September 16, 2020 Wednesday

Protecting the "nerve center" of social operation in the digital Age by law

Source: wechat public account of Ministry of State Security Release time: 2024-06-14

  Critical information infrastructure is the "nerve center" of economic and social operation, and is the top priority of network security。Ensuring the security of critical information infrastructure is of great significance to safeguarding national security。

  Regulations on the Security Protection of Critical Information Infrastructure (hereinafter referred to as "Regulations") formulated and promulgated by China,It is an important measure to strengthen legislation in the field of cyber security and improve the legal and regulatory system of cyber security protection,To ensure the effective operation of critical information infrastructure in accordance with laws and regulations,We have laid a solid foundation for safeguarding China's cyber security。

图片

  Clearly define requirements by law

  The Cybersecurity Law of the People's Republic of China, which came into effect on June 1, 2017, officially clarified the concept of critical information infrastructure for the first time, and put forward the principle requirements for the security protection of critical information infrastructure。As an important supporting regulation of the Law, the Regulations further clarify the definition of critical information infrastructure, and put forward more specific and operational basic requirements for operators' responsibilities and obligations。

  Article 2 of the Regulations,Critical information infrastructure referred to in these Regulations,Refers to public communication and information services, energy, transportation, water conservancy, finance, public services, e-government, national defense science and technology industry and other important industries and fields,And others in the event of a breach, loss of functionality, or data breach,Important network facilities and information systems that may seriously endanger national security, national economy and people's livelihood, and public interests。

  Article 6 of the Regulations,The operator shall comply with these Regulations and the provisions of relevant laws and administrative regulations and the mandatory requirements of national standards,On the basis of network security level protection,Take technical protection measures and other necessary measures,Responding to cyber security incidents,Guard against cyber attacks and criminal activities,Ensure the safe and stable operation of critical information infrastructure,Maintain data integrity, confidentiality, and availability。

  Implement key protection in accordance with the law

  With the rapid development of information technology, China is in a critical period of digital transformation and upgrading, a variety of new scenarios, new problems, new technologies, new methods emerge endlessly, critical information infrastructure security protection is facing more and more onerous tasks, challenges are becoming more and more arduous。China insists on improving laws and regulations to strengthen the protection of critical information infrastructure, governing cyberspace according to law, and maintaining national network security, which provides an important basic norm and legal guarantee for scientific and effective protection of critical information infrastructure security。

  Article 5 of the Regulations,The state gives priority to the protection of critical information infrastructure,Take measures,Monitor, defend against, and deal with cybersecurity risks and threats originating within and outside the People's Republic of China,Protect critical information infrastructure from attack, intrusion, interference and destruction,To punish illegal and criminal activities that endanger the security of critical information infrastructure according to law。No individual or organization shall engage in activities that illegally invade, interfere with, or destroy critical information infrastructure, or endanger the security of critical information infrastructure。

  Strengthen prevention and punishment in accordance with the law

  Critical information infrastructure is an important part of the national economy and people's livelihood, once invaded, controlled, tampered with or destroyed, may lead to traffic disruption, financial disorders, power paralysis and other serious consequences。

  The work of national security organs has found that in recent years, overseas espionage and intelligence agencies' cyber attacks against China's party and government organs, national defense and military industries, scientific research institutes and other units have increasingly shown organizational, large-scale, and sustained characteristics, bringing serious risks of leakage。

  According to the Regulations, state security organs strengthen the security of critical information infrastructure in accordance with their duties and duties, and prevent and crack down on illegal and criminal activities targeting and using critical information infrastructure。The operator shall cooperate with the critical information infrastructure network security inspection and testing carried out by the protection work department, as well as the critical information infrastructure network security inspection carried out by relevant departments such as national security in accordance with the law。

  State security organs will be under the strong leadership of the CPC Central Committee,We will implement the overall approach to national security,With the relevant authorities,We will take cybersecurity precautions against critical information infrastructure in accordance with the law,We will crack down on the infiltration, destruction and theft of China's key information infrastructure by foreign espionage and intelligence agencies,We will make every effort to ensure the security of China's critical information infrastructure。


附件: