Convenience and Security for banking customers with CA Advanced Authentication

20
World ® ’1 6 Convenience and Security for Banking Customers Andrew Steadman - Product Director-Agiliti - Fiserv SCX50S SECURITY

Transcript of Convenience and Security for banking customers with CA Advanced Authentication

Page 1: Convenience and Security for banking customers with CA Advanced Authentication

World®’16

ConvenienceandSecurityforBankingCustomersAndrewSteadman- ProductDirector-Agiliti - Fiserv

SCX50S

SECURITY

Page 2: Convenience and Security for banking customers with CA Advanced Authentication

2 ©2016CA.ALLRIGHTSRESERVED.@CAWORLD#CAWORLD

©2016CA.Allrightsreserved.Alltrademarksreferencedhereinbelongtotheirrespectivecompanies.

Thecontentprovidedinthis CAWorld2016presentationisintendedforinformationalpurposesonlyanddoesnotformanytypeofwarranty. The informationprovidedbyaCApartnerand/orCAcustomerhasnotbeenreviewedforaccuracybyCA.

ForInformationalPurposesOnlyTermsofthisPresentation

Page 3: Convenience and Security for banking customers with CA Advanced Authentication

3 ©2016CA.ALLRIGHTSRESERVED.@CAWORLD#CAWORLD

Abstract

Securingtheirchannels,bothdigitalandstaffed,iskeyforabankbutthatoftencomesatthepriceofconvenienceforthebank’scustomer.

Applyingtheappropriatelevelofsecurityattheappropriatetimewillbebothconvenientforthecustomerandsecureforthebank,satisfyingtheneedsofboth.WewilldiscusshowCAAdvancedAuthenticationandtheFiservFinancialCrimeandRiskManagementsolution,Agiliti,allowsbankstoapplyrealtimeriskassessmenttodeterminetherightlevelofsecuritychallengetoensurethecustomerandbankareprotected.

AndrewSteadmanFiservProductDirector,Agiliti

Page 4: Convenience and Security for banking customers with CA Advanced Authentication

BalancingSecurityandConvenienceinBanking

Page 5: Convenience and Security for banking customers with CA Advanced Authentication

5 ©2016CA.ALLRIGHTSRESERVED.@CAWORLD#CAWORLD

Whatproblemwereweseekingtosolve?

• FinancialInstitutionCustomersinteractacrossmultiplechannels• Securelyidentifyingcustomershasplacedanonerousburdenoncustomers• ‘Agiliti’wantedtosimplifythisforcustomers• EverincreasingcomplianceandonusontheFinancialInstitutiontoprotect• PSD2isgoingtoaddbroadaccessrequirements

Page 6: Convenience and Security for banking customers with CA Advanced Authentication

6 ©2016CA.ALLRIGHTSRESERVED.@CAWORLD#CAWORLD

Makinga‘FasterPayments’transaction

?

Page 7: Convenience and Security for banking customers with CA Advanced Authentication

7 ©2016CA.ALLRIGHTSRESERVED.@CAWORLD#CAWORLD

Makinga‘FasterPayments’transaction- 2 Ways

Theyaredifferent!!

SecurityCode

PayanewBeneficiary

£250Limitfor1st Payment

NoLimitfor2nd Payment

UserID,PasswordandPIN

PayanewBeneficiary

NoLimitfor1st Payment

AuthorisedbyCardDevice

Page 8: Convenience and Security for banking customers with CA Advanced Authentication

8 ©2016CA.ALLRIGHTSRESERVED.@CAWORLD#CAWORLD

How‘Agiliti’Solvesthatproblem

• Acombinationofcomponentsbuilttoasinglesolution

• Servicespublishedviaaservicebusenablesallchannels

• Realtimeassessmentofriskdeterminesthelevelofcredentialrequiredbythecustomer• UserID+Password• TemporaryPIN• OneTimePINdeliveredviaSMS• CherishedQuestions

Page 9: Convenience and Security for banking customers with CA Advanced Authentication

9 ©2016CA.ALLRIGHTSRESERVED.@CAWORLD#CAWORLD

AssemblingthePieces

FiservCommunicatorAdvantage

FiservFinancialCrimeRiskManagementPlatform(FCRM)

CAAdvancedAuthentication(CAAA)

