<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>Resiliently — Cyber Risk Intelligence</title><description>Expert cyber risk insights for insurance underwriters, risk engineers, and brokers. In-depth analysis on NIS2, DORA, ransomware claims, and AI-driven risk assessment.</description><link>https://resiliently.ai/</link><language>en</language><item><title>BSI Opens NIS2 Enforcement: What German Entities Must Do Before the Audit</title><link>https://resiliently.ai/blog/posts/bsi-nis2-enforcement-what-german-entities-must-do/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/bsi-nis2-enforcement-what-german-entities-must-do/</guid><description>BSI has begun NIS2 enforcement audits. Essential entities in Germany face up to €10M fines. Here is what your audit readiness checklist looks like for 2026.</description><pubDate>Fri, 10 Apr 2026 00:00:00 GMT</pubDate><category>nis2</category><category>enforcement</category><category>germany</category><category>bsi</category><category>compliance</category><category>audit</category><author>michael-guiao</author></item><item><title>NIS2 Intelligence Digest — BSI Enforcement Activated, Penalty Calculators Updated</title><link>https://resiliently.ai/blog/posts/newsletter-2026-04-10/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/newsletter-2026-04-10/</guid><description>Weekly intelligence on NIS2 enforcement, supervisory activity, and cyber insurance market developments across the EU.</description><pubDate>Fri, 10 Apr 2026 00:00:00 GMT</pubDate><category>nis2</category><category>intelligence</category><category>newsletter</category><category>enforcement</category><category>bsi</category><category>cyber-insurance</category><author>michael-guiao</author></item><item><title>NIS2 Compliance Checklist for 2026: What Brokers Need to Verify Before Coverage Placement</title><link>https://resiliently.ai/blog/posts/nis2-compliance-checklist-2026-what-brokers-need-to-verify/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/nis2-compliance-checklist-2026-what-brokers-need-to-verify/</guid><description>Before placing cyber coverage for NIS2 in-scope clients, verify these 10 compliance checkpoints. Missing documentation is the most common coverage gap.</description><pubDate>Fri, 10 Apr 2026 00:00:00 GMT</pubDate><category>nis2</category><category>compliance</category><category>brokers</category><category>underwriting</category><category>checklist</category><category>cyber-insurance</category><author>michael-guiao</author></item><item><title>NIS2 Penalties Explained: Essential vs Important Entities and What They Mean for Coverage</title><link>https://resiliently.ai/blog/posts/nis2-penalties-essential-vs-important-entities/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/nis2-penalties-essential-vs-important-entities/</guid><description>NIS2 fines range from €7M to €10M depending on entity classification. Understand essential vs important entity penalties and how compliance posture affects cyber insurance pricing.</description><pubDate>Fri, 10 Apr 2026 00:00:00 GMT</pubDate><category>nis2</category><category>penalties</category><category>fines</category><category>compliance</category><category>cyber-insurance</category><category>essential-entities</category><category>important-entities</category><author>michael-guiao</author></item><item><title>NIS2 Penalties &amp; Fines Explained: What Organizations Actually Face in 2026</title><link>https://resiliently.ai/blog/posts/nis2-penalties-fines-explained-2026/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/nis2-penalties-fines-explained-2026/</guid><description>NIS2 fines can reach €10 million or 2% of global annual turnover—whichever is higher. This breakdown explains exactly which penalties apply to essential vs important entities, what triggers enforcement, and how underwriters should factor penalty exposure into cyber risk assessment.</description><pubDate>Fri, 10 Apr 2026 00:00:00 GMT</pubDate><category>nis2 penalties</category><category>nis2 fines</category><category>nis2 enforcement</category><category>nis2 non-compliance</category><category>compliance</category><category>cyber risk</category><category>underwriting</category><author>michael-guiao</author></item><item><title>NIS2 Underwriting Questions: What Every Cyber Insurance Broker Should Ask</title><link>https://resiliently.ai/blog/posts/nis2-underwriting-questions-brokers/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/nis2-underwriting-questions-brokers/</guid><description>Practical Line 1, Line 2, and Line 3 underwriting questions for NIS2-exposed clients. Essential vs important entities. Coverage gaps brokers should flag.