Curricular
Seperating Faculties
Search for Curriculums
Bachelor’s Degree
Master’s Degree
Doctoral Degree
Other Curriculums
Studying at CMU
Application of Bachelor's Degree
Application for Graduate Studies
Application of International Program
CMU Presidential Scholarship
Faculties and Departments
Faculties
CMU’s Organizations
Other Division
News
Research and Innovation News
Outstanding News
Outstanding Staff
Prize and Pride
Conference and Seminar
Executives' News
Job Application
Procurement
Event Calendar
COVID-19 and PM2.5
Sports
Featured
Health
Laws and Regulations
Donations
Technology News
Religions
Journals
Articles on CMU 60 Years
About CMU
Background
Resolution/ Vision/ Mission/Values and Organizational Culture
Authority
CMU Corporate Identity
Organizational Structure and Administration of Chiang Mai University
Education Development Plan 5 years
Committee of University Council
Executives
Deans
Directors
Employee Council
Other related links
CMU First Year
CMU IT Life
Exchange Programs
Scholarships
Photo & News Archive
Open Data Integrity and Transparency Assessment : OIT
Privacy Policy
Code of Ethics
CMU's Emergency Prevention and Response Plan
Complaint channels for the Office of The National Anti - Corruption Commission (ONACC)
Complaint channels for the Office of Public Sector Anti-Corruption Commission (PACC)
Channels for providing feedback/complaints/information on corruption at Chiang Mai University.
Contact
ภาษา
TH
|
EN
|
CN
หน้าแรก
ข่าว
ข่าว
การฝึกซ้อมแผนเผชิญเหตุภัยคุกคามทางไซเบอร์และการละเมิดข้อมูลส่วนบุคคล (Cyber Security Incident Response and Data Breach Plan)
14 กรกฎาคม 2569
ศูนย์สื่อสารองค์กรและนักศึกษาเก่าสัมพันธ์
รองศาสตราจารย์ประเสริฐ ฤกษ์เกรียงไกร รองอธิการบดีมหาวิทยาลัยเชียงใหม่ เป็นประธานกล่าวเปิดการอบรมเชิงปฏิบัติการ “การฝึกซ้อมแผนเผชิญเหตุภัยคุกคามทางไซเบอร์และการละเมิดข้อมูลส่วนบุคคล” (Cyber Security Incident Response and Data Breach Plan) ให้แก่คณะผู้บริหารและเจ้าหน้าที่จากส่วนงานต่างๆ ซึ่งมหาวิทยาลัยเชียงใหม่ได้กำหนดให้ส่วนงานต่าง ๆ จัดทำและฝึกซ้อมแผนเผชิญเหตุ ตามประกาศมหาวิทยาลัยเชียงใหม่ เรื่อง นโยบายและแนวปฏิบัติในการรักษาความมั่นคงปลอดภัยไซเบอร์ พ.ศ. 2567 โดยมีสำนักบริการเทคโนโลยีสารสนเทศ (ITSC) เป็นแกนกลางในการสนับสนุน เพื่อการจัดตั้งทีมรับมือเหตุฉบับส่วนงาน ที่แต่ละส่วนงานจะต้องจัดตั้งทีมเฉพาะกิจหรือทีมรับมือเหตุการณ์ความมั่นคงปลอดภัย (Computer Incident Response Team - CIRT) ที่มีหน้าที่ประเมินและควบคุมสถานการณ์ทันที โดยมีการซ้อมแผนบนโต๊ะ (Tabletop Exercise) สร้างการจำลองสถานการณ์เสมือนจริง เช่น กรณีข้อมูลรั่วไหล แรนซัมแวร์โจมตี หรือการแฮกบัญชี ทดสอบความพร้อมในการตัดสินใจ การสื่อสารภายใน และการประสานงานกับผู้บริหาร การปฏิบัติตาม พ.ร.บ. คุ้มครองข้อมูลส่วนบุคคล (PDPA) หากมีการละเมิดข้อมูลส่วนบุคคล ส่วนงานต้องปฏิบัติตามกรอบเวลาการแจ้งเหตุ โดยต้องแจ้งสำนักงานคณะกรรมการคุ้มครองข้อมูลส่วนบุคคล (สคส.) ภายใน 72 ชั่วโมงหลังทราบเหตุ และแจ้งเจ้าของข้อมูลทราบโดยเร็ว และการทบทวนหลังเกิดเหตุ (Post-Incident Review) ที่หลังการฝึกซ้อมหรือเกิดเหตุจริง ส่วนงานจะต้องวิเคราะห์หาสาเหตุที่แท้จริง (Root Cause) เพื่อจัดทำรายงานสรุปและปรับปรุงมาตรการป้องกันให้รัดกุมยิ่งขึ้น ณ ห้องประชุมเรือนคุ้ม โรงแรมคุ้มภูคำ วันอังคารที่ 14 กรกฎาคม พ.ศ. 2569
ภาพข่าวผู้บริหาร
แกลลอรี่
×
RoomID:
Room Name:
Description: