中图网(原中国图书网):网上书店,尾货特色书店,30万种特价书低至2折!

歡迎光臨中圖網 請 | 注冊
> >
中國網絡安全等級保護制度理解與實施 英文版

包郵 中國網絡安全等級保護制度理解與實施 英文版

作者:Guo Qiquan
出版社:人民郵電出版社出版時間:2021-03-01
開本: 16開 頁數: 268
中 圖 價:¥77.8(7.8折) 定價  ¥99.8 登錄后可看到會員價
加入購物車 收藏
開年大促, 全場包郵
?新疆、西藏除外
本類五星書更多>

中國網絡安全等級保護制度理解與實施 英文版 版權信息

  • ISBN:9787115558671
  • 條形碼:9787115558671 ; 978-7-115-55867-1
  • 裝幀:平裝
  • 冊數:暫無
  • 重量:暫無
  • 所屬分類:>

中國網絡安全等級保護制度理解與實施 英文版 本書特色

This book introduces the China Cybersecurity Classified Protection System (CCPS), covering its development, interpretation of the Cybersecurity Law of the People’s Republic of China, the underlying standards, and procedures in practice such as cybersecurity system classification level determination, registration, development and improvement, evaluation, supervision and inspection.

In this book, we analyze the implementation and practice of cybersecurity protection in China, and provide an interpretation of the existing cybersecurity related laws, regulations and standards. The purpose of this book is to serve the training and implementation needs of foreign organizations, including companies along the Belt and Road Initiatives, in establishing their cybersecurity protection in line with the requirements of China Cybersecurity Classified Protection System.

中國網絡安全等級保護制度理解與實施 英文版 內容簡介

This book introduces the China Cybersecurity Classified Protection System (CCPS), covering its development, interpretation of the Cybersecurity Law of the People’s Republic of China, the underlying standards, and procedures in practice such as cybersecurity system classification level determination, registration, development and improvement, evaluation, supervision and inspection. In this book, we analyze the implementation and practice of cybersecurity protection in China, and provide an interpretation of the existing cybersecurity related laws, regulations and standards. The purpose of this book is to serve the training and implementation needs of foreign organizations, including companies along the Belt and Road Initiatives, in establishing their cybersecurity protection in line with the requirements of China Cybersecurity Classified Protection System.

中國網絡安全等級保護制度理解與實施 英文版 目錄

Table of Contents

Part Ⅰ Interpretation of Cybersecurity Classified

Protection System of China 1

Chapter 1 Development of China Cybersecurity Classified Protection System 2

1.1 Establishment of Computer Information Systems Security Protection System 2

1.2 Establishment of Information Security Classified Protection System 3

1.3 Establishment of Cybersecurity Classified Protection System 5

Chapter 2 Interpretation of the Cybersecurity Law 6

2.1 Cybersecurity Obligations and Primary Tasks 6

2.2 Division of Responsibilities and Related Obligations 12

2.3 National Cybersecurity Classified Protection System 14

2.4 Basic Responsibilities and Obligations of Network Operators 15

2.5 Operation Security of Critical Information Infrastructure 19

2.6 Network Data and Information Security 25

2.7 Monitoring, Early Warning, and Emergency Response 28

2.8 Acts Prohibited and Legal Responsibility 32

Chapter 3 Interpretation of Cybersecurity Classified Protection System of China 47

3.1 Policies on Cybersecurity Classified Protection 47

3.1.1 General Policy Documents 47

3.1.2 Policy Document of Classified Protection Specific Stages 48

3.2 Basic Concept of Cybersecurity Classified Protection 50

3.2.1 Legal Basis for Carrying Out Cybersecurity Classified Protection 50

3.2.2 Policy Basis for Carrying Out Cybersecurity Classified Protection 51

3.2.3 What is Cybersecurity Classified Protection 54

3.2.4 Division and Supervision of Security Protection Levels 56

3.2.5 Critical Information Infrastructure Protection 58

3.3 Main Contents of the Cybersecurity Classified Protection System 59

3.3.1 Organization Structure of Cybersecurity Classified Protection 59

3.3.2 Main Stages and Basic Requirements of Classified Protection 61

3.3.3 Security Management of Evaluation 65

3.3.4 Network Products and Security Service Requirements 66

Table of Contents

Interpretation and Implementation of Cybersecurity Classified Protection System in China

viii

3.3.5 Monitoring, Early Warning and Information Reporting 66

3.3.6 Data Security Protection 68

3.3.7 Emergency Disposal Requirements 68

3.3.8 Evaluation Requirements 69

3.3.9 Risk Control of New Technology and New Application 69

3.3.10 Supervision and Administration of Cybersecurity Classified Protection Practices 69

Chapter 4 Interpretation of Cybersecurity Classified Protection Standards of China 72

