信息安全研究 ›› 2026, Vol. 12 ›› Issue (2): 124-.

• 数字社会的安全、隐私与治理专题 • 上一篇    下一篇

企业数据出境动态风险评估与安全监管体系研究

赵兴文蔡佳音李晖刘子熠陈萱桂吕元哲   

  1. (西安电子科技大学网络与信息安全学院西安710126)
  • 出版日期:2026-02-07 发布日期:2026-01-28
  • 通讯作者: 蔡佳音 博士研究生.主要研究方向为公钥可搜索加密、数据安全共享. cjyttky@163.com
  • 作者简介:赵兴文 博士,副教授,博士生导师.主要研究方向为数据安全共享、保护隐私的密码协议、基于机器学习的网络安全应用. sevenzhao@hotmail.com 蔡佳音 博士研究生.主要研究方向为公钥可搜索加密、数据安全共享. cjyttky@163.com 李晖 博士,教授,博士生导师.主要研究方向为密码信息安全、隐私计算、信息论与编码理论. lihui@mail.xidian.edu.cn 刘子熠 硕士研究生.主要研究方向为人工智能安全、信息安全. hyb4118@gmail.com 陈萱桂 硕士研究生.主要研究方向为加密流量分析、隐私保护. suxiao_xuan@163.com 吕元哲 硕士研究生.主要研究方向为人工智能安全、信息安全. yzlv@stu.xidian.edu.cn
  • 基金资助:
    国家重点研发计划项目(2023YFB3106400)

Research on Dynamic Risk Assessment and Security Supervision System of  Enterprise Outbound Data Transfer

Zhao Xingwen, Cai Jiayin, Li Hui, Liu Ziyi, Chen Xuangui, and Lü Yuanzhe   

  1. (School of Cyber Engineering, Xidian University, Xi’an 710126)
  • Online:2026-02-07 Published:2026-01-28

摘要: 随着数字经济的全球化发展,数据跨境流动需求显著增加,涉及国家信息、商业秘密和个人隐私等数据的出境安全风险也日益凸显.以降低企业数据出境业务风险为目的,以监管视角下的风险要素为研究对象,进一步基于数据出境流转模式提出了监测与抽检机制相结合的企业数据出境风险评估与安全监管体系框架.通过强化事前、事中、事后全链条风险监管思路,包括事前基于多要素归并分析的风险预评估、事中基于统计监测与抽检机制的风险调整与应对,以及事后针对违规行为的处置与监管优化,促进跨境企业规范其数据出境行为.为完善数据出境安全监管技术体系提供建议,对未来推动数字经济的高质量健康发展具有重要意义.

关键词: 数据跨境流动, 企业数据出境, 风险评估, 安全监管, 数字治理

Abstract: The demand for crossborder data flow has grown significantly with the globalization of the digital economy, and the security risks related to data, such as national information, corporate secrets, and personal privacy, have gained much attention. To mitigate the risks of outbound data transfer, this article evaluates the risk factors from the regulatory perspective and further forms a risk assessment and security supervision system framework that combines monitoring and sampling mechanisms based on the outbound data flow model. The wholechain risk supervision approach, which includes risk preassessment based on multifactor merging analysis prior to the business, risk adjustment and response based on statistical monitoring and sampling mechanism during the business, and postbusiness disposal and supervision optimization of illegal behaviors, can be strengthened in order to regulate the data outbound behavior of crossborder enterprises. The study makes recommendations for enhancing the technical framework of outbound data transfer security supervision, which is crucial for fostering the future growth of the digital economy in a highcaliber and sound manner.

Key words: crossborder data flow, enterprise outbound data transfer, risk assessment, security supervision, digital governance

中图分类号: