SlideShare a Scribd company logo
1 of 26
Download to read offline
New opportunities for
Trust Services in EU
Michał Tabor, CISSP
Expert of PIIT in the identification,
authentication and electronic signature
05.06.2014 © 2014, PIIT & TICons
1
05.06.2014 © 2014, PIIT & TICons
2
Electronic identification and trust services for
electronic transactions in the internal market
European Parliament legislative resolution of 3 April 2014 on the proposal for a
regulation of the European Parliament and of the Council on electronic
identification and trust services for electronic transactions in the internal market
(COM(2012)0238 – C7-0133/2012 – 2012/0146(COD))
eIDAS means
05.06.2014 © 2014, PIIT & TICons
3
electronic
identification
electronic
signature
electronic seal
trust service
electronic time
stamp
electronic
registered delivery
service
qualified
certificate for
website
authentication
eIDAS Services
05.06.2014 © 2014, PIIT & TICons
4
electronic identification
electronic signature
•Creation
•Verification
•Validation
•Certificate services
electronic seal
•Creation
•Verification
•Validation
•Certificate services
trust service
electronic time stamp
•Creation
•Verification
•Validation
•Certificate services
electronic registered
delivery service
qualified certificate for
website authentication
•Creation
•Verification
•Validation
Trust Service definition
(16) 'trust service' means an electronic service normally
provided for remuneration which consists in:
a) the creation, verification, and validation of electronic
signatures, electronic seals or electronic time stamps,
electronic registered delivery services and certificates related
to these services or
b) the creation, verification and validation of certificates for
website authentication or
c) the preservation of electronic signatures, seals or certificates
related to these services;'
05.06.2014 © 2014, PIIT & TICons
5
#eIDAS Trust Service
Trust
Service
creation
certification
verification validation
preservation
delivery
05.06.2014 © 2014, PIIT & TICons
6
provided for
remuneration
Defining trust services
• (25) Member States should remain free
to define other types of trust services
in addition to those making part of the
closed list of trust services provided for
in this Regulation, for the purpose of
recognition at national level as
qualified trust services
05.06.2014 © 2014, PIIT & TICons
7
#eIDAS Trust Service
Trust
Service
creation
certification
verification
validation
preservation
delivery
combination
of trust
servies
05.06.2014 © 2014, PIIT & TICons
8
provided for
remuneration
Business process
Securing transactions
Employee - consultant
Employer
Need of
contract
Trustworthy
contractTrust Service
Cloud of Trust
Evidence
Risk mitigation
User
Commitment
Verification
Authorization
Confirmation
User
Authentication
eSignature
Trust
Security
Workflows
User needs
Cloud of Trust
Evidence
Risk mitigation
User
Commitment
Verification
Authorization
Confirmation
User
Authentication
eSignature
Trust
Security
Workflows
User needs
TRUST
SERVICE
WORKFLOW
SIGNATURE
SERVICE
TRUSTED
REPOSITORY
CONTROLS
SERVICE
ATTRIBUTE
SERVICES
CERTIFICATE
AUTHORITY
Trust service
05.06.2014 © 2014, PIIT & TICons
12
WORKFLOW
creation
certification
verification
validation
preservation
delivery
Identification
Authentication
Authorization
Atributes
Information
PROOF OF
TRUST
SEAL
05.06.2014 © 2014, PIIT & TICons
13
certification
verification
validation
preservation
delivery
EVIDENCE
EVIDENCE
EVIDENCE
EVIDENCE
EVIDENCE
EVIDENCE
EVIDENCE
WORKFLOW
creation
Trust serviceEvidence gathering
TRUST SERVICES
05.06.2014 © 2014, PIIT & TICons
14
Trust Service (Example 1)
05.06.2014 © 2014, PIIT & TICons
15
Identification
Authentication
Authorization
Attributes
Information
DOCUMENT
Sign
Signature on demand
Identification
Authentication
Attributes
• Time
• External confirmations
Signed document
05.06.2014 © 2014, PIIT & TICons
16
Bank
account
Cell
phone
Corporate
systems
Insurance …
WORKFLOW
creation
certification
verification
validation
preservation
delivery
Trust Service (Example 2)
05.06.2014 © 2014, PIIT & TICons
17
Signature
Signature
Time
Confirmation
DOCUMENT
Sign
SYNCRONIZED
DOCUMENT DELIVERY
EVIDENCE
of
synchronization
SEAL
Synchronised signature
Document Synchronization Dissemination
05.06.2014 © 2014, PIIT & TICons
18
Signatory A
Signatory B
WORKFLOW
creation
certification
verification
validation
preservation
delivery
Trust Service (Example 3)
05.06.2014 © 2014, PIIT & TICons
19
Signature
Signature
Time
Authorization
DOCUMENT
Sign
Contract versions
exchange
EVIDENCE
SEAL
Business contracts trust service
05.06.2014 © 2014, PIIT & TICons
20
DOCUMENT
Sign
Final
contract
version
EVIDENCE
SEAL
Contract
version…
Contract
version…
Contract
version…
Contract
version…
WORKFLOW
creation
certification
verification
validation
preservation
delivery
Trust Service (Example 4)
05.06.2014 © 2014, PIIT & TICons
21
Signature
Document
Time
Identification
DOCUMENT
Sign
VISUALIZA
TION
SEAL
Smart Paper
05.06.2014 © 2014, PIIT & TICons
22
DOCUMENT
Sign
VISUALIZA
TION
SEAL
WORKFLOW
creation
certification
verification
validation
preservation
delivery
REPOSITORY
Preservation
Delivery
Trust Service (Example 5)
05.06.2014 © 2014, PIIT & TICons
23
Time
Trust coffee
05.06.2014 © 2014, PIIT & TICons
24
Trust coffee
05.06.2014 © 2014, PIIT & TICons
25
Trust Services
Time and money saving services
- Transactions services
26
Q&A
Michał Tabor
Trusted Information Consulting Ltd.
michal.tabor@ticons.pl
www.ticons.pl
Twitter: @michal_tabor
05.06.2014 © 2014, PIIT & TICons
Trusted Information Consulting Ltd. is the
member of Polish Chamber of Information
Technology and Telecommunications

