Thinkers360
Interested in getting your own thought leader profile? Get Started Today.

Dr Danny Ha

CEO at Academy of Professional Certification (APC) and OneNet

Tsuen Wan, Hong Kong

Dr. Danny Ha is a director of enterprise risk management, information/cyber security management and ISO certification consulting that offer specialised risk and crisis consultation, security risk assessment, business loss prevention strategies, operation strategy audit, international standards and educational training seminars for corporate clients and universities. With over 30 years of solid working experience in Hong Kong, Macau, Asia Pacific region, and the United Kingdom, Dr Ha has an extensive track record in advising and guiding companies, startups, NGO, and governments on critical business issues. He is a respected consultant, project manager, advisor and auditor of many entities and corporations such as HKSAR & Macau government departments, utilities, universities, banks, insurances, human resources (ISO 30414), casinos, retails, supply-demand chain management, logistics, security services, arts organisations and many other industries including NGO charities.

He has many awards and appointments including ISO membership, Information Security Leadership Awards (ISLA) 2007 of ISC2, and the Best ERM Award Chairman 2015 of Academy of Professional Certification (Charity NGO). He has enforced, spoken (Lecturer/Tutor/Conference Speaker) and written related topics extensively on ERM (ISO 31000, CPERM) & its Award, crisis and risk management (CRP, PRMIA, GARP), project management (PMP, PRINCE2, CPM), Fintech (Named Top Fan 2019 of SAID Oxford University), sustainability (CISL, Cambridge Uni), AI business strategy (MIT Sloan & MIT CSAIL Artificial Intelligence), Digital Transformation (MIT Professional Education), big data analytics (Centennial College HKU), cyber & information security (CISSP, CSSLP, CDPSE, CISA, CISM, CRISC), IT services management (ITIL-Expert, ISO 20000), IoT, software development (CMM), medical services (hospital), property management (first property agency system innovator in 90'), physical security services (HKISP, CPP), SCM logistics (Certified Teacher of China Logistician Examination (CLE), TAPA, HKLA, HKSTLA), supply & demand chain management (ISO 28000), mediation (WMO, ICRM, CPM), Arts Cultural Risk Management (Sothebys Institute of Art (SIoA London), Cultural Management HKCU), ISO certifications, audit, and education management (Harvard Pedagogy) industries.

Danny currently is an authorised HKSARG ISO Members of ISO 31000, ISO 29100, ISO 27001/ ISO 27701, ISO 22300, Committee Member in Inspection/ Certification/ Quality Management/ Operation Management of RPL Assessment Planning Sub-Committee and Result Approval Sub-Committee for Recognition of Prior Learning (RPL) of HKQF HKSARG, Advisor of Risk Management of various institutes/NGO/arts organisations, and Mentor of Risk Management RMBI HKUST (since 2009), Advisors of Finance Investment Degree HKU, InfoSec Audit Degree & Finance and Decision Sciences HKBU, and others academic institutions. @ (see below)

See https://www.linkedin.com/pulse/simple-bio-public-dr-danny-ha-advisor-chairman-apc-ceo-onenet/

Available For: Consulting
Travels From: Hong Kong
Speaking Topics: ERM, Crisis and Risk Management, ISO certification in Practice, Information Security Management Execution.

Dr Danny Ha Points
Academic 80
Author 10
Influencer 4
Speaker 0
Entrepreneur 30
Total 124

Points based upon Thinkers360 patent-pending algorithm.

Thought Leader Profile

Portfolio Mix

Company Information

Company Type: Service Provider
Business Unit: Consultancy
Theatre: Hong Kong
Minimum Project Size: $10,000+
Average Hourly Rate: $50-$99
Number of Employees: 51-250
Company Founded Date: Undisclosed
Media Experience: 20 years
Last Media Interview: 02/03/2021

Areas of Expertise

AI 30.27
AI Governance 33.69
Business Continuity 39.61
Business Strategy 30.65
Cybersecurity 30.61
Design Thinking
Digital Transformation 30.13
Entrepreneurship
FinTech 30.09
Health and Safety
HR
Leadership 30.66
Privacy 30.77
Project Management 30.87
Quantum Computing 30.73
Risk Management 32.49
Startups 30.06
Supply Chain
Sustainability 30.23

Industry Experience

Financial Services & Banking
Healthcare
Higher Education & Research
Professional Services
Retail
Utilities

