Security for the connected world - MULTOS · Security for the connected world Functionality...
Transcript of Security for the connected world - MULTOS · Security for the connected world Functionality...
Security for the connected world Chip Card & Security Infineon Technologies AG
Table of contents
Infineon and Chip Card & Security
Security Market and Infineon Market Position
Security for the Connected World
Infineon at Cartes & Identification
Infineon Focus Topics
Page 2 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
Table of contents
Infineon and Chip Card & Security
Security Market and Infineon Market Position
Security for the Connected World
Infineon at Cartes & Identification
Infineon Focus Topics
Page 3 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
The Company
Infineon provides semiconductor and system solutions, focusing on three central needs of our modern society: Energy Efficiency, Mobility and Security
Revenue in FY 2011: 3.997 billion EUR
26,454 employees worldwide (as of June 2012)
Strong technology portfolio with about 15,700 patents and patent applications (as of Sept. 2011)
More than 20 R&D locations
Germany's largest and Europe's second largest semiconductor company
Infineon at a Glance
Note: Infineon will release financials for Q4 and the full FY12 on November 14, 2012
Page 4 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
Infineon Holds Top Positions in All Target Markets
#1
Power Chip Card
#1
Automotive
#2
Calendar Year 2011
Source: IMS Research, July 2012
Calendar Year 2011
Source: IMS Research, August 2012
Calendar Year 2011
Source: Strategy Analytics, April 2012
5%
6%
7%
8%
12%
Int. Rectifier
STMicro
Toshiba
Mitsubishi
Infineon
6%
8%
9%
10%
NXP
Freescale
STMicro
Infineon
Renesas 14%
10%
18%
21%
24%
25%
SHHIC
STMicro
Samsung
NXP
Infineon
Page 5 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
Revenue Split by Division
ATV € 428m
CCS € 122m
OOS+ C&E*
€ 30m
Q3 GJ 2012 revenue: 990m €
IPC € 177m
PMM € 233m
* Other Operating Segments; Corporate & Eliminations.
Chip Card & Security
Automotive
PMM
IPC
Note: Infineon will release financials for Q4 and the full FY12 on November 14, 2012
Page 6 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
We Focus on Three Areas with Highly Attractive Future Perspectives
Energy Efficiency Mobility Security
Industrial Power Control
Automotive
Power Management & Multimarket
Chip Card & Security
Page 7 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
Trusted Computing (TPM)
Embedded SE (NFC)
Smart Metering
Brand Protection
Payment
Mobile Com.
(SIM)
Mobile Payment (NFC)
Public Transport
Access control
Object ID / Tags
Public Telephone
Cellular M2M (eCall)
Pay TV
Infineon products address traditional chip cards, eDocuments and system security
National eID
ePassport
eDriving License
eHealth / eSocial card
Chip Cards System Security
Secure Mobile & Transaction Government ID Platform Security
eDocuments
Page 8 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
Infineon provides security solutions tailored to application needs
Various applications require different security levels:
Security Level
Investment in Security
Pay-TV
National ID
ePassport
Banking
Driver License
Tags
Customized Security for
Pay-TV
Common Criteria up to
EAL6+(high)
Type Approvals (e.g. EMVCo.)
Basic Security for Mobcom
Digital Signature
Mobile Pay't
GSM/ UMTS
Page 9 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
Evaluation/ Type Approvals/ Certification according to internationally recognized standards
Independent, accredited security labs evaluate and rate the security of the products according newest standards.
Security certifications according "Common Criteria" are accepted worldwide.
EMVCo administers testing and approval processes to evaluate compliance with the EMV Specifications.
Note: EMVCo is currently owned by American Express, JCB, MasterCard and Visa.
Page 10 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
From chip design to delivery: security proven internal processes are key prerequisites
Corporate security rules (e.g. communication encryption, IT Security, Data Protection)
State-of-the-art security control center (e.g. about 8000 sensors on Campeon)
Security certified design environ- ment
Security infra- structure (biome- tric gate access, monitoring system)
Need-to-know principle, strict IT security regula- tions
Design & Development
Logistics
Protected safety areas for CCS products
Secured logistics
Transport partners audited by Infineon
High security production environment
Processes fully automated
Production facilities under strict review by security audits
Production
More than 300 product security certifications up to CC EAL6+ (high)
Strong experience in all major certification schemes: Common Criteria, EMVCo, ZKA, FIPS, VISA, Amex, MasterCard, ITSEC
Evaluation & Certification
Page 11 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
Table of contents
Infineon and Chip Card & Security
Security Market and Infineon Market Position
Security for the Connected World
Infineon at Cartes & Identification
Infineon Focus Topics
Page 12 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
Infineon Technologies – Chip Card & Security Global Leader with Regional Focus Topics
Our global leadership is based on local successes with
deep understanding of local needs,
local presence and competences
confirming the trust of our customers worldwide
local partnerships and value chain approaches
Our leading position enables us to continuously invest in technology, application know-how, local support and services
We have a strong regional footprint with references and successes
Page 14 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
Smart Card Market - Evolution of security applications
1989 1991 1993 1995 1997 1999 2001 2003 2005 2007 2009 2011
Launch "Geldkarte"
Ramp-up GSM
1988: Launch German
phonecard Launch German
Health Card
IFX Market Share [%]:
1986: First banking cards
TPM
E-Health Card, NFC, Embedded Sec.
