综合一区欧美国产,99国产麻豆免费精品,九九精品黄色录像,亚洲激情青青草,久久亚洲熟妇熟,中文字幕av在线播放,国产一区二区卡,九九久久国产精品,久久精品视频免费

Global EditionASIA 中文雙語Fran?ais
China

Draft rules seek to safeguard network data security

By Jiang Chenglong | China Daily | Updated: 2025-12-10 00:00
Share
Share - WeChat

China's top cyberspace regulator has released draft regulations on assessing network data security risks as it seeks to strengthen and promote the lawful, reasonable and effective use of data.

The Cyberspace Administration of China said in a statement on Saturday that the proposed measures are intended to safeguard network data security.

According to the draft, a network data security risk assessment refers to the identification, analysis and evaluation of security risks related to data and data-processing activities.

The rules require processors of "important data" to conduct risk assessments of their data-processing activities annually. If major changes occur in the security status that could adversely affect overall data security, a targeted assessment must be carried out promptly.

Processors of "general data" are encouraged to conduct a risk assessment at least once every three years.

According to the draft, data processors may conduct assessments themselves or entrust certified third-party institutions to do so on their behalf. However, if an assessment institution identifies major data security risks, it must promptly notify the data processor and, in line with relevant regulations, report the matter to cyberspace authorities at or above the provincial level, as well as to relevant regulators.

The draft also specifies several situations in which data processors must hire a certified assessment institution. These include cases in which data-processing activities pose relatively high security risks, or when a data-security incident has occurred that resulted in the leak or theft of important data or large-scale personal information.

A certified assessment is also required if data-processing activities pose a threat to national security or the public interest.

The draft outlines obligations that data processors must fulfill during risk assessments, including granting assessment personnel access to necessary data facilities, systems and operation logs. Processors are also required to address problems identified during an assessment and submit a rectification report within 15 working days after completion.

If authorities discover, during the assessment process, that certain data-processing activities may endanger national security or the public interest, they must order the processor to make corrections. For entities that refuse to comply or fail to meet rectification requirements, regulators may impose additional measures, including ordering them to stop processing important data.

Wang Zhicheng, an official responsible for data and technical support at the Office of the Central Cyberspace Affairs Commission, said the draft measures establish a "full life cycle and multi-element "evaluation system designed to respond to emerging security challenges posed by technologies such as artificial intelligence, big data and blockchain.

In a commentary published on the administration's website, Wang said the measures embed risk assessment throughout the entire data life cycle, from collection, storage and use to processing, transmission, provision, disclosure and deletion.

The draft also evaluates multiple dimensions, including technology, management, personnel and institutional mechanisms.

Technologically, it examines the effectiveness of security protections; in management, it assesses internal rules and their implementation; and in personnel, it reviews job roles and divisions of responsibility.

Members of the public are encouraged to provide feedback on the draft rules by Jan 5.

Today's Top News

Editor's picks

Most Viewed

Top
BACK TO THE TOP
English
Copyright 1994 - . All rights reserved. The content (including but not limited to text, photo, multimedia information, etc) published in this site belongs to China Daily Information Co (CDIC). Without written authorization from CDIC, such content shall not be republished or used in any form. Note: Browsers with 1024*768 or higher resolution are suggested for this site.
License for publishing multimedia online 0108263

Registration Number: 130349
FOLLOW US
白银市| 曲麻莱县| 聂荣县| 遂溪县| 城步| 通州市| 成安县| 武平县| 永兴县| 任丘市| 洛南县| 井研县| 丰城市| 常熟市| 长宁县| 安达市| 固原市| 阿拉善盟| 金坛市| 西平县| 潮安县| 南皮县| 大田县| 正蓝旗| 孙吴县| 兴城市| 城步| 五台县| 林西县| 定结县| 宜宾市| 洛阳市| 辽阳县| 长顺县| 珲春市| 仁布县| 建水县| 富源县| 武汉市| 鄂托克前旗| 福鼎市|