</description><pubDate>Fri, 10 Apr 2026 00:00:00 GMT</pubDate><category>nis2</category><category>cyber-insurance</category><category>underwriting</category><category>compliance</category><category>eu-regulation</category><category>brokers</category><author>michael-guiao</author></item><item><title>NIS2 Underwriting Questions - Diagram Specifications</title><link>https://resiliently.ai/blog/posts/nis2-underwriting-questions-brokersdiagrams/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/nis2-underwriting-questions-brokersdiagrams/</guid><description>Mermaid and ASCII diagram specifications for NIS2 underwriting visual elements</description><pubDate>Fri, 10 Apr 2026 00:00:00 GMT</pubDate><category>nis2</category><category>underwriting</category></item><item><title>Cyber Insurance Comparison: How to Evaluate and Compare Policies in 2026</title><link>https://resiliently.ai/blog/posts/cyber-insurance-comparison-how-to-evaluate-2026/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/cyber-insurance-comparison-how-to-evaluate-2026/</guid><description>Learn how to compare cyber insurance policies in 2026. Coverage limits, deductibles, exclusions, endorsements, top EU providers, and a buyer&apos;s checklist. Includes NIS2 impact on policy selection.</description><pubDate>Thu, 09 Apr 2026 00:00:00 GMT</pubDate><category>cyber insurance comparison</category><category>compare cyber insurance</category><category>best cyber insurance policy</category><category>cyber insurance providers comparison</category><category>NIS2</category><category>cyber risk</category><category>underwriting</category><author>michael-guiao</author></item><item><title>What Does Cyber Insurance Cover in 2026? First-Party and Third-Party Coverage Explained</title><link>https://resiliently.ai/blog/posts/cyber-insurance-coverage-what-is-covered-2026/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/cyber-insurance-coverage-what-is-covered-2026/</guid><description>Complete guide to cyber insurance coverage in 2026. Learn what policies actually cover: data breach response, business interruption, cyber extortion, privacy liability, regulatory defense, and more. Understand first-party vs third-party coverage.</description><pubDate>Wed, 08 Apr 2026 00:00:00 GMT</pubDate><category>cyber insurance coverage</category><category>what does cyber insurance cover</category><category>first-party coverage</category><category>third-party coverage</category><category>data breach insurance</category><category>cyber liability</category><category>business interruption</category><category>privacy liability</category><author>michael-guiao</author></item><item><title>Cyber Insurance Exclusions: What&apos;s NOT Covered in 2026</title><link>https://resiliently.ai/blog/posts/cyber-insurance-exclusions-what-is-not-covered-2026/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/cyber-insurance-exclusions-what-is-not-covered-2026/</guid><description>Critical guide to cyber insurance exclusions and coverage gaps. Learn what most policies don&apos;t cover, from unencrypted devices to nation-state attacks, and how to protect your business from blind spots.</description><pubDate>Wed, 08 Apr 2026 00:00:00 GMT</pubDate><category>cyber insurance</category><category>exclusions</category><category>coverage gaps</category><category>cyber risk</category><category>insurance claims</category><category>risk management</category><author>michael-guiao</author></item><item><title>NIS2 Compliance Checklist: 70+ Action Items for the 2026 Deadline</title><link>https://resiliently.ai/blog/posts/nis2-compliance-checklist-2026/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/nis2-compliance-checklist-2026/</guid><description>Complete NIS2 compliance checklist with 70+ action items covering risk management, incident reporting, supply chain security, and governance. Essential preparation for EU enforcement.