Recently, CRRC Information Technology Co., Ltd. obtained two nationally recognized cybersecurity credentials: the Level 1 Security Engineering Qualification Certificate for National Information Security Evaluation and the CCRC Level 2 Information System Security Integration Qualification Certificate. The certifications mark national-level recognition of the company’s professional information security service capabilities and represent a new step forward in its comprehensive service capacity in cybersecurity and information security.
As a platform company supporting CRRC’s industrial digitalization and the development of digital industries, CRRC Information Technology’s newly obtained certifications carry strong industry significance.

The Level 1 Security Engineering Qualification Certificate is issued by the China Information Technology Security Evaluation Center, a national information security evaluation authority established with central approval. It is one of the highest-level certifications in China’s information security service qualification system. The certification covers full-service capabilities, including security risk assessment, security solution design, security integration, security monitoring, and maintenance, fully demonstrating the company’s solid capabilities in providing life-cycle support for information security engineering.

The CCRC Level 2 Information System Security Integration Qualification Certificate is issued by the China Cybersecurity Review, Certification and Market Regulation Big Data Center, an institution directly affiliated with the State Administration for Market Regulation. The certification process is conducted in strict accordance with China’s laws and regulations on compulsory product certification and involves a comprehensive review of a company’s professionalism and standardization in areas such as security requirement definition, security design, project implementation, and security assurance. The certification demonstrates CRRC Information Technology’s standardized service capabilities and compliance-based practice in system security integration.
The approval of these two credentials is a comprehensive recognition of CRRC Information Technology’s technical strength, service quality, and management standards. It also indicates that the company has met high industry standards and obtained the necessary compliance qualifications in core areas such as information security engineering implementation, system security integration, and full-cycle security services. This further strengthens the company’s market competitiveness in information security services, enhances its brand credibility, and lays a solid foundation for expanding business in key sectors such as government, finance, and energy.
CRRC Information Technology will continue to deepen its presence in cybersecurity and information security, focusing on security needs arising from digital transformation. The company will further strengthen technological innovation and service capability development, improve its information security service system, and accelerate the conversion of its certification advantages into technological, service, and market advantages. It will continue to build integrated information security solutions that are independently controllable, secure, reliable, professional, and efficient, providing a strong cybersecurity foundation for CRRC’s digital and intelligent transformation.