SlideShare ist ein Scribd-Unternehmen logo
1 von 25
Downloaden Sie, um offline zu lesen
Bernried, September 2018
Kurt Schmid, Managing Director Digital Payments
A small step for a programmer, a big step for payments
Merchant Tokenization & Secure
Remote Commerce
Questions
Who likes to enter PANs again and again
for every new merchant?
Who is worried of fraud on his/her
card?
Who knows all the places where your
card data is stored?
Why is Amazon so powerful?
2
Tokenization
3
When the PAN and other card data is known fraud
can be made with little efforts
The PAN and other card data therefore is in PCI-
Scope
The weakest link makes the level of security
Why Tokenization? What is the problem?
Securing the Card Number (PAN)
Key and surrounding roles
5
Token
Requestor
Token
Service
Provider
Card Issuer
Merchant
End User
PSPScheme
Acquirer
NSP
IoT
Device Wallet
(X Pay)
TR TSP
Issuer
TSP
Card Issuer
Token
Service
Provider
Token
Requestor
Main Use Case: Digitize (Tokenize) Card
6
Yellow case
Step up auth.
Main Use Case: Secure variant of Digitize
7
Token
Requestor
Token
Service
Provider
Card Issuer
authenticates
Encrypted PAN
Green case
Scaling Up Tokenization (1)
8
Token
Requestor
Token
Service
Provider
Card Issuer
Scaling Up Tokenization (2)
9
Token
Requestor
Token Service Provider Card Issuer
MDES, VTS, AETS
Scaling Up Tokenization (3)
10
Token
Requestor
Token
Service
Provider
Card Issuer
Aggregators
Token
Requestor
TSP
Card Issuer
TSP
Know Usage for Mobile Contactless Payment
11
Enabling an App to perform mobile contactless
payment at the POS
Request Tokens via MDES, VTS etc. for Cloud
Based Payments
NFC Interface to Terminals nbased on Host Card
Emulation (HCE)
Replenishment of short living card keys to
increase security (“SUK”, “LUK” instead of CMKs)
MyBankApp
Accounts 6,750.00
Recent Transactions
Ready to Pay
Tokenization in use for Mobile Contactless Payments
12
Token
Requestor
(CMS-D,
MAP)
Scheme
Token
Service
(MDES
VTS
AETS)
Card Issuer
authenticates
Encrypted PAN
PSP,
Acquirer
Network
AuthDeTok.
E-Commerce Payment
13
Enabling an e-Commerce
application for Payments
Card Not Present and 3DS
today’s prevailing
methods for checkout
Concerns in eComm Payments
14
Risk/Fraud through
different attacks
Low Conversion rates
on mobile channels
Abandonning the
checkout process
Higher costs for CNP
versus CP
Merchant concerns Issuer concerns
Risk/Fraud through
different attacks
Cost of customer care
Lost transactional
Revenue
Consumer concerns
Ease of onboarding
Convience at shopping
Why not use Tokenization in e-Commerce?
Each merchant does not store the PAN but a
token
Security will be Card Present like by using a
cryptogram
15
The basic Ideas:
Mastercard started M4M (MDES for
Merchants)
VISA speaking about Tokenizazion in
eCommerce and Card of File (COF)
Tokenization in use for e-Commerce Payments
16
Token
Requestor
(CMS-D,
MAP)
Scheme
Token
Service
(MDES
VTS
AETS)
Card Issuer
PSP,
Acquirer
Network
AuthDeTok.
COF
PAN Entry
Use Cases
Enroll: Add card manually or tokenize from card of file
Display cards: Card art coming from token service (User
sees his real card image)
Transact: Generate EMV cryptogram (can be used for one
or more transactions)
Lifecycle: Issuer Account Update
Secure Remote Commerce
18
SRC
Rocket still to be loaded
Secure Remote Commerce Framework (“SRC”)
Defined by EMVCo ( /)
Scheme agnostic to help interoperability
Pay securely by credit card” button in checkout
Will be scheme neutral successor of MasterPass & Visa Checkout starting 2019 / 2020
Will support card tokenization using MDES and VTS
Will support card present type security (“cryptograms”)
Demonstrator available from Netcetera, Training courses will be available
Roles used in SRC
20
Token
Requestor
Token
Service
Provider
(Scheme)
Card Issuer
Supporting
SRC
SRC System
Digital Card
Facilitator
Digital
Shopping
Application
(aka
Merchant)
PSP
SRC
Inititator
SRC Flow once device is registered / returned user
Versus first time flow
Benefits
Seamless experience – Starts with card entry
like user is used to do
No onboarding required – but device /
merchant pairing possible from issuer app
Works with all schemes in the same way
Tokenization and EMV-like security will
prevent fraud and lower the costs
As Issuer
As Merchant
As PSP
As Acquirer
How to approach this?
Ask for a training
on SRC done by
our expert
Thomas Fromherz
Europaplatz4
4020Linz
Austria
info@netcetera.com
+43664 11211 00
Kurt Schmid
Managing Director Digital Payment
Kurt.Schmid@netcetera.com

