VASCO Consulting Services

Similar documents
WHITE PAPER. Identikey Server 3.1 Strong Authentication solution against MITM Attacks for e-banking

WHITE PAPER. Identikey Server 3.1 Strong Authentication solution for On-Demand Applications and SaaS

Secure your business DIGIPASS BY VASCO. The world s leading software company specializing in Internet Security

The 4 forces that generate authentication revenue for the channel

INTEGRATION GUIDE. DIGIPASS Authentication for F5 FirePass

MIGRATION GUIDE. Authentication Server

DIGIPASS Cradle Assembly instructions

Asia - Pacific - Japan phone: info-japan@vasco.com

DIGIPASS as a Service. Google Apps Integration

IDENTIKEY Server DIGIPASS BY VASCO. VASCO s next generation authentication server

INTEGRATION GUIDE. General Radius Config

Check Point FDE integration with Digipass Key devices

Grow revenues and profits while securing online subscription accounts

INTEGRATION GUIDE. DIGIPASS Authentication for Google Apps using IDENTIKEY Federation Server

Strong Authentication in details

axsguard Gatekeeper Internet Redundancy How To v1.2

INTEGRATION GUIDE. DIGIPASS Authentication for Office 365 using IDENTIKEY Authentication Server with Basic Web Filter

INTEGRATION GUIDE. IDENTIKEY Federation Server for Juniper SSL-VPN

Channel Partner Marketing Toolkit

INTEGRATION GUIDE. DIGIPASS Authentication for Juniper SSL-VPN

Hyper-V Installation Guide. Version 8.0.0

INTEGRATION GUIDE. DIGIPASS Authentication for Salesforce using IDENTIKEY Federation Server

User Authentication for Software-as-a-Service (SaaS) Applications White Paper

RSA SecurID Two-factor Authentication

OVERVIEW. DIGIPASS Authentication for Office 365

INTEGRATION GUIDE. DIGIPASS Authentication for VMware Horizon Workspace

IDENTIKEY Server Product Guide

DIGIPASS Authentication for Check Point Connectra

Internet Redundancy How To. Version 8.0.0

INTEGRATION GUIDE. DIGIPASS Authentication for SimpleSAMLphp using IDENTIKEY Federation Server

IDENTIKEY Appliance Administrator Guide

DIGIPASS CertiID. Getting Started 3.1.0

INTEGRATION GUIDE. DIGIPASS Authentication for Microsoft Exchange ActiveSync 2007

Identikey Server Getting Started Guide 3.1

RSA Solution Brief. RSA SecurID Authentication in Action: Securing Privileged User Access. RSA Solution Brief

INTEGRATION GUIDE. DIGIPASS Authentication for Cisco ASA 5505

IP Tunnels September 2014

Provide access control with innovative solutions from IBM.

DIGIPASS KEY series and smart card series for Juniper SSL VPN Authentication

EXECUTIVE VIEW MYDIGIPASS.COM. KuppingerCole Report. by Alexei Balaganski August by Alexei Balaganski

DIGIPASS Authentication for Windows Logon Product Guide 1.1

IDENTIKEY Server Windows Installation Guide 3.2

INTEGRATION GUIDE. DIGIPASS Authentication for Citrix NetScaler (with AGEE)

IDENTIKEY Authentication Server

DIGIPASS Authentication for Microsoft ISA 2006 Single Sign-On for Outlook Web Access

Identikey Server Product Guide

IBM Tivoli Security using Two-Factor Authentication against PHISHING

DIGIPASS as a Service. Product Guide

How much do you pay for your PKI solution?

STRONGER AUTHENTICATION for CA SiteMinder

TECHNOLOGY PARTNER CERTIFICATION BENEFITS AND PROCESS

Brainloop Cloud Security

Secure the door to your business

DIGIPASS Authentication for GajShield GS Series

VASCO: Compliant Digital Identity Protection for Healthcare

axsguard Gatekeeper Open VPN How To v1.4

DIGIPASS Authentication for Citrix Access Gateway VPN Connections

Executive Summary P 1. ActivIdentity

DIGIPASS Authentication for Check Point Security Gateways

DIGIPASS Authentication for Windows Logon Getting Started Guide 1.1

CA ArcotOTP Versatile Authentication Solution for Mobile Phones

A Total Cost of Ownership

DIGIPASS Authentication for Cisco ASA 5500 Series

HOTPin Integration Guide: DirectAccess

solution brief February 2012 How Can I Obtain Identity And Access Management as a Cloud Service?

