AlphaTrust PRONTO Enterprise Platform Product Overview



Similar documents
ELECTRONIC PRESENTATION AND E-SIGNATURE FOR ELECTRONIC FORMS, DOCUMENTS AND BUSINESS RECORDS ALPHATRUST PRONTO ENTERPRISE PLATFORM

Automation for Electronic Forms, Documents and Business Records (NA)

AlphaTrust PRONTO - Hardware Requirements

POLICY ISSUES IN E-COMMERCE APPLICATIONS: ELECTRONIC RECORD AND SIGNATURE COMPLIANCE FDA 21 CFR 11 ALPHATRUST PRONTO ENTERPRISE PLATFORM

ELECTRONIC RECORD AND SIGNATURE COMPLIANCE. NASD Rules 3010(d) and 3110(c)(1)(C) SEC Rule 17a-4 15 USC 7001 et. seq. (E-SIGN)

CoSign by ARX for PIV Cards

estatement Consent and Disclosure Agreement (Agreement to Receive or Access

Electronic Signatures: A New Opportunity for Growth. May 10, 2005

POLICY ISSUES IN E-COMMERCE APPLICATIONS: ELECTRONIC RECORD AND SIGNATURE COMPLIANCE. 15 USC 7001 et. seq. (E-SIGN) and

Web Development. Owen Sacco. ICS2205/ICS2230 Web Intelligence

INF O R M A T IO N AB O UT websignatureoffice

Article. Robust Signature Capture Using SigPlus Software. Copyright Topaz Systems Inc. All rights reserved.

Project Title: Judicial Branch Enterprise Document Management System RFP Number: FIN122210CK Appendix D Technical Features List

10 Tips for Selecting the Best Digital Signature Solution

Assessment of Vaisala Veriteq vlog Validation System Compliance to 21 CFR Part 11 Requirements

InfoCenter Suite and the FDA s 21 CFR part 11 Electronic Records; Electronic Signatures

SAFE Digital Signatures in PDF

An Introduction to Entrust PKI. Last updated: September 14, 2004

Send and receive encrypted s

PKI Adoption Case Study (for the OASIS PKIA TC) ClinPhone Complies with FDA Regulations Using PKIbased Digital Signatures

Standards and Guidelines for. Information Technology. Infrastructure, Architecture, and Ongoing Operations

Short notes on webpage programming languages

5 FAM 140 ACCEPTABILITY AND USE OF ELECTRONIC SIGNATURES

Cisco WebEx Meetings Server

Client System Requirements for Brainloop Secure Dataroom as of Version 8.30

bank zweiplus Gateway user manual

MOVEIT: SECURE, GUARANTEED FILE DELIVERY BY JONATHAN LAMPE, GCIA, GSNA

MailStore Server 7 Technical Specifications

Meeting the FDA s Requirements for Electronic Records and Electronic Signatures (21 CFR Part 11)

Server based signature service. Overview

Secured Signing for Documents

Vendor Questions. esignatures Request for information - RightSignature

Adobe Developer Workshop Series

Vendor Questions. esignatures Request for information InsureSign

Web Conferencing Version 8.3 Troubleshooting Guide

Apache Server Implementation Guide

State of Arkansas Policy Statement on the Use of Electronic Signatures by State Agencies June 2008

Windows (7, 8, or Vista) or Mac OS X (10.9 or later) 1 GB RAM (2 GB recommended) 20 MB free disk space

Release: 1. ICAWEB414A Design simple web page layouts

Hosted Security Quick Start Guide

Digital Signatures Best Practice for e-business Transactions

Tidspunkt : : :59 (49 dag(e)) Operativsystem (OS) fordelt på browsere Total: Safari9 ios %

White Paper Delivering Web Services Security: The Entrust Secure Transaction Platform

Laserfiche Product Suite

e-signlive for LotusLive Silanis Online e-signature Services e-signdoc User Guide Connect. Collaborate. Close.

