Practice of Personal Information Security Impact Assessment Standard Application in Payment Business
In compliance with the personal information protection impact assessment requirements by the Personal Information Protection Law,following GB/T 39335-2020 Information security technology—Guidance for personal information security impact assessment we built a personal information protection impact assessment system tailored to the specific business of the enterprise.Through assessing the impact of the business on individual customer's rights of discretion,property,and fairness,as well as the adaptability of security protection measures throughout the life cycle of personal information with its supporting management processes and platform tools,the system can identify and reduce possible personal information security risks in advance,and has shown promising performance in various payment scenarios such as transaction clearing,QR code payment and card not present payment.
Personal Information Protection LawGB/T 39335-2020personal information security impact assessmentpayment business