Reference standard
《中華人民(mín)共和國(guó)網絡安全法》 
Network security law of the people's Republic of China  
《通(tōng)信網絡安全防護管理辦法》 
Management measures for communication network security protection  
《信息技(jì)術(shù) 安全技(jì)術(shù) 信息安全管理實施指南(nán)》(ISO/IEC 27002:2013) 
Implementation Guide for information technology security management (ISO / IEC 27002:2013)  
《NIST-SP800-30 Guide for Conducting Risk Assessments風險評估指南(nán)》  
Nist-sp800-30 guide for conducting risk assessments   
《信息安全技(jì)術(shù) 信息系統安全等級保護基本要求》(GB/T 22239-2008)  
Information security technology - basic requirements for security level protection of information systems (GB / T 22239-2008)   
《信息安全技(jì)術(shù) 信息安全風險管理指南(nán)》(GB/Z 24364-2009) 
Information security technology - Guidelines for information security risk management (GB / Z 24364-2009)  
《信息安全技(jì)術(shù) 信息安全風險評估規範》(GB/T 20984-2007)
Information security technology - Code for information security risk assessment (GB / T 20984-2007)