HKTI 我們是一家成立於 1999 年的香港本地公司,專注於為全球企業提供網路解決方案

15/06/2025

Cybersecurity and Risk Management
My view is that cybersecurity is not a purely technical issue – it requires a cultural transformation to achieve shared responsibility.

Key challenges include insufficient awareness at the board level and over-reliance on outdated protocols. Organizations must prioritize continuous monitoring, employee training, and incident response plans.

Strong risk management strikes a balance between risk mitigation and operational agility. Investing in adaptive frameworks and developing cyber hygiene habits is critical to achieving sustainable security.

1. The Evolving Cyberthreat Landscape
Modern cyberthreats are evolving rapidly and leveraging artificial intelligence, social engineering, and zero-day vulnerabilities. Key trends include:

Ransomware as a Service (RaaS): Lowering the bar for cybercriminals to attack.

Supply Chain Attacks: Exploiting vulnerabilities in third-party vendors (e.g. SolarWinds, Log4j).

AI-driven threats: Deepfake phishing and automated malware.

Traditional perimeter-based defenses are no longer effective. Organizations must adopt a zero-trust architecture (ZTA), assume data breaches, and enforce least-privilege access.

2. Key Challenges in Cyber ​​Risk Management

2.1 Lack of Board-Level Engagement

Many executives still view cybersecurity as an IT issue rather than a strategic risk. A Gartner (2024) report found that only 36% of boards have a dedicated cybersecurity committee.

2.2 Over-reliance on compliance

Regulations such as GDPR and NIST provide a framework, but they do not guarantee security. Compliance ≠ security – organizations must go beyond the checklist itself.

2.3 Skills Shortage and Human Error

ISC² (2024) Cybersecurity Workforce Study reports a global shortage of 4.8 million professionals. Meanwhile, Verizon’s DBIR (2024) reports that 68% of breaches involve human error, highlighting the need for ongoing training.

Cybersecurity and Risk Management: A Strategic Imperative

Cyber ​​threats are evolving faster than defenses, and risk management has become a top board priority. Traditional perimeter security is outdated – zero trust and continuous monitoring are now essential. Key challenges include:

Over-reliance on compliance (GDPR/NIST ≠ security)

Human error (74% of breaches involve phishing/misconfiguration)

Supply chain vulnerabilities (Log4j, SolarWinds)

My take: Cybersecurity must shift from IT department responsibility to organizational culture. Invest in AI-driven threat detection, micro-segmentation, and cross-departmental training. Proactive risk mitigation, not just incident response, is the definition of resilience.

Actionable insight: Conduct live drills to test defenses and tie cybersecurity KPIs to executive bonuses.

Over 500 under-ocean cables are the heart of the internet. Learn why they're vital in keeping us all connected.
24/05/2025

Over 500 under-ocean cables are the heart of the internet. Learn why they're vital in keeping us all connected.

Address

香港新界葵湧柴灣角街73號金信科技中心17樓1706室
Hong Kong
999077

Opening Hours

Monday 09:00 - 18:00
Tuesday 09:00 - 18:00
Wednesday 09:00 - 18:00
Thursday 09:00 - 18:00
Friday 09:00 - 18:00
Saturday 09:00 - 18:00

Alerts

Be the first to know and let us send you an email when HKTI posts news and promotions. Your email address will not be used for any other purpose, and you can unsubscribe at any time.

Contact The Business

Send a message to HKTI:

Share