4.1 Cybersecurity Classified Protection Standards Framework 72

4.2 Relationship between Relevant Standards and Different Stages of Classified Protection 73

4.2.1 Basic Standards 73

4.2.2 Classification 73

4.2.3 Security Requirements 74

4.2.4 Methodology and Guidance 75

4.2.5 Status Analysis 76

4.3 Issues Need Attentions for the Application of Relevant Standards 77

4.4 Brief Description of Main Standards on Cybersecurity Classified Protection 77

4.4.1 Classified Criteria for Security Protection of Computer Information System

(GB 17859—1999) 78

4.4.2 Implementation Guide for Classified Protection of Cybersecurity (GB/T 25058—2019) 78

4.4.3 Testing and Evaluation Process Guide for Classified Protection of Cybersecurity

(GB/T 28449—2018) 79

Part Ⅱ Implementation of Cybersecurity Classified Protection

System of China 81

Chapter 5 Classification of Cybersecurity Classified Protection 82

5.1 Classification of Security Protection Levels 82

5.1.1 Principle of Classification 82

5.1.2 Security Protection Levels of Network 82

5.1.3 Classification Factors of Cybersecurity Protection Level 83

5.1.4 Protection and Supervision of the Five Levels 84

5.2 Procedures of Classification 84

5.2.1 Determine the Classification Object 85

5.2.2 Determine the Security Protection Level of Network 87

5.2.3 Expert Reviews of Cybersecurity Protection Level 88

5.2.4 Examination of Cybersecurity Protection Level 88

5.2.5 Public Security Authorities Examine the Security Protection Level of Network 89

Table of Contents

ix

5.3 How to Determine the Security Protection Level of Network 89

5.3.1 How to Understand the Five Security Protection Levels of Network 89

5.3.2 General Process of Network Classification 90

Chapter 6 Registration of Cybersecurity Classified Protection 92

6.1 Registration and Acceptance 92

6.2 Public Security Authorities Accept Network Registration 94

6.3 Treatment for Inaccurate Level and Non-registration 95

6.4 Public Security Authorities’ Guidance on Network Classification and Registration 95

Chapter 7 Development and Improvement of Cybersecurity Classified Protection 96

7.1 Objective and Content 96

7.1.1 Objective 96

7.1.2 Scope and Characteristics 96

7.1.3 Contents 97

7.1.4 Cybersecurity Protection Capability Objective 99

7.2 Methods and Processes 101

7.2.1 Methods 101

7.2.2 Processes 102

7.3 Security Management System Development 103

7.3.1 Implementing Cybersecurity Responsibility System 103

7.3.2 Cybersecurity Management Status Analysis 103

7.3.3 Formulating Security Management Strategy and System 104

7.3.4 Conducting Security Management Measures 104

7.3.5 Security Self-Inspection and Adjustment 107

7.4 Security Technology Measures Development 107

7.4.1 Security Protection Technology Status Analysis of Network 107

7.4.2 Designing of Cybersecurity Technology Development and Improvement Plan 108

7.4.3 Implementation and Management of Security Development and Improvement Engineering 110

7.4.4 Elements of Cybersecurity Development and Improvement Plan 111

7.5 Selection and Use of Information Security Products 112

7.5.1 Selecting the Information Security Products Licensed for Sale 112

7.5.2 Multilevel Testing and Use of Products 112

7.5.3 Issues Related to Information Security Products Used in Networks at or Above Level Ⅲ 113

7.5.4 Issues Related to the Commercial Cryptography Products Used in Networks at

or above Level Ⅲ 114

7.6 Selecting the Development Service Organization of Cybersecurity Classified Protection 115

Chapter 8 Level Evaluation of Cybersecurity Classified Protection 117

8.1 Overview of Level Evaluation 117

Interpretation and Implementation of Cybersecurity Classified Protection System in China

x

8.1.1 Basic Connotation of Level Evaluation 117

8.1.2 Goals of Level Evaluation 118

8.1.3 When Should We Carry Out Level Evaluation 118

8.1.4 Business Scope of Level Evaluation Organizations 119

8.1.5 Standards of Level Evaluation 119

8.1.6 Development of Level Evaluation Business 120

8.1.7 Notes on the Application of Level Evaluation Standards 123

8.2 Management and Supervision of Level Evaluation Organizations and Personnel 123

8.2.1 Why Need to Develop the Level Evaluation System 123

8.2.2 Management of Evaluation Organizations and Personnel 124

8.2.3 Business Scope and Work Requirements of Evaluation Organizations 125

8.3 Risk Control of Level Evaluation 125

8.3.1 Existing Risks 125

8.3.2 Risk Aversion 126

8.4 Evaluation Reports 127

Chapter 9 Supervision and Inspection of Cybersecurity Classified Protection 128

9.1 Regular Self-Inspection and Supervision 128

9.1.1 Regular Self-inspection of Registration Organizations 128

9.1.2 Supervision and Inspection of Industry Competent Departments 128

9.2 Supervision and Inspection of Public Security Authorities 129

9.2.1 Principles and Methods 129

9.2.2 Main Contents of Inspection 129

9.2.3 Inspection and Improvement Requirements 130

9.2.4 Inspection Requirements 130

9.2.5 Incidents Investigation 131

9.3 Supervision and Management of Network Service Organizations 131

Part Ⅲ Appendices 133

Appendix A Cybersecurity Law of the People’s Republic of China 134

Appendix B The Cryptography Law of the People’s Republic of China 150

Appendix C Regulations of the People’s Republic of China on the Protection of Computer

Information System Security 159

Appendix D Administration Measures for Information Security Classified Protection 163

Appendix E Regulations for the Cybersecurity Classified Protection 176

Appendix F Specifications on Information Security Classified Protection Inspection of

Public Security Authorities (Trial) 194

Table of Contents

xi

Appendix G Administration Measures for Cybersecurity Classified Protection

Evaluation Organizations 200

Appendix H Interpretation of Classification Guide for Classified Protection of

Cybersecurity (GB/T 22240—2020) 211

Appendix I Interpretation of Baseline for Classified Protection of Cybersecurity

(GB/T 22239—2019) 218

Appendix J Interpretation of Technical Requirements of Security Design for

Classified Protection of Cybersecurity (GB/T 25070—2019) 235

Appendix K Interpretation of Evaluation Requirement for Classified Protection of

Cybersecurity (GB/T 28448—2019) 259

Glossary of Classified Protection Terms 265

展開全部

中國網絡安全等級保護制度理解與實施 英文版 作者簡介

Mr. Guo Qiquan,chief engineer and vice director at the Cybersecurity Protection Bureau of the Ministry of Public Security, P. R. China. Mr. Wang Xinjie, general manager of Beijing Powertime Co., Ltd. He has been engaged in network and information security since 1999 and has specialized in in information security management systems consulting and auditing, information system auditing, information security risk management and business continuity management. Since 2002, he has been engaged in the Chinese mirror committee to ISO/IEC JTC1/SC27, SAC/TC 260. As a member of TC 260 has been involved in the development of many Chinese information security national standards. He has been actively involved in the work of SC27/WG1 since 2007, and he is currently the member of the SC27/AG01(Management Advisory Group). During this time, he has taken part in all of the working group meetings of WG1 including many of the SC27 Plenary meetings, giving him a broader management perspective of the sub-committee and its technical work. His technical work in WG1 has included the work on the ISO/IEC 27000 family of standards, such ISO/IEC 27001, ISO/IEC 27002 and ISO/IEC 27005. In 2007, he was the co-editor of ISO/IEC 27007. He established and currently runs the China authorized agency of (ISC)2, and is also a member of RAISE (Regional Asia Information Security Exchange Forum)

商品評論(0條)
暫無評論……
書友推薦
本類暢銷
編輯推薦
返回頂部
中圖網
在線客服
主站蜘蛛池模板: 留学生辅导网-在线课程论文辅导-留学生挂科申诉机构 | 斗式提升机,斗式提升机厂家-淄博宏建机械有限公司 | BHK汞灯-百科|上海熙浩实业有限公司 | ◆大型吹塑加工|吹塑加工|吹塑代加工|吹塑加工厂|吹塑设备|滚塑加工|滚塑代加工-莱力奇塑业有限公司 | 奥运星-汽车性能网评-提供个性化汽车资讯 | 昆明挖掘机修理厂_挖掘机翻新再制造-昆明聚力工程机械维修有限公司 | 招商帮-一站式网络营销服务|搜索营销推广|信息流推广|短视视频营销推广|互联网整合营销|网络推广代运营|招商帮企业招商好帮手 | 机器视觉检测系统-视觉检测系统-机器视觉系统-ccd检测系统-视觉控制器-视控一体机 -海克易邦 | 微型气象仪_气象传感器_防爆气象传感器-天合传感器大全 | 亮化工程,亮化设计,城市亮化工程,亮化资质合作,长沙亮化照明,杰奥思【官网】 | 政府回应:200块在义乌小巷能买到爱情吗?——揭秘打工族省钱约会的生存智慧 | 河南凯邦机械制造有限公司 | 特种电缆厂家-硅橡胶耐高温电缆-耐低温补偿导线-安徽万邦特种电缆有限公司 | 上海电子秤厂家,电子秤厂家价格,上海吊秤厂家,吊秤供应价格-上海佳宜电子科技有限公司 | 滁州高低温冲击试验箱厂家_安徽高低温试验箱价格|安徽希尔伯特 | Copeland/谷轮压缩机,谷轮半封闭压缩机,谷轮涡旋压缩机,型号规格,技术参数,尺寸图片,价格经销商 CTP磁天平|小电容测量仪|阴阳极极化_双液系沸点测定仪|dsj电渗实验装置-南京桑力电子设备厂 | 欧美日韩国产一区二区三区不_久久久久国产精品无码不卡_亚洲欧洲美洲无码精品AV_精品一区美女视频_日韩黄色性爱一级视频_日本五十路人妻斩_国产99视频免费精品是看4_亚洲中文字幕无码一二三四区_国产小萍萍挤奶喷奶水_亚洲另类精品无码在线一区 | 户外健身路径_小区健身器材_室外健身器材厂家_价格-浩然体育 | 合肥角钢_合肥槽钢_安徽镀锌管厂家-昆瑟商贸有限公司 | 活性氧化铝球|氧化铝干燥剂|分子筛干燥剂|氢氧化铝粉-淄博同心材料有限公司 | uv固化机-丝印uv机-工业烤箱-五金蚀刻机-分拣输送机 - 保定市丰辉机械设备制造有限公司 | 实体店商新零售|微赢|波后|波后合作|微赢集团 | 石家庄小程序开发_小程序开发公司_APP开发_网站制作-石家庄乘航网络科技有限公司 | 传爱自考网_传爱自学考试网 | 交变/复合盐雾试验箱-高低温冲击试验箱_安奈设备产品供应杭州/江苏南京/安徽马鞍山合肥等全国各地 | 博莱特空压机|博莱特-阿特拉斯独资空压机品牌核心代理商 | 彩超机-黑白B超机-便携兽用B超机-多普勒彩超机价格「大为彩超」厂家 | 锂电叉车,电动叉车_厂家-山东博峻智能科技有限公司 | 烟台游艇培训,威海游艇培训-烟台市邮轮游艇行业协会 | 胶泥瓷砖胶,轻质粉刷石膏,嵌缝石膏厂家,腻子粉批发,永康家德兴,永康市家德兴建材厂 | 耐高温风管_耐高温软管_食品级软管_吸尘管_钢丝软管_卫生级软管_塑料波纹管-东莞市鑫翔宇软管有限公司 | 薄壁轴承-等截面薄壁轴承生产厂家-洛阳薄壁精密轴承有限公司 | 西安标准厂房_陕西工业厂房_西咸新区独栋厂房_长信科技产业园官方网站 | 杭州ROHS检测仪-XRF测试仪价格-百科 | 通辽信息港 - 免费发布房产、招聘、求职、二手、商铺等信息 www.tlxxg.net | 发电机组|柴油发电机组-批发,上柴,玉柴,潍柴,康明斯柴油发电机厂家直销 | 膜结构车棚|上海膜结构车棚|上海车棚厂家|上海膜结构公司 | 五轴加工中心_数控加工中心_铝型材加工中心-罗威斯 | 分光色差仪,测色仪,反透射灯箱,爱色丽分光光度仪,美能达色差仪维修_苏州欣美和仪器有限公司 | 上海皓越真空设备有限公司官网-真空炉-真空热压烧结炉-sps放电等离子烧结炉 | 临沂招聘网_人才市场_招聘信息_求职招聘找工作请认准【马头商标】 |