Put Identity at the Heart of Security Strong Authentication via Hitachi Biometric Technology Tadeusz Woszczyński Country Manager Poland, Hitachi Europe Ltd. 20 September 2017
Financial security in the old world The Perimeter Assets were physical KYC was easy Threats were local
Financial security in the digital world The new Perimeter Who are you Threats are Assets are digital dealing with? remote
We’re good at securing the digital perimeter... § Securing assets inside the perimeter is well understood. ‒ Firewalls ‒ Reverse proxies ‒ Intrusion detection ‒ DMZ ‒ SSL/TLS ‒ Etc.
… but outside the perimeter is out of control § How do we protect our customers out in the Big Wide World? § Remote customers are sometimes easy prey
Hitachi’s Digital Security Portfolio Protecting Society Beyond The Perimeter
Strong authentication with biometrics
Why biometrics? § In cyber-theft, a user’s identity has been subverted § Many “solutions” to this issue: ‒ What you know , ‒ Username, Passwords, PIN ‒ What you have , ‒ Cards, Devices, OTP § But these are all just proxies: ‒ They are not you .
A good biometric is indisputably you § What makes a good biometric: ‒ Accurate ‒ Low false match ‒ Usable ‒ Low false reject ‒ Convenient ‒ Acceptable ‒ Secure ‒ Private
Hitachi’s Finger VeinID technology Acquire Normalise Extract Transform
VeinID is strong across the board Ease User Modality Accuracy Security Speed of Privacy resist- Size Cost use ance Finger High High Fast High High Low Small Low vein Finger- Very Low Low Fast High High Small Low print Low Iris High Medium Slow Low Medium High Large High Medium Face Low Low Medium Low Low Low Medium to Large
VeinID is secure and private Resistance to Forgery Vein Iris Voice Special technology Hand Very Difficult required Face Known Fingerprint Moderate technology Easy Easy Replication Acquisition
Case study: Barclays corporate banking
Why did Barclays adopt this solution? This solution is at the leading edge of innovation and is in direct response to client concerns about the threat of online fraud. We have shown the technology to a range of businesses and the interest and enthusiasm for the product is tremendous. Ultimately, I hope this will pave the way for other institutions to adopt equally robust technology in the fight against online crime. – Ashok Vaswani CEO Barclays PCB
A novel combination of mature technologies Our powerful Smartcard PKI biometric infrastructure Sign-what-you-see displays
End-to-end transaction integrity 2. Verify transaction 1. Create transaction 3. Sign transaction 4. Check transaction Bank No opportunity for an attacker Customer
Form factors Desktop USB Portable BlueTooth + PKI Smartcard + PKI Smartcard (SIM or standard (SIM) format)
Security with convenience
Finger vein mass transit gate § Finger vein technology identifies pre-registered users § No second factor § Totally contactless § Near-instant identification § Suitable for any turnstile application
Pay-by-finger § Finger vein technology identifies customers § No second factor § Links to payment and loyalty systems § Speed and convenience § Scales to millions of customers
Access control § Identity assurance for ‒ access control ‒ time and attendance ‒ workforce management § Deployed for ‒ cryptographic vaults ‒ schools ‒ retail environments ‒ domestic residences…
The take away
Take back control with Hitachi’s VeinID The (extended) Perimeter The perimeter is User experience Threats are extended is enhanced excluded
Poland Use Case of Finger Vein
USE Case: PBS Bank FIRST IN EUROPE BIOMETRIC ATM NETWORK Bank BPH was the first in Europe to introduce in the branch network the possibility to authenticate basing on Hitachi’s Finger Vein biometrics (1765 Finger Vein readers). Since January 2013 all the branches are using Finger Vein as the primary authentication method, and since 2016 Finger Vein had been used by the network of partner outlets. 2009 first ATM FUNCTIONALITY Start of benefit withdrawal solution for unemployment people § withdrawal of benefit payments 2011 all ATMs with FV cardless withdrawals in 100% of ATM of PBS in Poland § customer’s identity verification before the execution of operations and transactions. § § customer’s operations authentication in the branch, including cashier desk operations login to the system and authentication of branch employees during transactions. All ATMs of the Bank equipped by FV devices. Service open § for all PBS customers BUSINESS CASE 32,000 active users § reduction of the cost of manual processing of benefit payments Finger Vein biometrics has been used by citizen of § reduction of the cost fo card withdrawals in the ATMs Podkarpackie region every day Source: PBS
USE Case: BPH S.A. (GE Capital) FIRST IN EUROPE BIOMETRIC BRANCH FINGER VEIN SYSTEM Bank BPH was the first in Europe to introduce in the branch network the possibility to authenticate basing on Hitachi’s Finger Vein biometrics (1765 Finger Vein readers). Since January 2013 all the branches are using Finger Vein as the primary authentication method, and since 2016 Finger Vein had been used by the network of partner outlets. 266,140 customers FUNCTIONALITY Number of customers with registered in total 532280 Finger Vein templates. § customer’s identity verification before the execution of operations and transactions. 16,200 operations customer’s operations authentication in the branch, including cashier desk operations § login to the system and authentication of branch employees during transactions. § Daily number of customer operations authentication in bank’s BUSINESS CASE branches. 160 registrations reduction of external and internal frauds § reduction of time spent on customer service (CX) § Daily number of customer registrations in Finger Vein § reduction of paper documents produced for cashier transactions system (maximum 700). Source: BPH S.A.
One Hitachi approach in Poland
Hitachi as „One Stop Shop” for the market COMPLIANCE ID MANAGEMENT PAPERLESS STORAGE SOLUTIONS Solutions for regulations (GDPR, (Identity Management, Priviledge Document management systems, (Flash and hybrid enterprise Durable Medium, MIFID2) Acces Management, Password WORM repository, cloud signature, storage, software and professional Management) hand-written signature services) BIG DATA VIDEO ANALYTICS BIOMETRICS ANTI-MALWARE Data analytics solutions (Pentaho) Video data storage, video analytics, Biometric systems (Finger Vein, Cloud antimalware/antiphishing voice, hand written signature) solutions face recognition, video management system.
Q & A
Thank You tadeusz.woszczynski@hitachi-eu.com
Recommend
More recommend