More Related Content

Recently uploaded

Event-Driven Architecture Masterclass: Engineering a Robust, High-performance...
Event-Driven Architecture Masterclass: Engineering a Robust, High-performance...Event-Driven Architecture Masterclass: Engineering a Robust, High-performance...
Event-Driven Architecture Masterclass: Engineering a Robust, High-performance...ScyllaDB
 
ERP Contender Series: Acumatica vs. Sage Intacct
ERP Contender Series: Acumatica vs. Sage IntacctERP Contender Series: Acumatica vs. Sage Intacct
ERP Contender Series: Acumatica vs. Sage IntacctBrainSell Technologies
 
Extensible Python: Robustness through Addition - PyCon 2024
Extensible Python: Robustness through Addition - PyCon 2024Extensible Python: Robustness through Addition - PyCon 2024
Extensible Python: Robustness through Addition - PyCon 2024Patrick Viafore
 
Human Expert Website Manual WCAG 2.0 2.1 2.2 Audit - Digital Accessibility Au...
Human Expert Website Manual WCAG 2.0 2.1 2.2 Audit - Digital Accessibility Au...Human Expert Website Manual WCAG 2.0 2.1 2.2 Audit - Digital Accessibility Au...
Human Expert Website Manual WCAG 2.0 2.1 2.2 Audit - Digital Accessibility Au...Skynet Technologies
 
