HK Firms Urged to Strengthen Cybersecurity with AI
Hong Kong Firms Urged to Strengthen Cybersecurity with AI Tools
Cybersecurity in Hong Kong is improving but still falls short of global standards. The latest Enterprise Cyber Security Readiness Index, jointly released by the Office of the Privacy Commissioner for Personal Data (PCPD) and the Hong Kong Productivity Council (HKPC), rose to 52.8 this year—marking a 5.8-point improvement but remaining at a “basic” readiness level.
The HKPC highlighted that while enterprises are adopting more cybersecurity risk assessments and external evaluations, challenges persist. One critical area of weakness is employee awareness, which has been consistently low since 2018.
“Employees are often the weakest link in an enterprise's cybersecurity chain,” noted Alex Chan Chung-man, General Manager of Digital Transformation at HKPC. This gap emphasizes the need for comprehensive training and robust, centralized cybersecurity management.
Rising Threats Require Advanced Defenses
Although 69% of surveyed companies experienced cyberattacks in the past year—a slight improvement from last year—cyber incidents handled by the HKPC's Computer Emergency Response Team Coordination Centre reached an unprecedented 10,020 cases. Phishing attacks alone accounted for 62% of incidents, highlighting the persistence of conventional threats.
At the same time, experts warn that artificial intelligence (AI) is increasingly being leveraged by hackers to create more sophisticated attack methods. As AI tools become more accessible, they could easily be repurposed for malicious activities like generating deepfakes or automating attack strategies.
The Firewall Fallacy: Addressing Common Misconceptions
In conversations with many of our clients, a recurring misconception emerges: the belief that simply having a firewall and antivirus software is enough to ensure their business is safe from cyber threats. While these tools are crucial, they are far from sufficient in today’s dynamic threat landscape.
One critical oversight we often observe is the neglect of employee training. Many business leaders underestimate the importance of this relatively simple defensive measure. However, research—and our own experience—shows that untrained staff are the primary entry point for phishing attacks and social engineering schemes. A single uninformed click on a malicious link can bypass even the most robust technical defenses, underscoring the need for ongoing education and awareness.
Harnessing AI for Defense
To counter these emerging threats, Hong Kong authorities encourage enterprises to view AI as a “double-edged sword” that can also serve as a robust defense mechanism. AI-powered tools can strengthen cybersecurity in several ways:
- Deepfake Detection: Identifying and mitigating malicious AI-generated content.
- Automated Defenses: Enhancing threat detection and response times through automation.
- Threat Analytics: Using AI to analyze attack patterns and predict future vulnerabilities.
Ada Chung Lai-ling, Privacy Commissioner for Personal Data, emphasized that businesses must balance AI adoption with stringent privacy protections. “It’s encouraging to see companies becoming more cautious, implementing AI security policies and offering training to employees,” she said.
Investing in Cybersecurity
Another positive trend is the 20% increase in cybersecurity budgets across surveyed companies. This investment reflects a growing recognition of the need to address the evolving threat landscape proactively.
The HKPC advises companies to perform annual cybersecurity reviews, including assessments by third-party experts, and to prioritize regular training programs for employees.
Future-Proof Your Cybersecurity with PTS
At PTS Consulting, we advocate for a proactive approach to cybersecurity in Hong Kong. By integrating AI-powered solutions with industry best practices and ISO certifications, businesses can not only protect their operations but also gain a competitive edge in a tech-driven world.
The message is clear: Hong Kong firms must act now to stay ahead of the growing cybersecurity threats. Whether it’s adopting AI for better defenses, implementing regular training, or addressing common misconceptions, the tools and strategies are available.
PTS Consulting offers bespoke managed IT services that combine cutting-edge technology, like AI-driven threat monitoring, with robust human expertise. Partner with us to safeguard your business against the challenges of tomorrow.
Contact us today for a free consultation on strengthening your cybersecurity framework.