Strategic Appointment Strengthens Public-Private Cybersecurity Ties

Pepijn Kok, Chief Information Security Officer (CISO) at Advanced Info Service (AIS), Thailand’s largest mobile operator, has been named Cybersecurity Advisor to the Secretary-General at the National Cyber Security Agency (NCSA) Thailand. This latest appointment, reported by Indiatimes, marks a pivotal move as Thailand intensifies its efforts to secure critical digital infrastructure.

Kok’s dual role comes at a time when cyber threats in Southeast Asia are escalating. According to IBM’s 2023 Cost of a Data Breach report, the average breach in ASEAN countries cost organizations $2.87 million, with Thailand among the top targets. The convergence of private sector expertise with public sector mandates is increasingly viewed as essential to counter sophisticated cyberattacks, ransomware, and supply chain vulnerabilities.

Market and Industry Impact

AIS, with more than 46 million subscribers and a market share exceeding 45%, is a linchpin in Thailand’s telecommunications landscape. Its leadership in digital transformation and security makes Kok’s insights highly relevant for national policy formation. The NCSA, established in 2019 under Thailand’s Cybersecurity Act, is responsible for the country’s critical infrastructure protection, incident response, and regulatory development.

Kok’s appointment is expected to facilitate deeper collaboration between AIS and the NCSA, especially in sharing threat intelligence and developing sector-specific cyber defense strategies. Industry analysts note that this could set a precedent for other national agencies in ASEAN, enabling a model where C-suite executives from leading corporations play advisory roles in government security boards.

Strategic Implications for Thailand’s Cyber Policy

The Thai government’s Digital Economy and Society Ministry has prioritized bolstering cybersecurity, especially after high-profile incidents like the 2021 breach of over 40 million health records. The NCSA’s mandate includes enforcing compliance across 7 critical sectors: energy, transportation, banking, telecom, digital, public health, and government services.

By enlisting Kok, who has a track record of implementing advanced security frameworks at AIS, the NCSA signals its intent to bridge policy with operational realities. Analysts point out that Kok’s experience in managing large-scale telecom networks and incident response could influence future regulatory standards and national incident response protocols.

Competitive Landscape and Regional Context

Thailand’s proactive stance comes as neighboring countries such as Singapore and Malaysia ramp up their own cybersecurity initiatives, often leveraging partnerships with private sector leaders. In Singapore, for example, the Cyber Security Agency (CSA) has formalized advisory panels with industry experts to address emerging threats. Thailand’s move to integrate an active CISO into its national cyber strategy is likely to intensify competitive benchmarking in the region.

For telecom operators and large enterprises in Thailand, this appointment underscores the growing expectation for transparent collaboration with regulators. It also raises the bar for cybersecurity governance, with possible ripple effects on procurement, risk management, and third-party compliance standards across the industry.

Regulatory and Policy Relevance

With Thailand’s Cybersecurity Act coming into full force, the NCSA has stepped up its regulatory oversight, including mandatory incident reporting and sector-level risk assessments. Kok’s advisory role is well-timed as the agency prepares to revise guidelines in light of the European Union’s NIS2 Directive and other international frameworks.

Furthermore, his experience navigating compliance with ISO 27001 and GDPR-equivalent standards may help Thailand align its cybersecurity posture with global best practices—an increasingly important factor as the country seeks to attract foreign investment and position itself as a regional digital hub.

Future Outlook

Looking ahead, Kok’s influence is likely to be felt in the acceleration of Thailand’s cyber resilience programs, such as public-private cyber exercises, threat intelligence sharing, and the development of a cybersecurity workforce. Industry observers will be watching closely to assess whether this appointment drives measurable improvements in incident response times, regulatory clarity, and cross-sector collaboration.

As Thailand seeks to defend its digital economy amidst evolving threats, the integration of private sector expertise at the highest levels of policy-making could become a defining trend for ASEAN’s cybersecurity landscape.

Key Takeaways

  • Pepijn Kok, CISO of AIS, has been appointed Cybersecurity Advisor to the Secretary-General at NCSA Thailand, marking a major step in public-private cooperation.
  • The move is expected to enhance national cybersecurity policy, regulatory standards, and sector-wide incident response capabilities.
  • Industry analysts view this as a model for greater private sector involvement in government cyber policy across Southeast Asia.
  • The appointment aligns with Thailand’s drive to strengthen its digital infrastructure and compete regionally on cybersecurity readiness.