FB pixel

FIDO Alliance stresses differences in MFA technologies, sensitivity of biometric data as GDPR takes effect

 

As the EU’s General Data Protection Regulation (GDPR) comes into effect, the FIDO Alliance has published a post outlining its perspective on the law, sharing three things that every organization should know about it.

The data protection safeguards GDPR requires of companies doing business with EU citizens are only complete, in FIDO’s view, if they include multi-factor authentication (MFA). The group says 81 percent of all breaches last year were due to weak or stolen passwords, but also warns that hackers have learned how to bypass first-generation MFA technologies, making it important to chose the right MFA solution.

GDPR’s requirement of consent from individuals to process their data also requires that organizations authenticate the identity of those individuals, FIDO points out. In the case of sensitive data, that consent must be explicit.

Finally, while biometrics can deliver strong personal authentication to help meet GDPR requirements, biometric data is classified as “sensitive” by GDPR. Therefore, any entity using biometrics must make sure that use is compliant, and that data is robustly protected.

FIDO also offers a whitepaper about using FIDO authentication for GDPR compliance (PDF).

Professors of Accounting Paul Sheldon Foote and Sumantra Chakravarty examined issues relating to biometrics and GDPR compliance in a recent guest post for Biometric Update.

Article Topics

 |   |   |   | 

Latest Biometrics News

 

authID integrates biometric authentication into contact center ecosystem in major deal

Call centers and customer assistance relies on trust. Due to the rise of genAI and scams, the need to verify…

 

Vietnam’s NamiTech secures $4m to expand voice biometrics across APAC

Vietnam’s Nami Technology (NamiTech) is attracting investor interest as the voice biometrics start-up develops its products and looks to expand….

 

3D face biometrics and liveness back Universal Wallet Infrastructure issuance process

The Universal Wallet Infrastructure project uses 3D face biometrics and liveness detection for the identity binding process between individuals and…

 

UNDP launches framework for Arab countries to boost digital inclusion

Arab states are facing uneven progress in digital transformation: The use of e-government services, for instance, hovered at 45 percent…

 

London police says facial recognition contributed to murder rate drop

Police forces across the UK are showcasing improved arrest statistics resulting from the use of live facial recognition (LFR) systems….

 

TikTok rolls out Yoti FAE across Europe as social media debate rages

TikTok is introducing age assurance across Europe in response to regulatory pressure. The ByteDance-owned platform’s age assurance methods include facial…

Comments

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Biometric Market Analysis and Buyer's Guides

Most Viewed This Week

Featured Company

Biometrics Insight, Opinion

Digital ID In-Depth

Biometrics White Papers

Biometrics Events