Enhancing Organizational Security Through the Use of Virtual Smart Cards

Strong Authentication for Secure VPN Access

IDENTIKEY Server Windows Installation Guide 3.1

Smart Card- An Alternative to Password Authentication By Ahmad Ismadi Yazid B. Sukaimi

EZIO SUITE. EZIO SUITE Architected for Choice. Architected for Choice

Strong Authentication: Enabling Efficiency and Maximizing Security in Your Microsoft Environment

How To Get A High Quality Test

axsguard Gatekeeper IPsec XAUTH How To v1.6

Secure your business BY VASCO DIGIPASS. The world s leading software company specializing in Internet Security

Beyond passwords: Protect the mobile enterprise with smarter security solutions

Make it Mobile. How to successfully implement a secure mobile strategy.

RSA Solution Brief RSA. Encryption and Key Management Suite. RSA Solution Brief

ADDING STRONGER AUTHENTICATION for VPN Access Control

Payment Card Industry Data Security Standard

IDENTIKEY Server Administrator Reference 3.1

Digipass Plug-In for IAS. IAS Plug-In IAS. Microsoft's Internet Authentication Service. Getting Started

Binary Tree Support. Comprehensive User Guide

Quality Assurance. Service Offerings. About Brandix. Overview

Entrust IdentityGuard

BlackBerry Enterprise Solution and RSA SecurID

電 子 銀 行 風 險 - 認 證 與 核 實. Fraud Risk Management The Past and the Future 欺 詐 風 險 管 理 - 過 去 與 未 來

Identikey Server Performance and Deployment Guide 3.1

Adding Stronger Authentication to your Portal and Cloud Apps

The Panoptix Building Efficiency Solution: Ensuring a Secure Delivery of Building Efficiency

WHITE PAPER. Smart Card Authentication for J2EE Applications Using Vintela SSO for Java (VSJ)

Security under your Control

HOTPin Integration Guide: Microsoft Office 365 with Active Directory Federated Services

Simplify Your Windows Server Migration

XYPRO Technology Brief: Stronger User Security with Device-centric Authentication

Everything you always wanted to know about MAP but were afraid to ask

Intel Open Day. VASCO and Intel Identity Protection Technology. Richard Zoni Sales Manager Italy VASCO Data Security

DIGIPASS Authentication for Sonicwall Aventail SSL VPN

Card Management System Integration Made Easy: Tools for Enrollment and Management of Certificates. September 2006

BEST SECURITY PRACTICES IN ONLINE BANKING PLATFORMS

Leveraging innovative security solutions for government. Helping to protect government IT infrastructure, meet compliance demands and reduce costs

Transcription:

VASCO Consulting Services

OVERVIEW OF ALL VASCO CONSULTING SERVICES 1. VASCO Consulting Services BEFORE your implementation S trong authentication for e-banking: overview and best practices Two-factor authentication for mobile applications e-banking security: online threats and defenses 2. VASCO Consulting Services DURING your implementation E MV-CAP and CTVS technical consulting VACMAN Controller integration validation IDENTIKEY large deployment axsguard Gatekeeper module DIGIPASS parameterization VACMAN Controller time window parameterization Key management consulting 3. ON DEMAND VASCO Consulting Services The world s leading software company specializing in Internet Security

DIGIPASS BY VASCO VASCO Consulting Services Extensive expertise, proven methodology and best practices in deploying strong authentication OUR OFFER VASCO s Consulting Services are designed to complement our strong authentication solutions with a spectrum of quality service options that help customers make the most of their investment. In addition to complete implementation assistance programs to fit unique needs of our customers, VASCO also offers individual consulting services on major aspects of Strong Authentication and Online Fraud Prevention. OUR EXPERTISE Whether you would like to know more about the current security challenges and threats in e-banking, e-commerce, and Network Security, or if you need advice about your current implementation, VASCO is there to assist you. VASCO s extensive experience and best practices help decrease time to market, and our proven methodology and track record ensure any issues that emerge are quickly identified and resolved. You will be benefiting from the combined expertise of thousands of successful strong authentication deployments worldwide. OUR TEAM Our Consulting Services team is comprised of engineers and deployment, fulfillment and customer service specialists. VASCO s consultants are best in class and are there to deliver the professional advice you need for a successful strong authentication roll out.

