首页|网络安全损失险的损失补偿逻辑与保险责任认定

网络安全损失险的损失补偿逻辑与保险责任认定

扫码查看
网络安全损失险作为网络安全风险治理的重要"市场"工具,能够有效填补立法规制与技术预防等既有治理路径的不足.然而,面对因果关系复杂的各类网络安全风险,网络安全损失险能够填补的网络安全损失范围始终存有争议.从损失类型来看,事实层面的网络安全经济损失并不当然均属于保险法中损失填补的基本范畴,按照"实际损失"和"合理费用"的基本划分,网络安全损失险所遵循的损失填补逻辑实际上是以"有限补偿"为主:对于营业中断损失而言,保险责任仅以被保险人无法有效处置的网络安全故障为限;对于网络勒索赎金这类损失而言,保险责任则以"支付赎金行为属于避免损失扩大的最佳方式"为前提.网络安全损失险本质上是对《民法典》侵权责任编等制度工具难以全面回应网络安全态势的补充,故而其"补偿"的理想效果是填补网络安全事件发生前后的营业能力差异及其经济利润差额.
Loss Compensation Logic and Insurance Liability Determination of Cybersecurity Loss Insurance
In modern society,the popularization and application of network communication technology has reshaped social structure and social relations,but it has also produced post-modern social risks-cybersecurity risks.Diversified governance tools such as law,technology,and market have become the core elements of current cybersecurity governance.Under the guidance of market governance,cybersecurity loss insurance has gradually received attention,and policies such as theOpinions on Promoting the Standardized and Healthy Development of Cyber Security Insurancewere released one after another.However,most of existing studies discuss issues such as risk insurability and insurance product design from an insurance perspective.In particular,there is a lack of specialized research at the legal system level on matters that are prone to legal disputes such as the scope of loss compensation for this type of insurance.Since there are no judicial cases on cybersecurity loss insurance in China,this article uses judicial cases in the United States,where cybersecurity loss insurance is relatively developed,as an argument to analyze the U.S.courts'decisions on the purpose of insurance contracts,determination of insurance liability,and determination of the scope of cybersecurity losses.In addition,this article,based on the practical characteristics of cyber security losses,compares them with the concept of loss in traditional civil law theory.From this point of view,all cyber security economic losses at the factual level do not certainly belong to the basic scope of loss compensation in insurance law.According to the basic division of"actual losses"and"reasonable expenses",the loss compensation logic followed by cybersecurity loss insurance is actually based on"limited compensation",and its ideal"supplementary"effect is to compensate for the difference in operating capacity before and after the occurrence of cybersecurity incidents and the difference in actual economic profits.Compared with existing research,this article conducts a specialized analysis of two common types of security losses-business interruption losses and cyber extortion,and makes an expanded discussion on their corresponding insurance liabilities.First,for business interruption losses,insurance liability is limited to cybersecurity failures that the insured cannot effectively handle.As business interruption losses are in the nature of profit losses,the prerequisite for cybersecurity loss insurance to compensate for such losses is that the losses are caused or expanded due to reasons within the scope of liability of the main insurance clauses.Second,for losses such as cyber extortion,the assumption of insurance liability is based on the premise that"paying the ransom is the best way to avoid the expansion of losses".Moreover,after the insured fulfills its notification obligation in a timely manner,the data to be protected by paying the ransom should be the data held hostage by the cyber extortion attack.This article reveals the compensation function of cybersecurity loss insurance for various types of cybersecurity losses,which helps to reduce legal disputes about the insurance liability clauses of this type of insurance in the practical pilot of cybersecurity loss insurance and realize the loss of cybersecurity insurance.The filling function is connected with the functions of the current cybersecurity legal system.

cybersecurity loss insurancecompensation for lossesbusiness interruption losscyber extortion

周瑞珏

展开 >

北京航空航天大学工业和信息化法治研究院

网络安全损失险 损失填补 营业中断损失 网络勒索赎金

国家社会科学基金重大项目

16ZDA075

2024

暨南学报(哲学社会科学版)
暨南大学

暨南学报(哲学社会科学版)

CSSCICHSSCD北大核心
影响因子:0.69
ISSN:1000-5072
年,卷(期):2024.46(2)
  • 43