top of page

Hong Kong Passes Cybersecurity Law to Protect Critical Infrastructure

tech360.tv

Hong Kong has passed a cybersecurity law requiring operators of critical infrastructure to strengthen computer systems and report security incidents or face penalties of up to HKD 5 million ($640,000).


Man in a suit speaks passionately into a microphone on a stage. Blue screen in the background with white text. Serious expression.
Credit: 鄧炳強 Tang Ping Keung

The law, set to take effect in 2026, aims to safeguard computer systems essential to the city's infrastructure, Security Secretary Chris Tang said. He emphasised that the law does not target personal information or commercial secrets.


The Security Bureau told the legislative council that disruptions or sabotage of these systems could severely impact society, the economy, public safety, and national security.


The legislation applies to eight industries, including banking, financial services, information technology, energy, transport, healthcare, and communications. It also covers major sports and performance venues, as well as research and development parks.


Authorities will notify affected operators but will not publicly identify them to prevent them from becoming targets, Tang said.


The law mandates annual security risk assessments and independent security audits every two years. Serious security incidents must be reported within two hours.


Non-compliance could result in fines ranging from HKD 500,000 (USD 64,000) to HKD 5 million (USD 640,000), with additional daily fines for continued violations.


George Chen, co-chair of digital practice at consulting firm the Asia Group, warned that the law could increase compliance costs for data centres and potentially deter foreign investors. He noted that some investors may see Hong Kong entering a "busy cycle of legislation" following the national security laws passed in 2020 and 2024.


Hong Kong had not previously enacted a cybersecurity law, unlike mainland China, which introduced one in 2016.

 
  • Hong Kong passed a cybersecurity law to protect critical infrastructure.

  • The law takes effect in 2026 and mandates security measures and incident reporting.

  • Non-compliance could result in fines of up to HKD 5 million.


Source: REUTERS

As technology advances and has a greater impact on our lives than ever before, being informed is the only way to keep up.  Through our product reviews and news articles, we want to be able to aid our readers in doing so. All of our reviews are carefully written, offer unique insights and critiques, and provide trustworthy recommendations. Our news stories are sourced from trustworthy sources, fact-checked by our team, and presented with the help of AI to make them easier to comprehend for our readers. If you notice any errors in our product reviews or news stories, please email us at editorial@tech360.tv.  Your input will be important in ensuring that our articles are accurate for all of our readers.

Tech360tv is Singapore's Tech News and Gadget Reviews platform. Join us for our in depth PC reviews, Smartphone reviews, Audio reviews, Camera reviews and other gadget reviews.

  • YouTube
  • Facebook
  • TikTok
  • Instagram
  • Twitter
  • LinkedIn

© 2021 tech360.tv. All rights reserved.

bottom of page