What method should Lauren use to validate user identities for a banking website?

Sample the CISSP Domain 5 Identity and Access Management Test. Study with flashcards and multiple choice questions for exam readiness. Enhance your knowledge and skills!

In the context of validating user identities for a banking website, utilizing questions pulled from a user's credit report is a method that allows for a deeper verification process. This approach leverages information that is likely known only to the user and can be tied to their financial history, making it more difficult for an unauthorized individual to answer correctly.

Credit report questions typically focus on personal financial facts, such as loan accounts, payment history, or other sensitive information that is not readily accessible to someone who does not have legitimate access to the account. This enhances security in a banking environment where identity theft and fraud are prevalent concerns.

While social media verification might provide some level of identity validation, it lacks the rigor required for sensitive financial transactions. Similarly, username and password verification is essential but can be inadequate on its own due to vulnerabilities such as phishing attacks or credential theft. Government ID verification is stronger than the first two options but may not always be practical or efficient for online banking processes, which require quick and effective validation.

Therefore, employing questions from a credit report is a robust choice for identity validation due to the sensitivity and specificity of the information it requires, making it a strong measure in banking security.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy