Skip to content
Artwork for Making Risk Flow | The Future of Insurance
Making Risk Flow | The Future of Insurance · April 14 · 40 min

Beyond CVSS: The New Cyber Underwriting Playbook | Jay Wallace of VulnCheck

In this episode of Making Risk Flow: Exploring the Ecosystem, host Jake Harding sits down with Jay Wallace of VulnCheck about how real-time exploit intelligence is reshaping cyber insurance. They unpack why traditional CVSS scoring falls short and how modeling threat actor behaviour offers a clearer picture of risk. Jay explains how carriers can use machine-readable data feeds to automate underwriting and continuously monitor exposure post-binding. The conversation also highlights the value of proactive threat notifications in reducing claims and strengthening client trust. Jay and Jake also explore how AI and automation enhance, not replace, analysts, and why the most successful insurers are shifting from a profit-centric mindset to a partnership-driven approach focused on prevention, resilience, and long-term value creation. Fan Mail: Got a challenge digitizing your intake? Share it with us, and we’ll unpack solutions from our experience at Cytora. To receive a custom demo from Cytora, click here and use the code 'Making Risk Flow'. Our previous guests include: Bronek Masojada of PPL, Craig Knightly of Inigo, Andrew Horton of QBE Insurance, Simon McGinn of Allianz, Stephane Flaquet of Hiscox, Matthew Grant of InsTech, Paul Brand of Convex, Paolo Cuomo of Gallagher Re, and Thierry Daucourt of AXA. Check out the three most downloaded episodes: The Five Pillars of Data Analytics Strategy in Insurance | Craig Knightly, Inigo 20 Years as CEO of Hiscox: Personal Reflections and the Evolution of PPL | Bronek Masojada Implementing ESG in the Insurance and Underwriting Space | Simon Tighe, Chaucer, and Paul McCarney, Moody's

0:00-40:33

transcript

No transcript — this publisher did not publish one.

show notes

In this episode of Making Risk Flow: Exploring the Ecosystem, host Jake Harding sits down with Jay Wallace of VulnCheck about how real-time exploit intelligence is reshaping cyber insurance. They unpack why traditional CVSS scoring falls short and how modeling threat actor behaviour offers a clearer picture of risk. Jay explains how carriers can use machine-readable data feeds to automate underwriting and continuously monitor exposure post-binding. 

The conversation also highlights the value of proactive threat notifications in reducing claims and strengthening client trust. Jay and Jake also explore how AI and automation enhance, not replace, analysts, and why the most successful insurers are shifting from a profit-centric mindset to a partnership-driven approach focused on prevention, resilience, and long-term value creation.


Fan Mail: Got a challenge digitizing your intake? Share it with us, and we’ll unpack solutions from our experience at Cytora.

To receive a custom demo from Cytora, click here and use the code 'Making Risk Flow'.

Our previous guests include: Bronek Masojada of PPL, Craig Knightly of Inigo, Andrew Horton of QBE Insurance, Simon McGinn of Allianz, Stephane Flaquet of Hiscox, Matthew Grant of InsTech, Paul Brand of Convex, Paolo Cuomo of Gallagher Re, and Thierry Daucourt of AXA.

Check out the three most downloaded episodes:

links8