Publications & Experience

2 Academic Certifications
Certified Data Privacy Solutions Engineer (CDPSE)
ISACA
July 01, 2020

See credential

See publication

Tags: Cybersecurity, Privacy, Risk Management

Digital Transformation
MIT Professional Education
July 01, 2020

See credential

See publication

Tags: Digital Transformation

7 Article/Blogs
What are the differences between GDPR(EU), PDPO(Hong Kong), and CISSP(CBK) requirements?
LinkedIn
April 15, 2021
Prepared by the PIA Consultant Team: Mr. Ben Yiu, Data Privacy, IT Security Consultant; Ms. Lee, SRM Project Leader, Cambridge Sustainability CISL BSM; Dr. Danny Ha, ERM Advisor, Cambridge CISL BSM, CPERM ISO 31000, CRP, CISSP, CDPSE, CEO @OneNet, Chairman @APC (Academy of Professional Certification) Websites: OneNet https://onenet99.wixsite.com/onenet and Academy of Professional Certification https://apcaudit12.wixsite.com/apcert

See publication

Tags: AI, Sustainability, FinTech

Using SRM and ERM to Improve Business Sustainability Management (BSM), 28 Mar 2021, Case Study, Tesla
LinkedIn
March 28, 2021
Sustainability—often called corporate social responsibility or CSR—is a movement that considers how businesses can act in the interests of society and the environment. Over the last decade, a well developed ERM process has gained increasing attention because it influences financial returns and presents an opportunity to drive long-term value. [Taylor A. 2019][Deloitte, 2019].

See publication

Tags: Sustainability, FinTech, Risk Management

Stay At Home
LinkedIn
April 09, 2020
Even now, cannot be changed. We must Stay At Home. (Apr 2020. The World is under Coronavirus attack ever since Jan 2020)

See publication

Tags: Sustainability, Risk Management

Brief Bio 簡歷
LinkedIn
January 25, 2019
Dr. Danny Ha is a director of enterprise risk management, information/cyber security management and ISO certification consulting that offer specialised risk and crisis consultation, security risk assessment, business loss prevention strategies, operation strategy audit, international standards and educational training seminars for corporate clients and universities. With over 30 years of solid working experience in Hong Kong, Macau, Asia Pacific region, and the United Kingdom, Dr Ha has an extensive track record in advising and guiding companies, startups, NGO, and governments on critical business issues. He is a respected consultant, project manager, advisor and auditor of many entities and corporations such as HKSAR & Macau government departments, utilities, universities, banks, insurances, human resources (ISO 30414), casinos, retails, supply-demand chain management, logistics, security services, arts organisations and many other industries including NGO charities.

See publication

Tags: Cybersecurity, Risk Management, Education

The Best Enterprise Risk Management ----- 優秀企業風險戰略@歐洲商報(英國版) Chineseineurope.com @ECNUK (UK) #ISO31000 #ISO9001 #ISO22301
LinkedIn
March 05, 2017
我們又快要邁進2017年。回顧今年,各大小企業均遇到不少的挑戰. 在全球一體化或者分體化情況之下,企業均要自強不息, 力保不敗, 更要精益求精,保持競爭力。在企業內的各種營運計劃中k 風險管理計劃皆不可少。2016很快過去,企業應如何突破框架、勾劃出不同的風險與機遇呢?

See publication

Tags: Cybersecurity, Leadership, Risk Management

What had the ERM industry done for the past 15 years?
LinkedIn
October 07, 2015
12 Oct 2015 update: ERM Gathering event of the Crystal Anniversary Celebration Dinner had been fully booked.

“Crystal Anniversary Celebration Dinner” that will be held this year on 19 November 2015, Thursday at the Courtyard by Marriott Hotel Hong Kong Shatin, at 1 On Ping Street, Shatin, New Territories, Hong Kong.

See publication

Tags: Cybersecurity, Startups, Risk Management

Security & Resilience, Crisis Management
LinkedIn
September 19, 2015
I would like to share that I just have been authorised by Hong Kong Government to be a ISO/TC 292 member for Security and Resilience, related to ISO 22300, crisis management, physical security, cyber security, business continuity, and Enterprise Risk Management (ERM).

See publication

Tags: Cybersecurity, Risk Management, Business Continuity

1 Founder
RARM - Random Antifragile Risk Management Framework
RARM - Random Antifragile Risk Management Framework
December 31, 1969
Random Antifragile Risk Management (RARM) is a risk management framework created by Dr. Danny Ha that not only aims to resist shocks, but also to become stronger and even benefit from uncertainty, volatility, and crises. In contrast to traditional ISO 31000–style approaches that focus mainly on identifying, assessing, and mitigating risks to maintain stability, RARM emphasizes designing systems, organizations, and AI governance so they can gain from randomness through options, experimentation, redundancy, and adaptive responses. It is particularly applied in fast‑changing domains such as AI, cybersecurity, and global crises, where Dr. Ha promotes RARM as a next‑generation ERM mindset that integrates antifragility with standards like ISO/IEC 42001 for AI management systems. Dr. Danny Ha has also been awarded the Bronze Prize for AI Innovator of the Year 2026 at the Stevie Awards. Dr. Ha has applied RARM to the implementation of ISO 15408 certification for Network Box (NBC) UTM+ in 2026, and to a special closed‑class CISA exam preparation course for GP Batteries Hong Kong and its regional offices.

