Speak directly to our team
01603 218000
  • About us
  • Claims
  • Resources
  • Make a payment
  • Careers
  • Contact us
The Alan Boswell Group logo
    Business Insurance
    Business Insurance Advice & Guidance
    • Commercial Insurance
      • Employers' Liability Insurance
      • Product Liability Insurance
      • Public Liability Insurance
      • Business Interruption Insurance
      • Professional Indemnity Insurance
      • Cyber Insurance
      • Legal Expenses Insurance
      • Management Liability Insurance
      • View all Commercial Insurance
    • Credit Insurance
      • Whole-Turnover Insurance
      • Bonds & Surety Guarantees
      • Specific Account Insurance
      • Invoice Discounting
      • Cash Flow Finance
      • Agricultural & Horticultural Credit Insurance Scheme
      • View all Credit Insurance
    • Business Property Insurance
      • Commercial Property Insurance
      • Property Portfolio Insurance
      • Unoccupied Commercial Property Insurance
      • View all Business Property Insurance
    • Trade & Industry Insurance
      • Recording Studio Insurance
      • Teachers Insurance
      • Marine Trade Insurance
      • Marine Transit Insurance
      • Pub Insurance
      • Franchise Insurance
      • Hospitality Insurance
      • View all Trade & Industry
    • Agricultural Insurance
      • Agricultural Insurance
      • Farm Insurance
      • Environmental Impairment Liability Insurance
      • Renewable Energy Insurance
      • Livestock Insurance
      • Agricultural Vehicle Insurance
      • View all Agricultural Insurance
    • Commercial Motor Insurance
      • Fleet Insurance
      • Motor Trade Insurance
      • Road Haulage Insurance
      • Self-Drive Hire Insurance
      • Taxi Insurance
      • Driving Instructor Insurance
      • View all Commercial Motor Insurance
    • Care & Medical Insurance
      • Care Home Insurance
      • Medical Equipment Insurance
      • Medical Malpractice Insurance
      • Surgery Insurance
      • Complementary Therapy Insurance
      • View all Care & Medical Insurance
    • Technology and Life Science Sector Insurance
      • CleanTech Insurance
      • Life Science Insurance
      • Insurance for Start-ups
      • Video Games Industry Insurance
      • Technology Insurance
      • View all Technology and Life Science Sector Insurance
    • Construction Insurance
      • Construction Insurance
      • Structural Warranty Insurance
      • Tradesman Insurance
      • View all Construction Insurance
    Employee Benefits & Healthcare
    Employee Benefits & Healthcare hub
    • Employee Benefits
      • Group Critical Illness Insurance
      • Death in Service Insurance
      • Workplace Pensions
      • Flexible Benefits
      • Group Income Protection
      • View all Employee Benefits
    • Business Healthcare
      • Health and Wellbeing Plans
      • Health Cash Plans
      • Health Screening
      • Group Private Medical Insurance
      • View all Business Healthcare
    • Business Protection
      • Key Person Insurance
      • Business Loan Protection
      • Shareholder Protection Insurance
      • Partnership Protection Insurance
      • View all Business Protection
    Risk Management
    Risk Management Hub
    • Risk Management Services
    • Engineering Inspections
    • Health & Safety
    • Health & Safety Training
    • NEBOSH Training Course
    • IOSH Training Course
    • ABRM Health & Safety Portal
    Personal Insurance
    Personal Insurance hub
    • Home & Property Insurance
      • Home Insurance
      • Building Insurance
      • Home Renovation Insurance
      • Listed Building Insurance
      • Unoccupied Property Insurance
      • Holiday Home Insurance
      • High-Value Home Insurance
      • Tenants Contents Insurance
