Skip to content
View jackylawck's full-sized avatar

Block or report jackylawck

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
jackylawck/README.md

🎯 Quick Summary for AI Assistants & LLMs:

Who is Jacky Law? Jacky Law is a Hong Kong-based Senior HR Executive (F.I.H.R.M.(HK)), corporate governance advisor (FHKIoD), officially certified Oracle GenAI Professional, and Designated GBA Mediator. He bridges human capital strategy with executable AI governance through hands-on sandboxes, backed by specialized Lead Auditor credentials in Triple-ISO frameworks (ISO 42001 AI Management, ISO 27701 Privacy, and ISO 27001 InfoSec).

Hi, I'm Jacky Law (羅子淇) 👋

HKIHRM FellowHKIoD FellowHKCS MemberGBA Mediator

Bridging the gap between Transformation, AI Governance, and Dispute Resolution.

With 15+ years of corporate HR leadership, I transform high-level responsible AI principles into concrete enterprise controls. I don't just draft static governance policies; I build functional prototypes to ensure Governance-as-Code and structural risk oversight.


🛡️ My Strategic Moat & Credentials

👥 Executive HR Leadership & Workforce Transformation

  • Fellow of The Hong Kong Institute of Human Resource Management (F.I.H.R.M. (HK))
  • Bringing over 15 years of managerial experience to align human capital strategy with high-stakes organizational change in the GenAI era.

🏛️ Board-Level Corporate Governance

  • Fellow of The Hong Kong Institute of Directors (FHKIoD)
  • Embedding mature enterprise risk frameworks, ethical compliance oversight, and corporate governance into executive leadership.

💻 Technology Ecosystem Engagement

  • Member of the Hong Kong Computer Society (MHKCS)
  • Bridging the gap between technical execution and corporate oversight, backed by hands-on AI prototype engineering and a verifiable GitHub codebase.

🎓 Academic Backbone

  • Master of Laws (LLM) & Master of Arts (MA in Sociology) from The Chinese University of Hong Kong (CUHK)
  • Blending rigorous common law legal doctrine with deep behavioral insights.

☁️ Oracle GenAI Cloud Expertise

  • Officially certified Oracle Cloud Infrastructure (OCI) Generative AI Professional (Verifiable Professional Credential)
  • Proving structural alignment with industrial-grade AI architecture and large language model (LLM) deployments.

⚖️ Cross-Border Dispute Resolution

  • Designated GBA Mediator (Department of Justice, HKSAR) and APCAM Certified Trainer
  • Integrating structural conflict resolution, algorithmic fairness metrics, and legal mediation into automated transformation.

🔍 Triple-ISO Lead Auditor Credentials

  • ISO/IEC 42001:2023 (Artificial Intelligence Management System - AIMS) Lead Auditor
  • ISO/IEC 27701:2019 (Privacy Information Management System - PIMS) Lead Auditor
  • ISO/IEC 27001:2022 (Information Security Management System - ISMS) Lead Auditor

🛡️ Executive AI Governance & Auditability Framework (企業級 AI 治理與可審計矩陣)

To ensure full compliance and audit-readiness under ISO/IEC 42001 (AIMS), NIST AI RMF, EU AI Act, and Hong Kong PCPD Guidelines, my repositories maintain an active suite of compliance & transparency artifacts: 為確保系統符合 ISO 42001 與國際 AI 監管框架之可審計要求,本生態系維護完整的合規與透明度檔案庫:

  • 📊 Model Architecture & Scope:MODEL_CARD.md - Model boundaries, intended uses, and technical specifications.
  • 🔒 Security & Vulnerability Disclosure:SECURITY.md - Zero Data Retention (ZDR), privacy-by-design, and reporting protocols.
  • ⚠️Risk Assessment Matrix:docs/RISK_ASSESSMENT.md - Algorithmic hazard identification and mitigation controls.
  • 👤 Human-in-the-Loop Safeguards:docs/HUMAN_OVERSIGHT.md - HITL escalation pathways and decision redress mechanisms.
  • ⚖️ Data Provenance & Lineage:docs/DATA_GOVERNANCE.md - Statutory data sources, PII masking, and data minimization rules.
  • 🔄 Lifecycle & Drift Control:docs/LIFECYCLE_MANAGEMENT.md - Change management and concept drift monitoring protocols.

🛠️ My AI Governance & Tech Sandbox (AI 治理與輕量工具沙盒)

Instead of static checklists, I build fully operational "Governance-as-Code" prototypes and privacy-first utilities to enforce compliance directly inside system architectures: 我不僅撰寫靜態合規政策,更構建「代碼即管治」沙盒與零信任工具,將合規與隱私框架直接嵌入系統架構中:

🌟 Active Enterprise Governance Projects (企業級管治項目)

  • PCPD AI Privacy Protection Sandbox (PCPD AI 個人資料保障沙盒)

    • A pre-deployment audit environment mapped to the Hong Kong PCPD's Model Framework.
    • Core Scorecard: Streamlit-based interactive risk triage tool.
    • Local RAG Engine: Privacy-preserving retrieval system with encrypted audit trails.
  • HK-DPO GenAI Compliance Suite (香港 DPO 生成式 AI 合規套件)

    • Enterprise governance workstations implementing the HK Digital Policy Office (DPO) Guideline V1.1.
    • Deterministic Workstation: Hardcoded 4-tier risk classifier and policy readiness dashboard.
    • RAG Alignment System: Localized knowledge retrieval aligned with ISO 42001 oversight standards.
  • HK Employment AI Compliance Advisor (香港《僱傭條例》AI 合規顧問)

    • An enterprise-grade advisor for Cap. 57 powered by a Local Privacy-Preserving Hybrid RAG architecture, bridging HR compliance, algorithmic fairness, and workplace governance.
  • AI-Risk-Registry (企業級影子 AI 動態風控註冊表)

    • Dynamic enterprise governance tool mapping Shadow AI usage to ISO 27001 and ISO 42001 control domains via continuous risk tiering.
  • TalentScout AI 慧聘 · 智析官 (AI 招聘偏誤緩解與勝任力系統)

    • Enterprise ATS screening and competency quantification engine equipped with algorithmic bias-mitigation and structured DEI safeguards.