Simplified FDO Manufacturing Flow with TPMs _ Liam at Infineon.pdf
Simplified FDO Manufacturing Flow with TPMs _ Liam at Infineon.pdfSimplified FDO Manufacturing Flow with TPMs _ Liam at Infineon.pdf
Simplified FDO Manufacturing Flow with TPMs _ Liam at Infineon.pdfFIDO Alliance
 
The Metaverse: Are We There Yet?
The  Metaverse:    Are   We  There  Yet?The  Metaverse:    Are   We  There  Yet?
The Metaverse: Are We There Yet?Mark Billinghurst
 
Tales from a Passkey Provider Progress from Awareness to Implementation.pptx
Tales from a Passkey Provider  Progress from Awareness to Implementation.pptxTales from a Passkey Provider  Progress from Awareness to Implementation.pptx
Tales from a Passkey Provider Progress from Awareness to Implementation.pptxFIDO Alliance
 
Structuring Teams and Portfolios for Success
Structuring Teams and Portfolios for SuccessStructuring Teams and Portfolios for Success
Structuring Teams and Portfolios for SuccessUXDXConf
 
WebRTC and SIP not just audio and video @ OpenSIPS 2024
WebRTC and SIP not just audio and video @ OpenSIPS 2024WebRTC and SIP not just audio and video @ OpenSIPS 2024
WebRTC and SIP not just audio and video @ OpenSIPS 2024Lorenzo Miniero
 
ADP Passwordless Journey Case Study.pptx
ADP Passwordless Journey Case Study.pptxADP Passwordless Journey Case Study.pptx
ADP Passwordless Journey Case Study.pptxFIDO Alliance
 
Working together SRE & Platform Engineering
Working together SRE & Platform EngineeringWorking together SRE & Platform Engineering
Working together SRE & Platform EngineeringMarcus Vechiato
 
Where to Learn More About FDO _ Richard at FIDO Alliance.pdf
Where to Learn More About FDO _ Richard at FIDO Alliance.pdfWhere to Learn More About FDO _ Richard at FIDO Alliance.pdf
Where to Learn More About FDO _ Richard at FIDO Alliance.pdfFIDO Alliance
 
1111 ChatGPT Prompts PDF Free Download - Prompts for ChatGPT
1111 ChatGPT Prompts PDF Free Download - Prompts for ChatGPT1111 ChatGPT Prompts PDF Free Download - Prompts for ChatGPT
1111 ChatGPT Prompts PDF Free Download - Prompts for ChatGPTiSEO AI
 
How Red Hat Uses FDO in Device Lifecycle _ Costin and Vitaliy at Red Hat.pdf
How Red Hat Uses FDO in Device Lifecycle _ Costin and Vitaliy at Red Hat.pdfHow Red Hat Uses FDO in Device Lifecycle _ Costin and Vitaliy at Red Hat.pdf
How Red Hat Uses FDO in Device Lifecycle _ Costin and Vitaliy at Red Hat.pdfFIDO Alliance
 
How we scaled to 80K users by doing nothing!.pdf
How we scaled to 80K users by doing nothing!.pdfHow we scaled to 80K users by doing nothing!.pdf
How we scaled to 80K users by doing nothing!.pdfSrushith Repakula
 
Linux Foundation Edge _ Overview of FDO Software Components _ Randy at Intel.pdf
Linux Foundation Edge _ Overview of FDO Software Components _ Randy at Intel.pdfLinux Foundation Edge _ Overview of FDO Software Components _ Randy at Intel.pdf
Linux Foundation Edge _ Overview of FDO Software Components _ Randy at Intel.pdfFIDO Alliance
 
Intro to Passkeys and the State of Passwordless.pptx
Intro to Passkeys and the State of Passwordless.pptxIntro to Passkeys and the State of Passwordless.pptx
Intro to Passkeys and the State of Passwordless.pptxFIDO Alliance
 
State of the Smart Building Startup Landscape 2024!
State of the Smart Building Startup Landscape 2024!State of the Smart Building Startup Landscape 2024!
State of the Smart Building Startup Landscape 2024!Memoori
 