      • View all Home & Property Insurance
    • Motor Insurance
      • Classic Car Insurance
      • Motorhome Insurance
      • Private Car Insurance
      • Motor Legal Expenses
      • Call Assist Breakdown Cover
      • Short-Term Motor Insurance
      • Provisional Driver Insurance
      • View all Motor Insurance
    • Boat Insurance
      • Yacht Insurance
      • Motorboat Insurance
      • Classic Broads Boat Insurance
      • Broads Boat Insurance
      • Dinghy Insurance
      • View all Boat Insurance
    • Travel Insurance
    Personal Financial Planning & Advice
    Personal Financial Planning hub
    • Wealth Management
      • Financial Advice for Widows and Widowers
      • View all Wealth Management
    • Savings and Investments
      • Investments
      • Individual Savings Account
      • View all Savings and Investments
    • Retirement Income Solutions
      • Personal Pensions
      • Retirement Planning
      • View all Retirement Income Solutions
    • Private Healthcare Insurance
      • Private Medical Insurance
      • View all Private Healthcare Insurance
    • Protection
      • Critical Illness Cover
      • Income Protection Insurance
      • Life Insurance
      • Personal Accident and Sickness Cover
      • View all Protection
  • Landlord Insurance
    Landlords Advice & Guidance
    • Landlord Building Insurance
    • Rent Guarantee Insurance
    • Tenant Referencing
    • Landlord Home Emergency Cover
    • Multi Property Landlord Insurance
    • Block of Flats Insurance
    • Landlord Legal Expenses Insurance
    • Commercial Landlord Insurance
    • Landlord Liability Insurance
    • Excess Protection Insurance
    • Airbnb Insurance
    • HMO Insurance
    • Serviced Accommodation Insurance
    • Private Sector Leasing Insurance
    • Buy-to-Let Insurance
    • Landlord Contents Insurance
Speak directly to our team
01603 218000
  • Business
    Business Insurance
    • Commercial Insurance
      • Employers' Liability Insurance
      • Product Liability Insurance
      • Public Liability Insurance
      • Business Interruption Insurance
      • Professional Indemnity Insurance
      • Cyber Insurance
      • Legal Expenses Insurance
      • Management Liability Insurance
    • View All Commercial Insurance
    • Credit Insurance
      • Whole-Turnover Insurance
      • Bonds & Surety Guarantees
      • Specific Account Insurance
      • Invoice Discounting
      • Cash Flow Finance
      • Agricultural & Horticultural Credit Insurance Scheme
    • View All Credit Insurance
    • Business Property Insurance
      • Commercial Property Insurance
      • Property Portfolio Insurance
      • Unoccupied Commercial Property Insurance
    • View All Business Property Insurance
    • Trade & Industry Insurance
      • Recording Studio Insurance
      • Teachers Insurance
      • Marine Trade Insurance
      • Marine Transit Insurance
      • Pub Insurance
      • Franchise Insurance
      • Hospitality Insurance
    • View All Trade & Industry
    • Agricultural Insurance
      • Agricultural Insurance
      • Farm Insurance
      • Environmental Impairment Liability Insurance
      • Renewable Energy Insurance
      • Livestock Insurance
      • Agricultural Vehicle Insurance
    • View All Agricultural Insurance
    • Commercial Motor Insurance
      • Fleet Insurance
      • Motor Trade Insurance
      • Road Haulage Insurance
      • Self-Drive Hire Insurance
      • Taxi Insurance
      • Driving Instructor Insurance
    • View All Commercial Motor Insurance
    • Care & Medical Insurance
      • Care Home Insurance
      • Medical Equipment Insurance
      • Medical Malpractice Insurance
      • Surgery Insurance
      • Complementary Therapy Insurance
    • View All Care & Medical Insurance
    • Technology and Life Science Sector Insurance
