security, compliance and customer experience a balancing act · 2015-03-11 · customer experience...

13
Security, Compliance and Customer Experience – A Balancing Act Anne Myers Member Advisory Board TokenOne

Upload: others

Post on 26-May-2020

2 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: Security, Compliance and Customer Experience A Balancing Act · 2015-03-11 · Customer Experience – A Balancing Act Anne Myers Member Advisory Board TokenOne. Security, Compliance

Security, Compliance and

Customer Experience – A

Balancing Act

Anne Myers

Member Advisory Board

TokenOne

Page 2: Security, Compliance and Customer Experience A Balancing Act · 2015-03-11 · Customer Experience – A Balancing Act Anne Myers Member Advisory Board TokenOne. Security, Compliance

Security, Compliance and Customer

Experience

A Balancing Act

Anne Myers Member Advisory Board, TokenOne

Page 3: Security, Compliance and Customer Experience A Balancing Act · 2015-03-11 · Customer Experience – A Balancing Act Anne Myers Member Advisory Board TokenOne. Security, Compliance

The Banker’s Dilemma

Compliance

Cost Customer

Experience

Page 4: Security, Compliance and Customer Experience A Balancing Act · 2015-03-11 · Customer Experience – A Balancing Act Anne Myers Member Advisory Board TokenOne. Security, Compliance

IT Security in Banking

Cost Compliance

Customer Experience

Page 5: Security, Compliance and Customer Experience A Balancing Act · 2015-03-11 · Customer Experience – A Balancing Act Anne Myers Member Advisory Board TokenOne. Security, Compliance

An example: Multi-Factor Authentication

Proving User Presence

• What you know

• What you have

• What you are

Page 6: Security, Compliance and Customer Experience A Balancing Act · 2015-03-11 · Customer Experience – A Balancing Act Anne Myers Member Advisory Board TokenOne. Security, Compliance

What do customers want?

• My funds are safe and secure

• The service is easy to use

• The service is reliable

• Protect my identity

Page 7: Security, Compliance and Customer Experience A Balancing Act · 2015-03-11 · Customer Experience – A Balancing Act Anne Myers Member Advisory Board TokenOne. Security, Compliance

A critique of commonly used methods

• Customer

• multiple and complex passwords

• SMS issues

• device issues

• Cost

• infrastructure

• SMS

• password management

• Compliance

• proving user presence

• password management processes

• vendor hacking risk

Page 8: Security, Compliance and Customer Experience A Balancing Act · 2015-03-11 · Customer Experience – A Balancing Act Anne Myers Member Advisory Board TokenOne. Security, Compliance

Are biometrics the solution?

• Customer

• reliability

• non-revocable

• personal data concerns

• Cost

• expensive

• capture

• Compliance

• biometrics are not a secret

• secure storage of templates

• technical or legal standards

Page 9: Security, Compliance and Customer Experience A Balancing Act · 2015-03-11 · Customer Experience – A Balancing Act Anne Myers Member Advisory Board TokenOne. Security, Compliance

The New Knowledge Factor

Something you know BUT it is

• never entered

• never stored

• never revealed

It is a secret that is never shared - with anyone

Page 10: Security, Compliance and Customer Experience A Balancing Act · 2015-03-11 · Customer Experience – A Balancing Act Anne Myers Member Advisory Board TokenOne. Security, Compliance

The Nirvana for Multi-Factor Authentication?

• Highly secure

and can be easily revoked

• Easy to use

I don’t have to remember a range of complex passwords

• Reliable

even when there is no connectivity

• Enables me to keep my secrets secret

- from everyone

Page 11: Security, Compliance and Customer Experience A Balancing Act · 2015-03-11 · Customer Experience – A Balancing Act Anne Myers Member Advisory Board TokenOne. Security, Compliance

Nirvana?

Factor Method

What you know

Confirmation of a PIN without ever entering the actual PIN using a One time password

What you have

Proof of control of the users smartphone via a tokenised solution

What you are

Backed up by use of TouchID or other biometric

Page 12: Security, Compliance and Customer Experience A Balancing Act · 2015-03-11 · Customer Experience – A Balancing Act Anne Myers Member Advisory Board TokenOne. Security, Compliance

What do customers want?

• My funds are safe and secure

• The service is easy to use

• The service is reliable

• Protect my identity

…all of which reduce your fraud

costs and improve your compliance

Page 13: Security, Compliance and Customer Experience A Balancing Act · 2015-03-11 · Customer Experience – A Balancing Act Anne Myers Member Advisory Board TokenOne. Security, Compliance

To find out how TokenOne will redefine your

Identity Assurance expectations contact us at:

[email protected]