ESET PROTECT – Table of Contents

Cyber warranty FAQ

What types of events are covered by the cyber warranty?

The cyber warranty covers the following events:

Ransomware or business email compromise (BEC) events

Compliance events involving data breaches with legal reporting obligations

Business income events resulting from security breaches

Cyber legal liability events arising from data privacy or security litigation

What are the main reasons benefits might be excluded?

Benefits may be excluded if:

Preventative measures like patching and backups are not maintained.

A network monitoring capability (for example, MDR, SIEM, SOC) is not in use.

Security measures like MFA and EDR are not deployed.

Solutions are not actively deployed in the affected area.

The participant was not subscribed to the security program.

Proof of the event cannot be provided.

Systemic failures or global attacks occur.

Regulatory compliance requirements are not met.

The event did not occur or was not reported during the enrollment term.

Alerts from the security provider were ignored.

What should I do if I discover an event?

Report the event to Cysurance within 48 hours of discovery. Provide sufficient information to validate and evaluate the event within 15 days.

What documentation is required to request a recovery benefit?

To request a recovery benefit, provide:

Documentation of your enrollment date in the certification warranty.

Log files and details about the network compromise.

Any additional information requested by Cysurance.

Permission for Cysurance to obtain data if needed.

How many qualifying events am I eligible for during the enrollment term?

You are eligible for one qualifying event during the enrollment term.

What is a qualifying event?

A qualifying event is a ransomware or BEC event that results in a business income event, compliance event, or cyber legal liability event in your environment.

What are the benefit limits?

The recovery benefit will not exceed the certification warranty indemnification level as specified in your enrollment confirmation.

What happens if I do not meet the compliance requirements?

Failure to meet compliance requirements (for example, risk assessments, employee training, privacy/security policies) may lead to exclusion from recovery benefits.

What additional services are provided after enrolling in the certification warranty?

Upon enrollment, Cysurance will perform regular external scans of your environment. These scans support Cysurance’s monitoring and risk analysis. Covered areas include:

Network security

DNS health

Patching cadence

IP reputation

Application security

Threat intelligence

Social and industry intelligence

Information leaks (for example, Dark Web)

Cloud score

Scans identify vulnerabilities and do not use proprietary participant data. They are conducted bi-weekly, and detailed reports are available upon request.

Is the cyber warranty an insurance policy?

No, the cyber warranty is separate from any insurance product. Report all events to your insurance carrier.

Can I use the cyber warranty if I have cyber insurance?

Yes, the cyber warranty can be used in conjunction with your cyber insurance.

Key points

Deductible buy-back: may cover insurance deductibles, waiting periods, or other out-of-pocket costs.

Example: if a ransomware incident triggers multiple coverages with deductibles and waiting periods, the cyber warranty can pay for those costs.

Coordination: report the event to both the warranty provider and your insurance carrier. Submit the required documentation to both.