CompTIA Project+ (PK0-005)Basics of IT and GovernanceMedium

A project manager is overseeing the development of a new mobile application that will collect and process highly sensitive user biometric data. To ensure compliance with data privacy regulations and protect against unauthorized access, which security consideration should be prioritized throughout the application's lifecycle?

  1. AData encryption
  2. BScalability
  3. CHigh availability
  4. DUser interface design
Show answer & explanation

Correct answer: A. Data encryption

For highly sensitive data like biometrics, data encryption is paramount to protect it both in transit and at rest, ensuring compliance and preventing unauthorized access, even if other security measures fail.

Why the other options are wrong

  • B. Scalability ensures the application can handle increasing load, but does not inherently secure sensitive data.
  • C. High availability ensures the service is always accessible, but doesn't directly protect data confidentiality.
  • D. User interface design focuses on usability and aesthetics, not direct data protection.

Data Encryption

The process of converting data into a coded format to prevent unauthorized access. It is crucial for protecting sensitive information both in transit and at rest.

  • Protects data confidentiality.
  • Uses cryptographic algorithms to transform data.
  • Essential for compliance with many data privacy regulations.

Memory trick: Encrypt it to keep it secret, safe, and sound.

More Basics of IT and Governance questions