Composing effective security questions

Frank Voisin has an interesting blog, where he succinctly defines the objectives of well crafted security questions:

In short, they should have definitive answers; be applicable to the majority of users; be memorable and safe.

Well put.


