Cyber Insurance Readiness
Got a cyber insurance questionnaire and a deadline?
Carriers now decline coverage, or quietly raise your premium, over a handful of security controls. This checklist maps the 47 controls underwriters actually verify, in plain English, so you can self-assess before you submit your application or renewal.
Instant PDF download + interactive tracker. One-time $47, no subscription, no upsells. Or grab the free Top 10 · see a 10-control preview
Underwriters grade three kinds of controls
Most businesses fail the application not because they're insecure, but because they can't prove the controls a carrier checks. The 47 controls are sorted by exactly how a carrier treats each one:
Table stakes
MFA on email, remote access, admin, and cloud consoles; tested backups; EDR. Missing these often means an automatic decline.
Premium drivers
Patching cadence, email filtering, logging, awareness training. Gaps here rarely deny you, they just cost you more every year.
Deal-breakers
Exposed RDP, end-of-life software, no incident-response plan. A single one can sink the application or void a future claim.
What's inside the checklist
47 controls across 17 categories, each with the requirement in plain English, how to verify it, and how to evidence it for the underwriter. No jargon, no consultant required.
- CRITICALRequire multi-factor authentication on every email account.
- CRITICALRequire MFA for all remote access, VPN, RDP, and SSH.
- CRITICALRequire MFA for every privileged and administrator account.
- CRITICALRequire MFA for all cloud service consoles (AWS, Azure, M365 admin).
Not ready to buy? Start free.
Get the Top 10 controls carriers ask about first, the ones that most often decide an application, as a free one-page PDF. We'll email it to you now.
Email me the free Top-10 PDF
One email with your guide. No spam, unsubscribe anytime.
Prefer everything at once? Get the full 47-control checklist for $47
The full Cyber Insurance Prep Checklist
- All 47 controls across 17 categories
- Plain-English requirement + how to verify + how to evidence each one
- Sorted by required / premium-driver / deal-breaker
- Instant PDF download + an interactive tracker in your account
- One-time payment, no subscription or recurring fees
Need it done for you instead? Book a 15-minute fit call
Questions
What does a cyber insurance application checklist cover?
It maps the security controls underwriters review during application and renewal, multi-factor authentication, backups, patching, email security, incident response, and more, so you can self-assess before a carrier does.
Will this guarantee I get cyber insurance coverage?
No tool can guarantee an underwriting decision. This checklist shows you which controls carriers verify and which gaps commonly trigger premium increases or denials, so you can fix or disclose them ahead of time.
How is this different from a generic security checklist?
The 47 controls are organized around the underwriting process specifically: what carriers require every time, what raises premiums if missing, and what can disqualify coverage outright.
I'm a broker, can I share this with clients?
Yes. Reach out at [email protected] and we'll set you up with a referral code and a one-pager you can hand to clients prepping their application.
These 47 controls aren't theoretical
Every incident in our Cyber Breach Tracker is a documented, fact-checked breach mapped to the exact controls in this checklist that would have blunted it. Missing MFA on remote access. Management interfaces left on the open internet. Vendor access nobody was watching. The gaps that raise your premium are the same ones attackers walk through.
Still comparing? Grab the free Top 10 first