Monday, August 6, 2007

Using RFID? US National Institute for Standards and Technology Develops Best Practice for Security

RFID is a form of automatic identification and data capture technology that uses electric or magnetic fields at radio frequencies to transmit information. An RFID system can be used to identify many types of objects, such as manufactured goods, animals, and people. Each object that needs to be identified has a small object known as an RFID tag affixed to it or embedded within it.

RFID technology enables organisations to significantly change their business processes to increase efficiency and effectiveness. This technology is complex and combines a number of
different computing and communications technologies. Both the changes to business process and the complexity of the technology generate risk, which can be broken down into the following headings:

- Business Process Risk
- Business Intelligence Risk
- Privacy Risk
- Externality Risk

An explanation of what these are, and the mitigation for each, can be found in new US Government-sponsored guidelines entitled Guidelines for Securing Radio Frequency Identification (RFID) Systems.

Email David in order to obtain a copy of the guidelines.