CDPSE · Question #117
Which of the following is the PRIMARY reason for an organization to use hash functions when hardening application systems involved in biometric data processing?
The correct answer is A. To reduce the risk of sensitive data breaches. Biometric data (fingerprints, facial geometry, iris scans) is uniquely sensitive because it is immutable-a person cannot change their fingerprints if they are compromised. Hash functions convert biometric templates into fixed-length, irreversible digests. If a system is…
Question
Which of the following is the PRIMARY reason for an organization to use hash functions when hardening application systems involved in biometric data processing?
Options
- ATo reduce the risk of sensitive data breaches
- BTo meet the organization's security baseline
- CTo ensure technical security measures are effective
- DTo prevent possible identity theft
How the community answered
(21 responses)- A90% (19)
- C5% (1)
- D5% (1)
Explanation
Biometric data (fingerprints, facial geometry, iris scans) is uniquely sensitive because it is immutable-a person cannot change their fingerprints if they are compromised. Hash functions convert biometric templates into fixed-length, irreversible digests. If a system is breached, attackers obtain only the hash, not the original biometric. This directly reduces the risk of sensitive data breaches (A). Meeting a security baseline (B) is a compliance outcome, not the primary purpose. Ensuring security measures are effective (C) is too generic. Preventing identity theft (D) is a downstream benefit, but the primary technical reason for hashing is to protect the underlying sensitive data in the event of a breach.
Topics
Community Discussion
No community discussion yet for this question.