</description><pubDate>Wed, 08 Apr 2026 00:00:00 GMT</pubDate><category>nis2</category><category>compliance</category><category>checklist</category><category>cyber-risk</category><author>michael-guiao</author></item><item><title>NIS2 Compliance Checklist 2026: Complete Guide for Insurance Professionals</title><link>https://resiliently.ai/blog/posts/nis2-compliance-checklist-guide-2026/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/nis2-compliance-checklist-guide-2026/</guid><description>Complete NIS2 compliance checklist with requirements, deadlines, and implementation steps. Get your organization compliant with our expert guide.</description><pubDate>Wed, 08 Apr 2026 00:00:00 GMT</pubDate><category>nis2 compliance checklist</category><category>nis2 requirements</category><category>how to comply with nis2</category><category>compliance</category><category>cyber-risk</category><author>michael-guiao</author></item><item><title>What is NIS2 Compliance? A Complete Guide for 2026</title><link>https://resiliently.ai/blog/posts/nis2-compliance-guide-2026/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/nis2-compliance-guide-2026/</guid><description>Master NIS2 compliance in 2026. Understand the EU cybersecurity directive, who it affects, key requirements, penalties, and how to prepare before enforcement.</description><pubDate>Wed, 08 Apr 2026 00:00:00 GMT</pubDate><category>nis2</category><category>compliance</category><category>eu-cybersecurity</category><category>cybersecurity</category><author>michael-guiao</author></item><item><title>NIS2 Compliance Requirements: 10 Mandatory Security Controls Before the 2026 Deadline</title><link>https://resiliently.ai/blog/posts/nis2-compliance-requirements-deadline-2026/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/nis2-compliance-requirements-deadline-2026/</guid><description>Master NIS2 compliance with our guide to the 10 mandatory security requirements. Learn what to implement, when deadlines hit, and how to avoid penalties up to €10 million or 2% of global turnover.</description><pubDate>Wed, 08 Apr 2026 00:00:00 GMT</pubDate><category>nis2 compliance requirements</category><category>nis2 deadline 2026</category><category>cybersecurity compliance</category><category>eu regulation</category><category>risk management</category><author>michael-guiao</author></item><item><title>NIS2 Essential vs Important Entities: Classification Guide for 2026</title><link>https://resiliently.ai/blog/posts/nis2-essential-vs-important-entities-2026/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/nis2-essential-vs-important-entities-2026/</guid><description>Understand the critical difference between NIS2 essential and important entities. Classification criteria, compliance requirements, penalty differences, and what it means for your cyber insurance.</description><pubDate>Wed, 08 Apr 2026 00:00:00 GMT</pubDate><category>nis2</category><category>compliance</category><category>essential entities</category><category>important entities</category><category>classification</category><category>cyber insurance</category><author>michael-guiao</author></item><item><title>NIS2 Incident Reporting: 24-Hour, 72-Hour, and 1-Month Requirements Explained</title><link>https://resiliently.ai/blog/posts/nis2-incident-reporting-requirements-2026/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/nis2-incident-reporting-requirements-2026/</guid><description>Complete guide to NIS2 incident reporting timelines, requirements, and procedures. Learn what must be reported, when, and to whom under the EU cybersecurity directive.</description><pubDate>Wed, 08 Apr 2026 00:00:00 GMT</pubDate><category>nis2 incident reporting</category><category>nis2 notification timeline</category><category>cybersecurity incident reporting EU</category><category>compliance</category><category>cyber-risk</category><author>michael-guiao</author></item><item><title>Agentic Security: What Underwriters Need to Know in 2026</title><link>https://resiliently.ai/blog/posts/agentic-security-underwriting-autonomous-ai-2026/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/agentic-security-underwriting-autonomous-ai-2026/</guid><description>Autonomous AI agents are entering production at scale — and they bring a completely new attack surface that traditional cyber insurance questionnaires weren&apos;t designed to capture.