As China steps up cybersecurity enforcement, smaller businesses are feeling the heat

Περισσότερα Νέα

- Advertisement -

As China moves to tighten security around its domestic data, law enforcement agencies are expanding efforts to monitor compliance across the country – from big tech firms to smaller street-level businesses. Now, businesses ranging from restaurants to foot massage parlours are being warned about punishments they face for failing to follow the country’s evolving cybersecurity regulations.

Last month, police in the city of Zhenjiang, in the eastern province of Jiangsu, carried out security sweeps at local businesses, issuing warnings to those that offered Wi-fi without requiring real-name registration, local media reported on Monday.

Citing the country’s Cybersecurity Law, the warnings ordered the businesses to “rectify” their services, which failed “to implement technical safety protection measures”, as required by the law, according to the report.

As those police checks started making waves, police in Huaian, another Jiangsu city, began handing out similar warnings to a local foot massage boutique, citing the country’s Data Security Law.

The business was warned after police said it had stored customer information, such as names and identity numbers, which are deemed as sensitive data, without setting up sufficient security measures to protect the data.
The security inspections shed new light on China’s growing scrutiny of how companies handle personal data, as authorities continue to tighten their control over cybersecurity. Beijing has also been working on strengthening its data protection legal framework, which is considered a key pillar for national security.

- Advertisement -

“While the enforcement action serves as a reminder to businesses of their data security and protection obligations, it has also sparked debate among industry participants over its fairness when targeting small enterprises, which may not be able to afford to take sometimes costly compliance measures,” Roberts said.

China’s Personal Information Protection Law, which came into effect in 2021, hinted that future legislation may be introduced to address this issue, Roberts said, as it calls for specific “special personal information protection rules and standards” to be developed for small enterprises that handle personal data.

However, these implementation rules – or a timetable for their publication – have yet to be seen by industry, Roberts added.

Angela Zhang, an associate professor of law at the University of Hong Kong, said the recent cases obviously reflect a shift in focus by local governments to enforce the data security rules on small and medium-sized firms and organisations.

“This clearly indicates a trend where Chinese authorities are intensifying their data security regulations. Unlike large corporations, small and medium-sized enterprises often lack robust compliance mechanisms. This could account for the recent surge in enforcement actions against them,” she said.

“However, the fines levied under this law tend to be relatively small, and the targets of enforcement actions are generally not prominent corporate actors. This suggests that the enforcement may not be as impactful on larger corporations,” she added.

Gao Fuping, a law professor at the East China University of Political Science and Law in Shanghai, said more comprehensive law enforcement is needed to raise awareness among all enterprises, while small businesses that handle data are more commonly at risk of illegal selling and sharing of data.

“I think all enterprises should meet the basic requirement of data storage security … for personal data. If leaked, it is not just a personal privacy issue, but more of a social safety and security issue. So there should be [compliance] pressure given to businesses,” Gao said.

With data security now at a higher priority, meeting such requirements could entail more costs and inconvenience on the part of businesses, Gao said.

As authorities strengthen enforcement under the provisions of the Data Security Law, fines are being handed out to various companies that have failed to comply with cybersecurity rules and were deemed at risk of data leaks.

In an article published on its WeChat account on Wednesday, the public security ministry’s network Security Bureau cited data-related cases over the past two years, 336 of which were handled in Jiangsu.

The article warned of possible data leaks in the healthcare industry and the financial and real estate sectors, warning that such leaks could cause “significant harm to public interests, economic operations, and individual rights and interests, and may affect national security and social stability.”

scmp.com

- Advertisement -

ΑΠΑΝΤΗΣΤΕ

εισάγετε το σχόλιό σας!
παρακαλώ εισάγετε το όνομά σας εδώ

The reCAPTCHA verification period has expired. Please reload the page.

Ροή ειδήσεων

ΣΧΕΤΙΚΑ ΑΡΘΡΑ

US military supremacy shines as China fails big in Iran, Venezuela 

China has become the laughingstock of the international community. For years, its leaders showcased their powerful HQ-9B missiles as the best air defense system. But...

Skill at Scale: India’s Edge in Semiconductor Alliances 

Perceived as a peripheral player in the region’s chip network for its limited high-end manufacturing capacity, India’s strength is often overlooked. Itsstrategic value in...

Cut off and caught in conflict: Inside the siege of Pakistan’s Kurram district

For more than three months, the people of Pakistan's Kurram District have lived under conditions resembling a siege rather than a governance crisis.  The closure...

Washington Cannot Chase Pakistan’s Minerals And Ignore Balochistan – OpEd

The reason behind this is that the world race has provided economic policy with a different meaning. Innovative planning in industry, defense production and...

ΔΗΜΟΦΙΛΗ ΑΡΘΡΑ

Ανακλήθηκε το άσυλο του Τζαβέντ Ασλάμ, δεν συντρέχουν λόγοι προστασίας του στην Ελλάδα

Η Υπηρεσία Ασύλου του υπουργείου Μετανάστευσης και Ασύλου προχώρησε σήμερα στην έκδοση και επίδοση της απόφασης με την οποία ανακαλείται το καθεστώς διεθνούς προστασίας...

Επιτέλους! – Συνελήφθη στη Νορβηγία ο Τόμι Όλσεν της ΜΚΟ Aegean Boat Report για εγκληματική οργάνωση και αναμένεται να εκδοθεί στην Ελλάδα

Τη Δευτέρα 16 Μαρτίου, ο Τόμι Όλσεν συνελήφθη στο σπίτι του στο Τρόμσο της Νορβηγίας, μετά την έκδοση διεθνούς εντάλματος σύλληψης από την Ελλάδα,...

Σκοτώνουν με ακρίβεια εκατοστού – Πώς το Ισραήλ «βλέπει» και χτυπά ηγέτες σε Τεχεράνη, Βηρυτό και Γάζα πριν προλάβουν να αντιδράσουν

Οι επιχειρήσεις εξόντωσης ηγετικών στελεχών οργανώσεων στη Μέση Ανατολή δεν είναι αποτέλεσμα στιγμιαίων αποφάσεων, αλλά προϊόν ενός σύνθετου και διαρκούς μηχανισμού συλλογής και επεξεργασίας...

Τούρκος αναλυτής για ελληνικούς Patriot στην Κάρπαθο: Η Τουρκία πρέπει να ανταποδώσει με τον ίδιο τρόπο

Ο Ναίμ Μπαμπούρογλου Τούρκος, ειδικός σε θέματα Στρατηγικής/Διεθνών Σχέσεων, ζητά δυναμική ανάλογη απάντηση στο Αιγαίο λόγω των ελληνικών Patriot στην Κάρπαθο. Λύσσαξαν στην κυριολεξία οι...