Chinese Internet Watchdog Proposes New Rules on Personal Data Compliance Audits

Chinese Internet Watchdog Proposes New Rules on Personal Data Compliance Audits

BY  
Seneca ESG  
- August 9, 2023

The Cyberspace Administration of China (CAC) has introduced a draft regulation, mandating the implementation of regular compliance audits for all companies involved in handling personal data, as reported by South China Morning Post on August 3. According to these rules, companies offering infrastructure information or services that possess data from more than 1 million users will be required to conduct at least one compliance audit annually. Conversely, companies with less than 1 million users will need to undergo audits every two years. Additionally, for services engaged in the cross-border transfer of their data, the audit will encompass verifying whether personal information is shared with foreign judicial or law enforcement bodies and whether such transfer are endorsed by Chinese authorities.

Over the past few years, China has progressively tightened its control over data and information, particular concerning data that crosses international borders. These newly proposed rules expand upon the existing legal frameworks, including the Personal Information Protection Law and Data Security Law that became effective in November 2021, along with the Measures for Security Assessment of Cross-border Data Transfer that were implemented last September. The CAC clarified that these forthcoming rules aim to “provide guidance and regulate compliance audits” to safeguard personal data. According to Caixin, it is anticipated that there will be hundreds of thousands of companies possessing personal data from over 1 million users, making compliance audits a significant undertaking. Under the new guideline, these companies will have the option to enlist auditing agencies designated by the CAC to perform their audits.

Sources:

https://www.scmp.com/news/china/politics/article/3229902/companies-china-conduct-regular-personal-data-compliance-audits-under-new-rules?module=perpetual_scroll_0&pgtype=article&campaign=3229902

https://www.reuters.com/world/china/china-make-holders-more-than-1-mln-users-data-get-annual-audits-2023-08-03/

http://politics.people.com.cn/n1/2023/0803/c1001-40049918.html

https://asia.nikkei.com/Spotlight/Caixin/China-tightens-controls-on-cross-border-data-transfers

Comienza a usar la Herramienta ESG de Seneca hoy

Monitorea el desempeño ESG en carteras, crea tus propios marcos ESG y toma decisiones empresariales mejor informadas.

Toolkit

Seneca ESG

¿Interesado? Contáctanos ahora

Para contactarnos, por favor llena el formulario a la derecha o envíanos un correo directamente a la dirección de abajo

sales@senecaesg.com

Oficina de Singapur

7 Straits View, Marina One East Tower, #05-01, Singapur 018936

+(65) 6223 8888

Oficina de Barcelona

Carrer de la Tapineria, 10

Ciutat Vella, 08002, Barcelona, Spain

+34 612 22 79 06

Oficina de Taipéi

77 Dunhua South Road, 7F Sección 2, Distrito Da'an, Taipéi, Taiwán 106414

(+886) 02 2706 2108

Oficina de Lima

Av Jorge Basadre Grohmann 607 San Isidro, Lima, Perú 15073

(+51) 951 722 377