Artificial Intelligence Governance Professional AIGP · Free Practice Question Medium
Question 39
A biometric security company is developing an AI platform to identify individuals in public spaces. What measures should be in place to meet legal obligations when handling biometric data? (Select ALL that apply)
- A Implement technical safeguards like encryption and access restrictions
- B Conduct privacy impact assessments specifically for biometric processing activities
- C Retain all biometric data indefinitely for future analytics
- D Provide clear privacy notices outlining biometric data use, retention, and rights
Reveal correct answers
Correct answers: A, B, D
Explanation
Biometric data processing demands privacy assessments, technical controls, and clear disclosures, with careful attention to retention and minimization.A. Technical controls reduce the risk of misuse or unauthorized access.
B. Assessments help identify and address high risks associated with biometrics.
C. Indefinite retention is not allowed; data minimization and purpose limitation are required.
D. Transparency about processing and rights is legally required.
Discussion
Think the marked answer is wrong, or have a better explanation? Share it below — comments appear after review.
You must be logged in to post a comment.
