APP001: Authentication for End-users
Is the authentication mechanism for end users (e.g., PIN, static password, dynamic password, digital certificate) implemented in accordance with the **Authentication Domain Standards (ADS)**? Guidance: If users are entitled only to read Internal non-PII data or Public data with no transaction capabilities, ...