Instead of storing plaintext passwords, most companies store a hash of that password, essentially applying a one-way transformation to it and saving the result of that. I don’t have to know your password, I can just apply the hash algorithm to whatever you enter in the input and if that matches, we’re golden.
No reason you couldn’t apply the same philosophy to biometric data.