Two years ago, a mid-sized organisation was in the early stages of exploring cyber insurance. They engaged Aon for a preliminary assessment— an important step in understanding how prepared they really were.
The outcome? A reality check. Their cybersecurity posture wasn’t strong enough to qualify for cover. The risks were too high.
The good news is, they had time to fix it—and a clear view of what needed to change.
Looking Inward, Moving Forward
Working closely with Aon’s cyber practice, Client A understood the risks. What followed was a considered effort to change course. They brought Virtuoso into the fold—but rather than jumping straight to solutions, we took the time to understand what was behind the gaps. What were the biggest risks? Where were the quick wins? And what would meaningful progress look like?
For Virtuoso, this meant understanding Client A’s business, their people, and the pressures they faced. From there, Virtuoso developed a tailored approach grounded in practical actions: deploying the right security tools, maturing internal processes, and supporting the business through regular security awareness training and technical remediation cycles.
This wasn’t about ticking boxes. It was about making decisions that would stand up to scrutiny—from auditors, insurers, and cyber criminals alike.

Progress That Speaks for Itself
Two years on, Client A returned to Aon for another review. This time, the conversation looked very different.
They weren’t just insurable—they were outperforming the market. Here’s what that looked like:
- Lower Premiums: The average “rate per million” for businesses in their sector is about $12,000. Client A secured coverage at roughly 40% of that average
., resulting in substantial premium savings.
- Comprehensive Coverage: With a strengthened cybersecurity posture, they gained access to broader insurance options, ensuring better protection against a wide range of cyber risks.
- Lower Excess: Their improved risk profile also meant less financial exposure in the event of a claim, further enhancing the value of their insurance policy.
As Duncan Morrison, Aon’s Cyber Practice Leader, put it: “The work Virtuoso has undertaken here has been hugely positive for the client. The uplift work aligns with widely accepted industry standards, and in turn presents their approach to cyber security and resilience as top class to insurance markets. On top of this, Virtuoso has a great understanding of the complimentary value cyber insurance provides their clients, which has been articulated well throughout the process.”
Building Capability, Not Just Cover
Rather than rushing to meet insurance criteria, Virtuoso’s focus was about building long-term capability—something we believe should be at the core of any technology partnership.
Client A committed to the process. They asked the hard questions. They made room for change. And when the time came to return to the insurance market, they didn’t just qualify—they set a benchmark.
We’re proud to have played a part in that journey. If you’re thinking about cyber insurance, tackling risk, or more importantly, wanting to improve security across your organisations users and data, we’re here to help.
Ready to simplify your IT?
Let’s discuss your goals and challenges - no obligation, just practical advice.
Book a Discovery Call