Single Sign On for ShareFile with NetScaler. Deployment Guide

Electronic Signature Approvals

Compliance Response Edition 07/2009. SIMATIC WinCC V7.0 Compliance Response Electronic Records / Electronic Signatures. simatic wincc DOKUMENTATION

Digital Signatures. Stefanie García Laule Security Product Management SAP AG

Hosted Security 2.0 Quick Start Guide

Entrust Secure Web Portal Solution. Livio Merlo Security Consultant September 25th, 2003

Microsoft Dynamics NAV 2015 Hardware and Server Requirements. Microsoft Dynamics NAV Windows Client Requirements

Electronic Prescribing of Controlled Substances Technical Framework Panel. Mark Gingrich, RxHub LLC July 11, 2006

The biggest challenges of Life Sciences companies today. Comply or Perish: Maintaining 21 CFR Part 11 Compliance

Web Design and Development ACS-1809

CoSign for 21CFR Part 11 Compliance

Digital Signatures The Law and Best Practices for Compliance. January 2014

WatchGuard SSL 2.0 New Features

BlackBerry Enterprise Server for Microsoft Exchange Version: 5.0 Service Pack: 2. Feature and Technical Overview

Global eid Developments. Detlef Eckert Chief Security Advisor Microsoft Europe, Middle East, and Africa

U.S. Department of Health and Human Services (HHS) The Office of the National Coordinator for Health Information Technology (ONC)

System Requirements for Microsoft Dynamics NAV 2013 R2

How To Control A Record System

Glossary of Key Terms

Enhancing Web Application Security

Guidance for the verification of qualified digital signatures following Swiss signature law

New Single Sign-on Options for IBM Lotus Notes & Domino IBM Corporation

Electronic and Digital Signatures

Digital Signature Service. e-contract.be BVBA 2 september 2015

Access Your Cisco Smart Storage Remotely Via WebDAV

2X Cloud Portal v10.5

White Paper. Anywhere, Any Device File Access with IT in Control. Enterprise File Serving 2.0

Learn more about the technology that makes Workforce Central 8 work

SAML-Based SSO Solution

Token User Guide. Version 1.0/ July 2013

Why Use Electronic Transactions Instead of Paper? Electronic Signatures, Identity Credentialing, Digital Timestamps and Content Authentication

CA Service Desk Manager Release 12.5 Certification Matrix

Platform support for UNIT4 Milestone 4

Moving Towards an Electronic Real Estate Transaction

The Impact of 21 CFR Part 11 on Product Development

M86 Web Filter USER GUIDE for M86 Mobile Security Client. Software Version: Document Version:

Cloudbuz at Glance. How to take control of your File Transfers!

ziplogix Digital Ink Training

Implement best practices by using FileMaker Pro 7 as the backbone of your 21 CFR 11 compliant system.

owncloud Architecture Overview

Internet Technologies_1. Doc. Ing. František Huňka, CSc.

Transcription:

AlphaTrust PRONTO Enterprise Platform Product Overview AlphaTrust PRONTO Enterprise Platform is server-based software that automates the creation of legally enforceable, permanent business records that are the commercial and legal equivalent of paper records, including support for electronic signatures that comply with a variety of laws and regulations around the world. November 2012

