ISO/IEC 24745:2011
Withdrawn
View Superseded by
Information technology — Security techniques — Biometric information protection
Hardcopy , PDF
English
06-17-2011
04-09-2025
ISO/IEC 24745:2011 provides guidance for the protection of biometric information under various requirements for confidentiality, integrity and renewability/revocability during storage and transfer. Additionally, ISO/IEC 24745:2011 provides requirements and guidelines for the secure and privacy-compliant management and processing of biometric information.
ISO/IEC 24745:2011 specifies the following:
- analysis of the threats to and countermeasures inherent in a biometric and biometric system application models;
- security requirements for secure binding between a biometric reference and an identity reference;
- biometric system application models with different scenarios for the storage of biometric references and comparison; and
- guidance on the protection of an individual's privacy during the processing of biometric information.
ISO/IEC 24745:2011 does not include general management issues related to physical security, environmental security and key management for cryptographic techniques.
| Committee |
ISO/IEC JTC 1/SC 27
|
| DocumentType |
Standard
|
| Pages |
50
|
| PublisherName |
International Organization for Standardization
|
| Status |
Withdrawn
|
| SupersededBy |
| Standards | Relationship |
| BS ISO/IEC 24745:2011 | Identical |
| NEN ISO/IEC 24745 : 2011 | Identical |
| INCITS/ISO/IEC 24745 : 2012(R2017) | Identical |
| BS ISO/IEC 29190:2015 | Information technology. Security techniques. Privacy capability assessment model |
| 18/30361485 DC : 0 | BS ISO/IEC 19896-3 - INFORMATION TECHNOLOGY - SECURITY TECHNIQUES - COMPETENCE REQUIREMENTS FOR INFORMATION SECURITY TESTERS AND EVALUATORS - PART 3: KNOWLEDGE, SKILLS AND EFFECTIVENESS REQUIREMENTS FOR ISO/IEC 15408 EVALUATORS |
| BS ISO/IEC 17922:2017 | Information technology. Security techniques. Telebiometric authentication framework using biometric hardware security module |
| 17/30331331 DC : DRAFT MAY 2017 | BS ISO/IEC 30136 - INFORMATION TECHNOLOGY - PERFORMANCE TESTING OF BIOMETRIC TEMPLATE PROTECTION SCHEMES |
| ISO/IEC TR 30125:2016 | Information technology — Biometrics used with mobile devices |
| ISO/IEC TR 30117:2014 | Information technology — Guide to on-card biometric comparison standards and applications |
| PD ISO/IEC TR 29144:2014 | Information technology. Biometrics. The use of biometric technology in commercial Identity Management applications and processes |
| ISO/IEC TR 24741:2018 | Information technology — Biometrics — Overview and application |
| BS ISO/IEC 30136:2018 | Information technology. Performance testing of biometric template protection schemes |
| ISO/IEC TR 29144:2014 | Information technology — Biometrics — The use of biometric technology in commercial Identity Management applications and processes |
| ISO/IEC 30136:2018 | Information technology — Performance testing of biometric template protection schemes |
| ISO/IEC 17922:2017 | Information technology — Security techniques — Telebiometric authentication framework using biometric hardware security module |
| INCITS/ISO/IEC TR 29144 : 2015 | INFORMATION TECHNOLOGY - BIOMETRICS - THE USE OF BIOMETRIC TECHNOLOGY IN COMMERCIAL IDENTITY MANAGEMENT APPLICATIONS AND PROCESSES |
| PD ISO/IEC TR 30125:2016 | Information technology. Biometrics used with mobile devices |
| 14/30216195 DC : 0 | BS ISO/IEC 29190 - INFORMATION TECHNOLOGY - SECURITY TECHNIQUES - PRIVACY CAPABILITY ASSESSMENT MODEL |
| ISO/IEC 29190:2015 | Information technology — Security techniques — Privacy capability assessment model |
| INCITS/ISO/IEC 19896-3:2018(R2019) | IT security techniques -- Competence requirements for information security testers and evaluators -- Part 3: Knowledge, skills and effectiveness requirements for ISO/IEC 15408 evaluators |
| ISO/IEC 19772:2009 | Information technology — Security techniques — Authenticated encryption |
| ISO/IEC 19785-4:2010 | Information technology — Common Biometric Exchange Formats Framework — Part 4: Security block format specifications |
| ISO 19092:2008 | Financial services — Biometrics — Security framework |
| ISO/IEC 19792:2009 | Information technology — Security techniques — Security evaluation of biometrics |
| ISO/IEC 18033-2:2006 | Information technology — Security techniques — Encryption algorithms — Part 2: Asymmetric ciphers |
| ISO/IEC 18033-3:2010 | Information technology — Security techniques — Encryption algorithms — Part 3: Block ciphers |
| ISO/IEC 24760-1:2011 | Information technology — Security techniques — A framework for identity management — Part 1: Terminology and concepts |
| ISO/IEC 24787:2010 | Information technology — Identification cards — On-card biometric comparison |
| ISO/IEC 7816-4:2013 | Identification cards — Integrated circuit cards — Part 4: Organization, security and commands for interchange |
| ISO/IEC TR 24714-1:2008 | Information technology — Biometrics — Jurisdictional and societal considerations for commercial applications — Part 1: General guidance |
| ISO/IEC 10116:2017 | Information technology — Security techniques — Modes of operation for an n-bit block cipher |
| ISO/IEC 27000:2016 | Information technology — Security techniques — Information security management systems — Overview and vocabulary |
| ISO/IEC 24761:2009 | Information technology — Security techniques — Authentication context for biometrics |
| ISO/IEC 18033-4:2011 | Information technology — Security techniques — Encryption algorithms — Part 4: Stream ciphers |
| ISO/IEC 29100:2011 | Information technology — Security techniques — Privacy framework |