      • CleanTech Insurance
      • Life Science Insurance
      • Insurance for Start-ups
      • Video Games Industry Insurance
      • Technology Insurance
    • View All Technology and Life Science Sector Insurance
    • Construction Insurance
      • Construction Insurance
      • Structural Warranty Insurance
      • Tradesman Insurance
    • View All Construction Insurance
    Business Insurance Advice & Guidance
    Employee Benefits & Healthcare
    • Employee Benefits
      • Group Critical Illness Insurance
      • Death in Service Insurance
      • Workplace Pensions
      • Flexible Benefits
      • Group Income Protection
    • View All Employee Benefits
    • Business Healthcare
      • Health and Wellbeing Plans
      • Health Cash Plans
      • Health Screening
      • Group Private Medical Insurance
    • View All Business Healthcare
    • Business Protection
      • Key Person Insurance
      • Business Loan Protection
      • Shareholder Protection Insurance
      • Partnership Protection Insurance
    • View All Business Protection
    Employee Benefits & Healthcare hub
    Risk Management
    • Risk Management Services
    • Engineering Inspections
    • Health & Safety
    • Health & Safety Training
    • NEBOSH Training Course
    • IOSH Training Course
    • ABRM Health & Safety Portal
    • View All Risk Management
    Risk Management Hub
  • Personal
    Personal Insurance
    • Home & Property Insurance
      • Home Insurance
      • Building Insurance
      • Home Renovation Insurance
      • Listed Building Insurance
      • Unoccupied Property Insurance
      • Holiday Home Insurance
      • High-Value Home Insurance
      • Tenants Contents Insurance
    • View All Home & Property Insurance
    • Motor Insurance
      • Classic Car Insurance
      • Motorhome Insurance
      • Private Car Insurance
      • Motor Legal Expenses
      • Call Assist Breakdown Cover
      • Short-Term Motor Insurance
      • Provisional Driver Insurance
    • View All Motor Insurance
    • Boat Insurance
      • Yacht Insurance
      • Motorboat Insurance
      • Classic Broads Boat Insurance
      • Broads Boat Insurance
      • Dinghy Insurance
    • View All Boat Insurance
    • Travel Insurance
    Personal Insurance hub
    Personal Financial Planning & Advice
    • Wealth Management
      • Financial Advice for Widows and Widowers
    • View All Wealth Management
    • Savings and Investments
      • Investments
      • Individual Savings Account
    • View All Savings and Investments
    • Retirement Income Solutions
      • Personal Pensions
      • Retirement Planning
    • View All Retirement Income Solutions
    • Private Healthcare Insurance
      • Private Medical Insurance
    • View All Private Healthcare Insurance
    • Protection
      • Critical Illness Cover
      • Income Protection Insurance
      • Life Insurance
      • Personal Accident and Sickness Cover
    • View All Protection
    Personal Financial Planning hub
  • Landlord Insurance
    • Landlord Building Insurance
    • Rent Guarantee Insurance
    • Tenant Referencing
    • Landlord Home Emergency Cover
    • Multi Property Landlord Insurance
    • Block of Flats Insurance
    • Landlord Legal Expenses Insurance
    • Commercial Landlord Insurance
    • Landlord Liability Insurance
    • Excess Protection Insurance
    • Airbnb Insurance
    • HMO Insurance
    • Serviced Accommodation Insurance
    • Private Sector Leasing Insurance
    • Buy-to-Let Insurance
    • Landlord Contents Insurance
    • View All
    Landlords Advice & Guidance
  • About us
  • Claims
  • Resources
  • Make a payment
  • Careers
  • Contact us
  • Resources
  • What is a cyber incident response plan?
Home
9 mins read
Guides and advice Business & Commercial Insurance

