TL;DR

["Cyber insurers are increasingly considering identity-related metrics such as Multi-Factor Authentication (MFA) coverage, privileged access management, and password hygiene when evaluating an organization's cyber risk profile.", 'These new criteria aim to address the growing threat posed by compromised employee accoun

What happened

["Cyber insurers are now placing greater emphasis on identity posture metrics, such as MFA coverage and password hygiene, when evaluating an organization's risk for insurance purposes."]

Why it matters for ops

['The rise in cyber-attacks involving compromised employee accounts necessitates a more comprehensive approach to assessing and mitigating cyber risks.', 'Enhancing identity security practices can lead to better terms and conditions from insurers.']

Mitigation

  • Implement strong multi-factor authentication (MFA) across the organization.
  • Enhance privileged access controls and enforce strict password policies.

Action items

  • Review current identity security measures to identify gaps.
  • Leverage identity cyber scores as a benchmark for improving security practices.

Detection IOCs

  • Increased scrutiny of MFA usage
  • Requests for detailed password hygiene reports

Source link

https://thehackernews.com/2026/02/identity-cyber-scores-new-metric.html