GSO ISO/IEC 19989-1:2023

ISO/IEC 19989-1:2020
Gulf Standard   Current Edition · Approved on 03 May 2023

Information security — Criteria and methodology for security evaluation of biometric systems — Part 1: Framework

GSO ISO/IEC 19989-1:2023 Files

English 62 Pages
Current Edition Reference Language

GSO ISO/IEC 19989-1:2023 Scope

For security evaluation of biometric recognition performance and presentation attack detection for biometric verification systems and biometric identification systemsthis document specifies:

— extended security functional components to SFR Classes in ISO/IEC 15408-2;

— supplementary activities to methodology specified in ISO/IEC 18045 for SAR Classes of ISO/IEC 15408-3.

This document introduces the general framework for the security evaluation of biometric systems, including extended security functional components, and supplementary activities to methodology, which is additional evaluation activities and guidance/recommendations for an evaluator to handle those activities. The supplementary evaluation activities are developed in this document while the detailed recommendations are developed in ISO/IEC 19989-2 (for biometric recognition aspects) and in ISO/IEC 19989-3 (for presentation attack detection aspects). This document is applicable only to TOEs for single biometric characteristic type. However, the selection of a characteristic from multiple characteristics in SFRs is allowed.

Best Sellers From Information Sector

GSO ISO/TR 18492:2017
ISO/TR 18492:2005 
Gulf Standard
Long-term preservation of electronic document-based information
GSO ISO/TS 23635:2024
ISO/TS 23635:2022 
Gulf Standard
Blockchain and distributed ledger technologies — Guidelines for governance
GSO ISO/IEC 15773:2013
ISO/IEC 15773:1998 
Gulf Standard
Information technology -- Telecommunications and information exchange between systems -- Broadband Private Integrated Services Network -- Inter-exchange signalling protocol -- Transit counter additional network feature
GSO ISO 11238:2017
ISO 11238:2012 
Gulf Standard
Health informatics -- Identification of medicinal products -- Data elements and structures for the unique identification and exchange of regulated information on substances

Recently Published from Information Sector

GSO ISO/IEC 10373-1:2025
ISO/IEC 10373-1:2020 
Gulf Standard
Cards and security devices for personal identification — Test methods — Part 1: General characteristics
GSO ISO/IEC 18033-7:2025
ISO/IEC 18033-7:2022 
Gulf Standard
Information security — Encryption algorithms — Part 7: Tweakable block ciphers
GSO ISO/IEC 30179:2025
ISO/IEC 30179:2023 
Gulf Standard
Internet of Things (IoT) — Overview and general requirements of IoT system for ecological environment monitoring
GSO ISO/IEC TS 20000-5:2025
ISO/IEC TS 20000-5:2022 
Gulf Standard
Information technology — Service management — Part 5: Implementation guidance for ISO/IEC 20000-1