nerdexam
Isaca

CDPSE · Question #117

Which of the following is the PRIMARY reason for an organization to use hash functions when hardening application systems involved in biometric data processing?

The correct answer is A. To reduce the risk of sensitive data breaches. Biometric data (fingerprints, facial geometry, iris scans) is uniquely sensitive because it is immutable-a person cannot change their fingerprints if they are compromised. Hash functions convert biometric templates into fixed-length, irreversible digests. If a system is…

Privacy Architecture

Question

Which of the following is the PRIMARY reason for an organization to use hash functions when hardening application systems involved in biometric data processing?

Options

  • ATo reduce the risk of sensitive data breaches
  • BTo meet the organization's security baseline
  • CTo ensure technical security measures are effective
  • DTo prevent possible identity theft

How the community answered

(21 responses)
  • A
    90% (19)
  • C
    5% (1)
  • D
    5% (1)

Explanation

Biometric data (fingerprints, facial geometry, iris scans) is uniquely sensitive because it is immutable-a person cannot change their fingerprints if they are compromised. Hash functions convert biometric templates into fixed-length, irreversible digests. If a system is breached, attackers obtain only the hash, not the original biometric. This directly reduces the risk of sensitive data breaches (A). Meeting a security baseline (B) is a compliance outcome, not the primary purpose. Ensuring security measures are effective (C) is too generic. Preventing identity theft (D) is a downstream benefit, but the primary technical reason for hashing is to protect the underlying sensitive data in the event of a breach.

Topics

#Hash functions#Biometric data protection#Data breach risk reduction#Application hardening

Community Discussion

No community discussion yet for this question.

Full CDPSE Practice