</description><pubDate>Tue, 07 Apr 2026 00:00:00 GMT</pubDate><category>agentic-ai</category><category>cyber-risk</category><category>underwriting</category><category>nis2</category><category>ai-security</category><author>michael-guiao</author></item><item><title>How Much Does Cyber Insurance Cost in 2026? A Pricing Breakdown for Underwriters and Buyers</title><link>https://resiliently.ai/blog/posts/cyber-insurance-cost-factors-2026/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/cyber-insurance-cost-factors-2026/</guid><description>Complete guide to cyber insurance pricing in 2026. Learn the key factors that determine premiums, from revenue size to security controls, with real market benchmarks for SMEs and mid-market companies.</description><pubDate>Thu, 02 Apr 2026 00:00:00 GMT</pubDate><category>cyber insurance</category><category>pricing</category><category>underwriting</category><category>premiums</category><category>NIS2</category><category>risk assessment</category><category>cyber risk</category><category>SME</category><author>michael-guiao</author></item><item><title>Cyber Insurance Buying Guide 2026: What Every Business Needs to Know</title><link>https://resiliently.ai/blog/posts/cyber-insurance-buying-guide-2026/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/cyber-insurance-buying-guide-2026/</guid><description>A practical guide to choosing the right cyber insurance policy in 2026. Covers NIS2 compliance, key coverage areas, common exclusions, and how to get the best terms.</description><pubDate>Tue, 31 Mar 2026 00:00:00 GMT</pubDate><category>cyber-insurance</category><category>NIS2</category><category>cyber-risk</category><category>insurance-buying-guide</category><category>cyber-coverage</category><author>michael-guiao</author></item><item><title>Ransomware Claims in 2026: What the Data Tells Underwriters About Pricing Risk</title><link>https://resiliently.ai/blog/posts/ransomware-claims-2026-underwriter-pricing/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/ransomware-claims-2026-underwriter-pricing/</guid><description>Ransomware claims frequency is shifting again in 2026. Here is what the latest data patterns mean for how underwriters price cyber risk, structure deductibles, and evaluate ransomware-specific endorsements.</description><pubDate>Tue, 31 Mar 2026 00:00:00 GMT</pubDate><category>ransomware</category><category>cyber-insurance</category><category>claims</category><category>underwriting</category><category>risk-pricing</category><author>michael-guiao</author></item><item><title>The NIS2 Audit Crunch: What Underwriters Need to Know Before June 30, 2026</title><link>https://resiliently.ai/blog/posts/nis2-audit-crunch-underwriters-june-2026/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/nis2-audit-crunch-underwriters-june-2026/</guid><description>With the June 30, 2026 NIS2 compliance audit deadline approaching, cyber underwriters face a narrow window to reassess risk profiles across their entire European portfolio. Here is what the audit requirement means for how you evaluate, price, and write cyber coverage.</description><pubDate>Mon, 30 Mar 2026 00:00:00 GMT</pubDate><category>nis2</category><category>cyber-insurance</category><category>underwriting</category><category>compliance</category><category>eu-regulation</category><author>michael-guiao</author></item><item><title>The €50,000 Domain That Could Bankrupt Your SMB: Why External Attack Surface Discovery Cannot Wait</title><link>https://resiliently.ai/blog/posts/euro-domain-attack-surface-smb-2026/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/euro-domain-attack-surface-smb-2026/</guid><description>Your domain portfolio is your biggest attack surface - and most security teams have no idea what is exposed. Learn how to quantify your financial exposure in euros, not letter grades.</description><pubDate>Thu, 26 Mar 2026 00:00:00 GMT</pubDate><category>attack-surface</category><category>cyber-risk</category><category>smb-security</category><category>domain-exposure</category><author>michael-guiao</author></item><item><title>NIS2 Directive: The Complete Compliance Guide for 2026</title><link>https://resiliently.ai/blog/posts/nis2-directive-compliance-guide-2026/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/nis2-directive-compliance-guide-2026/</guid><description>Everything you need to know about NIS2 compliance in 2026: which sectors are affected, key requirements, deadlines, and how to prepare your organization for the EU cybersecurity directive.