Member of the Month | Ken Lam: Navigating Complexity, Cryptographic Agility, and the Rise of Non-Human Identities
- 秘書處
- 1 day ago
- 2 min read

This month, the Hong Kong China Network Security Association (HKCNSA) is pleased to name Ken Lam as its Member of the Month for July.
Ken serves as Assistant Vice President of Security Business in Product Marketing & Solutions Consulting at HKT Limited. With over 15 years of experience helping organisations of all sizes strengthen their cybersecurity posture, his work spans product marketing, solutions consulting, and hands-on engagement with enterprises navigating an increasingly complex threat landscape.
Complexity Is the New Perimeter
Speaking about the challenges organisations face today, Ken identifies one of the biggest enterprise cybersecurity challenges as managing complexity across an expanding attack surface. As workloads shift to multi-cloud and remote architectures, he notes that the traditional network perimeter has effectively disappeared, pushing cybersecurity from a "perimeter defence" mindset toward a Zero Trust paradigm where security must be built into core data paths and workloads themselves.
He observes that AI has accelerated both sides of the equation: threat actors now leverage automation to execute sophisticated, high-volume attacks such as automated phishing and API-level exploits. In response, he sees enterprise investment shifting decisively toward AI-driven detection, automated response, and consolidated platform architectures rather than disconnected point solutions.
From Compliance Checkbox to Business Continuity
Years of working across industries and organisation sizes have shaped Ken's view of how enterprise security requirements have evolved. A decade ago, he explains, security was viewed through a compliance and hardware-centric lens, which involved installing firewalls and checking operational boxes. Today, it functions as a top-tier business continuity and revenue protection metric.
He believes what separates a successful security solution from one that merely adds complexity comes down to two key pillars:
· Operational integration over point features: Solutions should merge smoothly into existing IT workflows and network fabrics (for example, combining SD-WAN with SASE-based edge security) rather than requiring multiple disconnected management consoles that slow business agility.
· Visibility and context: Tools should deliver actionable, business-level context rather than endless alert noise, enabling lean security teams to mitigate real threats without disrupting daily operations.

Preparing for a Post-Quantum, AI-Governed Future
Looking ahead, Ken believes cybersecurity priorities across Hong Kong and the Greater Bay Area (GBA) will be shaped by non-human digital actors, rapid cryptographic evolution, and hybrid infrastructure. He points to the HKMA's Fintech 2030 strategy, which aims to achieve full banking-sector quantum preparedness by 2030, urging enterprises to begin auditing their data assets and building cryptographic agility now.
He also highlights the emerging need to govern AI and Non-Human Identities (NHIs) as organisations deploy autonomous agents and API workflows, enforcing strict runtime permissions and least-privilege access to prevent data leakage. On the operational side, he expects AI-driven analytics to transform security operations centres from reactive incident management into predictive threat hunting and automated real-time response. Given cross-border GBA expansion and the ongoing cybersecurity talent shortage, Ken anticipates a growing reliance on unified cloud-native frameworks such as SASE and CNAPP, as well as on Managed Security Service Providers (MSSPs) for round-the-clock monitoring and SOC operations.
HKCNSA is proud to feature Ken Lam in our Member Spotlight series, and we look forward to his continued contributions to the Association and the broader cybersecurity industry with his insights on enterprise security strategy and the future of digital trust in the region.
