Evidence Review Resources

Evidence Review Resource Hub

Tools and templates for organizing evidence review work. Start with the pre-audit survey, work through the checklist, then prepare the evidence review report.

// Evidence Review Resources & Working Templates
📋
STEP 01

Pre-Audit Questionnaire

Client intake form for discovery/scoping and readiness support before the evidence review begins.

28 questions 5 sections Auto-save
STEP 02

Evidence Checklist

Interactive 47-item evidence review checklist. Track evidence supported, partial evidence, not verified, and not reviewed items.

47 items 6 categories JSON export
📊
STEP 03

Report Template

Working report template for structured evidence review, discussion-ready findings, recommendations, and evidence appendix notes.

Editable Evidence summary Print PDF
✉️
BD TOOL

Outreach Templates

Outreach drafts for broker and IT-director conversations about evidence review and readiness support.

3 templates Editable Copy to send
🖨️
SALES TOOL

Broker One-Pager

Print-ready handout for broker conversations about evidence review and readiness support.

Print-ready Broker-facing
// Quick Reference

⏱ Typical Engagement Timeline

Discovery Call
Scope, environment review, fixed quote issued
Day 0 · 30 minutes
Pre-Audit Survey + NDA
Client completes intake form, NDA signed, read-only credentials requested
Days 1–2
Remote Audit
47-item evidence review, evidence collection, screenshot documentation
Days 3–7 (2–5 business days)
4
Draft Report + Client Review
Draft delivered, client reviews findings and remediation roadmap
Days 8–10
5
Final Report + Broker / Underwriter Discussion
Final evidence package delivered, structured for review discussions
Day 11–12
6
Revision Pass (if needed)
Address scoped follow-up questions — included in fee
Within 30 days of delivery

🎯 Example Cyber Insurance Questionnaire Focus Areas

Carrier requirements vary by policy, carrier, industry, renewal cycle, and coverage limit. Always verify against the current questionnaire and broker guidance.

  • MFA on all users (including email) Required
  • MFA on all admin / privileged accounts Required
  • Immutable, offline, or air-gapped backups Required
  • EDR on all endpoints Required
  • Documented patch management SLA Common
  • Email filtering / anti-phishing Common
  • Incident Response plan (documented) Common
  • Security awareness training (>90%) Common
  • Penetration test may be requested by some carriers; not included in this service unless separately scoped Varies
  • Privileged Access Management (PAM) Varies
  • SIEM / centralized log collection Varies
  • Third-party / MSP access controls Varies

These are examples only, not current carrier rules or guarantees. Always verify against the current questionnaire and broker guidance.

Coalition
  • MFA coverage may be requested for users and privileged access
  • Backup immutability and separation from production may be requested
  • EDR endpoint coverage and policy exports may be requested
  • External attack surface findings can be a common evidence concern
  • Patch cadence for critical CVEs may be reviewed
Example only. External scanning and questionnaire focus vary by policy, renewal cycle, and coverage limit.
Chubb / ACE
  • Formal incident response planning may be requested
  • Privileged access controls may be reviewed
  • Security awareness training documentation may be requested
  • Third-party vendor risk management may be reviewed
  • Network segmentation evidence may be requested
Example only. Documentation expectations should be verified against the current questionnaire and broker guidance.
Beazley
  • Ransomware-specific controls may receive additional attention
  • Remote access controls may be requested
  • Legacy authentication blocking may be reviewed
  • Email security controls may be requested
  • Backup restore testing evidence may be requested
Example only. Requirements vary by policy, carrier, industry, renewal cycle, and coverage limit.
// Resource Links
📋
Pre-Audit Questionnaire
Client intake form for discovery/scoping.
Open Questionnaire →
📥
Evidence Checklist
Interactive 47-item evidence review checklist.
Open Checklist →
📄
Report Template
Working report template for structured evidence review.
Open Report →
🖨️
Broker One-Pager
Print-ready broker discussion handout.
Open One-Pager →
✉️
Outreach Templates
Outreach drafts for broker and IT-director conversations.
Open Templates →

Ready to start your audit?

Free 30-minute discovery call. Fixed quote before you commit. Conroe, TX — serving clients remotely nationwide.