随着《网络安全法》《数据安全法》和《个人信息保护法》的相继发布和实施,中国网络空间监管的“三驾马车”架构已然形成,这为中国企业的合规经营提供了较为完善的法律基准,也为企业合规落地带来了一系列的挑战。为应对企业在合规经营中面临的疑难,本报告将首先从立法层面对基于“三驾马车”架构的法律体系完善情况加以分析,其次将围绕中国当前App专项治理、司法解释出台、公益诉讼和刑事保护等方面,对执法实践中从行政执法向多元治理模式的转变进行梳理,继而结合企业境外上市、平台算法、汽车数据、隐私计算等网络安全审查和数据治理焦点,对企业的合规落地提供相关建议和指引,并对未来国内外在这一领域的立法趋势以及国内的治理方向进行研判。
With the release and implementation of the “Cybersecurity Law”,“Data Security Law” and “Personal Information Protection Law”,the three-pillar structure in the realm of cyberspace regulation has been formed,which provides a better legal benchmark for the compliance operation of Chinese enterprises,as well as a series of challenges of compliance implementation. For the purpose of addressing the difficulties faced by enterprises in the compliance operation,this report firstly analyzes the improvement of the legal system based on the three-pillar structure from the legislative aspect,and secondly sorts out the enforcement transformation from administrative enforcement to multiple governance in practice by means of focusing on the current special governance in App,release of judicial interpretations,public interest actions and criminal protection,etc. Next,it takes issues concerning cyber security review and data governance into account,such as overseas listing,platform algorithm,automobile data and privacy computing so as to provide suggestions and guidelines for the compliance work of enterprises and to make judgments on the future domestic and foreign legislative trends as well as domestic governance directions in this field.