首页 馆藏资源 舆情信息 标准服务 科研活动 关于我们
现行 ISO/IEC TR 29156:2015
到馆阅读
收藏跟踪
购买正版
Information technology — Guidance for specifying performance requirements to meet security and usability needs in applications using biometrics 信息技术 - 用于指定性能要求的指导 以满足使用生物识别技术的应用中的安全性和可用性需求
发布日期: 2015-11-16
ISO/IEC TR 29156:2015提供了关于使用生物识别来指定认证性能要求的指南,以实现认证机制所需的安全性和可用性级别。 该指南解决了以下问题: -影响安全性和可用性的生物特征性能指标; -比较和量化单独或组合使用生物特征识别和其他认证机制时的安全性和可用性; -如何结合各个认证元素的性能,以满足总体安全性和可用性要求; -在使用生物识别的应用中,安全性和可用性之间的权衡; -在使用生物识别技术的系统中维护安全性和可用性的注意事项。 该指南针对以下应用: -使用生物识别技术对个人进行身份验证,以及 -中小型(就登记的个体数量而言)。 本指南不涉及以下内容: -监控系统; -其主要目的是检测和防止个人试图以不同身份创建多个注册的系统; -注册人数众多且多样化的系统,其中可能包括有特殊需求的人; -功能、安全和可用性要求复杂的其他系统。 此类大规模应用通常属于大型组织的领域,假设此类系统的开发人员将获得适当的生物识别专业知识,能够提供超出本技术报告范围的指导。 本技术报告不涉及生物识别模式和技术特定问题,也不提供满足特定应用的定量生物识别性能要求。
ISO/IEC TR 29156:2015 provides guidance on specifying performance requirements for authentication using biometric recognition in order to achieve desired levels of security and usability for the authentication mechanism. Guidance addresses issues such as the following: - the biometric performance metrics that impact security and usability; - comparing and quantifying the security and usability of biometrics and other authentication mechanisms, when used alone or in combination; - how to combine performance of individual authentication elements in order to meet an overall security and usability requirement; - the trade-off between security and usability in applications using biometric recognition; - considerations in maintaining security and usability in systems incorporating biometrics. The guidance is targeted towards applications that - use biometrics for the authentication of individuals, and - are of small to medium size (in terms of the number of enrolled individuals). The guidance does not address the following: - surveillance systems; - systems whose primary aim is to detect and prevent attempts by individuals to create multiple enrolments under different identities; - systems with a large and diverse population of enrolees, which can include people with special needs; - other systems with a complex mix of functional, security and usability requirements. Such large-scale applications are typically the domain of large organizations, and it is assumed that the developers of such systems will have access to appropriate biometric expertise able to provide guidance beyond the scope of this Technical Report. This Technical Report does not address biometric modality and technology specific issues, nor does it provide quantitative biometric performance requirements that would satisfy a particular application.
分类信息
关联关系
研制信息
归口单位: ISO/IEC JTC 1/SC 37
相似标准/计划/法规
现行
BS PD ISO/IEC TR 29156-2015
Information technology. Guidance for specifying performance requirements to meet security and usability needs in applications using biometrics
信息技术 用于指定性能要求以满足使用生物识别技术的应用程序的安全性和可用性需求的指南
2016-01-31
现行
ISO/IEC TS 33010-2023
Information technology — Process assessment — Guidance for performing process assessments
信息技术.过程评估.进行过程评估的指南
2023-04-05
现行
KS X ISO/IEC 15504-3(2017 Confirm)
정보 기술-프로세스 심사-제3부:심사 수행 지침
信息技术过程评估第3部分:评估指南
2006-12-29
现行
KS X ISO/IEC 15504-3(2021 Confirm)
정보 기술-프로세스 심사-제3부:심사 수행 지침
信息技术过程评估第3部分:评估指南
2006-12-29
现行
GOST R ISO/IEC 15504-3-2009
Информационная технология. Оценка процесса. Часть 3. Руководство по проведению оценки
信息技术 流程评估第3部分评估指导
现行
BS ISO/IEC 29155-3-2015
Systems and software engineering. Information technology project performance benchmarking framework-Guidance for reporting
系统和软件工程 信息技术项目绩效基准框架
2015-11-30
现行
ISO/IEC 29155-3-2015
Systems and software engineering — Information technology project performance benchmarking framework — Part 3: Guidance for reporting
系统与软件工程 - 信息技术项目绩效基准框架 - 第3部分:报告指导
2015-11-16
现行
BS ISO/IEC 29155-4-2016
Systems and software engineering. Information technology project performance benchmarking framework-Guidance for data collection and maintenance
系统和软件工程 信息技术项目绩效基准框架
2016-11-30
现行
DIN ISO/IEC 15504-3
Information technology - Process assessment - Part 3: Guidance on performing an assessment (ISO/IEC 15504-3:2004)
信息技术过程评定第3部分:评定指南
2011-07-01
现行
ISO/IEC 29155-4-2016
Systems and software engineering — Information technology project performance benchmarking framework — Part 4: Guidance for data collection and maintenance
系统和软件工程 - 信息技术项目绩效基准框架 - 第4部分:数据收集与维护指导
2016-10-14