Skip to main content

Cyber Insurance Against Electronic Payment Service Outages

A Document Study of Terms and Conditions from Electronic Payment Service Providers and Insurance Companies

  • Conference paper
  • First Online:
Security and Trust Management (STM 2018)

Part of the book series: Lecture Notes in Computer Science ((LNSC,volume 11091))

Included in the following conference series:

Abstract

Society is becoming increasingly dependent on IT services. One example is the dependence of retailers on electronic payment services. This article investigates the terms and conditions offered by three electronic payment service providers, finding that they only guarantee best effort availability. As potential mitigation, five cyber insurance policies are studied from the perspective of coverage of electronic payment service outages. It is concluded that cyber insurance does indeed give some protection, but that coverage differs between insurers and between different policy options offered. Thus, a retailer who wishes to purchase cyber insurance should take care to understand what is on offer and actively select appropriate coverage.

This is a preview of subscription content, log in via an institution to check access.

Access this chapter

Chapter
USD 29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
eBook
USD 39.99
Price excludes VAT (USA)
  • Available as EPUB and PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD 54.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Institutional subscriptions

Notes

  1. 1.

    https://www.verifone.com/sv/se/om-verifone-sweden, accessed March 9, 2018.

  2. 2.

    https://investor.nets.eu/nets-as-an-investment, accessed March 9, 2018.

  3. 3.

    https://www.izettle.com/se/pos, accessed March 13, 2018.

  4. 4.

    https://www.verifone.com/sites/default/files/SE_Allmanna%20villkor%20tjanstepaket%20v%202016-11-01%20.pdf, accessed March 6, 2018.

  5. 5.

    https://www.nets.eu/globalassets/documents/sweden/in-swedish/terms-etc/nets_payment-terminals_terms_se_20170401.pdf, accessed March 6, 2018.

  6. 6.

    https://www.izettle.com/se/villkor, accessed March 12, 2018.

References

  1. Arvidsson, N.: The future of cash. In: Teigland, R., Siri, S., Larsson, A., Puertas, A.M., Bogusz, C.I. (eds.) The Rise and Development of FinTech: Accounts of Disruption from Sweden and Beyond, pp. 85–98. Routledge, Abingdon (2018)

    Google Scholar 

  2. Arvidsson, N.: The payment landscape in Sweden. In: Teigland, R., Siri, S., Larsson, A., Puertas, A.M., Bogusz, C.I. (eds.) The Rise and Development of FinTech: Accounts of Disruption from Sweden and Beyond, pp. 238–252. Routledge, Abingdon (2018)

    Google Scholar 

  3. Baer, W.S., Parkinson, A.: Cyberinsurance in IT security management. IEEE Secur. Priv. 5(3), 50–56 (2007). https://doi.org/10.1109/MSP.2007.57

    Article  Google Scholar 

  4. Böhme, R., Schwartz, G.: Modeling cyber-insurance: towards a unifying framework. In: Workshop on Economics of Information Security - WEIS (2010)

    Google Scholar 

  5. Camillo, M.: System failure: a real and present danger. Insurance Day (2015). https://www.aig.co.uk/content/dam/aig/emea/united-kingdom/documents/insurance-day-aig-cyber-article-system-failure-brochure.pdf. Accessed 9 Mar 2018

  6. Eling, M., Schnell, W.: What do we know about cyber risk and cyber risk insurance? J. Risk Financ. 17(5), 474–491 (2016). https://doi.org/10.1108/JRF-09-2016-0122

    Article  Google Scholar 

  7. ENISA: Cyber insurance: recent advances, good practices and challenges. Technical report, European Union Agency for Network and Information Security (2016). https://doi.org/10.2824/065381

  8. ENISA: Commonality of risk assessment language in cyber insurance. Technical report, European Union Agency for Network and Information Security (2017). https://doi.org/10.2824/691163

  9. Franke, U.: The cyber insurance market in Sweden. Comput. Secur. 68, 130–144 (2017). https://doi.org/10.1016/j.cose.2017.04.010

