• About
  • Subscribe
  • Contact
Tuesday, November 18, 2025
    Login
FutureCISO
  • People
  • Process
  • Technology
  • Resources
    • White Papers
    • PodChats
  • Events
No Result
View All Result
  • People
  • Process
  • Technology
  • Resources
    • White Papers
    • PodChats
  • Events
No Result
View All Result
FutureCISO
No Result
View All Result
Home Process Compliance and Governance

Hong Kong CISO Board to address process and governance challenges

FutureCISO Editors by FutureCISO Editors
November 18, 2025
Hong Kong CISO Board to address process and governance challenges

Photo by Vlada Karpovich: https://www.pexels.com/photo/a-man-and-a-woman-looking-at-papers-7433827/

Share on FacebookShare on Twitter

The Cyber Security and Technology Crime Bureau, part of the Hong Kong Police specifically tasked with tackling technology-originating threats noted that "among the 33,903 technology crime cases recorded by Hong Kong Police Force in 2024, there were 112 destructive cyberattacks, including 61 “Hacking activities”, 46 “Ransomware” and 5 “Distributed denial-of-service (DDoS) attacks” cases."

In 2024, the CSTCB processed over 25 million pieces of cyber threat intelligence, averaging more than 68,000 pieces per day. Among these, CSTCB identified over 440,000 cyber threats targeting Hong Kong.

Analysis of cybersecurity incidents revealed three recurring issues: Inadequate access control and configuration, Outdated and unpatched systems, Lack of effective threat detection mechanisms.

Responding to the trends, the Hong Kong Computer Society (HKCS) established the Chief Information Security Officer Board (CISO Board) (信息安全總監分部).

The establishment of the CISO Board responds to these challenges, bringing together cybersecurity leaders to foster collaboration, knowledge exchange, and enhanced cyber resilience.

Dave Chen, president of HKCS, noted that the launch of the CISO Board comes at an important time referring to the combination of rapid technological advancement and the upcoming Protection of Critical Infrastructures (Computer Systems) Ordinance taking effect on January 1, 2026.

Dave Chen

"Building on the success of our CIO Board, which has established itself as a trusted platform for IT leaders to exchange best practices, the CISO Board aims to extend this spirit of partnership into the cybersecurity community," said Chen at the inaguration ceremony officiated by Ir Tony Wong JP, Digital Policy Commissioner for the Government of the HKSAR.

"Our (CISO Board) goals are straightforward yet essential: to raise public awareness, provide strategic advice to the government, and assist organizations in enhancing their governance, compliance, and resilience.” Dave Chen

The CISO Board was founded by 11 Chief Information Security Officers from various organizations, with Carl McConkey, head of group security of CLP Holding, stepping in as the founding chairperson.

Carl McConkey

McConkey underscored the changing landscape of the CISO role, saying: “The role of the CISO has fundamentally evolved."

"We are no longer just gatekeepers of security — we are strategic enablers of business. In today’s digital-first world, CISOs are the architects of resilience and the guardians of trust on which our economy and society depend.” Carl McConkey

The members of the new CISO Board include:

  • Carl McConkey, Head of Group Security, CLP Holdings Ltd (Chairperson of the HKCS CISO Board)
  • Tony Ma, CISO, Hospital Authority (Vice Chairperson of the HKCS CISO Board)
  • David Chan, CISO, Hang Seng Bank
  • Frank Chow, General Manager – Cyber Security, Hutchison Ports Holdings Ltd
  • Raju Daryanani, Head of Cybersecurity, Jardine Matheson Ltd
  • Michael Lau, Senior IT Manager – Security & Planning, The Hong Kong and China Gas Company Ltd
  • Carol Lee, Deputy General Manager – IT Security & Risk Management, Hang Lung Properties Ltd
  • Vivian Poon, Head of Information Security, CITIC Securities International Co. Ltd
  • Eric Wong, Head of Information Security and Technology Risk Management, MTR Corporation Ltd
  • Stanley Wong, CISO, Cyberport
  • Ricky Woo, Executive Director, CISO and Technology Security, DBS Hong Kong
Related:  Cybersecurity has no place for gender bias

Chen remarked, “Globally, over 70% of enterprises have already adopted AI, yet only a few have successfully turned pilots into measurable business impact. The key challenge is not technology — it’s process and governance. Many companies treat AI merely as an ‘accelerator’ without redesigning their workflows, limiting the benefits to isolated use cases rather than organization-wide impact.”

He further added, “This transformation brings immense opportunities for Hong Kong enterprises to improve efficiency and overcome manpower bottlenecks — but it also calls for stronger governance, risk management, and compliance oversight.”

HKCS had previously established the Artificial Intelligence Specialist Group (AISG) to unite industry experts and scholars in exploring AI applications that further smart city development, digital transformation, and improved living standards, thereby shaping Hong Kong’s evolving AI landscape.

Tags: CISO BoardHong Kong Computer Society
FutureCISO Editors

FutureCISO Editors

No Result
View All Result

Recent Posts

  • PodChats for FutureCISO: Why 2026 demands a self-defending network
  • Hong Kong CISO Board to address process and governance challenges
  • PodChats for FutureCISO: Proactive fraud defence with real time visibility
  • When AI becomes its own defender: The rise of Agentic Identity
  • Achieving seamless security with Unified SASE 2.0 for hybrid work

Categories

  • Blogs
  • Compliance and Governance
  • Culture and Behaviour
  • Cybersecurity careers
  • Data Protection
  • Endpoint Security
  • Incident Response
  • Network Security
  • People
  • Process
  • Resources
  • Risk Management
  • Technology
  • Training and awarenes
  • Videos
  • Webinars and PodChats
  • White Papers

Strategic Insights for Chief Information Officers

FutureCISO serves the interests of the Chief Information Security Officer (CISO) and the information security profession. Its purpose is to provide relevant and timely industry insights around all things important to security professionals and organisations that recognize and value the importance of protecting the organisation’s data and its customers’ privacy.

Cxociety Media Brands

  • FutureIoT
  • FutureCFO
  • FutureCIO

Categories

  • Privacy Policy
  • Terms of Use
  • Cookie Policy

Copyright © 2024 Cxociety Pte Ltd | Designed by Pixl

Login to your account below

or

Not a member yet? Register here

Forgotten Password?

Fill the forms bellow to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • People
  • Process
  • Technology
  • Resources
    • White Papers
    • PodChats
  • Events
Login

Copyright © 2024 Cxociety Pte Ltd | Designed by Pixl