AuthenticationServices

Page 10: Convenience and Security for banking customers with CA Advanced Authentication

10 ©2016CA.ALLRIGHTSRESERVED.@CAWORLD#CAWORLD

DeviceSignatures

• EverycalltotheAuthenticationServicescarriesadevicesignature• GeneratedbyCAclientsidelibrarieswithinApps• Generatedbyjavascript inbrowser• Valueisnotstoreonthedevice

• TrustedDevicesareidentifiedbyanArcotgeneratedIDwhichisstoredonthedevice

Page 11: Convenience and Security for banking customers with CA Advanced Authentication

11 ©2016CA.ALLRIGHTSRESERVED.@CAWORLD#CAWORLD

TypicalProcess

Logon••UserID••StaticPassword••TemporaryPIN••RiskAnalysis– SMSOTP

OTPrequiredifhighrisk••Senttomobiledeviceknowntobecustomers

••Dualfactorauthenticationapplied

Customerexecutesatransaction••PredefinedtohavepermanentPINrequired

••Userfor‘highrisk’transactions

Transactionpatternisnot‘normal’forcustomer••CAAAOTPissuedafterFCRMidentifiesanoutofcharactertransaction

••Holisticriskassessment

Page 12: Convenience and Security for banking customers with CA Advanced Authentication

12 ©2016CA.ALLRIGHTSRESERVED.@CAWORLD#CAWORLD

CAAdvancedAuthentication

Page 13: Convenience and Security for banking customers with CA Advanced Authentication

13 ©2016CA.ALLRIGHTSRESERVED.@CAWORLD#CAWORLD

FinancialCrimeRiskManagementPlatform

• Leveragesorganisationalknowledgeisassessingrisk

• Assessesinrealtimetodeterminerisk

• CreatesaCustomerRiskScore

• DeliversanHolisticViewofFraud

Page 14: Convenience and Security for banking customers with CA Advanced Authentication

14 ©2016CA.ALLRIGHTSRESERVED.@CAWORLD#CAWORLD

WhichChannelsareusingitinAgiliti?

• BranchandCallCentreplatform• ValidatessomenumbersfromPIN• NeitherpasswordnorPINrequiretobefullydisclosed• Usescherishedquestionsoverpassword• AllowsinputofOTPreceivedbycustomerviaSMS

• Web,Tablet,MobileandApps• All4digitalchannelsareusingthesamecredentials• Useofcredentialsisminimisedforabetteruserexperience

Page 15: Convenience and Security for banking customers with CA Advanced Authentication

15 ©2016CA.ALLRIGHTSRESERVED.@CAWORLD#CAWORLD

Wherearewenow?

• Solutionislivetothepublicwithanumberofinstitutions• Itissupportinginstitutionswithanewdigitalexperience• CustomerandMemberreactionhasbeenverypositive

Page 16: Convenience and Security for banking customers with CA Advanced Authentication

16 ©2016CA.ALLRIGHTSRESERVED.@CAWORLD#CAWORLD

Whatdoesitmeanforcustomers?

• Onesetofcredentialstoremember• Onlyaskedforminimalcredentialsbaseduponassessedrisk• Knowndevicesallowdatadisplaywithoutanyinput• Removetypicalapproachoflowestcommondenominatorsecuritymodel

Page 17: Convenience and Security for banking customers with CA Advanced Authentication

Thankyou

[email protected]

Page 18: Convenience and Security for banking customers with CA Advanced Authentication

18 ©2016CA.ALLRIGHTSRESERVED.@CAWORLD#CAWORLD

Don’tMissOurINTERACTIVESecurityDemoExperience!

SNEAKPEEK!

World®’16©2016CA.ALLRIGHTSRESERVED.@CAWORLD#CAWORLD18

Page 19: Convenience and Security for banking customers with CA Advanced Authentication

19 ©2016CA.ALLRIGHTSRESERVED.@CAWORLD#CAWORLD

Stayconnectedatcommunities.ca.com

Thankyou.

Page 20: Convenience and Security for banking customers with CA Advanced Authentication

20 ©2016CA.ALLRIGHTSRESERVED.@CAWORLD#CAWORLD

Security

FormoreinformationonSecurity,pleasevisit:http://cainc.to/EtfYyw