How To Get Rid of Those Pesky Hardware Tokens

19
Enabling mobile transactions to gain a competitive edge Onegini makes doing online business easy and secure Webinar: How to get rid of those pesky hardware token Denis Joannides Mathijs Brand

Transcript of How To Get Rid of Those Pesky Hardware Tokens

Page 1: How To Get Rid of Those Pesky Hardware Tokens

Enabling mobile transactions to gain a competitive edge

Onegini makes doing online business easy and secure

Webinar: How to get rid of those pesky hardware tokens

Denis JoannidesMathijs Brand

Page 2: How To Get Rid of Those Pesky Hardware Tokens

Our Promise

We enable secure mobile transactions and protect customer data, offering the best user experience.

Page 3: How To Get Rid of Those Pesky Hardware Tokens

Banks are innovating

Online Only Banks (OOB)

Mobile Online Only Banks (MOOB)

New authentication methods

Online registration and identification

No more hardware tokens

Page 4: How To Get Rid of Those Pesky Hardware Tokens

Facts about hardware tokens

Web channel (Strong) Login

Transaction signing

Europe& US

Bad user experience ‘90

Page 5: How To Get Rid of Those Pesky Hardware Tokens

New rules

Mobile First Convenience Speed

Page 6: How To Get Rid of Those Pesky Hardware Tokens

Hardware tokens are old school

Disadvantage RemarksCost per token is high Not only the cost per token but also

token distribution and replacements

Integration is difficult Needs to be integrated in multiple systems.

Bad user experience Any time any place Poor scalability How to distribute tokens for 10

million end users? Only web Software tokens support mobile

Page 7: How To Get Rid of Those Pesky Hardware Tokens

Let’s change this

- Support the customer journey

- Design for today and the future

- Embrace Mobile First

Page 8: How To Get Rid of Those Pesky Hardware Tokens

The smartphone will become the key to success

Reuse the smartphone of the end user -> low cost

A smartphone can be used to create better security Video Location NFC Biometrics

Create a rich user experience by providing mobile apps

Page 9: How To Get Rid of Those Pesky Hardware Tokens

Comparison

Old school Onegini

Solution Just a Key Complete platform for end-2-end security

Implementation Complex Simple

Management Needs to be build Out-of-the-box

PSD2 support No Yes

Page 10: How To Get Rid of Those Pesky Hardware Tokens

High level overview Onegini

Page 11: How To Get Rid of Those Pesky Hardware Tokens

Onegini Intrinsic Security

Payload encryption Throttling Brute force prevention Payload inspection Extra security filter OWASP Top 10

Non-intrusive AES-256 encryption Forward secrecy Invulnerable for MitM

attacks Provide Confidentiality &

integrity

All security needed for transactions will be handled by Onegini. No Development effort needed.

Page 12: How To Get Rid of Those Pesky Hardware Tokens

And you will get much more

Page 13: How To Get Rid of Those Pesky Hardware Tokens

Customer onboarding – IDchecker

Install app Fill in personal data for identity validation

Account createdValidate the Identity. In this example we use IDchecker, but also WEB ID can be used

Page 14: How To Get Rid of Those Pesky Hardware Tokens

Examples Mobile Authentication

Secure transactions including a secure response.

Secure login using secure push message.

Secure transaction including extra authentication (validation) using a fingerprint

Push messages sent directly to user’s device

Page 15: How To Get Rid of Those Pesky Hardware Tokens

One last thing…...

FIDO Support

Page 16: How To Get Rid of Those Pesky Hardware Tokens

Strong partnership with Samsung

Page 17: How To Get Rid of Those Pesky Hardware Tokens

Summary

The customer journey is leading

Requirements for authentications have changed

Authentication is just a feature

Implement intrinsic security systems

Simplify

Page 18: How To Get Rid of Those Pesky Hardware Tokens

Questions

Page 19: How To Get Rid of Those Pesky Hardware Tokens

Contact us

Onegini makes doing online business easy and secure

More info: www.onegini.comMore videos: www.onegini.tvEmail:

[email protected]

Twitter: @Onegini