Portal:Office of the Privacy Commissioner for Personal Data, Hong Kong, Ransomware Attack on the Servers of The Hong Kong Institute of Bankers (2023)
“ Organisations should clearly define the roles and responsibilities of a data protection officer, including monitoring compliance with the Ordinance and reporting to senior management, as well as incorporating data protection issues raised by staff and experiences and lessons on data breach incidents involving customers' personal data into the organisation's training materials. ”
