Curricular
Seperating Faculties
Search for Curriculums
Bachelor’s Degree
Master’s Degree
Doctoral Degree
Other Curriculums
Studying at CMU
Application of Bachelor's Degree
Application for Graduate Studies
Application of International Program
Faculties and Departments
Faculties
CMU’s Organizations
Other Division
News
Research and Innovation News
Outstanding News
Outstanding Staff
Prize and Pride
Conference and Seminar
Executives' News
Job Application
Procurement
Event Calendar
COVID-19 and PM2.5
Sports
Featured
Health
Laws and Regulations
Donations
Technology News
Religions
Journals
Articles on CMU 60 Years
About CMU
Background
Resolution/ Vision/ Mission/Values and Organizational Culture
Authority
CMU Corporate Identity
Organizational Structure and Administration of Chiang Mai University
Education Development Plan 5 years
Committee of University Council
Executives
Employee Council
Other related links
CMU First Year
CMU IT Life
Exchange Programs
Scholarships
Photo & News Archive
Open Data Integrity and Transparency Assessment : OIT
Privacy Policy
Code of Ethics
CMU's Emergency Prevention and Response Plan
Complaint channels for the Office of The National Anti - Corruption Commission (ONACC)
Complaint channels for the Office of Public Sector Anti-Corruption Commission (PACC)
Channels for providing feedback/complaints/information on corruption at Chiang Mai University.
Contact
ภาษา
Thai
English
Chinese
TH
|
EN
|
CN
Home
News
News
Cyber Security Incident Response and Data Breach Plan Exercise
14 July 2026
Corporate Communication and Alumni Relations Center (CCARC)
On July 14, 2026, Associate Professor Prasert Rerkkriangkrai, Vice President of Chiang Mai University, presided over the opening of the "Cybersecurity Incident Response and Data Breach Plan" workshop at the Ruenkhum Meeting Room, Khum Phucome Hotel. Attended by CMU administrators and staff, the workshop aligns with the university’s policy requiring all sectors to implement and practice their incident response plans. This mandate follows the CMU Announcement on Policy and Guidelines on Cybersecurity Protection B.E. 2567 (2024), with ITSC serving as the primary agency supporting the establishment of sectoral response teams. Under this policy, each sector must establish a dedicated task force or Computer Incident Response Team (CIRT) to promptly assess and contain incidents. The workshop utilized tabletop exercises and simulations, including data breaches, ransomware attacks, and account hijackings, to test readiness in executive decision-making, internal communication, and leadership coordination. Furthermore, to ensure compliance with the Personal Data Protection Act (PDPA), the responsible sector must take immediate action upon discovering a data breach. This includes notifying the Office of the Personal Data Protection Committee (PDPC) within 72 hours of becoming aware of the incident, as well as promptly informing the affected data subjects. Following any exercise or actual incident, a post-incident review must be conducted to identify the root cause, a comprehensive report made, and action taken to enhance protective measures for stronger future security.
Executive Photo News
Gallery
×
RoomID:
Room Name:
Description: