Mobile banking

16
Mobile Banking system security and Microfinance By Naser Doleh MSIS Capstone spring 2013

description

 

Transcript of Mobile banking

Page 1: Mobile banking

Mobile Banking system security and Microfinance

By

Naser Doleh

MSIS Capstone spring 2013

Page 2: Mobile banking

Mobile Banking

Page 3: Mobile banking

Mobile Banking

• What is Mobile banking?

Is a system that allows customers of a financial institution to conduct a number of financial transactions through a mobile device such as a mobile phone. • SMS banking

Page 4: Mobile banking

Mobile Banking

• First European banks

• Implementation of Mobile banking

• Third of banks have mobile device detection

Page 5: Mobile banking

Why Banks Going Mobile

• Reasons why banks are going mobile • 1. Improve customer Service• 2. Reduce costs• 3. Increase the reactivity of the company• 4. Increase market share• 5. Improve branding

• Bank of America: 500,000 users after six months, and 1.6 million after a year (Holland, 2008)

Page 6: Mobile banking

Why Banks Going Mobile

• Mobile financial services could be more than successful in rural area

• Add real value to the lives of consumers

Page 7: Mobile banking

MODELS OF MOBILE BANKINGARCHITECTURE

• Mobile phones have three architecture alternatives when interactive with banks’ mobile banking systems. Each is further described.

1. Message Based services Model

2. Mobile Browsers Model

3. Client Application Model (app)

Page 8: Mobile banking

Message Based services Model

• Message based systems work through text messaging.

• There are two types of message systems:

SMS and MMS

Page 9: Mobile banking

Mobile Browsers Model

• The ability to access the bank’s Internet banking website from a cell phone

• Advantages:

1. Ease of use and user familiarity

2. Users don’t have to download any special software

• Disadvantages: risk of confidential information being at risk as these phones are more subject to attack

Page 10: Mobile banking

Client Application Model (app)

• Download the mobile banking software onto their phone.

• Easy to use applications to provide a variety of services

Page 11: Mobile banking

SECURITY THREATS ANDCONCERNS

• Mobile handhelds are compact, portable and easily lost or stolen

• Security requirements:

1. Confidentiality

2. Authentication

3. Integrity

4. Non-repudiation

5. Authorization

Page 12: Mobile banking

Authentication

• There are three forms of identification:

1. What you have (ex. include a debit card smart card, or your mobile device)

2. What you know (usernames, passwords or pin numbers)

3. Who you are (requires biometrics)• Another authentication technique is out-of

band communication

Page 13: Mobile banking

VPN Authentication

Page 14: Mobile banking

Encryption

• 1) Encrypt the information stored on mobile devices

• 2) Encrypt the communication so that if an attacker is able to intercept the message it’s still useless without the key.

• Advanced Encryption Standard (AES). • The OS and digital signatures

Page 15: Mobile banking
Page 16: Mobile banking

Mobile banking architecture Diagram