42 41 46 48 39 37 37 35 29 29 27 26
CAGR: ~25%
Security memories (USD rev.)
Security controllers (USD rev.)
26
Infineon has more than 25 years experience in the chip card & security IC market
Infineon has a long-term track record in all chip card applications
Source market shares (only smart card, not embedded security): Frost & Sullivan, IMS Research since 2009; Source market size: Gartner, Frost & Sullivan, IMS Research since 2009
Source: own estimation
38 40
E-Passports, contactless
payment
26
UMTS cards, EMV migration
National e-ID
25
Page 15 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
42%
39%37%
37%
35%
29% 29%
27%
26%
26%
26%
25%
475
1,241
1,119
1,404
2,099
1,877 1,909
2,305 2,415
1,776
2,015
2,198
1997 … 2001 2002 2003 2004 2005 2006 2007 2008 2009 2010 2011
IFX Others
Market [m USD]
Infineon Technologies is the global market leader for security microcontrollers for 15 consecutive years
Chip Card IC market and Infineon share [revenue, m USD]
USD 2.20bn
Market shares in 2011 by revenue
Others 2.1%
SHHIC 10.1%
STM 18.1%
Samsung 21.4% NXP
23.5%
IFX 24.8%
*Market and IFX share include traditional Smart Card appl.: SIM (w/ M2M, NFC-SIM), Payment, Government, Transport, Access, Pay TV…; Market and IFX share do NOT include Embedded Security: NFC emb. Secure Element, TPM, Authentication / Brand Protection…; Sources: Frost & Sullivan for 1997 - 2008, IMS Research for 2009 – 2011 ("Smart Cards and Smart Card ICs – World", August 2012)
USD 2.20bn
Page 16 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
5,400 6,600
7,400 8,200
9,300 10,300
11,300 12,100
12,700
0
2,000
4,000
6,000
8,000
10,000
12,000
14,000
2009 2010 2011 2012 2013 2014 2015 2016 2017
Vo
lum
e (
m p
cs)
SIM, M2M Payment Transport
Access, Retail, Leisure Public Telephony e-Gov. and HC
Cond. Access / Pay TV
Worldwide smart card IC shipments by end-user sector (Volume, m pcs)
World smart card IC market with CAGR2012-2017 of +9.0% in terms of volume
Source: IMS Research, "Smart Card and ICs database", August 2012 µC & mem. ICs – Volume (m pcs)
*e-Gov. and HC does not include memories
CAGR2012-17: +9.0%
Page 17 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
WW shipments forecast millions of units
2012f 2013f 2013 vs 2012
% growth
Telecom 5,200 5,450 5%
Banking 1,260 1,480 17%
Government 290 350 21%
Transport 120 140 17%
PayTV 135 145 7%
Others 90 100 11%
Total 7,095 7,665 8%
of which contactless millions of units
2012f 2013f 2013 vs 2012
% growth
Banking 270 360 33%
Government 150 180 20%
Transport 120 140 17%
Others 60 70 17%
Total 600 750 25%
EUROSMART identifies Banking and Govt ID as key volume growth drivers in 2013
Worldwide Smart Secure Device shipment - 2012 and 2013 forecasts
Source: EUROSMART Market Figures November 2012
Page 18 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
Worldwide Smart Secure Contactless market figures – 2012 and 2013 forecasts
Table of contents
Infineon and Chip Card & Security
Security Market and Infineon Market Position
Security for the Connected World
Infineon at Cartes & Identification
Infineon Focus Topics
Page 19 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
Infineon Technologies at Cartes & Identification 2012
Security as global WORLDwide megatrend of modern society
Infineon’s global leadership is based on local successes WORLDwide
Trusted Partner for the Security Industry for more than 25 years
SECURITY for the
CONNECTED WORLD
Page 20 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
CONNECTED devices exposed to attacks drive the need for HW-based security
SECURITY as core in traditional chip card applications
SECURITY as key system-enabling feature in emerging applications
Tailored HW-based SECURITY from logic IP to tamper resistance
Infineon Technologies Security for the connected world
Functionality
Connectivity
Security Need
20
0x
20
1x
19
9x
!