VASCO Consulting Services BEFORE your implementation STRONG AUTHENTICATION FOR E-BANKING: OVERVIEW AND BEST PRACTICES - 3 DAYS VASCO takes a holistic approach to define the business drivers for implementing a strong authenticationsolution for Internet Banking. Our consultants introduce best practices in Strong Authentication deployment for e-banking to help customers bring their own projects to success. Banks get an in-depth overview of all aspects of such a project from planning to implementation. This is done through three modules that each span a day, but individual modules can be offered upon request. 1. Planning and Analysis This module covers the planning aspects of a strong authentication project. The first part deals with business and financial planning, as well as the distribution strategy. The second part talks about the product strategy and development, while the day ends with the marketing strategy overview focusing on positioning, branding and marketing actions. 2. Deployment This session will cover the internal procedures related to deploying a strong authentication solution. ICT continuity management, monitoring & auditing, quality assurance and service management make up this session. Legal affairs related to contracts and liability are also covered in this module 3. Implementation The last module provides some in-depth details of the actual implementation, examining industry best practices, investigating competitors strategies and discussing real-life examples. Such practical matters as marketing communication strategy, customer notification, logistics, and fulfillment make up this module. The module also deals with setting up customer support procedures such as helpdesk management, and gives an overview of the pricing policy towards the end users. TWO-FACTOR AUTHENTICATION FOR MOBILE APPLICATIONS - 1 DAY In today s challenging environment, the launch and deployment of a mobile authentication application becomes critical. VASCO offers banks and other organizations help in understanding the mobile industry status in their country and the challenges they may face during and after deployment. VASCO experts provide updated information on current mobile technologies, trends and best practices in your industry. We also focus on the highly critical security aspect of a mobile authentication solution, and educate you on how to turn this potential burden into an asset. The world s leading software company specializing in Internet Security

DIGIPASS BY VASCO VASCO Consulting Services BEFORE your implementation E-BANKING SECURITY: ONLINE THREATS AND DEFENSES - 3 DAYS VASCO s goal is to help banks and financial institutions understand and stay up-to-date on the latest e-banking fraud techniques such as phishing, trojans, and man-in-the-middle attacks. VASCO specialists provide you with an individual benchmark analysis and vulnerability assessment of your current e-banking authentication system, and help prioritize security improvements. Three modules are available in this offering: 1. e-banking Fraud Schemes Overview This 1-day module provides an in-depth presentation of the latest security threats to e-banking authentication systems, which includes: Trends in phishing techniques, such as spear phishing, pharming, whaling and fast-flux service networks Spyware techniques such as banking trojans Man-in-the-middle attacks The cyber crime black market overview e-banking fraud statistics 2. Security Analysis Report Using a benchmark analysis method, VASCO will provide an assessment of your current e-banking authentication systems and methods. This analysis will result in a report that covers: 3. Security Advice VASCO will provide a thorough review and explanation of the various state-of-the-art authentication technologies, and help you choose the one best suited for your unique situation. A written report with recommendations for improvement based on industry best practices will be provided. The report will discuss the following subjects: Security characteristics of different authentication technologies, such as one-time passwords and electronic signatures Security characteristics of different authentication platforms, such as hardware authenticators, smart card-based solutions, and software-based solutions Proper implementation of authentication technologies to prevent social engineering attacks according to best practices Identification of the strengths and weaknesses of your existing authentication system Security benchmarking of your existing authentication system Prioritization of weaknesses according to the level of risk