Weitere ähnliche Inhalte

Was ist angesagt?

Boost your approved transaction volume - Ana Vuksanovikj Vaneska, Netcetera
Boost your approved transaction volume - Ana Vuksanovikj Vaneska, NetceteraBoost your approved transaction volume - Ana Vuksanovikj Vaneska, Netcetera
Boost your approved transaction volume - Ana Vuksanovikj Vaneska, NetceteraNetcetera
 
3-D Secure 2.0 - Stephan Rüdisüli, Netcetera & Patrick Juffern, INFORM
3-D Secure 2.0 - Stephan Rüdisüli, Netcetera & Patrick Juffern, INFORM3-D Secure 2.0 - Stephan Rüdisüli, Netcetera & Patrick Juffern, INFORM
3-D Secure 2.0 - Stephan Rüdisüli, Netcetera & Patrick Juffern, INFORMNetcetera
 
Seamless 3-D Secure e-commerce experience
Seamless 3-D Secure e-commerce experienceSeamless 3-D Secure e-commerce experience
Seamless 3-D Secure e-commerce experienceNetcetera
 
3-D Secure 2.0
3-D Secure 2.03-D Secure 2.0
3-D Secure 2.0Netcetera
 
Payer Authentication Solutions For Verified by VISA
Payer Authentication Solutions For Verified by VISAPayer Authentication Solutions For Verified by VISA
Payer Authentication Solutions For Verified by VISAFirst Atlantic Commerce
 
3-D Secure and MPI Integrations
3-D Secure and MPI Integrations3-D Secure and MPI Integrations
3-D Secure and MPI IntegrationsUnitedThinkers
 
What's 3D costing your business?
What's 3D costing your business?What's 3D costing your business?
What's 3D costing your business?Adigital
 
3D-Secure 2.2 Webinar
3D-Secure 2.2 Webinar3D-Secure 2.2 Webinar
3D-Secure 2.2 WebinarIvona M
 
A Complete Model of the Payment Service Business
A Complete Model of the Payment Service BusinessA Complete Model of the Payment Service Business
A Complete Model of the Payment Service BusinessFrank Steeneken
 
Visa master card contactless payment in china_v1
Visa master card contactless payment in china_v1Visa master card contactless payment in china_v1
Visa master card contactless payment in china_v1Kelvin Tai
 
Online payment gateway provider
Online payment gateway providerOnline payment gateway provider
Online payment gateway providerPayment Gateways
 
Hacking Point of Sale
Hacking Point of SaleHacking Point of Sale
Hacking Point of SaleTripwire
 
Peter Afanasiev - Architecture of online Payments
Peter Afanasiev - Architecture of online PaymentsPeter Afanasiev - Architecture of online Payments
Peter Afanasiev - Architecture of online PaymentsCiklum Ukraine
 
Payment gateway/payment service providers and future trends in mobile payment...
Payment gateway/payment service providers and future trends in mobile payment...Payment gateway/payment service providers and future trends in mobile payment...
Payment gateway/payment service providers and future trends in mobile payment...Danail Yotov
 

Was ist angesagt? (20)

Boost your approved transaction volume - Ana Vuksanovikj Vaneska, Netcetera
Boost your approved transaction volume - Ana Vuksanovikj Vaneska, NetceteraBoost your approved transaction volume - Ana Vuksanovikj Vaneska, Netcetera
Boost your approved transaction volume - Ana Vuksanovikj Vaneska, Netcetera
 
3-D Secure 2.0 - Stephan Rüdisüli, Netcetera & Patrick Juffern, INFORM
3-D Secure 2.0 - Stephan Rüdisüli, Netcetera & Patrick Juffern, INFORM3-D Secure 2.0 - Stephan Rüdisüli, Netcetera & Patrick Juffern, INFORM
3-D Secure 2.0 - Stephan Rüdisüli, Netcetera & Patrick Juffern, INFORM
 
Seamless 3-D Secure e-commerce experience
Seamless 3-D Secure e-commerce experienceSeamless 3-D Secure e-commerce experience
Seamless 3-D Secure e-commerce experience
 
3-D Secure 2.0
3-D Secure 2.03-D Secure 2.0
3-D Secure 2.0
 
Payer Authentication Solutions For Verified by VISA
Payer Authentication Solutions For Verified by VISAPayer Authentication Solutions For Verified by VISA
Payer Authentication Solutions For Verified by VISA
 
3-D Secure and MPI Integrations
3-D Secure and MPI Integrations3-D Secure and MPI Integrations
3-D Secure and MPI Integrations
 
What's 3D costing your business?
What's 3D costing your business?What's 3D costing your business?
What's 3D costing your business?
 
Payment Gateway
Payment GatewayPayment Gateway
Payment Gateway
 
3D-Secure 2.2 Webinar
3D-Secure 2.2 Webinar3D-Secure 2.2 Webinar
3D-Secure 2.2 Webinar
 
Payment Gateway
Payment GatewayPayment Gateway
Payment Gateway
 
Seamless payment integration with shopify (1)
Seamless payment integration with shopify (1)Seamless payment integration with shopify (1)
Seamless payment integration with shopify (1)
 
A Complete Model of the Payment Service Business
A Complete Model of the Payment Service BusinessA Complete Model of the Payment Service Business
A Complete Model of the Payment Service Business
 
Visa master card contactless payment in china_v1
Visa master card contactless payment in china_v1Visa master card contactless payment in china_v1
Visa master card contactless payment in china_v1
 
Online payment gateway provider
Online payment gateway providerOnline payment gateway provider
Online payment gateway provider
 
Powerful Reward Platform
Powerful Reward PlatformPowerful Reward Platform
Powerful Reward Platform
 
Loyalty
LoyaltyLoyalty
Loyalty
 
Hacking Point of Sale
Hacking Point of SaleHacking Point of Sale
Hacking Point of Sale
 
IBM Payments Gateway
IBM Payments GatewayIBM Payments Gateway
IBM Payments Gateway
 
Peter Afanasiev - Architecture of online Payments
Peter Afanasiev - Architecture of online PaymentsPeter Afanasiev - Architecture of online Payments
Peter Afanasiev - Architecture of online Payments
 
Payment gateway/payment service providers and future trends in mobile payment...
Payment gateway/payment service providers and future trends in mobile payment...Payment gateway/payment service providers and future trends in mobile payment...
Payment gateway/payment service providers and future trends in mobile payment...
 

Ähnlich wie Digital Payments - Netcetera Innovation Summit 2018

QSecure Presentation at RSA 2011
QSecure Presentation at RSA 2011QSecure Presentation at RSA 2011
QSecure Presentation at RSA 2011jhatch9418
 
The Path to Payment Security
The Path to Payment SecurityThe Path to Payment Security
The Path to Payment SecurityTom Cooley
 
Tokenization Payment Data Out Securing Payment Data Storage
Tokenization Payment Data Out Securing Payment Data StorageTokenization Payment Data Out Securing Payment Data Storage
Tokenization Payment Data Out Securing Payment Data Storage- Mark - Fullbright
 
Payment gateway testing
Payment gateway testingPayment gateway testing
Payment gateway testingAtul Pant
 
Electronic Payment System
Electronic Payment SystemElectronic Payment System
Electronic Payment SystemRitesh Goyal
 
Small_Merchant_Guide_to_Safe_Payments
Small_Merchant_Guide_to_Safe_PaymentsSmall_Merchant_Guide_to_Safe_Payments
Small_Merchant_Guide_to_Safe_PaymentsSteve Abrams
 
Electronic payment system
Electronic payment systemElectronic payment system
Electronic payment systempankhadi
 
Zuora luncheon final
Zuora luncheon finalZuora luncheon final
Zuora luncheon finalMatt McDowell
 
key-trends-in-merchant-security
key-trends-in-merchant-securitykey-trends-in-merchant-security
key-trends-in-merchant-securityKerri Lorch
 
