5. of Inference
You use national ID numbers or Social Security Numbers (SSNs) as identifiers because they are conveniently unique.
Threat |
|
You are using national ID numbers or SSNs, which are very sensitive data, to identify records. Using them as identifiers means they must be stored in clear text. This sort of data should always be encrypted at rest as well as in transit. |
|
GDPR |
Chapter 2, Art. 5 – 1. (f) Chapter 2, Art. 5 – 2. Chapter 4, Art. 32 – 1. |
CCPA & CPRA |
CCPA 1798.100. General Duties of Businesses that Collect Personal Information (e) |
OECD |
N/A |
Mitigations |
|
... |