Brokers List Legislative Priorities
You don’t have to spend your days watching C-SPAN to know that insurance issues are taking a prominent role on Capitol Hill lately.
“I don’t think I’ve ever seen the parochial interest [the insurance industry] holds having risen to the national priority that is the current environment,” said Joel Wood, senior vice president of government affairs for The Council of Insurance Agents & Brokers. “Agents have a lot of skin in the game.”
With the passage of the flood insurance bill, many agents are breathing a sigh of relief that the specter of massive rate increases won’t become a reality. However, several other pending issues could have weighty consequences for the insurance industry at large, and agents in particular.
The Affordable Care Act
“The independent agents are small business owners that are being impacted greatly by the implementation of health care reform,” said Mike Becker, executive vice president and CEO of the National Association of Professional Insurance Agents (PIA).
“We’ve been incredibly loud advocates for the agent, ensuring that they’re able to participate, should they desire to do so, and they’re fairly and justly compensated for doing so, whether they’re participating in the traditional market or through an exchange,” he said.
PIA is currently asking members to find cosponsors for H.R. 2328, the Access to Professional Health Insurance Advisors Act, introduced by U.S. Reps. Mike Rogers (R-MI) and John Barrow (D-GA), to ensure that agent compensation is not disadvantaged by implementation of the ACA.
Wood pointed out that the current political climate during mid-year elections may make it difficult to achieve much change on the legislative end, so the CIAB is focusing more on regulatory issues related to health care.
“The pieces we’ve been engaged on are with respect to issues that impact ERISA [Employee Retirement Income Security Act] with the Department of Labor, to testifying on the wellness provisions, to working with the various agencies on trying to develop the right kind of nondiscrimination rule that has yet to come forward and the auto-enrollment rules that have yet to come forward.
“There are a million moving parts on the Affordable Care Act, and we try to engage on all of that impact our clients,” Wood said.
Another issue that is top of mind for agents is renewal of the Terrorism Risk Insurance Act (TRIA), which is set to expire at the end of the year.
“Almost every major commercial policy today has a rider on it that says that post-Dec. 31st 2014, terrorism coverage will not be in place depending upon the outcome of this debate,” Wood stated.
“It’s a product that’s not easily accessible in the private market without the terrorism risk and insurance program,” said Becker. “We support those programs and we’re going to be advocating for its passage.”
The CIAB is also focusing on the Foreign Account Tax Compliance Act, which is designed to prevent tax evasion in transactions with offshore companies.
“We have unsuccessfully argued to the IRS that we should be exempted from implementation and reporting requirements on commercial insurance transactions,” Wood said. “Now, we’re moving to the implementation side and it’s going to be a burden both on the brokers and on their clients.
“Theoretically this sounds pretty simple, but there are unanswered questions. What is Lloyd’s of London, for example? Is that one insurance company or is it 200 companies, or is it 20,000 syndicates?”
To that end, CIAB is seeking clarification within the rules so that it can become a clearinghouse to help international insurers to comply with FATCA.
One of PIA’s biggest concerns involves federal regulation of insurance.
“We don’t think that there’s any further reason for federal regulation in this sphere,” said Jon Gentile, PIA national director of federal affairs.
“The insurance industry historically has been regulated at the state level. One of the things that came out of the financial crisis was that state regulation did, in fact, work and it worked well. We just want to make sure that our members are up on the Hill letting members of Congress know that state-based regulation does work well and has been for some time.”
However, the CIAB views this issue through a different lens.
“We think that it’s almost an embarrassment that our industry’s regulation is so fragmented when it comes to international trade,” said Wood. “We’re surprised at the degree to which some state insurance regulators have taken umbrage at the obvious role, as asserted in Dodd Frank for the Federal Insurance Office, to participate in reflecting U.S. goals in global talks.
“It’s a national business,” he said. “There has been a huge amount of consolidation. All the trend lines are going further in that direction.”
Wood also said that CIAB is advocating for passage of the National Association of Registered Agents and Brokers Reform Act that is designed to streamline interstate insurance licensing.
“It was big disappointment on not getting it [added as a rider to] the flood legislation. Shame on us, if we can’t get that to the finish line this year,” he said.
6 Emerging Supply Chain Risks You Should Know
Cyber: The Overlooked Environmental Threat
“Cyber breach” conjures fears of lost or ransomed data, denial of service, leaked corporate secrets and phishing scams.
But in a world where so many physical operations are automated and controlled by digital technologies, the consequences of cyber attacks extend far beyond the digital realm to include property damage, bodily injury, and even environmental pollution.
Industrial companies that deal with hazardous materials — like power plants, refineries, factories, water treatment facilities or pipelines — are heavily dependent on automated technology to maximize their efficiency. Other sectors use technology to control HVAC systems, power and utilities, placing their properties at risk as well.
Cyber risks like theft of personally identifiable data have been highly publicized in recent years, but physical risks like pollution sparked by a cyber breach may not be as obvious.
“It’s significant to lose 100,000 customers’ Social Security numbers,” said William Bell, Senior Vice President, Environmental, Liberty International Underwriters, “but can you imagine if a waste treatment facility’s operations get hacked, gates open, and thousands of tons of raw sewage go flowing down a local river?”
In many industrial complexes, a network of sensors gathers and monitors data around machinery efficiency and the flow of the materials being processed. They send that information to computer terminals that interpret the data into commands for the hardware elements like motors, pumps and valves.
This automation technology can control, for example, the flow of pipelines, the level of water or waste held in a reservoir, or the gates that hold in and control the release of vast quantities of sewage and other process materials. Hackers who want to cause catastrophe could hijack that system and unleash damaging pollutants.
And it’s already happened.
In 2000, a hacker caused 800,000 liters of untreated sewage to flood the waterways of Maroochy Shire, Australia. In 2009, an IT contractor, disgruntled because he was not hired full-time, disabled leak detection alarm systems on three off-shore oil rigs near Long Beach, Calif.
Just last year, cyber attackers infiltrated the network of a German steel mill through a phishing scam, eventually hacking into the production control system and manipulating a blast furnace so it could not be shut down. The incident led to significant property damage.
According to a leading industrial security expert and executive director of the International Society of Automation, “Today’s operational technologies—such as sensors, SCADA systems, software and other controls that drive modern industrial processes—are vulnerable to cyber attack. The risk of serious damage or compromise to power and chemical plants, oil and gas facilities, chemical and water installations and other vital critical infrastructure assets is real.”
“The hacks could come from anywhere: a teenager looking for entertainment, a disgruntled worker, or more sophisticated criminals or terrorists,” Bell said. “There are certainly groups out there with political and ideological motivations to wreak that kind of havoc.”
“We are working to bring the cyber component of environmental risk to the forefront. Cyber security is not just an IT issue. Industry executives need to be aware of the real-world risks and danger associated with an industrial cyber attack as well as the critical differences between cyber security and operational technology security.”
— William Bell, Senior Vice President, Environmental, Liberty International Underwriters
The cleanup cost of an environmental disaster can climb into the hundreds of millions, and even if a cyber breach triggered the event, a cyber policy alone will not cover the physical and environmental damage it caused.
The risk is even more pointed now, as resource conservation becomes increasingly important. Weather related catastrophe modeling is changing as both flooding and drought become more severe and frequent in different regions of the U.S. Pollution of major waterways and watersheds could have severe consequences if it affects drinking water sources, agriculture and other industrial applications that depend on this resource.
Managing the Risk
Unfortunately, major industrial corporations sometimes address their environmental exposure with some hubris. They trust in their engineers to remove the risk by designing airtight systems, to make a disaster next to impossible. The prospect of buying environmental insurance, then, would be superfluous, an expression of doubt in their science-backed systems.
Despite the strongest risk management efforts, though, no disaster is 100 percent avoidable.
“We are working to bring the cyber component of environmental risk to the forefront,” Bell said. “Cyber security is not just an IT issue. Industry executives need to be aware of the real-world risks and danger associated with an industrial cyber attack as well as the critical differences between cyber security and operational technology security.”
The focus on network security and data protection has distracted industry leaders from strengthening operational technology security. Energy, manufacturing and other industrial sectors lack best practice standards when it comes to securing their automated processes.
After the Homeland Security Act of 2002, the Department of Homeland Security began comprehensive assessments of critical infrastructure’s cyber vulnerability, working with owners and operators to develop solutions. It also offers informational guides for private companies to do the same. The National Institute of Standards and Technology also continues work on its cyber security framework for critical infrastructure. Although this helps to establish some best practices, it does not completely mitigate the risk.
Many businesses don’t see themselves as a target, but they need to look beyond their own operations and property lines. They could be an attractive target due to their proximity to densely populated areas or resources such as waterways and highways, or nationally or historically significant areas. The goal of a cyber terrorist is not always to harm the target itself, but the collateral damage.
The Role of Insurance
“Environmental liability is still by and large viewed as a discretionary purchase,” Bell said, “but the threat of a cyber attack that can manipulate those systems and ultimately lead to a pollution incident is added incentive to buy environmental coverage.”
Liberty International Underwriters’ environmental coverage could respond to many pollution conditions set off by a cyber breach event.
“Property damage, bodily injury and cleanup of any pollution at or emanating from a covered property would likely be taken care of,” Bell said. “The risk is not so much the cyber exposure but the consequence of the attack. The resulting claims and degradation to the environment could be severe, especially if the insured was a target chosen because of their unique position to have a large effect on the local population and environment.”
LIU also offers dedicated Cyber Liability insurance solutions designed to manage and mitigate the cost of responding to a cyber attack and any resultant loss of data and associated liability. Coverage includes proactive data breach response services designed to help organizations comply with regulatory requirements and prevent data breaches.
LIU’s loss control managers are also on hand to conduct assessments of insureds’ properties and facilities to examine potential environmental impacts. They can educate brokers on the importance of enhancing cyber security to prevent an environmental accident in the first place.
“People are relying more and more on their systems, automaton is increasing, and the risk is growing,” Bell said. “We’re all focused on protecting data, but the consequences of a cyber breach can be much farther reaching than data alone.”
To learn more about Liberty International Underwriters’ environmental coverages and services, visit www.LIU-USA.com.
Liberty International Underwriters is the marketing name for the broker-distributed specialty lines business operations of Liberty Mutual Insurance. Certain coverage may be provided by a surplus lines insurer. Surplus lines insurers do not generally participate in state guaranty funds and insureds are therefore not protected by such funds. This literature is a summary only and does not include all terms, conditions, or exclusions of the coverage described. Please refer to the actual policy issued for complete details of coverage and exclusions.
This article was produced by the R&I Brand Studio, a unit of the advertising department of Risk & Insurance, in collaboration with Liberty International Underwriters. The editorial staff of Risk & Insurance had no role in its preparation.