Storing, processing and exchanging data in numerous distributed devices is the backbone of our economy.
HW based security provides protection against physical attacks.
Connectivity allows for continuous exchange of data.
Business and personal life processes are built on ubiquitous data availability.
Courtesy: Bosch
Computing and storage drive the develop-ment of electronics.
Page 21 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
Infineon Technologies Security for the connected world
As market leader for decades, Infineon can draw on comprehensive expertise to enhance the security of connected devices, leveraging its
core competences, application expertise and customer proximity.
Hardware-based security as key enabler for the connected world
The mobile society is driven by ever more connectivity. Distributed, connected and mobile devices become more vulnerable to security attacks than ever.
New business models and services emerge (e.g. online, location-based, cloud).
Requirements for safety, privacy and investment protection strongly increase (fraud, critical infrastructure, IP protection)
Hardware-based security provides the highest-possible barrier against unwanted manipulation and access to data in such an unsecured environment.
Page 22 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
Applications Currently Entering the Market Underline Potential in Connected Systems
Automotive e.g. SIM cards for eCall (30m units in 2015)
Factory Automa- tion and others (>100m cellular modules in 2015)
M2M
~900m handsets equipped with NFC by E/2016
~450m NFC handsets with NFC-eSE in 2016
Evolution to mobile platform integrity started
NFC Accessory
authentication
Brand Protection (~500m units controller based in 2016)
Printer cartridges (~3bn units none controller based in 2016)
Critical Infrastructures
Smart Meter (~35m electrical Smart Meter with Security in 2016)
Concentrator & Gateways
Industrial Automation
Commonalities in all embedded security applications
Security requirements drive need for HW-based anchor of trust
Page 23 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
Table of contents
Infineon and Chip Card & Security
Security Market and Infineon Market Position
Security for the Connected World
Infineon at Cartes & Identification
Infineon Focus Topics
Page 24 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
Infineon @ Cartes 2012 Global Leadership with Regional Focus Topics
Our global leadership is based on local success with
deep understanding of local needs, local presence and competences
local partnerships and value chain approaches
confirming the trust of our customers worldwide
Strong regional footprint with references and successes confirm global acceptance of innovative solutions
Page 25 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
Selected Recent Global CCS Highlights
In 2011, Infineon was the only company supplying into electronic passports of the worlds 5 biggest countries
Infineon is first to receive EAL6+ (high) certification for SOLID FLASHTM-based controllers with INTEGRITY GUARD
>500 million business PCs worldwide are equipped with an Infineon certified TPM
Windows 8 utilizes key security features provided by Infineon's certified TPM
Infineon's open interface specification for eSE - DCLB - has already been licensed by > 10 semiconductor companies
> 50% of all NFC secure elements shipped worldwide in 2011 were provided by Infineon
> 350 million devices worldwide use Infineon's authentication technology
#1 in digital tachographs - Continental - uses embedded security technology from Infineon
World’s biggest automotive suppliers trust in Infineon security for engine management systems
Many premium European car manufacturers are using M2M SIM chips from Infineon
Infineon is the only semiconductor company partnering with the German government on IT security projects
6.8 Mbit/s - fastest ISO-compliant contactless communication with Infineon's security controllers certified to EAL6 (high)
INTEGRITY GUARD nominated for the German Future Prize 2012 - the Federal President’s Award for Innovation & Technology
Page 26 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
North America is key driving region for embedded security in PC- and consumer Apps
Key Regional Trends
Chip-based payment replaces magstripe banking cards in North and South America
Embedded Security in high volume PC- and Consumer applications
Further rollout eID documents in South America
Public transport applications are enabled with smart cards
Selected Infineon Successes
HP - No. 1 for PCs worldwide - trusts Infineon's certified TPM
Around 1/3 of contactless transport tickets in South America are equipped with Infineon chips
For >7 years' Infineon is the main supplier of security technology for US ePassports
Infineon TPMs secure the Google cloud
Page 27 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
Africa is key growth region of eID, while Europe drives adaption of security in new apps
Key Regional Trends
Continued introduction of electronic ID documents
Mass deployment Contactless payment systems with high security
Embedded Security technology is implemented in Industrial and automotive applications, leveraging smart card security technology
Introduction of eID documents in Africa Mobile, cell-phone based payment applications
contine to emerge
Selected Infineon Successes
Cartes Bancaires trusts in Infineon's SOLID FLASH™ products for payment cards in France
10 million South Africans receive their social grants with smart cards using Infineon's SOLID FLASHTM
INTEGRITY GUARD chips from Infineon bring contactless payment experience to Germany
Many premium European car manufacturers are using M2M SIM chips from Infineon
Page 28 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
Asia-Pacific region benefits from the convenience of contactless payment and eID
Key Regional Trends
Continued introduction of electronic ID documents (eRP, NeID, SSC and multi-app cards)
Further deployment of contactless and mobile payment, smart cards in public transport for more convenience
Chip-based payment replaces magstripe banking cards in China
Consumer applications are secured with platform security
Selected Infineon Successes
100% of Malaysia's national eID cards - MyKad - use Infineon's SOLID FLASHTM
Chinese diplomats and citizens travel with ePassports using Infineon's security technology
Near 100% uptake of IFX TPM technology among Japanese notebook vendors
35 million daily transactions run smoothly at Seoul's public transportation network thanks to Infineon
Page 29 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
Table of contents
Infineon and Chip Card & Security
Security Market and Infineon Market Position
Security for the Connected World
Infineon at Cartes & Identification
Infineon Focus Topics
Page 30 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
CIPURSE is an open standard for secure transport fare collection solutions defined by the OSPT Alliance and supported by leading technology companies Giesecke & Devrient, Infineon Technologies, INSIDE Secure and
Oberthur technologies.