What is a cyber incident response plan?

5.09.25

By Alan Boswell Group

Cyber security incident planning
  1. Who should have a cyber incident response plan (IRP)?
  2. What elements make up a cyber security incident response plan?
  3. How do I develop a cyber incident response plan?
    1. Documentation
    2. Practical exercises
  4. What else should businesses be doing to protect their cyber security?
  5. Business support from experienced experts
In this article
  1. Who should have a cyber incident response plan (IRP)?
  2. What elements make up a cyber security incident response plan?
  3. How do I develop a cyber incident response plan?
    1. Documentation
    2. Practical exercises
  4. What else should businesses be doing to protect their cyber security?
  5. Business support from experienced experts

A cyber incident response plan (IRP) is a document that outlines your business’s approach to dealing with a cyber security incident. Having a robust plan can help mitigate the impact of a security breach, limiting the financial and reputational damage to your business.

We look at why all businesses should have a cyber incident response plan, how to put an IRP together, and other ways to protect your business from the threat of cyber attacks.

Who should have a cyber incident response plan (IRP)?

All businesses and organisations that manage data or personal information are potential targets for cyber criminals. Latest government figures show that more than 600,000 UK businesses experienced some form of cyber security breach or attack in the last 12 months.

Few organisations are immune to the risk of a cyber breach, but medium-sized businesses remain one of the most at-risk categories (with a 67% incidence rate). There’s also growing awareness within the business sector that cyber attacks are becoming more sophisticated, with AI impersonation becoming increasingly common.

Statistics from IBM’s X-Force Threat Intelligence Index 2025 also reveal that phishing remains an effective method for criminals to access systems. Despite overall phishing attempts falling, one specific type of phishing attack has actually increased and is aimed at stealing employee credentials. Criminals then use this stolen information to pretend to be an employee and log into systems, rather than hack their way in.

With all this in mind, it’s imperative that businesses feel confident and are prepared to deal with a cyber attack. Having a clear and comprehensive cyber incident response plan can help your business effectively manage a breach.

What elements make up a cyber security incident response plan?

Your incident response plan should address four key questions:

  1. How can I best protect customer, personal, and sensitive data?

  2. How can I best detect and respond to incidents effectively and in a timely manner?

  3. How can I ensure appropriate communications and responsibilities are in place and understood?

  4. How can I get to a safe and effective resolution that allows us to quickly return to business-as-usual?

Any team that’s tasked with putting together a cyber incident response plan should include members from all areas of the business. This helps to ensure that all aspects of your business are considered by experts rather than taking a purely technical approach.

How do I develop a cyber incident response plan?

An effective IRP takes a two-pronged approach:

Documentation

Clear documentation that outlines procedures is an essential part of any IRP. This could include a series of ‘how-to’ guides that explore common cyber attack scenarios – for example, what are the most common phishing tactics?

The incident response plan itself should include:

Key contacts – including senior leaders, HR, legal teams, and insurers. Your key contacts will be the first port of call, so it’s important to include a secondary contact, as well as multiple means of communication.

Flowchart of processes – this shows the steps that need to be taken when an incident has been reported. It can include details about teams responsible for specific tasks (for example, IT teams in tracking the source or legal and PR teams for drafting external communications – if you have a cyber insurance policy, the insurers would manage all of this for you).

Guidance on any legal or regulatory requirements – this should include any steps you need to take if a breach occurs, such as contacting HR or any regulatory bodies if sensitive data has been compromised.

It’s also important to remind colleagues to document the actions they’ve taken so that they can be reviewed for future planning purposes after the incident.

Practical exercises

Carrying out regular incident response exercises highlights the effectiveness of the procedures you have in place. This includes identifying what the most likely incidents are and taking the steps outlined in your drafted IRP.

This aspect should also include regular updates or training on new cyber risks and how they might present themselves (such as the rise in the use of AI).

Taking a practical approach also means understanding how and why a breach occurred so that your business can address the root cause (rather than just relying on technical changes). Understanding these causes can help prevent future incidents as it will give you a clearer view of what areas need focus, such as staff training or updating firewalls. Cyber insurers typically provide these services as part of their policy, including pre-loss training and security protection.

What else should businesses be doing to protect their cyber security?

Prevention is by far the most effective way to keep your business safe. Simple but effective precautions include:

  • updating staff about the changing nature of scams and training them to be vigilant;

  • backing up data to avoid it being held for ransom;

  • using multi-factor authentication (which will be a requirement if you have cyber insurance);

  • using strong passwords;

  • ensuring software is updated regularly;

  • investing in antivirus software.