VASCO Consulting Services DURING your implementation EMV-CAP AND CTVS TECHNICAL CONSULTING - 1 DAY This 1-day module addresses a question of how to leverage EMV cards for strong user authentication to improve transaction security. It offers an overview of Strong Authentication concepts based on hardware authenticators (tokens) and card readers. The first part of this module covers the basic working principles of these devices, and examines the advantages of each solution, as well as their Total Cost of Ownership. The second part summarizes the various aspects an organization should consider when deploying an EMV- CAP project. These include business and technical requirements of an EMV-CAP implementation, such as back-end infrastructure, multi-channel compatibility, supported applications, usability, reader preference, and customer convenience. The day ends with an overview of alternatives to CAP and solutions best suited for different markets. VACMAN CONTROLLER INTEGRATION VALIDATION - 2 DAYS Clients that have already implemented VACMAN Controller can request VASCO to perform a validation of their implementation. This review will take place at the customer s site. VASCO experts will examine the VACMAN Controller implementation looking for areas where VASCO technology may be leveraged for a more secure and/ or efficient implementation. Such a validation typically takes 2 days and reflects various communications between the VASCO Integration Expert and the customer IT representative. The result is a customized written evaluation report that offers critique of the current implementation and provides suggestions for change if necessary. The CTVS option will also be a part of the validation for clients who have implemented it. The Integration Validation review is available for the following platforms: Intel-based platforms (Windows, Linux) Medium system environment (Sun Solaris, HP Unix, Alpha Open VMS, Alpha TRU64) Mainframe (AS/400, Z/OS) The world s leading software company specializing in Internet Security

DIGIPASS BY VASCO VASCO Consulting Services DURING your implementation IDENTIKEY LARGE DEPLOYMENT - 1 OR MORE DAYS A standard IDENTIKEY training package is already available through VASCO s SEAL training program. This training covers all topics regarding the implementation and deployment of your IDENTIKEY solution. Consulting Services are available for customers looking for a more in-depth approach beyond the standard training package. It covers all topics around installation and integration of IDENTIKEY. Typical examples include the integration with existing databases, web application integration and the setup of multi-location deployments. axsguard GATEKEEPER MODULE - 1 DAY Clients that implemented axsguard Gatekeeper can request VASCO to perform a validation of their configuration combined with a hands-on live training. VASCO also offers support for customers implementing extra or new modules/functionalities of the axsguard appliance, as well as migration assistance to a new version of the product. The entire module can be customized based on your unique situation and requirements.

VASCO Consulting Services DURING your implementation DIGIPASS PARAMETERIZATION - 1 DAY VACMAN CONTROLLER TIME WINDOW PARAMETERIZATION- 1 DAY VASCO DIGIPASS is a fully customizable product with many parameters that define how it operates. Such parameters include defining the number of digits generated in a one-time password and the frequency in which a one-time password changes. Each factor impacts the overall security and usability of the DIGIPASS. As such, this module was designed to provide a full understanding of the meaning and proper usage of these parameters and assist the customer in making the right choices. The first part of this module covers the different types of PIN parameters, Challenge-Response applications, electronic signatures and encryption algorithms. Additionally, it includes an overview of event- and time-based scenarios and different methods of linking transactions and signatures. The second part brings this knowledge into practice. At the end of the day, you will have 5 to 10 working DIGIPASS devices parameterized according to your needs, that could also be used to start the integration tests. This module was created to advise customers on the parameterization of the Time Window used by the VACMAN Controller. Through the use of a time window computation model, a VASCO security consultant will work with you to define the right parameters based on your specific needs and infrastructure. This module consists of 2 sessions: In the first session, you will get an overview of the VACMAN Controller Time Window Parameterization and an explanation on how to use the computation model. Secondly, a VASCO security consultant will hold an interactive session working with you on the time window computation model. The outcome of this session is the definition of the client parameters based on the needs presented. The world s leading software company specializing in Internet Security

DIGIPASS BY VASCO VASCO Consulting Services DURING your implementation KEY MANAGEMENT CONSULTING - 1 DAY The purpose of the Key Management module is to provide banks and large enterprises with expert advice during the deployment of a key management infrastructure to support one or more of VASCO s strong authentication applications. The Key Management module is of a practical nature and is case-driven. It addresses the specific key management issues of a given customer in the context of a certain application of VASCO s strong authentication technology, according to industry s best practices. Topics addressed in the Key Management module include, but are not limited to: Best practices for managing cryptographic keys throughout their lifecycle, ranging from key generation and key storage to key usage to key termination Technical, procedural and organizational aspects of key management Preparing for and conducting Key Import Ceremonies

ON DEMAND VASCO Consulting Services Should you have specific needs that are not addressed in our standard modules, VASCO can deliver customized consulting services on demand. Our on demand offering complements our traditional consulting services by providing and innovative and tailored offering that suits your security requirements. By sharing our expertise, proven methodology and best practices, we can help you before, during and after implementation of your authentication project in your business environment. VASCO s consulting services consist of certified, professional IT resources allowing a speedy implementation and roll out decreasing the time to market and ensuring business continuity. Leveraging best practice knowledge for hardware and software authentication deployments, our consultants can aid in decision making, technical knowledge, business value analysis and training; allowing you to focus on your business objectives and accelerate the decision making process. Our on demand consulting services are specifically designed to help you make the most of your authentication investment. For more information about VASCO s on demand consulting services, please contact your account representative or send an e-mail to consulting@vasco.com The world s leading software company specializing in Internet Security

DIGIPASS BY VASCO VASCO s Security Consultancy is an excellent addition to the company s extensive product offering in strong authentication. A clear overview of the current threats, security guidelines and best practices for optimizing strong authentication mechanisms has helped us considerably in our Internet banking security projects. Erwin Nys, Head of E-Channel Management-Retail at KBC Together with VASCO, we looked at different ways in which we could use our DIGIPASS devices with VACMAN Controller. Their advice not only led to significant and important enhancements, but also to an overall improvement of our security features. VASCO brought a lot of value and expertise to our project, and for this we consider them as a valuable business partner. Daniel Ratinckx, Head of Delen-Online at Bank Delen

DIGIPASS BY VASCO About VASCO VASCO is a leading supplier of strong authentication and e-signature solutions and services specializing in Internet Security applications and transactions. VASCO has positioned itself as a global software company for Internet Security serving customers in more than 100 countries, including several international financial institutions. VASCO s prime markets are the financial sector, enterprise security, e-commerce and e-government. VASCO Offices VASCO Sales Presence I N T E R N AT I O N A L H Q C H I CA G O p h o n e : + 1. 6 3 0. 9 3 2. 8 8 4 4 e m a i l : i n f o _ u s a @ v a s c o. c o m OPERATIONAL HQ B R U S S ELS p h o n e : +32.2.609.97.00 e m a i l : i nfo_ europe@ vasco. com FINANCIAL HQ ZURICH phone: +41. 43. 555. 3500 email: info_ europe@ vasco. com B R U S S E L S ( E U R O P E ) p h o n e : + 3 2. 2. 6 0 9. 9 7.00 e m a i l : i n f o - e u r o p e @ v a s c o. c o m B O S T O N ( N O RT H A MERICA) p h o n e : + 1. 5 0 8. 3 6 6. 3400 e m a i l : i n f o - u s a @ v a sco. com SYDNEY ( PACIFIC) phone: +61. 2. 8061. 3700 email: info- australia@ vasco. com SINGAPORE ( ASIA) phone: +65. 6323. 0 9 0 6 email: info- asia@ v a s c o. c o m Copyright 2010 VASCO Data Security, Inc, VASCO Data Security International GmbH. All rights reserved. VASCO, VACMAN, IDENTIKEY, axsguard, DIGIPASS and logo are registered or unregistered trademarks of VASCO Data Security, Inc. and/or VASCO Data Security International GmbH in the U.S. and other countries. VASCO Data Security, Inc. and/or VASCO Data Security International GmbH own or are licensed under all title, rights and interest in VASCO Products, updates and upgrades thereof, including copyrights, patent rights, trade secret rights, mask work rights, database rights and all other intellectual and industrial property rights in the U.S. and other countries. Microsoft and Windows are trademarks or registered trademarks of Microsoft Corporation. Other names may be trademarks of their respective owners.