Industry's First Security Chip Compliant to CIPURSE™ & Existing Industry Implementations
The SOLID FLASH™-based SLS 32TLC security controller is the industry's first solution that supports conventional transport implementations as well as CIPURSE, the newly defined open standard for the transit industry, based on state of the art AES128 encryption.
The security chip features outstanding robustness and significantly enhanced contactless technology crucial for flexible and efficient access control and transit fare solutions.
Operators and transport agencies take advantage of high-level, microprocessor-based transactions.
Sesames Award Nomination for Secure Transport Solution
Page 31 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
Infineon's SOLID FLASH™ Security Products Gain Worldwide Acceptance
Combines the more flexible Flash memory technology with a sophisticated security mechanism.
The only FLASH-based security controller that also includes contactless functionality.
Outstanding contactless performance - 40 percent faster compared to conventional products
Selected Payment applications for SOLID FLASH include Bank cards issued by the
German Sparkassenverlag
Swiss Maestro debit cards
France's Carte Bancaire
Many additional references in other segments like Government ID
Delivery times for chip fabrication can be cut in half.
Rapid error-checking and -correction during software development result in savings of time and costs
Flexibility for necessary short-term modifications, reducing planning expense, storage costs and market risks.
Card Manufacturer Benefits
SOLID FLASH™-based security controllers are used worldwide
Page 32 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
First to receive EAL6+ Certification for SOLID FLASHTM Security Controllers with Integrity Guard
Designed and prepared from the start for even the highest certification levels.
Based on digital and therefore mathematical describable security functions.
Counteracts complete classes of attacks instead of reaction to various single attacks only.
Similar security level for both memory types (Flash and Mask ROM).
Additional flash data protection by secure flash loader.
Accepted worldwide by leading Payment organizations (DK, GIE Cartes Bancaires, Visa, MasterCard, BAROC).
Highest implemented security controller certification level acc. Common Criteria today
Holistic, formal mathematical model for security functions
Complete coverage of configuration management, verification and testing.
EAL6 delivers high assurance for protecting high value
Page 33 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
Integrity Guard Security for the connected world
19.02.2011
Completely encrypted storage and processing of on-chip data (leaving no plaintext) – incl. calculation with encrypted data in the CPU itself
Two CPUs – continuously checking each other - and a comprehensive error-detection
Integrity Guard sets the technological standard for chip-based security.
Page 34 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
Integrity Guard has been nominated for the "German Future Prize 2012"
Infineon's innovative 'Integrity Guard' digital security technology has been nominated for the 'German Future Prize 2012' - The Federal President’s Award for Innovation and Technology.
The 'German Future Prize' recognizes outstanding technical and scientific innovations from Germany. Nomination alone is regarded as the highest commendation for technology and innovation in Germany.
Integrity Guard is based on digital security and displays two revolutionary innovations:
The completely encrypted storage and processing of on-chip data combined with
two CPUs – constantly checking each other - and a full digital error-detection system.
Integrity Guard – Security for the connected world
Page 35 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
eGovernment Critical Infrastructures
Authentication
Mobile Payment / NFC
Embedded Systems
Bank- / Credit Cards Access Control
Security Applications in the connected world with Integrity Guard
Page 36 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.
Infineon focuses on security and performance as enabler in the strongly growing NFC market
NFC
FM WiFi
Stand-alone modem
Integration into connectivity
Essence of NFC Technical
requirements Implementation
options
NFC Modem (FE)
+ Reader and card INTEGRATION
NFC
Con
necti
vit
y
Secu
rit
y
SIM (standard or embedded)
Embedded Secure Element
SD card
Page 37 2012-11-02 Copyright © Infineon Technologies AG 2012. All rights reserved.