(Explainable) Data-Centric AI: what are you explaininhg, and to whom?
(Explainable) Data-Centric AI: what are you explaininhg, and to whom?(Explainable) Data-Centric AI: what are you explaininhg, and to whom?
(Explainable) Data-Centric AI: what are you explaininhg, and to whom?Paolo Missier
 
Google I/O Extended 2024 Warsaw
Google I/O Extended 2024 WarsawGoogle I/O Extended 2024 Warsaw
Google I/O Extended 2024 WarsawGDSC PJATK
 

Recently uploaded (20)

Event-Driven Architecture Masterclass: Engineering a Robust, High-performance...
Event-Driven Architecture Masterclass: Engineering a Robust, High-performance...Event-Driven Architecture Masterclass: Engineering a Robust, High-performance...
Event-Driven Architecture Masterclass: Engineering a Robust, High-performance...
 
ERP Contender Series: Acumatica vs. Sage Intacct
ERP Contender Series: Acumatica vs. Sage IntacctERP Contender Series: Acumatica vs. Sage Intacct
ERP Contender Series: Acumatica vs. Sage Intacct
 
Extensible Python: Robustness through Addition - PyCon 2024
Extensible Python: Robustness through Addition - PyCon 2024Extensible Python: Robustness through Addition - PyCon 2024
Extensible Python: Robustness through Addition - PyCon 2024
 
Human Expert Website Manual WCAG 2.0 2.1 2.2 Audit - Digital Accessibility Au...
Human Expert Website Manual WCAG 2.0 2.1 2.2 Audit - Digital Accessibility Au...Human Expert Website Manual WCAG 2.0 2.1 2.2 Audit - Digital Accessibility Au...
Human Expert Website Manual WCAG 2.0 2.1 2.2 Audit - Digital Accessibility Au...
 
Simplified FDO Manufacturing Flow with TPMs _ Liam at Infineon.pdf
Simplified FDO Manufacturing Flow with TPMs _ Liam at Infineon.pdfSimplified FDO Manufacturing Flow with TPMs _ Liam at Infineon.pdf
Simplified FDO Manufacturing Flow with TPMs _ Liam at Infineon.pdf
 
The Metaverse: Are We There Yet?
The  Metaverse:    Are   We  There  Yet?The  Metaverse:    Are   We  There  Yet?
The Metaverse: Are We There Yet?
 
Tales from a Passkey Provider Progress from Awareness to Implementation.pptx
Tales from a Passkey Provider  Progress from Awareness to Implementation.pptxTales from a Passkey Provider  Progress from Awareness to Implementation.pptx
Tales from a Passkey Provider Progress from Awareness to Implementation.pptx
 
Structuring Teams and Portfolios for Success
Structuring Teams and Portfolios for SuccessStructuring Teams and Portfolios for Success
Structuring Teams and Portfolios for Success
 
WebRTC and SIP not just audio and video @ OpenSIPS 2024
WebRTC and SIP not just audio and video @ OpenSIPS 2024WebRTC and SIP not just audio and video @ OpenSIPS 2024
WebRTC and SIP not just audio and video @ OpenSIPS 2024
 
ADP Passwordless Journey Case Study.pptx
ADP Passwordless Journey Case Study.pptxADP Passwordless Journey Case Study.pptx
ADP Passwordless Journey Case Study.pptx
 
Working together SRE & Platform Engineering
Working together SRE & Platform EngineeringWorking together SRE & Platform Engineering
Working together SRE & Platform Engineering
 
Where to Learn More About FDO _ Richard at FIDO Alliance.pdf
Where to Learn More About FDO _ Richard at FIDO Alliance.pdfWhere to Learn More About FDO _ Richard at FIDO Alliance.pdf
Where to Learn More About FDO _ Richard at FIDO Alliance.pdf
 