</description><pubDate>Thu, 26 Mar 2026 00:00:00 GMT</pubDate><category>nis2</category><category>compliance</category><category>cyber-risk</category><category>eu-regulation</category><author>michael-guiao</author></item><item><title>The Uncomfortable Truth About Cyber Risk in 2026</title><link>https://resiliently.ai/blog/posts/uncomfortable-truth-cyber-risk-2026/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/uncomfortable-truth-cyber-risk-2026/</guid><description>Five things I&apos;m seeing in the threat landscape that most security leaders aren&apos;t talking about enough.</description><pubDate>Tue, 24 Mar 2026 00:00:00 GMT</pubDate><category>cyber-risk</category><category>threat-intelligence</category><category>underwriting</category><author>michael-guiao</author></item><item><title>Deepfake-Enabled BEC: The Claim Trend Underwriters Cannot Ignore</title><link>https://resiliently.ai/blog/posts/deepfake-enabled-bec-claim-trend-underwriters/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/deepfake-enabled-bec-claim-trend-underwriters/</guid><description>Business email compromise has been the most financially devastating category of cybercrime for years. Now deepfakes are supercharging that dynamic, and the claims data is starting to reflect it.</description><pubDate>Mon, 23 Mar 2026 00:00:00 GMT</pubDate><category>cyber-risk</category><category>bec</category><category>deepfakes</category><category>underwriting</category><category>claims</category><author>michael-guiao</author></item><item><title>AI in Cyber Underwriting: Attacker, Defender, and Underwriter Perspectives</title><link>https://resiliently.ai/blog/posts/ai-in-cyber-underwriting-three-perspectives/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/ai-in-cyber-underwriting-three-perspectives/</guid><description>Exploring how AI transforms cyber risk from three angles: how threat actors weaponize it, how security teams deploy it, and how underwriters must adapt their approach.</description><pubDate>Tue, 17 Feb 2026 00:00:00 GMT</pubDate><category>ai</category><category>cyber-insurance</category><category>underwriting</category><category>threat-intelligence</category><author>michael-guiao</author></item><item><title>Introducing The Underwriter&apos;s Edge</title><link>https://resiliently.ai/blog/posts/introducing-the-underwriters-edge/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/introducing-the-underwriters-edge/</guid><description>A new weekly newsletter for cyber underwriters, risk engineers, and brokers who want to stay ahead of threats, regulations, and emerging risks.</description><pubDate>Tue, 17 Feb 2026 00:00:00 GMT</pubDate><category>newsletter</category><category>cyber-insurance</category><category>underwriting</category><author>michael-guiao</author></item><item><title>NIS2 and DORA: What Cyber Underwriters Need to Know</title><link>https://resiliently.ai/blog/posts/nis2-dora-what-underwriters-need-to-know/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/nis2-dora-what-underwriters-need-to-know/</guid><description>A practical breakdown of how the NIS2 Directive and DORA regulation affect cyber insurance underwriting in Europe.</description><pubDate>Sun, 15 Feb 2026 00:00:00 GMT</pubDate><category>cyber-risk</category><category>compliance</category><category>underwriting</category><author>michael-guiao</author></item><item><title>How AI Is Changing Cyber Risk Assessment</title><link>https://resiliently.ai/blog/posts/ai-automation-in-cyber-risk-assessment/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/ai-automation-in-cyber-risk-assessment/</guid><description>A look at how AI and multi-agent systems are starting to transform the way we evaluate and underwrite cyber risk.</description><pubDate>Tue, 10 Feb 2026 00:00:00 GMT</pubDate><category>ai-ops</category><category>cyber-risk</category><category>underwriting</category><author>michael-guiao</author></item><item><title>Building in Public: Why I Started Resiliently</title><link>https://resiliently.ai/blog/posts/building-in-public-why-i-started-resiliently/</link><guid isPermaLink="true">https://resiliently.ai/blog/posts/building-in-public-why-i-started-resiliently/</guid><description>The story behind this site — why I&apos;m sharing my work at the intersection of cyber risk engineering and AI automation.</description><pubDate>Thu, 05 Feb 2026 00:00:00 GMT</pubDate><category>learning-in-public</category><category>ai-ops</category><author>michael-guiao</author></item></channel></rss>