AlphaTrust PRONTO Enterprise Platform Product Overview Executive Summary AlphaTrust s PRONTO Enterprise Platform is a proven server-based software solution for managing the entire process of getting documents competed, signed, approved, routed, and stored. PRONTO Enterprise Platform can meet your document completion, execution, verification, and archiving needs for business documents requiring signature or approval (forms, contracts, documents). The PRONTO Enterprise Platform software runs entirely on a Web server and there is no requirement for end users to install any software or download any Web browser components. Presentation and signing of documents is done using a Web Browser and, optionally, e-mail. Documents are properly signed according to law and regulations and secured using the cryptographic technology. The user s experience is simple point-and-click. Printing, signing, and shipping of signed documents are eliminated along with the significant delays caused by manual, physical routing. PRONTO Enterprise Platform is used today by many organizations to manage their online document signing / approval processes. Production applications include: online contracting, human resource documentation, health care documentation, and financial service applications. Background Creating enforceable electronic transactions is a major long term initiative for enterprise and governmental organizations. Except for a few specialized markets, most business transactions are documented on paper today. The credit / debit card industry has created a method for enforceable electronic transactions using electronic networks over the last 25 years. It is effective for small value purchases. Electronic Data Interchange (EDI) exists is certain vertical markets among large enterprises. Until the year 2000 there was not a method to effectively create the electronic equivalent of a binding commercial or governmental transaction that could replace paper documentation, and in many cases, the requirement for ink signatures on that documentation. Even within organizations, there are many internal processes that require documented approval, acknowledgement, or acceptance. This documentation, as well, must meet standards for accountability, enforceability, permanence, auditability, and document retention. Business documents and records that evidence transactions have a life cycle divided into three phases: Phase 1: Creation, collaboration and review: creating and putting a transaction record in final form. Phase 2: Approval, acknowledgement or acceptance: creating evidence of transaction execution, often through the use of signatures or initials. Phase 3: Distribution, storage and destruction: mailing, filing, archiving and document retention. Much of phase 1 of the transaction record life cycle has been automated. Many transaction records are generated by automated systems such as desktop software (i.e. word processing and spreadsheet software), Web-based forms and work flow as well as mainframe systems. Some records, mostly forms, are created on paper. The move to automated systems for phase 1 records has saved businesses considerable time and money. Phase 2, the transaction execution phase, could not be automated until the legal framework supporting electronic document and record enforceability was in place. The only alternative method was to use private, contractual systems to gain enforceability (as credit card and EDI systems have used). Over the past several years the legal framework for enforceable electronic records has fallen into place. Both statutory legislation and administrative regulations have been put in place in most developed countries (including the USA, Canada, Mexico, Japan, Singapore, Australia, New Zealand, India, Russia and the European Union as well as others) that provide for the use, acceptance, and enforceability of electronic records and electronic signatures. AlphaTrust PRONTO Enterprise Platform provides organizations with capability for some phase 1 (form filling and completion), for all phase 2 and certain phase 3 functions. These functions include: Collecting information from reviewers / signers / approvers: form filling, etc. PRONTO Enterprise Platform Product Overview (v4.9) November 2012 2

Obtaining proper, enforceable electronic signatures on transaction documents and records. o o Authenticating signers (knowing who they are). Applying the proper signing ceremony process rules required under laws and regulations. Translating documents and records into human readable formats suitable for archival, filing and document retention requirements (Acrobat PDF, HTML, XHTML, and plain text). Distribution of executed documents and transaction records. Archival and retrieval of original transaction documents and records. The AlphaTrust PRONTO Enterprise Platform is deployed either in-house or as an AlphaTrust-hosted and managed Software-as-a-Service (SaaS) solution. Standards Support PRONTO Enterprise Platform is a Web-based work flow and transaction system. AlphaTrust is committed to open standards, both technical and legal/regulatory. PRONTO actively supports technical standards initiatives including: W3C: HTML 4.01 HyperText Markup Language W3C: XHTML 1.0 Extensible HyperText Markup Language W3C: CSS Level 1 Cascading Style Sheets W3C: XML 1.0 Extensible markup Language W3C: XML Namespaces Namespaces in XML W3C: WCAG 1.0 Web Content Accessibility Guidelines IETF: PKIX RFC 5280 X.509 Public Key Infrastructure Certificate and CRL Profile Adobe: PDF Support for PDF 1.3 to 1.7+ (through Acrobat 10) WS-I: WS-I Basic Web Services Basic Profile OASIS: WS-* WS-* Series of Web Services standards MS: WCF Microsoft Windows Communication Foundation v4.0 PRONTO actively supports legal and regulatory standards including: USA: E-SIGN Electronic Signatures in Global and National Commerce Act USA: UETA Uniform Electronic Transactions Act (State law) USA: FDA 21 CFR 11 Electronic Signature Regulations USA: HHS-HIPAA HIPAA Security Standards (Proposed) USA: SEC / NASD Electronic Signature and Records Standards (Brokerage) USA: Federal Reserve/OCC Electronic Records Standards USA: GPEA Government Paperwork Elimination Act USA: Dept. of Education Standards for E-Signatures in Electronic Student Loan Transactions USA: DoD Support for DoD PKI and Common Access Card Program USA: IRS Electronic Signature Requirements Canada: Electronic Commerce Acts (Provincial) Canada: Personal Information Protection and Electronic Documents Act EU: ESD EU Electronic Signatures Directive (all EU Countries) Hong Kong Electronic Transactions Ordinance India Information Technology Act Japan Law Concerning Electronic Signatures Australia Electronic Transactions Act Singapore Electronic Transactions Act South Korea Basic Law on Electronic Commerce Others Inquire PRONTO Enterprise Platform Product Overview (v4.9) November 2012 3

