List of questions
Related questions
Question 1089 - CISSP discussion
While performing a security review for a new product, an information security professional discovers that the organization's product development team is proposing to collect government-issued identification (ID) numbers from customers to use as unique customer identifiers. Which of the following recommendations should be made to the product development team?
A.
Customer identifiers should be a variant of the user's government-issued ID number.
B.
Customer identifiers that do not resemble the user's government-issued ID number should be used.
C.
Customer identifiers should be a cryptographic hash of the user's government-issued ID number.
D.
Customer identifiers should be a variant of the user's name, for example, "jdoe" or "john.doe."
Your answer:
0 comments
Sorted by
Leave a comment first