On The Bleeding Edge

In role reversal, federal agencies leading adoption of biometric technology

Federal agencies typically adopt proven, field-tested technologies. Private organizations, on the other hand, are more likely to adopt emerging technologies. So-called lead adopters, officials are cognizant of the risks inherent in new technology adoption, but they are willing to accept those risks in exchange for the very real business benefits, such as cost savings and process efficiencies.

One might expect that federal agencies and private-sector organizations would model these same behaviors in the adoption of biometric technologies. Biometrics is the study of measurable biological characteristics such as facial characteristics, fingerprints, hand geometry, the retina and iris, capillary mapping, voice and signatures.

In reality, a role reversal has occurred. While both public- and private-sector organizations continually grapple with the dual responsibility to bolster information security while using IT to cut costs and improve efficiency, the federal government is leading investment in biometric technologies to further these goals. The private sector is following.

Some of the speed of biometric adoption can be attributed to the 2004 Homeland Security Presidential Directive 12 (HSPD-12). Federal agencies also recognize the business benefits of biometrics. For example, META Group estimates that the average computer user calls the help desk 21 times a year. Each call costs an average of $25. Since an estimated 30 percent of help-desk calls are for password resets, an organization with 10,000 users spends almost $1.6 million per year just for password resets. Compare that to a $50, one-time equipment expense for an integrated fingerprint solution for the same 10,000 users, and add in the increased productivity of the help-desk staff, and the savings become very clear.

Keeping The Lead
When productivity and security improvements are considered, biometrics demonstrates a strong return on investment compared to alternative identity validation methods. While the federal government currently leads the adoption curve, there is room for more adoption. Organizations considering biometrics technology should ask the following questions.

What is the value of my data? If your organization’s value is based upon data and knowledge, that information must be protected. Consider an organization heavily vested in research and development as an example.

How many users do I have? If you have more than 10 users, your organization will reap significant benefits from adopting biometrics.

Do we understand the utility value of biometrics? Beyond security improvements, organizations should calculate the utility value of biometrics, such as improved productivity for IT staff and front-line workers.

When can I most cost effectively implement biometrics? For many organizations, the greatest economies of scale are achieved during a scheduled technology refresh.

Debunking The Myths

Despite the numerous benefits and range of available options, some organizations are still slow to adopt biometrics. While concerns run the gamut from cost to accuracy to user resistance, most of these issues are either unfounded or easily addressed. Some common misconceptions include.

Biometrics are too expensive. The cost of most biometric technologies has dropped 50 percent during the last five years. In addition, the immediate and long-term improvements in productivity and security usually far outweigh the initial technology investment

Biometrics are complicated to install. Biometrics solutions can be installed, configured and administered by existing IT personnel with little training. Many versions simply plug into a USB port and use a very basic software application

Biometrics are not secure enough -- data can be reverse engineered. Reverse engineering a biometric template to a potentially useable state would require a code-breaking supercomputer. The cost and complexity involved in such an effort would be far greater than the value of the data obtained. We may see this scenario in the movies someday, but that’s where it will stay

Biometrics are not accurate. Though no method is perfect, biometrics provide the highest level of accuracy for any validation scheme. Rarely, there may be an inaccuracy, but it errs on the side of exclusion rather than inclusion. While this would cause minor inconveniences, it would not compromise an entire system

As standards evolve and understanding of the benefits of biometrics improves, adoption of the technology should grow exponentially as federal agencies -- followed by the private sector -- embrace identification verification solutions that provide a flexible, cost-effective means of ensuring the security of critical and sensitive information.

About the Author

With experience that spans a 20-year military and civilian career, Vic Berger currently serves as the technologist for CDW Government Inc. (CDW-G).

Featured

  • Gaining a Competitive Edge

    Ask most companies about their future technology plans and the answers will most likely include AI. Then ask how they plan to deploy it, and that is where the responses may start to vary. Every company has unique surveillance requirements that are based on market focus, scale, scope, risk tolerance, geographic area and, of course, budget. Those factors all play a role in deciding how to configure a surveillance system, and how to effectively implement technologies like AI. Read Now

  • 6 Ways Security Awareness Training Empowers Human Risk Management

    Organizations are realizing that their greatest vulnerability often comes from within – their own people. Human error remains a significant factor in cybersecurity breaches, making it imperative for organizations to address human risk effectively. As a result, security awareness training (SAT) has emerged as a cornerstone in this endeavor because it offers a multifaceted approach to managing human risk. Read Now

  • The Stage is Set

    The security industry spans the entire globe, with manufacturers, developers and suppliers on every continent (well, almost—sorry, Antarctica). That means when regulations pop up in one area, they often have a ripple effect that impacts the entire supply chain. Recent data privacy regulations like GDPR in Europe and CPRA in California made waves when they first went into effect, forcing businesses to change the way they approach data collection and storage to continue operating in those markets. Even highly specific regulations like the U.S.’s National Defense Authorization Act (NDAA) can have international reverberations – and this growing volume of legislation has continued to affect global supply chains in a variety of different ways. Read Now

  • Access Control Technology

    As we move swiftly toward the end of 2024, the security industry is looking at the trends in play, what might be on the horizon, and how they will impact business opportunities and projections. Read Now

Featured Cybersecurity

Webinars

New Products

  • Automatic Systems V07

    Automatic Systems V07

    Automatic Systems, an industry-leading manufacturer of pedestrian and vehicle secure entrance control access systems, is pleased to announce the release of its groundbreaking V07 software. The V07 software update is designed specifically to address cybersecurity concerns and will ensure the integrity and confidentiality of Automatic Systems applications. With the new V07 software, updates will be delivered by means of an encrypted file. 3

  • Compact IP Video Intercom

    Viking’s X-205 Series of intercoms provide HD IP video and two-way voice communication - all wrapped up in an attractive compact chassis. 3

  • Camden CV-7600 High Security Card Readers

    Camden CV-7600 High Security Card Readers

    Camden Door Controls has relaunched its CV-7600 card readers in response to growing market demand for a more secure alternative to standard proximity credentials that can be easily cloned. CV-7600 readers support MIFARE DESFire EV1 & EV2 encryption technology credentials, making them virtually clone-proof and highly secure. 3