End-to-End Encryption for Credit Card Processing
End-to-End Encryption for Credit Card ProcessingEnd-to-End Encryption for Credit Card Processing
End-to-End Encryption for Credit Card ProcessingLennon808
 
An ATM Multi-Protocol Emulation Network
An ATM Multi-Protocol Emulation NetworkAn ATM Multi-Protocol Emulation Network
An ATM Multi-Protocol Emulation Networkdbpublications
 
electronicpaymentsystem-12697023522629-phpapp01.pdf
electronicpaymentsystem-12697023522629-phpapp01.pdfelectronicpaymentsystem-12697023522629-phpapp01.pdf
electronicpaymentsystem-12697023522629-phpapp01.pdfUjwalReddyPB
 
Embedded System Security: Learning from Banking and Payment Industry
Embedded System Security: Learning from Banking and Payment IndustryEmbedded System Security: Learning from Banking and Payment Industry
Embedded System Security: Learning from Banking and Payment IndustryNarudom Roongsiriwong, CISSP
 
Transactions Using Bio-Metric Authentication
Transactions Using Bio-Metric AuthenticationTransactions Using Bio-Metric Authentication
Transactions Using Bio-Metric AuthenticationIRJET Journal
 

Ähnlich wie Digital Payments - Netcetera Innovation Summit 2018 (20)

QSecure Presentation at RSA 2011
QSecure Presentation at RSA 2011QSecure Presentation at RSA 2011
QSecure Presentation at RSA 2011
 
The Path to Payment Security
The Path to Payment SecurityThe Path to Payment Security
The Path to Payment Security
 
Pcitf iiw10
Pcitf   iiw10Pcitf   iiw10
Pcitf iiw10
 
Payment Tokenization
Payment TokenizationPayment Tokenization
Payment Tokenization
 
Tokenization Payment Data Out Securing Payment Data Storage
Tokenization Payment Data Out Securing Payment Data StorageTokenization Payment Data Out Securing Payment Data Storage
Tokenization Payment Data Out Securing Payment Data Storage
 
Payment gateway testing
Payment gateway testingPayment gateway testing
Payment gateway testing
 
Electronic Payment System
Electronic Payment SystemElectronic Payment System
Electronic Payment System
 
Small_Merchant_Guide_to_Safe_Payments
Small_Merchant_Guide_to_Safe_PaymentsSmall_Merchant_Guide_to_Safe_Payments
Small_Merchant_Guide_to_Safe_Payments
 
Electronic payment system
Electronic payment systemElectronic payment system
Electronic payment system
 
Zuora luncheon final
Zuora luncheon finalZuora luncheon final
Zuora luncheon final
 
key-trends-in-merchant-security
key-trends-in-merchant-securitykey-trends-in-merchant-security
key-trends-in-merchant-security
 
EMV Overview
EMV OverviewEMV Overview
EMV Overview
 
End-to-End Encryption for Credit Card Processing
End-to-End Encryption for Credit Card ProcessingEnd-to-End Encryption for Credit Card Processing
End-to-End Encryption for Credit Card Processing
 
An ATM Multi-Protocol Emulation Network
An ATM Multi-Protocol Emulation NetworkAn ATM Multi-Protocol Emulation Network
An ATM Multi-Protocol Emulation Network
 
Electronic payment by ahmad
Electronic payment by ahmadElectronic payment by ahmad
Electronic payment by ahmad
 
Ch 2
Ch 2Ch 2
Ch 2
 
electronicpaymentsystem-12697023522629-phpapp01.pdf
electronicpaymentsystem-12697023522629-phpapp01.pdfelectronicpaymentsystem-12697023522629-phpapp01.pdf
electronicpaymentsystem-12697023522629-phpapp01.pdf
 
Smart cards
Smart cardsSmart cards
Smart cards
 
Embedded System Security: Learning from Banking and Payment Industry
Embedded System Security: Learning from Banking and Payment IndustryEmbedded System Security: Learning from Banking and Payment Industry
Embedded System Security: Learning from Banking and Payment Industry
 
Transactions Using Bio-Metric Authentication
Transactions Using Bio-Metric AuthenticationTransactions Using Bio-Metric Authentication
Transactions Using Bio-Metric Authentication
 