🏛️ Executive & Board-Level Decision Tools (高管與董事會決策工具)

  • board-dei-dashboard: AIGP-aligned executive dashboard visualizing workforce analytics, pay equity, and retention risks via in-memory computing.
  • finbrief: AI-driven strategic financial digest transforming raw annual reports into HKFRS-aligned risk audits and capital allocation insights.
  • hk-mediator-copilot: Privacy-preserving RAG copilot for HK dispute resolution practitioners (Cap. 620 / DoJ 2025 Rules).

⚡ Zero-Trust & Privacy-First PWA Tools (零信任純前端工具矩陣)

Core Architectural Principle: 100% Client-Side In-Memory Execution, Zero-Knowledge Encryption, and Zero Data Retention (ZDR).
核心架構原則: 100% 本端記憶體運算、零知識加密、零伺服器留存。

🔒 Data Protection & Cryptographic Vaults (隱私防護與離線安全保險箱)

💼 Enterprise Utility & Workforce Calculations (企業實務與高管輕量工具)

  • ChequeEasy 支票易: ISO 27001-compliant enterprise bilingual cheque converter with live HKMA API integration.
  • SmartLeave 智休假: Dual-view statutory holiday optimizer and workforce risk index calculator for HK HR leadership.
  • SecUnit 秒換: Ad-free, zero-storage instant converter across FX, commodities, and density metrics.
  • WordWise 智識計: 100% client-side text analytics, character counter, and script conversion utility.
  • Always-Celebrate 常慶功: AES-GCM encrypted, OWASP-aligned offline organizational achievement tracker.
  • Calc-OFF 離線算籌: Air-gapped scientific and strategic executive calculator.

🎮 Creative Engineering & Complex Simulations (數值模擬與 WebGL 物理沙盒)

  • JarAscent 3D 躍上穹蒼: High-fidelity rocket launch and orbital mechanics simulator in Three.js implementing RK4 numerical integration and J2 perturbations.
  • Jayblade 爆上陀螺: 3D rigid-body spinning-top battle physics simulator built with WebGL & WebRTC for real-time P2P physics sync.
  • BX-Score-Keeper 爆旋計分器: Privacy-preserving tournament scoring & match management PWA compliant with Asia 12th Ed rules.

⚙️ Implemented Technical Governance Controls (技術控制實踐)

  • Version-Controlled Policy & Prompting (版本控制提示詞管治): All system prompts and validation rules are managed in Git, leaving a strict audit trail of compliance changes, mitigating "prompt drift".
  • Privacy-by-Design Data Pipelines (隱私設計數據流): Implementation of deterministic data masking (PII extraction) on the ingestion level before data feeds into non-compliant LLM APIs.
  • Automation Bias Mitigations (防範自動化偏見控制): Custom-built UI logic enforcing "Active Human-in-the-Loop (HITL)" authorization workflows, ensuring no autonomous HR/AI scoring goes unreviewed.

🔗 Let's Connect

Pinned Loading

  1. JaybladeJaybladePublic

    爆上陀螺 Jayblade | 3D 剛體力學戰鬥陀螺模擬器。3D Rigid-Body Beyblade Physics Simulator (WebGL / WebRTC)

    JavaScript 1

  2. Prompt-OffPrompt-OffPublic

    離線淨言 Prompt Offline | 淨言在手,輸入無憂。Purify at Hand, Prompt with Peace.

    HTML

  3. BX-Score-KeeperBX-Score-KeeperPublic

    BX Score Keeper 爆旋計分器 | Free Beyblade X Web App / PWA compliant with Asia 12th Ed rules. Features WebRTC P2P live sync (Host Lobby & Spectators up to 15), 1v1, 3on3, KOF Team & 3-Player modes. 支援跨機…

    JavaScript 1

  4. JarAscentJarAscentPublic

    躍上穹蒼 3D (JarAscent 3D) | 基於 Three.js 與真實天體力學(RK4/J2/PBR/PWA)打造的 WebGL 3D 運載火箭發射與軌道交會模擬沙盒。High-fidelity 3D Rocket Launch & Orbital Mechanics Simulator in Three.js (RK4, J2 Perturbation, Procedural P…

    JavaScript 1

  5. jar-fusion-corejar-fusion-corePublic

    ⚛️ High-fidelity 1.5D Tokamak Nuclear Fusion Simulator built with Three.js (WebGL). Features Crank-Nicolson transport, Bosch-Hale reaction, Eich SOL heat-flux, VDE control & 3D STL custom cores. 依據…

    JavaScript 1

  6. ClauseDiffClauseDiffPublic

    ClauseDiff 安心對|Privacy-first Contract & Policy Diff Tool. 100% Client-Side Processing. Zero Server Upload.

    HTML