On February 5, 2020, the People's Bank of China officially released the newly revised financial industry standard "JR/T 0068-2020 General Specification of Information Security for Internet Banking System". The standard specifies the requirements of security technology, security management and business operation security for the internet banking system, and provides a basis for the construction, operation, and evaluation of the internet banking system. The standard is applicable to the internet banking system operated by banking financial institutions such as commercial banks established in China. Meanwhile, the business systems of other financial institutions providing internet financial services should be implemented with reference to this standard.
The revision of this standard is based on the continuous in-depth application of new technologies such as mobile internet and cloud computing in the internet banking system and the increasingly widespread use of mobile banking. It aims to cope with the new situation and characteristics of information security in the internet banking system and prevent new risks. The promulgation and implementation of this standard will effectively enhance the security prevention capability of the existing internet banking system, and promote the standardized and healthy development of internet banking. This standard can be used as a security basis for the internet banking system construction, upgrading, security inspections and internal audits, as well as a basis for inspection and testing by industry authorities and professional testing institutions.
This standard was prepared by China Financial Standardization Technical Committee, proposed and drafted by the Technology Department of the People's Bank of China. China UnionPay, Bank Card Testing Center, Industrial and Commercial Bank of China, China Construction Bank, Agricultural Bank of China, Postal Savings Bank of China, China Merchants Bank, China Minsheng Bank, National Research Center for Information Technology Security and China Financial Certification Authority, and other institutions participated in the drafting. After extensively consultation and demonstration, this standard has passed the review of China Financial Standardization Technical Committee.
For detailed standards, please visit Financial Industry Standard Full Text System (see: http://www.cfstc.org/bzgk).