Mehr von Netcetera

AI First. Erfolgsfaktoren für künstliche Intelligenz im Unternehmen
AI First. Erfolgsfaktoren für künstliche Intelligenz im UnternehmenAI First. Erfolgsfaktoren für künstliche Intelligenz im Unternehmen
AI First. Erfolgsfaktoren für künstliche Intelligenz im UnternehmenNetcetera
 
Augmenting Maintenance
Augmenting MaintenanceAugmenting Maintenance
Augmenting MaintenanceNetcetera
 
Front-end up front
Front-end up frontFront-end up front
Front-end up frontNetcetera
 
The future of Prototpying
The future of PrototpyingThe future of Prototpying
The future of PrototpyingNetcetera
 
Online shopping technology in the fast lane?
Online shopping technology in the fast lane?Online shopping technology in the fast lane?
Online shopping technology in the fast lane?Netcetera
 
Augmenting Health Care
Augmenting Health CareAugmenting Health Care
Augmenting Health CareNetcetera
 
Driving transactional growth with 3-D Secure
Driving transactional growth with 3-D SecureDriving transactional growth with 3-D Secure
Driving transactional growth with 3-D SecureNetcetera
 
EMV® Secure Remote Commerce
EMV® Secure Remote CommerceEMV® Secure Remote Commerce
EMV® Secure Remote CommerceNetcetera
 
Context: The missing ingredient in multilingual software translation
Context: The missing ingredient in multilingual software translationContext: The missing ingredient in multilingual software translation
Context: The missing ingredient in multilingual software translationNetcetera
 
"Whats up and new at Netcetera?" - Netcetera Innovation Summit 2018
"Whats up and new at Netcetera?" - Netcetera Innovation Summit 2018"Whats up and new at Netcetera?" - Netcetera Innovation Summit 2018
"Whats up and new at Netcetera?" - Netcetera Innovation Summit 2018Netcetera
 
Fintech Innovations - Netcetera Innovation Summit 2018
Fintech Innovations - Netcetera Innovation Summit 2018Fintech Innovations - Netcetera Innovation Summit 2018
Fintech Innovations - Netcetera Innovation Summit 2018Netcetera
 
RiSIC - Stop losing money. Today.
RiSIC - Stop losing money. Today. RiSIC - Stop losing money. Today.
RiSIC - Stop losing money. Today. Netcetera
 
HoloLens in der Neurochirurgie
HoloLens in der NeurochirurgieHoloLens in der Neurochirurgie
HoloLens in der NeurochirurgieNetcetera
 
DEVELOPING CONVERSATIONAL INTERFACES FOR IOS
DEVELOPING CONVERSATIONAL INTERFACES FOR IOSDEVELOPING CONVERSATIONAL INTERFACES FOR IOS
DEVELOPING CONVERSATIONAL INTERFACES FOR IOSNetcetera
 
BUILDING VOICE RESPONSIVE APPS ON IOS
BUILDING VOICE RESPONSIVE APPS ON IOSBUILDING VOICE RESPONSIVE APPS ON IOS
BUILDING VOICE RESPONSIVE APPS ON IOSNetcetera
 
UNDERSTANDING LANGUAGE ON IOS
UNDERSTANDING LANGUAGE ON IOSUNDERSTANDING LANGUAGE ON IOS
UNDERSTANDING LANGUAGE ON IOSNetcetera
 
Blockchain use cases in health and education
Blockchain use cases in health and educationBlockchain use cases in health and education
Blockchain use cases in health and educationNetcetera
 
Augmented Reality and Conversational Interfaces workshop
Augmented Reality and Conversational Interfaces workshopAugmented Reality and Conversational Interfaces workshop
Augmented Reality and Conversational Interfaces workshopNetcetera
 
Chances of open banking
Chances of open banking Chances of open banking
Chances of open banking Netcetera
 
New business cases needed because of new technologies arising
New business cases needed because of new technologies arisingNew business cases needed because of new technologies arising
New business cases needed because of new technologies arisingNetcetera
 

Mehr von Netcetera (20)

AI First. Erfolgsfaktoren für künstliche Intelligenz im Unternehmen
AI First. Erfolgsfaktoren für künstliche Intelligenz im UnternehmenAI First. Erfolgsfaktoren für künstliche Intelligenz im Unternehmen
AI First. Erfolgsfaktoren für künstliche Intelligenz im Unternehmen
 
Augmenting Maintenance
Augmenting MaintenanceAugmenting Maintenance
Augmenting Maintenance
 
Front-end up front
Front-end up frontFront-end up front
Front-end up front
 
The future of Prototpying
The future of PrototpyingThe future of Prototpying
The future of Prototpying
 
Online shopping technology in the fast lane?
Online shopping technology in the fast lane?Online shopping technology in the fast lane?
Online shopping technology in the fast lane?
 