See publication

Tags: AI, Business Continuity, Business Strategy

2 Industry Awards
ISO Certification Consulting
ERM Award
February 01, 2018
"Thank you Dr. Danny Ha for his expertise and effective coaching on the ISO certification of ISO2701, ISO 9001, Information Security, and Risk Management (ERM) to cope with the volatile business environment.
Jack So, CIO, CDPSE, ASE, PSE, MCSE, TLCE, MSc, Appointed Service Provider for HKEX, Banking and MNC, Mar 2020."

See publication

Tags: Cybersecurity, Risk Management, Coaching

Cybersecurity Professional
Cybersecurity Excellence Awards
February 01, 2016
Cybersecurity Professional of the year

See publication

Tags: Cybersecurity, Risk Management

1 Instructor
Key Difficulties for a CISA Instructor
Dr. Danny Ha
April 09, 2026
Teaching a CISA course is challenging because it sits at the intersection of breadth, depth, and exam technique, and many learners come with very different backgrounds and expectations.

Key difficulties for a CISA instructor

Very broad syllabus: CISA covers five domains (governance, acquisition, operations, resilience, and protection of information assets), so the instructor must balance coverage of all areas without overwhelming students.

Scenario‑based, tricky questions: The exam uses complex scenarios and subtle wording, so teaching students to “think like an auditor” is harder than just teaching theory or facts.

Diverse student backgrounds: Some candidates are seasoned IT or audit professionals, others come from finance or non‑IT roles, so pacing and explanation depth must work for both groups at once.

See publication

Tags: AI Governance, Business Continuity, Project Management

1 Miscellaneous
Bridging the Value Gap: Why “Audit on Audit” (AoA), ISO 31000, and RARM Are Redefining ISO Certification Integrity - 8 Apr 2026
Dr. Danny Ha
April 08, 2026
The future of certification depends on restoring its integrity through proactive oversight and embedded risk management, and then going a step further. Audit on Audit (AoA) programs guided by ISO 31000 and the award‑winning RARM framework are not just compliance tools. https://www.linkedin.com/pulse/bridging-value-gap-why-audit-aoa-iso-31000-rarm-8-inrpe

See publication

Tags: AI Governance, Business Continuity, Risk Management

1 Professor
Embracing Chaos: How Random Antifragile Risk Management (RARM) Future-Proofs Organizations in Times of Global Crisis
Dr. Danny Ha
August 29, 2025
Random Antifragile Risk Management (RARM), created by Dr. Danny Ha, is a practical framework that uses randomness and uncertainty to help organizations not just survive, but get stronger and more flexible. RARM encourages continuous learning, multiple options for decision-making, and decentralized authority, allowing teams to react quickly and discover new solutions when challenges arise.

Rather than trying to predict every risk, RARM teaches businesses to learn from setbacks, run small experiments, and see uncertainty as a source of innovation. This makes organizations—and their teams—more resilient, adaptable, and able to turn problems into opportunities for growth.

RARM can be applied to business strategy, finance, supply chain management, sustainability, and is especially useful for Small Medium Businesses (SMBs). SMBs often face rapidly changing environments and limited resources; RARM helps them become agile and strong by leveraging uncertainty for improvement and competitive advantage.

See publication

Tags: Business Continuity, Leadership, Risk Management

1 Whitepaper
Quantum Chaos: The New Arms Race—Cyberwarfare, Intelligence, and Anti-Fragile Defense in the Quantum Era or WWIII
https://www.linkedin.com/pulse/quantum-chaos-new-arms-racecyberwarfare-intelligence-zdvdc
September 27, 2025
By likening quantum entanglement theory to “a premonition for World War III,” the narrative suggests that these complex scientific developments might function as early warnings for a paradigm shift with unprecedented consequences. RARM (Random Anti-Fragile Risk Management) approach can help organizations handle the risks of quantum computing and global chaos

See publication

Tags: Leadership, Quantum Computing, Risk Management

Thinkers360 Credentials

6 Badges

Blog

Opportunities

Events

Contact Dr Danny Ha

Book a Video Meeting

Media Kit

Share Profile

Contact Info

  Profile

Dr Danny Ha


Latest Activity

Search
How do I climb the Thinkers360 thought leadership leaderboards?
What enterprise services are offered by Thinkers360?
How can I run a B2B Influencer Marketing campaign on Thinkers360?