Source: The Business Times

A Committee of Inquiry (COI) that comprises four members was selected to probe into the recent cybersecurity breach against SingHealth’s patients’ records, which was dubbed as the largest data breach in Singapore’s history.

In a press release by the Ministry of Information and Communication (MCI), the COI, which was convened yesterday on 24 Jul, will be spearheaded by former Chief District Judge and current member of the Public Service Commission, Mr Richard Magnus.

Mr Magnus said: “This is a responsibility that I take seriously. I will work with the COI members to ensure that we fully deliver on this important task which has been entrusted on us.”

The remaining members of the COI are Executive Chairman of cybersecurity solutions company Quann World, Mr Lee Fook Sun; group Chief Operating Officer of healthcare technology company Sheares Healthcare Management, Mr T.K. Udairam; and Assistant Secretary-General of the National Trades Union Congress, Ms Cham Hui Fong.

Previously, Minister-in-charge of Cybersecurity S Iswaran declared that he will call upon the COI to look into the SingHealth cyber attack.

“It is an important step in getting to the bottom of the incident and keeping Singaporeans’ trust in our systems,” said Mr Iswaran.

According to the Terms of Reference for the COI, the COI’s task include establishing “the events and contributing factors leading to the cybersecurity attack on Singapore Health Services Private Limited (SingHealth)’s patient database system on or around 27 June” this year, and “the subsequent exfiltration of patient data therefrom”.

Annex B: The COI’s Terms of Reference regarding the SingHealth cybersecurity attack.

The COI will also investigate how the “Integrated Health Information Systems Private Limited (IHiS) and SingHealth responded” to the data breach, on top of recommending “measures to enhance the incident response plans for similar incidents” and to increase the protection of “SingHealth’s patient database system against” similar breaches.

Measures “to reduce the risk of such cybersecurity attacks on public sector IT systems which contain large databases of personal data, including in the other public healthcare clusters” will be discussed as a part of the COI’s task.

The COI will also, “in accordance with the provisions of the Inquiries Act”, hold public and private inquiries, and “consider the evidence put before the COI as led by the Attorney-General or his designates”, before submitting “a report of its proceedings, findings and recommendations” to Mr Iswaran by 31 Dec 2018.

Speaking at the MCI Workplan Seminar at Orchard Hotel yesterday, Mr Iswaran said: “This incident was a deliberate and sophisticated attack that caused the most serious breach of personal data in Singapore’s history.”

However, he added: “But we were also fortunate because it could have been worse. We were fortunate that there was early detection in the exfiltration of data.”

He also stressed that while the Government is channelling its maximum efforts to buttress its systems, Singapore cannot completely eliminate the risk of another cyber attack.

“This is the nature of this ongoing battle. The would-be attackers are constantly developing new capabilities even as we reinforce our IT systems,” he said.

“It is also crucial that we do not allow this incident, or any others like it, to derail our plans for a Smart Nation,” he added.

The cybersecurity breach affected the personal medical data such as the outpatient prescriptions of 1.5 million SingHealth patients, including that of Prime Minister Lee Hsien Loong.

Subscribe
Notify of
0 Comments
Inline Feedbacks
View all comments
You May Also Like

Ho Ching gets May Day award

Award given to Temasek’s ex-CEO for “contributions to the labour movement”.

Woodlands Checkpoints to be expanded

The Immigration & Checkpoints Authority (ICA) has announced today that an extension…

Singapore on high alert following quarantine of Wuhan city

Singaporeans are advised to refrain from unnecessary travel to Wuhan in the…

推蒙面法后港人仍抗争 林郑:局势若恶化或寻求中央介入

据香港媒体综合报导,香港特首林郑月娥今早在记者会上称,若香港局势进一步恶化,解放军可能将介入;惟她强调,港府可自行处理目前香港的情况,可透过合法方式和对话令香港回复平静。 她声称,香港宪法赋予特首寻求中央介入的权力,但未具体说明在什么情况下才会这么做。她也指出,上周赴背景出席国庆70周年活动,逗留时间不足一日,但没有与任何中央官员见面。 不过,她表示港府暂无计划再援引《紧急法》推新规例。 上周五,林郑宣布引《紧急法》禁止蒙面,订立《禁止蒙面规例》。 然而此举反而引来香港民间更激烈反弹,在上周日,香港多区仍有大型示威活动。仍有港民蒙面上街。据《香港01》报导,港警在周日晚逮捕14名男12女,年龄介于13-33岁。26名被捕男女分别被暂控一项“参与暴动”罪,而当中的6男8女分别被暂控一项“违反《禁止蒙面规例》”罪。 有示威者激光笔照射解放军军人 据了解,“反恶法港人合理非”大游行,周日下午途经九龙塘解放军九龙东军营,有示威者用激光笔照射军营顶楼上的军人,解放军首度举出黄旗警告,并回应称:“后果自负!” 但示威者未有进一步举动,此后又继续前行、未在军营附近逗留或冲击,军民双方未发生冲突。 此外,香港电台电视部一名记者周日在湾仔被汽油弹掷中受伤,情况严重,港台及记协严厉谴责。