Electronic Signature and Digital Signatures You have likely heard these terms used interchangeably. In reality, they are very different, and the fact that both terms use the word signature has caused no end of confusion. An electronic signature is a legal concept for using an electronic symbol to represent a person s volitional consent to be bound to the terms of a document. What you must achieve with any business process that requires an enforceable document, is to obtain a legally-valid electronic signature for that document using the proper processes. This is what PRONTO Enterprise Platform is designed to do. A digital signature is a technical security concept for a data integrity process using cryptographic data hashing and encryption. Simply applying a digital signature process to the data of a document will generally not result in an enforceable electronic signature. Digital signatures are a very important security tool and PRONTO Enterprise Platform uses digital signature technology in its electronic signature processes. No End User Software Requirements One of the strengths of the PRONTO Enterprise Platform architecture is that the only user software requirement is a Web browser. PRONTO Enterprise Platform does not require any client side software, plug-ins, Java code, ActiveX controls, or similar technology. It is designed to support wireless and PDA devices with Web browsing capabilities as well as industry standard Web browsers on personal computers Typical Uses PRONTO Enterprise Platform is typically integrated into Web-based business process work flow to perform the function of creating legally enforceable documents including the proper gathering of electronic signatures from all parties to a transaction. The software is broadly applicable to any business process requiring documents or records in permanent form. PRONTO Enterprise Platform Product Overview (v4.9) November 2012 4

PRONTO Enterprise Platform features Types of Transactions: PDF Document Form Filling PDF Document User Data Collection (i.e. payment information) Web form and Web document signing (HTML format) PDF document signing (PDF format) Online signing in current Browser session Online signing via email notice (work flow routing for signature) Signers per document, maximum Types of Signatures Supported: Standard Scripted (dark blue font) Mouse signature Live signature capture using electronic signature pad Live signature capture on tablet, smart phone, and other mobile devices Stored signature image End-User digital certificate signing (client PKI support) Types of Built-In User Authentication: Per signature password / PIN Assigned User Name / Password ** Biometric authentication through handwriting analysis ** User digital certificate (SSL cert. auth.) ** Federated (SAML) authentication Active Directory, LDAP, etc. Archival: Full document archive and transaction audit trail Signature Profile Features (included with the software): Unique User Name and Password access per user (to protect access to signing in that user s name) Stored image of handwritten signature used to sign documents. Use of biometric user verification with optional signature pads. Digital certificate (SSL client auth) access to signature profile. Feature No Limit PRONTO Enterprise Platform Product Overview (v4.9) November 2012 5

System Requirements for PRONTO Enterprise Platform Software (when purchased for in-house deployment): Microsoft Windows Server 2008 or 2008 R2. Both 32-bit (2008 only) and 64-bit OS versions are supported. Microsoft Database software (SQL Server 2005, 2008, 2008 R2, or 2012). You may use an existing SQL Server in your computing environment. Virtual server deployments (i.e. VMWare) are supported. System Requirements for Web Applications that use the Services of PRONTO Server Software: Any OS (Linux, Unix, Windows, AS/400, Mainframe, etc.) that can communicate via HTTP. Communication protocols: XML over HTTP/HTTPS, XML HTTP Form POST (HTTP POST), Windows COM/DCOM, WS-I, WS-*, WCF Web services. Client (End-User) System Requirements: Any device with a standard modern Web browser (Internet Explorer 6.0+, Opera 8+, Safari (ios, Mac, Windows), Firefox, Chrome, Blackberry 5+. Viewing signed Acrobat PDF documents requires Adobe Reader v6 or higher. Adobe Reader is not required for the signing process. Use of optional electronic signature pads is supported on Windows (XP, Vista, Windows 7/8) with Internet Explorer 6.0 or higher. Use of optional end-user digital certificates is supported for certificates and PKI software that interoperates with Microsoft CryptoAPI (requires Windows XP, 2003, Vista, 2008, 2008 R2, or Windows 7/8 with Internet Explorer 6.0 or higher). AlphaTrust Corporation Toll Free (US): 866.613.7446 option 1 Phone: +1.214.234.9200 option 1 Email: sales@alphatrust.com, Web: http://www.alphatrust.com PRONTO Enterprise Platform Product Overview (v4.9) November 2012 6