Underwriting
Process of evaluating, pricing, and accepting or rejecting insurance risk based on applicant characteristics.
FAQs
What is adverse selection in insurance and how do underwriters address it?
Adverse selection occurs when people with higher-than-average risk are more likely to seek insurance than lower-risk individuals, leading to a pool of insured risks that is worse than the overall population. If insurers can't accurately identify and price high-risk applicants, they attract disproportionate shares of bad risks, causing losses that lead to premium increases, which drives away lower-risk individuals (leaving an even worse pool)—a spiral toward market breakdown. Underwriters address adverse selection through: information gathering (collecting data to distinguish risk levels), medical exams (for life insurance), inspection requirements (property surveys), waiting periods (preventing purchase immediately before anticipated claims), and experience rating (adjusting premiums based on actual claims history).
What is a hard market versus a soft market in commercial insurance?
An insurance hard market features: rising premiums (sometimes dramatically), reduced capacity (insurers writing less coverage in specific lines), stricter underwriting standards (more requirements, more exclusions), non-renewals and coverage restrictions, and longer policy negotiations. Hard markets follow major loss events (catastrophic hurricanes, COVID-19 business interruption claims, large cyber losses) that deplete insurer capital and reinsurance capacity. Soft markets feature competitive pricing, broad coverage terms, flexible underwriting, and capacity abundance—typically following extended periods of low losses and capital accumulation. Understanding the market cycle helps buyers time risk transfer decisions and plan long-term insurance budgets.
What factors are driving increased cyber insurance underwriting scrutiny?
Cyber insurance underwriting has tightened dramatically due to: surging ransomware frequency and severity (average ransomware payments exceeding $1M); systemic risk from software supply chain attacks affecting thousands of policyholders simultaneously (SolarWinds, Log4Shell); inadequate security practices among many insureds; accumulation risk (same vulnerability affecting many policyholders at once); and claim inflation. Underwriters now require: implementation of multifactor authentication (MFA) for privileged access, offline/immutable backup systems, endpoint detection and response (EDR) tools, security awareness training programs, incident response plan documentation, and executive cybersecurity governance. Insureds without these controls face premium surcharges, coverage sublimits, or declinations.
Related Terms
Premium
Regular payment made by a policyholder to maintain insurance coverage.
Actuarial Analysis
Statistical and mathematical analysis of financial risks using probability and data to price insurance and manage reserves.
Reinsurance
Insurance purchased by insurance companies to transfer part of their risk to other insurers.
Captive Insurance
Insurance subsidiary created by a company to insure its own risks rather than purchasing coverage externally.