FORMS · HARTFORD CYBER INSURANCE · 2026 APPLICATION

00 OF 47 FILLED
·· THE HARTFORD · CYBER 2026 ·· · PREPARED FOR BIG TEX'S SHOP

Hartford Cyber 2026 Application.

Forty-seven questions, blank. Auto-fill from your assessment, review, edit anything that's wrong, fill in the few we can't know, and download.

04 MAY 2026
Identity and access

Who can sign in to your systems, and how.

Q01

Do you require multi-factor authentication for all administrative accounts?

Awaiting auto-fill
Q02

Do you require multi-factor authentication for all employee accounts?

Awaiting auto-fill
Q03

Do you enforce strong password policies (minimum 12 characters, complexity requirements)?

Awaiting auto-fill
Q04

Do you maintain a list of authorized personnel with access to sensitive data?

Awaiting auto-fill
Q05

Are former employee accounts disabled within 24 hours of departure?

Awaiting auto-fill
Q06

Do you use single sign-on (SSO) for company applications?

Awaiting auto-fill
Q07

Do you conduct quarterly access reviews?

Awaiting auto-fill
Q08

How many privileged or administrative accounts exist in your environment?

Awaiting auto-fill
Q09

Do you maintain a centralized identity directory (e.g., Microsoft 365, Okta)?

Awaiting auto-fill
Q10

Are passwords stored in a managed password vault?

Awaiting auto-fill
Endpoint security

The laptops, desktops, and devices your team uses.

Q11

How many endpoint devices (laptops, desktops, mobile) are in your environment?

Awaiting auto-fill
Q12

Do you have endpoint detection and response (EDR) software installed on all endpoints?

Awaiting auto-fill
Q13

Are all endpoints managed by a mobile device management (MDM) tool?

Awaiting auto-fill
Q14

Are critical security patches applied within 30 days of release?

Awaiting auto-fill
Q15

Is encryption enforced on all endpoint hard drives?

Awaiting auto-fill
Q16

How many of your endpoints run Windows?

Awaiting auto-fill
Q17

How many of your endpoints run macOS?

Awaiting auto-fill
Q18

Do you use a secure web gateway or DNS filtering?

Awaiting auto-fill
Q19

Is anti-malware software installed on all endpoints?

Awaiting auto-fill
Q20

Do you have a documented endpoint hardening standard?

Awaiting auto-fill
Data protection

How your customer data is handled, encrypted, and backed up.

Q21

Do you classify customer data (e.g., PII, financial, health)?

Awaiting auto-fill
Q22

Is customer data encrypted at rest?

Awaiting auto-fill
Q23

Is customer data encrypted in transit (TLS)?

Awaiting auto-fill
Q24

Do you store payment card data?

Awaiting auto-fill
Q25

Do you have a documented data retention policy?

Awaiting auto-fill
Q26

Approximately how many customer records do you store?

Awaiting auto-fill
Q27

Do you back up customer data regularly?

Awaiting auto-fill
Q28

Are backups stored offsite or in cloud?

Awaiting auto-fill
Q29

Are backups tested for successful restoration at least quarterly?

Awaiting auto-fill
Incident response

What you do when something goes wrong.

Q30

Do you have a written incident response plan?

Awaiting auto-fill
Q31

Have you conducted an incident response tabletop exercise in the past 12 months?

Awaiting auto-fill
Q32

Do you currently have a cyber insurance policy in force?

Awaiting auto-fill
Q33

Have you experienced a cyber incident, breach, or data loss event in the past 24 months?

Awaiting auto-fill
Q34

Do you have a designated incident response team or external retainer?

Awaiting auto-fill
Q35

What is your committed time-to-detect for security incidents (in hours)?

Awaiting auto-fill
Q36

What is your committed time-to-notify customers and regulators after a confirmed breach (in hours)?

Awaiting auto-fill
Q37

Do you maintain logs of system access for at least 90 days?

Awaiting auto-fill
Q38

Have you ever paid a ransomware demand?

Awaiting auto-fill
Business operations

Your company profile and regulatory posture.

Q39

What is your industry sector?

Awaiting auto-fill
Q40

How many employees do you have?

Awaiting auto-fill
Q41

What is your approximate annual revenue?

Awaiting auto-fill
Q42

Are you registered with the SEC?

Awaiting auto-fill
Q43

Are you registered with FINRA?

Awaiting auto-fill
Q44

Are you registered with NYDFS?

Awaiting auto-fill
Q45

Do you operate in states with active cyber notification or data-protection requirements?

Awaiting auto-fill
Q46

How many third-party vendors have access to customer data?

Awaiting auto-fill
Q47

What policy limit are you requesting on this application?

Awaiting auto-fill
BACKED BY ASSESSMENT
44 of 47 fields
MARKED FOR YOUR INPUT
3 fields
PREPARED
04 MAY 2026