How does FIPS 201 protect privacy?
Protecting personal privacy is a core requirement of the presidential directive. Many of the requirements in the standard for hiring federal employees are based on longstanding privacy law and policy. For example, agencies are required to appoint a PIV privacy official, assess their PIV systems to ensure privacy is protected, identify information to be collected about individuals and how the information will be used, assure that systems containing personal information adhere to fair information practices, and audit systems for compliance with privacy policies and practices. Also, the Office of Management and Budget will provide additional implementation guidance for federal agencies concerning privacy. The government will not establish a central database to track movement of employees and contractors or the systems they access. Personally identifiable information stored on the card is minimal. Personally Identifiable information such as electronic fingerprints will be cardholder protec