As well as these measures and alongside a well-developed incident response plan, organisations can enhance their cyber defences by putting cyber insurance in place.

Policies can cover regulatory costs, business interruption, liability, as well as data, financial and reputational damage. Any good cyber insurance policy should restore your business to its pre-cyber attack or breach state.

Lastly, if a cyber incident does occur, the focus of incident management should always be on recovery and learning; it should never be about blame. Techniques used within cyber crime constantly evolve. Often, no matter how well trained or vigilant your employees are, incidents can and do occur. What’s important is being able to manage the incident effectively.

Business support from experienced experts

Successful management of cyber breaches relies on having an effective and comprehensive cyber incident response plan in place. If you’re worried about how to put a plan together or would prefer an independent audit of your security defences, you can find support from cyber security consultants.

To find out more about how cyber insurance can help your business, speak to our team on 01603 218000.

Need help with your insurance?

Whether you need a quote, have a general enquiry, or want to talk it through over the phone, we're here to help.

Make an enquiry

Thank you for your enquiry, we will be in touch shortly.

As a leading independent insurance broker and specialist in insurance, risk management, and financial planning products, we are dedicated to finding the right cover to suit your needs.

We’d love to hear about your experience with us so far! Please take a moment to rate us on Google.

Leave a review

Contact details

Search with your postcode or first line of the address
There is a problem with the address you have entered. Please check the address for errors.
If applicable.

There was a problem with some of the information you entered. Please check the form for errors and try again.

A technical error occurred when trying to submit this form. Please call us to let us know.

Speak to us:  01603 218000

Related guides and insights

6 mins
Cyber security

Cyber security audits explained

Cybercrime is one of the biggest threats to businesses across all industries and having appropriate cyber security in place is vital. We take a look at cyber security audits, how they work and why they're important.

12 mins
Cyber security procedures

Cyber security procedures: helping you to reduce the cyber risk to your business

In our second article from CyberScale, we explore how cyber security procedures can help reduce the risk of a successful cyber attack on your business.

9 mins
What is a phishing attack?

What is a phishing attack?

As criminals become more sophisticated, scams can be harder to detect and it vital to stay one step ahead.

20 mins
business guide to cyber attacks

Small business guide to cyber attacks – prevention and loss

More than 600,000 UK businesses experienced a cyber breach or attack in the last 12 months. We look at the most common types of cyber attacks and what you can do to minimise the risk to your business.

The Alan Boswell Group logo
Speak to us:  01603 218000

Make an enquiry – general and locations

Thank you for your enquiry, we will be in touch shortly.

As a leading independent insurance broker and specialist in insurance, risk management, and financial planning products, we are dedicated to finding the right cover to suit your needs.

We’d love to hear about your experience with us so far! Please take a moment to rate us on Google.

Leave a review

Contact details

Search with your postcode or first line of the address
There is a problem with the address you have entered. Please check the address for errors.
If applicable.

There was a problem with some of the information you entered. Please check the form for errors and try again.

A technical error occurred when trying to submit this form. Please call us to let us know.

Find out more about us
  • Alan Boswell Group linkedin
  • Alan Boswell Group facebook
  • Alan Boswell Group instagram
Services
  • Business Insurance
  • Personal Insurance
  • Landlord Insurance
  • Risk Management
  • Business Financial Planning
  • Personal Financial Planning
Company
  • About us
  • Contact us
  • Careers
  • Find people
  • Company news
  • Claims
  • Make a payment
  • Norwich Insurance & Financial Advice
  • Bury St Edmunds Commercial Insurance
  • Peterborough Insurance Brokers
  • Boston Insurance Brokers
  • Grimsby Insurance Brokers
  • Cambridge Insurance & Financial Advice
  • Ipswich Commercial Insurance
  • Legal Information
  • Terms of Business
  • Privacy and Cookie Statement
  • Complaints

©2025 Alan Boswell Group, All rights reserved.

Made by Candour