ExamGecko
Home Home / ISC / CISSP
Question list
Search
Search

Question 1089 - CISSP discussion

Report
Export

While performing a security review for a new product, an information security professional discovers that the organization's product development team is proposing to collect government-issued identification (ID) numbers from customers to use as unique customer identifiers. Which of the following recommendations should be made to the product development team?

A.
Customer identifiers should be a variant of the user's government-issued ID number.
Answers
A.
Customer identifiers should be a variant of the user's government-issued ID number.
B.
Customer identifiers that do not resemble the user's government-issued ID number should be used.
Answers
B.
Customer identifiers that do not resemble the user's government-issued ID number should be used.
C.
Customer identifiers should be a cryptographic hash of the user's government-issued ID number.
Answers
C.
Customer identifiers should be a cryptographic hash of the user's government-issued ID number.
D.
Customer identifiers should be a variant of the user's name, for example, "jdoe" or "john.doe."
Answers
D.
Customer identifiers should be a variant of the user's name, for example, "jdoe" or "john.doe."
Suggested answer: C
asked 18/09/2024
Audrey Buan
32 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first