1111 ChatGPT Prompts PDF Free Download - Prompts for ChatGPT
1111 ChatGPT Prompts PDF Free Download - Prompts for ChatGPT1111 ChatGPT Prompts PDF Free Download - Prompts for ChatGPT
1111 ChatGPT Prompts PDF Free Download - Prompts for ChatGPT
 
How Red Hat Uses FDO in Device Lifecycle _ Costin and Vitaliy at Red Hat.pdf
How Red Hat Uses FDO in Device Lifecycle _ Costin and Vitaliy at Red Hat.pdfHow Red Hat Uses FDO in Device Lifecycle _ Costin and Vitaliy at Red Hat.pdf
How Red Hat Uses FDO in Device Lifecycle _ Costin and Vitaliy at Red Hat.pdf
 
How we scaled to 80K users by doing nothing!.pdf
How we scaled to 80K users by doing nothing!.pdfHow we scaled to 80K users by doing nothing!.pdf
How we scaled to 80K users by doing nothing!.pdf
 
Linux Foundation Edge _ Overview of FDO Software Components _ Randy at Intel.pdf
Linux Foundation Edge _ Overview of FDO Software Components _ Randy at Intel.pdfLinux Foundation Edge _ Overview of FDO Software Components _ Randy at Intel.pdf
Linux Foundation Edge _ Overview of FDO Software Components _ Randy at Intel.pdf
 
Intro to Passkeys and the State of Passwordless.pptx
Intro to Passkeys and the State of Passwordless.pptxIntro to Passkeys and the State of Passwordless.pptx
Intro to Passkeys and the State of Passwordless.pptx
 
State of the Smart Building Startup Landscape 2024!
State of the Smart Building Startup Landscape 2024!State of the Smart Building Startup Landscape 2024!
State of the Smart Building Startup Landscape 2024!
 
(Explainable) Data-Centric AI: what are you explaininhg, and to whom?
(Explainable) Data-Centric AI: what are you explaininhg, and to whom?(Explainable) Data-Centric AI: what are you explaininhg, and to whom?
(Explainable) Data-Centric AI: what are you explaininhg, and to whom?
 
Google I/O Extended 2024 Warsaw
Google I/O Extended 2024 WarsawGoogle I/O Extended 2024 Warsaw
Google I/O Extended 2024 Warsaw
 

Featured

2024 State of Marketing Report – by Hubspot
2024 State of Marketing Report – by Hubspot2024 State of Marketing Report – by Hubspot
2024 State of Marketing Report – by HubspotMarius Sescu
 
Everything You Need To Know About ChatGPT
Everything You Need To Know About ChatGPTEverything You Need To Know About ChatGPT
Everything You Need To Know About ChatGPTExpeed Software
 
Product Design Trends in 2024 | Teenage Engineerings
Product Design Trends in 2024 | Teenage EngineeringsProduct Design Trends in 2024 | Teenage Engineerings
Product Design Trends in 2024 | Teenage EngineeringsPixeldarts
 
How Race, Age and Gender Shape Attitudes Towards Mental Health
How Race, Age and Gender Shape Attitudes Towards Mental HealthHow Race, Age and Gender Shape Attitudes Towards Mental Health
How Race, Age and Gender Shape Attitudes Towards Mental HealthThinkNow
 
AI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdfAI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdfmarketingartwork
 
PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024Neil Kimberley
 
Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)contently
 
How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024Albert Qian
 
Social Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsSocial Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsKurio // The Social Media Age(ncy)
 
Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024Search Engine Journal
 
5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summarySpeakerHub
 
ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd Clark Boyd
 
Getting into the tech field. what next
Getting into the tech field. what next Getting into the tech field. what next
Getting into the tech field. what next Tessa Mero
 
Google's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search IntentGoogle's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search IntentLily Ray
 
Time Management & Productivity - Best Practices
Time Management & Productivity -  Best PracticesTime Management & Productivity -  Best Practices
Time Management & Productivity - Best PracticesVit Horky
 
The six step guide to practical project management
The six step guide to practical project managementThe six step guide to practical project management
The six step guide to practical project managementMindGenius
 
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...RachelPearson36
 

Featured (20)

2024 State of Marketing Report – by Hubspot
2024 State of Marketing Report – by Hubspot2024 State of Marketing Report – by Hubspot
2024 State of Marketing Report – by Hubspot
 
Everything You Need To Know About ChatGPT
Everything You Need To Know About ChatGPTEverything You Need To Know About ChatGPT
Everything You Need To Know About ChatGPT
 
Product Design Trends in 2024 | Teenage Engineerings
Product Design Trends in 2024 | Teenage EngineeringsProduct Design Trends in 2024 | Teenage Engineerings
Product Design Trends in 2024 | Teenage Engineerings
 
How Race, Age and Gender Shape Attitudes Towards Mental Health
How Race, Age and Gender Shape Attitudes Towards Mental HealthHow Race, Age and Gender Shape Attitudes Towards Mental Health
How Race, Age and Gender Shape Attitudes Towards Mental Health
 
AI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdfAI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdf
 
Skeleton Culture Code
Skeleton Culture CodeSkeleton Culture Code
Skeleton Culture Code
 
PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024
 
Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)
 
How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024
 
Social Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsSocial Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie Insights
 
Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024
 
5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary
 
ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd
 
Getting into the tech field. what next
Getting into the tech field. what next Getting into the tech field. what next
Getting into the tech field. what next
 
Google's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search IntentGoogle's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search Intent
 
How to have difficult conversations
How to have difficult conversations How to have difficult conversations
How to have difficult conversations
 
Introduction to Data Science
Introduction to Data ScienceIntroduction to Data Science
Introduction to Data Science
 
Time Management & Productivity - Best Practices
Time Management & Productivity -  Best PracticesTime Management & Productivity -  Best Practices
Time Management & Productivity - Best Practices
 
The six step guide to practical project management
The six step guide to practical project managementThe six step guide to practical project management
The six step guide to practical project management
 
