Cradle to the Grave: The Full Lifecycle of a Cyber Claim with Toni Sukhan

Season 2 /
/Episode 35

Cradle to the Grave: The Full Lifecycle of a Cyber Claim with Toni Sukhan

In this podcast episode, we feature cyber claims examiner Toni Sukhan as she outlines the critical steps businesses must take when facing a cyber incident. Sukhan, with over 20 years of experience, stresses the immediate need to notify an insurance carrier to ensure coverage and proper handling. She details a multi-disciplinary process involving breach counsel, forensic IT experts, and forensic accountants, explaining how this team manages incidents from initial notification to investigation and recovery. Sukhan also highlights the careful and highly-regulated decision-making process involved in ransom payments, which are treated as a last resort and require thorough assessment, legal compliance, and expert negotiation to mitigate risk and ensure a safe recovery of data.

The episode particularly emphasizes the vulnerability of small to medium-sized businesses, which are disproportionately targeted by cybercriminals. According to Sukhan, the most crucial preventive measure for these businesses is maintaining viable and frequent data backups. She likens the cyber claims process to emergency room triage—stabilizing the situation, restoring systems, and then reconciling losses. This structured approach, combined with the expert management of ransom negotiations, underscores the complexity of modern cyber claims and the necessity of proactive preparation and a clear incident response plan.

#CyberClaims #Ransomware #Cybersecurity #DataBreach #SmallBusinessSecurity #Insurance #IncidentResponse

What to Do If You Get Hacked: A Practical Survival Guide with Alan Gin

In this SafeHouse episode, Jeff Edwards and Alan Gin break down what actually happens when a cyber incident hits and what you should do next.

This conversation is based on a real-world, three-part series designed for everyday people who suddenly find themselves dealing with a hacked account, fraud, or a suspicious alert.

If you’ve ever wondered what you would actually do in that moment, this episode walks you through it step by step.

Read More »

Cyber Risk: Where Mitigation Meets Insurance With Michael Phillips

Cyber risk management is often framed as a choice between prevention and insurance. In reality, the most resilient organizations combine both.
In this episode of The SafeHouse, Jeff Edwards speaks with Michael Phillips, Global Head of Cyber at Coalition, about how insurers evaluate cyber risk and why mitigation and insurance must work together.

Building on a previous discussion about the elements of risk management, the conversation explores how underwriters think about cyber exposure, what signals insurers look for when assessing organizations, and why operational resilience is becoming central to modern cyber insurance.

The result is a practical discussion about how businesses should approach cyber risk today.

Read More »

Making Sense of Risk Management with Davis Hake

Cyber risk management is often discussed in technical language. But at its core, risk is financial.

In this episode of The SafeHouse Podcast, Jeff Edwards interviews Davis Hake of Venable to break down how cyber risk should be measured, communicated, and quantified inside organizations.

For CISOs, risk managers, brokers, underwriters, and resilience professionals, this episode provides a practical framework for thinking about cyber exposure beyond compliance checklists.

If you want to understand cyber risk in terms that boards and CFOs actually respond to, this conversation is essential listening.

Read More »

When Cybersecurity Became a State Responsibility with James Saunders

Federal cybersecurity responsibility has shifted to the states. What happens next?

In this episode of The SafeHouse Podcast, Jeff Edwards welcomes James Saunders, Chief Information Security Officer for the State of Maryland, for a deep conversation on state-level cybersecurity, resilience, and leadership.

James walks through his path from early technical support roles to federal cybersecurity leadership and now to protecting Maryland’s digital ecosystem. He explains Maryland’s IT Master Plan, the state’s five-pillar cybersecurity strategy, and how partnerships, talent, and resilience come together in practice.

This episode offers a behind-the-scenes look at how cybersecurity decisions are made at scale, how states collaborate with one another, and why taking care of people matters as much as taking care of systems.

Read More »

Why Cyber Warranties Are Not Insurance — and Why That Matters

Kirsten Bay, CEO and co-founder of Cysurance, explains why warranties are becoming a critical layer in cyber risk management. Bay explains how AI-driven cyber certification can help organizations predict where risk is most likely to surface, prevent disruption before it becomes a claim, and protect both insureds and carriers by creating clear, defensible signals of cyber maturity.

Read More »