Skip to contentAbout Fig Group

Insurer-Grade Evidence

Organise compliance records for customer-controlled sharing with insurers, brokers, or underwriters.

The challenge

Does this sound familiar?

Insurers, brokers, and underwriters may request detailed control evidence that is scattered across tools, screenshots, and documents. Rebuilding that record for each external review wastes time and creates inconsistencies.

How Fig helps

Insurer-Grade Evidence with Fig

Insurer-Grade Evidence

Organise controls, assessment results, audit trails, and remediation records into a clear, dated evidence view.

Customer-Controlled Exports

Customers choose which records to export and whether to share them with an insurer, broker, or underwriter.

Reusable Compliance Data

Use the same governed evidence across cyber, professional indemnity, D&O, and other external reviews where the recipient considers it relevant.

Continuous Record

Keep evidence current as controls are tested and issues are remediated, instead of rebuilding a point-in-time pack for every request.

Core Capability

Fig organises compliance records into insurer-grade evidence. Customers control each export and decide whether to share it with an insurer, broker, or underwriter.

Audit-ready workflow

How Insurer-Grade Evidence becomes evidence

Insurer-Grade Evidence should not be treated as a standalone tool surface. In Fig it is part of a governed workflow: a signal is captured, an owner is assigned, a control or risk is updated, and evidence is retained so the organisation can prove what happened later.

Lifecycle

Where it sits in the operating model

The Evidence phase is where this capability sits in the wider Fig operating model. Insurers, brokers, and underwriters may request detailed control evidence that is scattered across tools, screenshots, and documents. Rebuilding that record for each external review wastes time and creates inconsistencies. Fig turns that problem into a repeatable lifecycle so MSPs, risk teams, and auditors are not relying on static spreadsheets or ad hoc screenshots when a buyer asks for proof.

Evidence captured

What auditors and buyers see

For insurer-grade evidence, useful evidence normally includes the triggering record, the affected asset or supplier, the control requirement, the assigned owner, the decision made, the timestamp, and the outcome. That evidence is mapped back to frameworks such as Cyber Essentials, ISO 27001, NIS2, DORA, GDPR, CMMC, and internal policy requirements where relevant.

Implementation checks

Four steps to roll this out

  • 01Define who owns insurer-grade evidence and what events should trigger review.
  • 02Connect the relevant source systems so evidence is collected continuously.
  • 03Map outputs to the frameworks and policies that matter to the organisation.
  • 04Review exceptions, accepted risks, and overdue actions before audit or renewal.

Useful references

Independent sources buyers and auditors recognise

The exact evidence required still depends on your scope, risk profile, sector, and framework obligations.

Built for you

Who uses this?

MSPs & MSSPs

Maintain a separate evidence record for every client. Each client controls whether its exported evidence is shared with an insurer, broker, or underwriter.

Learn more

Security & risk teams

Keep governance and security records current so your team can respond consistently to external information requests.

Learn more

Compliance & audit

Provide structured, traceable compliance evidence for customer-controlled external review. The recipient decides what evidence is required and how it is assessed.

Learn more

Common questions

Frequently asked questions

What does insurer-grade evidence mean?

It means structured, dated, and traceable compliance evidence prepared for customer-controlled sharing. It does not mean Fig has approved it on behalf of an insurer or that an insurance outcome is guaranteed.

Does Fig provide or arrange insurance?

No. Fig does not advise on, recommend, arrange, distribute, place, bind, underwrite, or administer insurance. Customers decide whether to share Fig evidence with their chosen insurer, broker, or underwriter.

Next step

See Insurer-Grade Evidence in action.

Book a walkthrough tailored to your frameworks and tooling.