Encap security

12
STRONG CUSTOMER AUTHENTICATION

Transcript of Encap security

Page 1: Encap security

STRONG CUSTOMER AUTHENTICATION

Page 2: Encap security

INTRODUCTION

Encap Security is the leader in PSD2-based Strong Customer

Authentication

Founded in 2006, the company was as a spin-out from the Norwegian eID

program pioneer in frictionless and user friendly ID verification

Encap´s authentication platform is used by over 25 financial institutions that

serve millions of users on a daily basis

1/15/2018Proprietary & Confidential AllClear ID © 2016 2

AllClear ID is the world leader in GDPR-based Data Breach Notification

and Response services

Founded in 2004 and based in Austin, Texas, AllClear ID has successfully

managed 3 of the 4 largest breach response operations in history: Sony,

Anthem, and Home Depot.

The award-winning AllClear ID team is recognized for its expertise,

customer service, and guaranteed deployment of large scale response

operations

An AllClear ID Company

Industry Recognition/Certifications

Page 3: Encap security

PSD2, GDPR AND THE CUSTOMER EXPERIENCE

MAKE CUSTOMER SECURITY A COMPETITIVE ADVANTAGE !

1/15/2018Proprietary & Confidential AllClear ID © 3

PSD2 SCA

GDPR Breach

NotificationCustomer

Experience

1.

2. 3.

2. GDPR Breach Notification

3. Customer Experience

1. PSD2 Strong Customer

AuthenticationRequires frequent identity verification and access

control that will delight or repel customers

The two new regulations are “brand-defining” and

drive new, highly sensitive customer experiences.

Breach notification is a new experience that will

build or destroy your brand and your CEO’s career

Getting it Right!Creates a major opportunity in a competitive market

and provides significant regulatory protection, with a

great customer experience from AllClear ID

An AllClear ID Company

Page 4: Encap security

1/15/2018Proprietary & Confidential AllClear ID © 2018 4

WHAT IS STRONG CUSTOMER AUTHENTICATION?

One of the big changes introduced by PSD2 is that PSPs

have to apply SCA when the payer:

accesses its payment account online;

initiates an electronic payment transaction; or

carries out any action through a remote channel that may imply a risk of

payment fraud or other abuses.

SCA is two-factor authentication—two factors from:

something you have (eg mobile device)

something you know (eg PIN)

something you are (eg fingerprint)

Page 5: Encap security

1/15/2018Proprietary & Confidential AllClear ID © 2018 5

WHAT ARE THE RTS ?

RTS means Regulatory Technical Standards on strong customer authentication and secure communication under

PSD2

Some important elements

Banks to define their own interfaces

APIs, not screen-scraping

Payment security is up to the banks

Exemptions from strong customer authentication

Real-time fraud detection and prevention

Chip & Pin payments count as SCA

What´s next ?PSD-2 SCA RTS enforced

SCA enforced from September

2019 (estimated)

PSD-2 SCA RTS Approved

By the Council and EU

Commission

Q1 2018 Q2 2018 Q3 2018 Q3 2019Q2 2018 Q3 2019

Some exceptions

• Contactless under €50

• Unattended payments under

€30

Page 6: Encap security

HOW TO GET STARTED WITH PSD2 SCA ?

Page 7: Encap security

PROVEN STRONG CUSTOMER AUTHENTICATION

1/15/2018Proprietary & Confidential AllClear ID © 7

WORLD LEADING AUTH TECHNOLOGY

State of the art mobile authentication platform, ready for

PSD-2 SCA RTS

Fully embedded and frictionless to optimize user

experience at every customer interaction

Enables ultra secure use of mobile biometrics in all

channels

Now in its third product generation

Proven in the Nordic regulatory environment

Now being enabled as a Cloud Service

Page 8: Encap security

ENCAP PLATFORM OFFERED AS CLOUD SERVICE

1/15/2018Proprietary & Confidential AllClear ID © 8

DELIVERED THROUGH STATE OF THE ART CLOUD SERVICE

Simplified Configuration and

Management

Minimal IT Support Burden

Guaranteed Uptime, Performance,

and Privacy Compliance

Access to Automatic Updates and

Innovative new Capabilities

Rapid Integration and Deployment

with Minimal Up-Front Cost

Available Universal Authenticator

App Provides Turnkey Adoption

Benefits of AllClear ID Cloud

Page 9: Encap security

ALLCLEAR STRONG AUTHENTICATION SERVICE: EARLY ACCESS PROGRAM

EXCLUSIVE/ LIMITED EARLY ACCESS PROGRAM FOR CLOUD BASED AUTHENTICATION SERVICE

Shape and influence the final solution to best meet your

needs

Developer-level support in managing the integration

Be ready to deploy by PSD-2 RTS compliant SCA by

June 2018

1/15/2018Proprietary & Confidential AllClear ID © 9

Page 10: Encap security

1/15/2018 10Proprietary & Confidential AllClear ID ©

API AVAILABILITY

Objective

Immediate access for developers to

investigate, integrate, use, test the

authentication service

Key Features

REST API for device activation

REST API for authentication

iOS / Android smartphone SDK

API documentation

Support

Hands-on architects and engineers to assist

with integration

ADMINISTRATIVE UI AVAILABILITY

Objective

Commercial use of limited features via the

administrative user interface and authenticator App

Key Features

Administrative portal for:

o Account management

o Key management

AllClear Authenticator App for:

o Administrative portal login

o Authenticator for client application

Support

Standard production support

ALLCLEAR ID – STRONG CUSTOMER AUTHENTICATION SERVICE

February 2018 July 2018

Page 11: Encap security

NEXT STEPS !

Book a date/time for technical review

Sign (short) EA program agreement

Training and enablement webex

On-going integration support and weekly

follow-up meetings

1/15/2018Proprietary & Confidential AllClear ID © 2017 11

Page 12: Encap security

THANK YOUContact details for Early Access Program:

Email: [email protected]

Mobile: +47 92032078

Skype: thomasbjorgensen