The Treasury Department’s Federal Insurance Office wants to know whether a national cyber insurance program should require policyholders to implement basic cybersecurity measures to avoid creating a moral hazard.
“Should cybersecurity and cyber hygiene measures be required of policyholders under the structure?” Steven Seitz, director of Treasury’s Federal Insurance Office, asked in a request for comment set to publish in the Federal Register Thursday. “If so, which measures should be required?”
Comments are due within 45 days of the notice being published.
Here’s your chance to speak up – the clock is ticking. You care because you will be the ones filling out the forms, so give your insights into what’s valuable. You can’t say they didn’t ask.