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
 

New opportunities for Trust Services in EU #eIDAS

  • 1. New opportunities for Trust Services in EU Michał Tabor, CISSP Expert of PIIT in the identification, authentication and electronic signature 05.06.2014 © 2014, PIIT & TICons 1
  • 2. 05.06.2014 © 2014, PIIT & TICons 2 Electronic identification and trust services for electronic transactions in the internal market European Parliament legislative resolution of 3 April 2014 on the proposal for a regulation of the European Parliament and of the Council on electronic identification and trust services for electronic transactions in the internal market (COM(2012)0238 – C7-0133/2012 – 2012/0146(COD))
  • 3. eIDAS means 05.06.2014 © 2014, PIIT & TICons 3 electronic identification electronic signature electronic seal trust service electronic time stamp electronic registered delivery service qualified certificate for website authentication
  • 4. eIDAS Services 05.06.2014 © 2014, PIIT & TICons 4 electronic identification electronic signature •Creation •Verification •Validation •Certificate services electronic seal •Creation •Verification •Validation •Certificate services trust service electronic time stamp •Creation •Verification •Validation •Certificate services electronic registered delivery service qualified certificate for website authentication •Creation •Verification •Validation
  • 5. Trust Service definition (16) 'trust service' means an electronic service normally provided for remuneration which consists in: a) the creation, verification, and validation of electronic signatures, electronic seals or electronic time stamps, electronic registered delivery services and certificates related to these services or b) the creation, verification and validation of certificates for website authentication or c) the preservation of electronic signatures, seals or certificates related to these services;' 05.06.2014 © 2014, PIIT & TICons 5
  • 6. #eIDAS Trust Service Trust Service creation certification verification validation preservation delivery 05.06.2014 © 2014, PIIT & TICons 6 provided for remuneration
  • 7. Defining trust services • (25) Member States should remain free to define other types of trust services in addition to those making part of the closed list of trust services provided for in this Regulation, for the purpose of recognition at national level as qualified trust services 05.06.2014 © 2014, PIIT & TICons 7
  • 9. Business process Securing transactions Employee - consultant Employer Need of contract Trustworthy contractTrust Service
  • 10. Cloud of Trust Evidence Risk mitigation User Commitment Verification Authorization Confirmation User Authentication eSignature Trust Security Workflows User needs
  • 11. Cloud of Trust Evidence Risk mitigation User Commitment Verification Authorization Confirmation User Authentication eSignature Trust Security Workflows User needs TRUST SERVICE WORKFLOW SIGNATURE SERVICE TRUSTED REPOSITORY CONTROLS SERVICE ATTRIBUTE SERVICES CERTIFICATE AUTHORITY
  • 12. Trust service 05.06.2014 © 2014, PIIT & TICons 12 WORKFLOW creation certification verification validation preservation delivery Identification Authentication Authorization Atributes Information PROOF OF TRUST SEAL
  • 13. 05.06.2014 © 2014, PIIT & TICons 13 certification verification validation preservation delivery EVIDENCE EVIDENCE EVIDENCE EVIDENCE EVIDENCE EVIDENCE EVIDENCE WORKFLOW creation Trust serviceEvidence gathering
  • 14. TRUST SERVICES 05.06.2014 © 2014, PIIT & TICons 14
  • 15. Trust Service (Example 1) 05.06.2014 © 2014, PIIT & TICons 15 Identification Authentication Authorization Attributes Information DOCUMENT Sign
  • 16. Signature on demand Identification Authentication Attributes • Time • External confirmations Signed document 05.06.2014 © 2014, PIIT & TICons 16 Bank account Cell phone Corporate systems Insurance … WORKFLOW creation certification verification validation preservation delivery
  • 17. Trust Service (Example 2) 05.06.2014 © 2014, PIIT & TICons 17 Signature Signature Time Confirmation DOCUMENT Sign SYNCRONIZED DOCUMENT DELIVERY EVIDENCE of synchronization SEAL
  • 18. Synchronised signature Document Synchronization Dissemination 05.06.2014 © 2014, PIIT & TICons 18 Signatory A Signatory B WORKFLOW creation certification verification validation preservation delivery
  • 19. Trust Service (Example 3) 05.06.2014 © 2014, PIIT & TICons 19 Signature Signature Time Authorization DOCUMENT Sign Contract versions exchange EVIDENCE SEAL
  • 20. Business contracts trust service 05.06.2014 © 2014, PIIT & TICons 20 DOCUMENT Sign Final contract version EVIDENCE SEAL Contract version… Contract version… Contract version… Contract version… WORKFLOW creation certification verification validation preservation delivery
  • 21. Trust Service (Example 4) 05.06.2014 © 2014, PIIT & TICons 21 Signature Document Time Identification DOCUMENT Sign VISUALIZA TION SEAL
  • 22. Smart Paper 05.06.2014 © 2014, PIIT & TICons 22 DOCUMENT Sign VISUALIZA TION SEAL WORKFLOW creation certification verification validation preservation delivery REPOSITORY Preservation Delivery
  • 23. Trust Service (Example 5) 05.06.2014 © 2014, PIIT & TICons 23 Time
  • 24. Trust coffee 05.06.2014 © 2014, PIIT & TICons 24
  • 25. Trust coffee 05.06.2014 © 2014, PIIT & TICons 25 Trust Services Time and money saving services - Transactions services
  • 26. 26 Q&A Michał Tabor Trusted Information Consulting Ltd. michal.tabor@ticons.pl www.ticons.pl Twitter: @michal_tabor 05.06.2014 © 2014, PIIT & TICons Trusted Information Consulting Ltd. is the member of Polish Chamber of Information Technology and Telecommunications