What is ISO/IEC TR 29156 - Guidance to meet security for the biometric authentication about?
ISO/IEC TR 29156 provides guidance on specifying performance requirements for authentication using biometric recognition in order to achieve desired levels of security and usability for the authentication mechanism.
In ISO/IEC TR 29156 guidance addresses issues such as the following:
- The biometric performance metrics that impact security and usability
- Comparing and quantifying the security and usability of biometrics and other authentication mechanisms, when used alone or in combination
- How to combine performance of individual authentication elements in order to meet an overall security and usability requirement
- The trade-off between security and usability in applications using biometric recognition
- Considerations in maintaining security and usability in systems incorporating biometrics
Note: ISO/IEC TR 29156 does not address biometric modality and technology specific issues, nor does it provide quantitative biometric performance requirements that would satisfy a particular application.
Who is ISO/IEC TR 29156 - Guidance to meet security for the biometric authentication for?
ISO/IEC TR 29156 on guidance to meet security for the biometric authentication is useful for:
- Software engineers / IT firms
- Government authorities
- Firms that provide biometric equipment and services
- Biometric verification authorities
- Biometric technology operators
Why should you use ISO/IEC TR 29156 - Guidance to meet security for the biometric authentication?
ISO/IEC TR 29156 helps you to make informed decisions about the specification of performance requirements for authentication systems using biometric recognition in order to achieve desired levels of security and usability for the authentication process.
ISO/IEC TR 29156 describes security and usability trade-offs in biometric recognition relative to those of other authentication mechanisms and provides advice on how to balance conflicting security and usability parameters in the context of real applications.
ISO/IEC TR 29156 addresses technical, human and procedural vulnerabilities associated with the various types of human authentication. ISO/IEC TR 29156 builds on existing relevant standards and guidelines including e-authentication and risk management.