China Federation of Electronics and Information Industry, Guidelines on Data Compliance Audits

中国电子信息行业联合会数据合规审计指南

April 05, 2024 | BY

Susan Mok

Special audits may be required targeting personal information and data security compliance

Issued: February 18, 2024

Effective: as of date of issuance

Main contents:  The Guidelines divide data compliance audit projects into three categories, external audits, internal audits and special audits, where the term "special audit" means an audit addressing only certain audit objects, a specific audit subject or one in which only certain audit procedures are conducted, e.g. a special audit of enterprise data security compliance, audit of the personal information compliance of an e-commerce enterprise, review of the data compliance system of an Internet operation service provider, assessment of the data security compliance of a financial institution, audit of the personal health information compliance of a medical institution, project of a government authority for the formulation of a data compliance policy, etc.

This premium content is reserved for
China Law & Practice Subscribers.

  • A database of over 3,000 essential documents including key PRC legislation translated into English
  • A choice of newsletters to alert you to changes affecting your business including sector specific updates
  • Premium access to the mobile optimized site for timely analysis that guides you through China's ever-changing business environment
For enterprise-wide or corporate enquiries, please contact our experienced Sales Professionals at +44 (0)203 868 7546 or [email protected]