/nxtbooks/aogr/202112
https://www.nxtbook.com/nxtbooks/aogr/202111
https://www.nxtbook.com/nxtbooks/aogr/pbios_202110
https://www.nxtbook.com/nxtbooks/aogr/202109
https://www.nxtbook.com/nxtbooks/aogr/202108
https://www.nxtbook.com/nxtbooks/aogr/202107
https://www.nxtbook.com/nxtbooks/aogr/202106
https://www.nxtbook.com/nxtbooks/aogr/202105
https://www.nxtbook.com/nxtbooks/aogr/202104
https://www.nxtbook.com/nxtbooks/aogr/202103
https://www.nxtbook.com/nxtbooks/aogr/202102
https://www.nxtbook.com/nxtbooks/aogr/202101
https://www.nxtbook.com/nxtbooks/aogr/202012
https://www.nxtbook.com/nxtbooks/aogr/202011
https://www.nxtbook.com/nxtbooks/aogr/202010
https://www.nxtbook.com/nxtbooks/aogr/202009
https://www.nxtbook.com/nxtbooks/aogr/202008
https://www.nxtbook.com/nxtbooks/aogr/202007
https://www.nxtbook.com/nxtbooks/aogr/202006
https://www.nxtbook.com/nxtbooks/aogr/202005
https://www.nxtbook.com/nxtbooks/aogr/202004
https://www.nxtbook.com/nxtbooks/aogr/202003
https://www.nxtbook.com/nxtbooks/aogr/202002
https://www.nxtbook.com/nxtbooks/aogr/202001
https://www.nxtbook.com/nxtbooks/aogr/201912
https://www.nxtbook.com/nxtbooks/aogr/201911
https://www.nxtbook.com/nxtbooks/aogr/201910
https://www.nxtbook.com/nxtbooks/aogr/201909
https://www.nxtbook.com/nxtbooks/aogr/201908
https://www.nxtbook.com/nxtbooks/aogr/201907
https://www.nxtbook.com/nxtbooks/aogr/201906
https://www.nxtbook.com/nxtbooks/aogr/201905
https://www.nxtbook.com/nxtbooks/aogr/201904
https://www.nxtbook.com/nxtbooks/aogr/201903
https://www.nxtbook.com/nxtbooks/aogr/201902
https://www.nxtbook.com/nxtbooks/aogr/201901
https://www.nxtbook.com/nxtbooks/aogr/201812
https://www.nxtbook.com/nxtbooks/aogr/201811
https://www.nxtbook.com/nxtbooks/aogr/201810
https://www.nxtbook.com/nxtbooks/aogr/pbios_201810
https://www.nxtbook.com/nxtbooks/aogr/201809
https://www.nxtbook.com/nxtbooks/aogr/201808
https://www.nxtbook.com/nxtbooks/aogr/201807
https://www.nxtbook.com/nxtbooks/aogr/201806
https://www.nxtbook.com/nxtbooks/aogr/201805
https://www.nxtbook.com/nxtbooks/aogr/201804
https://www.nxtbook.com/nxtbooks/aogr/201803
https://www.nxtbook.com/nxtbooks/aogr/201802
https://www.nxtbook.com/nxtbooks/aogr/201801
https://www.nxtbook.com/nxtbooks/aogr/201712
https://www.nxtbook.com/nxtbooks/aogr/201711
https://www.nxtbook.com/nxtbooks/aogr/201710
https://www.nxtbook.com/nxtbooks/aogr/201709
https://www.nxtbook.com/nxtbooks/aogr/201708
https://www.nxtbook.com/nxtbooks/aogr/201707
https://www.nxtbook.com/nxtbooks/aogr/201706
https://www.nxtbook.com/nxtbooks/aogr/201705
https://www.nxtbook.com/nxtbooks/aogr/201704
https://www.nxtbook.com/nxtbooks/aogr/201703
https://www.nxtbook.com/nxtbooks/aogr/201702
https://www.nxtbook.com/nxtbooks/aogr/201701
https://www.nxtbook.com/nxtbooks/aogr/201612
https://www.nxtbook.com/nxtbooks/aogr/201611
https://www.nxtbook.com/nxtbooks/aogr/201610
https://www.nxtbook.com/nxtbooks/aogr/pbios2016_programguide
https://www.nxtbook.com/nxtbooks/aogr/201609
https://www.nxtbook.com/nxtbooks/aogr/201608
https://www.nxtbook.com/nxtbooks/aogr/201607
https://www.nxtbook.com/nxtbooks/aogr/201606
https://www.nxtbook.com/nxtbooks/aogr/201605
https://www.nxtbook.com/nxtbooks/aogr/201604
https://www.nxtbook.com/nxtbooks/aogr/201603
https://www.nxtbook.com/nxtbooks/aogr/201602
https://www.nxtbook.com/nxtbooks/aogr/201601
https://www.nxtbook.com/nxtbooks/aogr/201512
https://www.nxtbook.com/nxtbooks/aogr/201511
https://www.nxtbook.com/nxtbooks/aogr/201510
https://www.nxtbook.com/nxtbooks/aogr/201509
https://www.nxtbook.com/nxtbooks/aogr/201508
https://www.nxtbook.com/nxtbooks/aogr/201507
https://www.nxtbook.com/nxtbooks/aogr/201506
https://www.nxtbook.com/nxtbooks/aogr/201505
https://www.nxtbook.com/nxtbooks/aogr/201504
https://www.nxtbook.com/nxtbooks/aogr/201503
https://www.nxtbook.com/nxtbooks/aogr/201502
https://www.nxtbook.com/nxtbooks/aogr/201501
https://www.nxtbook.com/nxtbooks/aogr/201412
https://www.nxtbook.com/nxtbooks/aogr/201411
https://www.nxtbook.com/nxtbooks/aogr/201410
https://www.nxtbook.com/nxtbooks/aogr/201409
https://www.nxtbook.com/nxtbooks/aogr/pbios2014_programguide
https://www.nxtbook.com/nxtbooks/aogr/201408
https://www.nxtbook.com/nxtbooks/aogr/201407
https://www.nxtbook.com/nxtbooks/aogr/201406
https://www.nxtbook.com/nxtbooks/aogr/201405
https://www.nxtbook.com/nxtbooks/aogr/201404
https://www.nxtbook.com/nxtbooks/aogr/201403
https://www.nxtbook.com/nxtbooks/aogr/201402
https://www.nxtbook.com/nxtbooks/aogr/201401
https://www.nxtbook.com/nxtbooks/aogr/201312
https://www.nxtbook.com/nxtbooks/aogr/201311
https://www.nxtbook.com/nxtbooks/aogr/201310
https://www.nxtbook.com/nxtbooks/aogr/201309
https://www.nxtbook.com/nxtbooks/aogr/201308
https://www.nxtbook.com/nxtbooks/aogr/201307
https://www.nxtbook.com/nxtbooks/aogr/201306
https://www.nxtbook.com/nxtbooks/aogr/201305
https://www.nxtbook.com/nxtbooks/aogr/201304
https://www.nxtbook.com/nxtbooks/aogr/201303
https://www.nxtbook.com/nxtbooks/aogr/201302
https://www.nxtbook.com/nxtbooks/aogr/201301
https://www.nxtbook.com/nxtbooks/aogr/201212
https://www.nxtbook.com/nxtbooks/aogr/201211
https://www.nxtbook.com/nxtbooks/aogr/201210
https://www.nxtbook.com/nxtbooks/aogr/201209
https://www.nxtbook.com/nxtbooks/aogr/2012_pbios
https://www.nxtbook.com/nxtbooks/aogr/201208
https://www.nxtbook.com/nxtbooks/aogr/201207
https://www.nxtbook.com/nxtbooks/aogr/201206
https://www.nxtbook.com/nxtbooks/aogr/201205
https://www.nxtbook.com/nxtbooks/aogr/201204
https://www.nxtbook.com/nxtbooks/aogr/201203
https://www.nxtbook.com/nxtbooks/aogr/201202
https://www.nxtbook.com/nxtbooks/aogr/201201
https://www.nxtbook.com/nxtbooks/demo/aogr_clone
https://www.nxtbook.com/nxtbooks/aogr/201112
https://www.nxtbookmedia.com