skip to content

Cyber insurance for auto dealerships

Managing the aftermath of a cyber incident.

Article

Cybersecurity alarms are sounding for North American auto dealers following a cyber attack that exposed serious vulnerabilities within the sector.

This incident served as an important reminder for businesses to ensure that they have a strong cybersecurity environment and highlighted the critical need for comprehensive cyber insurance policies that mitigate financial losses and support recovery efforts post-incident.

“While auto dealerships stand to gain significantly from digital advancements, neglecting to manage the risks can erase those advantages in an instant. With cyber incidents a stark reality in our digital age, the appropriate insurance is indispensable for a swift and secure recovery,” says Chetan Sehgal, Partner, Forensic Disputes Investigations.

"Auto dealerships that treat cybersecurity risks with the same seriousness as showroom security are setting themselves up for success."
Chetan Sehgal, Partner, Forensic Disputes & Investigations

How did the CDK Global outage impact auto dealerships?

In June 2024, CDK Global, which provides software to nearly 15,000 car dealerships across North America, was hit with back-to-back cyber attacks that left hundreds of dealerships offline. Dealerships found themselves scrambling to maintain operations, as the digital infrastructure they relied on for sales, scheduling, record-keeping, and customer management was rendered inaccessible. Many had to resort to manual, pen-and-paper forms of data entry throughout the two-week outage.

The incident is a stark reminder of the vulnerabilities facing the automotive sector and illustrates how a cyber attack on basic operational software can have profound implications for an entire industry.

Six steps to managing a cyber insurance claim

Responding to a cyber incident is a complex, nuanced, and sometimes chaotic process. As dealerships recover from the aftermath of a breach, they are juggling multiple important priorities, from restoring systems to recovering files.

Managing insurance claims is another critical task that adds to the complexity of their recovery path. To help you navigate through the chaos of a cyber incident, these six steps provide a structured approach to stay organized and on track with your insurance claim during recovery.

Gather all claim-related expenses to present to your insurer for reimbursement. These include items such as incident response and system restoration costs. Ensure that you also include any legal or consulting fees incurred during the recovery process.

Calculate the additional expenses incurred by your business as a result of operating during the cyber incident. This should cover emergency measures, temporary solutions, and overtime pay for staff.

Evaluate market conditions, past financial performance, and customer purchasing patterns to measure the impact on business income and profitability. Consider the potential long-term effects on customer trust and future sales.

Submit your claim and be prepared to engage in discussions with the adjustment team through final claim resolution. Maintain a proactive stance and provide all necessary documentation promptly to facilitate a smooth claims process.

Complete and submit a proof of loss form to your insurance company and prepare clear narratives for the claim adjuster’s review. Be precise and detailed in your descriptions to avoid any misunderstandings or delays in claim processing.

When dealing with cyber losses, clearly articulating the incident’s impact on your operations is critical—it helps the adjustment team understand the extent of operational disruptions and facilitate a fair evaluation of the insurance claim.

Are you shopping around for a new cyber insurance policy or looking to renew your coverage? Our team shares five practical pointers to guide your decision.

Evaluating post-incident operational and financial losses

A cyber incident can trigger a cascade of challenges specific to auto dealerships, from compromised customer data to interrupted sales operations.

Understanding these areas is crucial for developing a resilient risk management strategy and ensuring a swift post-incident recovery process that minimizes the impact on your dealership’s financial health and reputation.

Lost Sales Icon
Lost sales
Differentiate between true lost sales and deferred sales to better calculate the immediate financial impact versus potential future recoveries.
alt text
Secondary revenue
Evaluate the loss of ancillary revenue, including parts, service, warranty repairs, financing, etc. Consider how disruptions may affect customer loyalty and long-term revenue streams.
Added Costs Icon
Added costs
Estimate the additional expenses incurred from resorting to manual processes due to system failures.
Seasonal Trends Icon
Seasonal trends
Factor seasonal variances and special programs into your dealership’s financial model. Consider how these fluctuations can amplify the effects of lost sales or added costs during peak seasons.
Staff Continuity Icon
Staff continuity
Understand your insurance policy’s ordinary payroll coverage to help ensure staff retention.

Supporting auto dealers in cyber incident response efforts

Our Commercial Insurance Claims & Advisory  practice helps auto dealers navigate the complex process of cyber insurance claims from start to finish. Our team works with policyholders to independently quantify, compile, and substantiate complex cyber insurance claims.

We support you through streamlining documentation, communicating with insurers, and submitting supportable claims. Our goal is to help you resolve claims as fairly and efficiently as possible, allowing your auto dealerships to focus on business recovery while we handle the intricacies of the claim process, alongside your insurance broker.

Top 5 fraud risks your business should watch for in 2024

Top five fraud risks to keep an eye on in 2024 and ways to prevent them.

Read more

Contact our team if you require assistance with managing a response to a cybersecurity incident or if you’d like to proactively enhance the cybersecurity defences of your auto dealership.

Secure your dealership

This article was adapted from a content piece by BDO USA.

This site uses cookies to provide you with a more responsive and personalised service. By using this site you agree to our use of cookies. Please read our privacy statement for more information on the cookies we use and how to delete or block them.

Accept and close