Step 1:A. User enters id/pw for FI: encrypted in
Quicken PIN vaultB. Id/pw transmitted to Intuit
CustomerCentral Servers at NCR using 128 bit SSL
Step 2:A. Credentials stored in CC database using
3DES.B. Credentials transmitted to bank web site
using 128 bit SSL.
Step 3:A. Bank QFX files transmitted to CC server
using 128 bit SSLB. Logoff bank site.
Step 4:A. QFX file received from bank, stored in
database. Account number encrypted with 3DES.
B. EWC data transmitted to Quicken, 128 bit SSL
Step 5:A. Data received from Intuit Servers, stored
in Quicken.
NCR at a GlanceNCR at a Glance
•100+ year old company•$5.9B in revenues•32,800 employees
worldwide•$2.9B in services
revenue•Nearly 20,000 service
professionals
NCR Executive Committee
NCR Executive Committee
Retail and Financial GroupRetail and Financial Group
Americas/Europe/Asia-Pacific/JapanAmericas/Europe/Asia-Pacific/Japan
Reta
il
Solu
tion
s D
ivis
ion
Reta
il
Solu
tion
s D
ivis
ion
Fin
an
cia
lS
olu
tion
s D
ivis
ion
Fin
an
cia
lS
olu
tion
s D
ivis
ion
Tera
data
Div
isio
nTera
data
Div
isio
n
Worl
dw
ide
Cu
sto
mer
Serv
ices
Div
isio
n
Worl
dw
ide
Cu
sto
mer
Serv
ices
Div
isio
n
Syste
med
iaD
ivis
ion
Syste
med
iaD
ivis
ion
NCR eCommerce FactsNCR eCommerce Facts
• Business startup in 1997• >40% compounded annual growth rate• eCommerce Solutions Across All
Industries, with focus on Finance Industry– 140 banks hosted in data center
• Deploy eCommerce Managed Solutions In-House or Outsource
• (2) eCommerce Data Centers (Columbia, MD; Columbia, SC)
• (1) Disaster Recovery Hot Site (Dayton, OH)
Secure, High Availability Data CenterSecure, High Availability Data Center “IT Managed Services”“IT Managed Services”
PLANT
POWER
eCommerce Data Centers
Diesel Generator Backup Battery Room -- UPS
Command Center - Monitoring - Bandwidth - Data Communications
PING
NCR Secure, High Availability, Hosting Data Center Infrastructure Services
Hosting Availabity + Security
-High Availability
-UPS and Diesel Generator
-Redundant Environmental Controls
-Card Access Security
-Security Cameras
-Smoke and Water Detection
-Fire Suppression
-Redundant Power Grids
-Dual Fiber Optic Rings
Financial Institution Experience:
Currently hosting over 130 internet Banking sites, including 4 top 50
Same data center as 300 bank core systems
NCR Personnel Expertise
-24x7x365 Management of Hosted Applications
-OS Management to Include Teradata/Windows/Linux/Unix
-Certified OS Engineers
-Security and Network Consultants
-Database Administrators
-Certified Router and Firewall Consultants
Security and Compliance
-Vulnerability Assessments and Penetration Scans
-Internal and External Intrusion Detection
-Monthly Executive Summary Security Reporting
-Security Fraud Detection Service
-Annual SAS 70 Type II Certification
-FFIEC, OTS, OCC Compliance and Annual Review
NCR eCommerce SecurityNCR eCommerce Security• Redundant Checkpoint Firewall Configuration
• RealSecure Intrusion Detection Solution from ISS
• Monthly Third Party Security Consulting
• Annual Vulnerability Assessments
• Quarterly Penetration Scans
• Charter Membership in Infragard
NCR is constantly monitoring its adherence to best practices and
subjecting itself to the most stringent third-party audits available.
For example, each year in addition to NCR corporate audits, an
independent auditing company performs a SAS 70 Level 2 audit of
the NCR eCommerce Data Center. NCR is also audited by the Federal
Financial Institution Examination Council (FFIEC). This interagency
body is comprised of the Board of Governors of the Federal Reserve
System (FRB), the Federal Deposit Insurance Corporation (FDIC), the
National Credit Union Administration (NCUA), the Office of the
Comptroller of the Currency (OCC) and the Office of Thrift
Supervision (OTS). It is this commitment to excellence which sets
NCR apart when it comes to secure hosting and outsource services.