    Article  Google Scholar 

  10. Gillespie, P.: The top 10 questions to ask when selecting a digital commerce payment vendor. Technical report, Gartner, Inc., October 2016, iD: G00311154

    Google Scholar 

  11. Tekniska problem för Nordea-kunder [Technical problems for Nordea customers]. Göteborgs-Posten, 25 August 2017

    Google Scholar 

  12. van Laere, J., et al.: Challenges for critical infrastructure resilience: cascading effects of payment system disruptions. In: 14th International Conference on Information Systems for Crisis Response and Management, pp. 281–292 (2017)

    Google Scholar 

  13. Larsson, A., Ibrahim, O.I.M., Olsson, L., van Laere, J.: Agent based simulation of a payment system for resilience assessments. In: Proceedings of the International Conference in Industrial Engineering and Engineering Management, pp. 314–318. IEEE (2017). https://doi.org/10.1109/IEEM.2017.8289903

  14. Majuca, R.P., Yurcik, W., Kesan, J.P.: The evolution of cyberinsurance. arXiv preprint cs/0601020 (2006)

    Google Scholar 

  15. Marotta, A., Martinelli, F., Nanni, S., Orlando, A., Yautsiukhin, A.: Cyber-insurance survey. Comput. Sci. Rev. 24, 35–61 (2017)

    Article  Google Scholar 

  16. OECD: Enhancing the Role of Insurance in Cyber Risk Management (2017). https://doi.org/10.1787/9789264282148-en

  17. Romanosky, S., Ablon, L., Kuehn, A., Jones, T.: Content analysis of cyber insurance policies: how do carriers write policies and price cyber risk? In: Proceedings of the 16th Workshop in the Economics of Information Security, WEIS 2017 (2017)

    Google Scholar 

  18. Tidningarnas Telegrambyrå: Problem med kortbetalning i hela landet [Card payment problems all over the country]. Sydöstran, 24 July 2017

    Google Scholar 

  19. Bankstrul för SEB - kortbetalning fungerar inte [Bank trouble for SEB - card payments do not work]. Värmlands Folkblad, 10 January 2018

    Google Scholar 

  20. Wheeler, J.A., Akshay, L., Proctor, P.E.: Understanding when and how to use cyberinsurance effectively. Technical report, Gartner, Inc., March 2015, g00274770

    Google Scholar 

  21. Cyber resilience playbook for public-private collaboration. Technical report, World Economic Forum (2018). http://www3.weforum.org/docs/WEF_Cyber_Resilience_Playbook.pdf. Accessed 9 Mar 2018. REF 110117

Download references

Acknowledgments

This research was supported by the the Swedish Civil Contingencies Agency, MSB (agreement no. 2015-6986). The author would like to thank Bengt Nilervall of the Swedish Trade Federation for sharing electronic payment service provider terms and conditions, Dr. Oliver Lamberty of the Deutsche Rückversicherung AG for sharing the GDV recommendations and the insurance companies for sharing actual insurance policy documents and responding to some additional questions. Furthermore, the paper was improved by the comments of three anonymous reviewers.

Author information

Authors and Affiliations

Authors

Corresponding author

Correspondence to Ulrik Franke .

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2018 Springer Nature Switzerland AG

About this paper

Check for updates. Verify currency and authenticity via CrossMark

Cite this paper

Franke, U. (2018). Cyber Insurance Against Electronic Payment Service Outages. In: Katsikas, S., Alcaraz, C. (eds) Security and Trust Management. STM 2018. Lecture Notes in Computer Science(), vol 11091. Springer, Cham. https://doi.org/10.1007/978-3-030-01141-3_5

Download citation

  • DOI: https://doi.org/10.1007/978-3-030-01141-3_5

  • Published:

  • Publisher Name: Springer, Cham

  • Print ISBN: 978-3-030-01140-6

  • Online ISBN: 978-3-030-01141-3

  • eBook Packages: Computer ScienceComputer Science (R0)

Publish with us

Policies and ethics