Augmenting Health Care
Augmenting Health CareAugmenting Health Care
Augmenting Health Care
 
Driving transactional growth with 3-D Secure
Driving transactional growth with 3-D SecureDriving transactional growth with 3-D Secure
Driving transactional growth with 3-D Secure
 
EMV® Secure Remote Commerce
EMV® Secure Remote CommerceEMV® Secure Remote Commerce
EMV® Secure Remote Commerce
 
Context: The missing ingredient in multilingual software translation
Context: The missing ingredient in multilingual software translationContext: The missing ingredient in multilingual software translation
Context: The missing ingredient in multilingual software translation
 
"Whats up and new at Netcetera?" - Netcetera Innovation Summit 2018
"Whats up and new at Netcetera?" - Netcetera Innovation Summit 2018"Whats up and new at Netcetera?" - Netcetera Innovation Summit 2018
"Whats up and new at Netcetera?" - Netcetera Innovation Summit 2018
 
Fintech Innovations - Netcetera Innovation Summit 2018
Fintech Innovations - Netcetera Innovation Summit 2018Fintech Innovations - Netcetera Innovation Summit 2018
Fintech Innovations - Netcetera Innovation Summit 2018
 
RiSIC - Stop losing money. Today.
RiSIC - Stop losing money. Today. RiSIC - Stop losing money. Today.
RiSIC - Stop losing money. Today.
 
HoloLens in der Neurochirurgie
HoloLens in der NeurochirurgieHoloLens in der Neurochirurgie
HoloLens in der Neurochirurgie
 
DEVELOPING CONVERSATIONAL INTERFACES FOR IOS
DEVELOPING CONVERSATIONAL INTERFACES FOR IOSDEVELOPING CONVERSATIONAL INTERFACES FOR IOS
DEVELOPING CONVERSATIONAL INTERFACES FOR IOS
 
BUILDING VOICE RESPONSIVE APPS ON IOS
BUILDING VOICE RESPONSIVE APPS ON IOSBUILDING VOICE RESPONSIVE APPS ON IOS
BUILDING VOICE RESPONSIVE APPS ON IOS
 
UNDERSTANDING LANGUAGE ON IOS
UNDERSTANDING LANGUAGE ON IOSUNDERSTANDING LANGUAGE ON IOS
UNDERSTANDING LANGUAGE ON IOS
 
Blockchain use cases in health and education
Blockchain use cases in health and educationBlockchain use cases in health and education
Blockchain use cases in health and education
 
Augmented Reality and Conversational Interfaces workshop
Augmented Reality and Conversational Interfaces workshopAugmented Reality and Conversational Interfaces workshop
Augmented Reality and Conversational Interfaces workshop
 
Chances of open banking
Chances of open banking Chances of open banking
Chances of open banking
 
New business cases needed because of new technologies arising
New business cases needed because of new technologies arisingNew business cases needed because of new technologies arising
New business cases needed because of new technologies arising
 

Kürzlich hochgeladen

Shapes for Sharing between Graph Data Spaces - and Epistemic Querying of RDF-...
Shapes for Sharing between Graph Data Spaces - and Epistemic Querying of RDF-...Shapes for Sharing between Graph Data Spaces - and Epistemic Querying of RDF-...
Shapes for Sharing between Graph Data Spaces - and Epistemic Querying of RDF-...Steffen Staab
 
Tech Tuesday-Harness the Power of Effective Resource Planning with OnePlan’s ...
Tech Tuesday-Harness the Power of Effective Resource Planning with OnePlan’s ...Tech Tuesday-Harness the Power of Effective Resource Planning with OnePlan’s ...
Tech Tuesday-Harness the Power of Effective Resource Planning with OnePlan’s ...OnePlan Solutions
 
Professional Resume Template for Software Developers
Professional Resume Template for Software DevelopersProfessional Resume Template for Software Developers
Professional Resume Template for Software DevelopersVinodh Ram
 
call girls in Vaishali (Ghaziabad) 🔝 >༒8448380779 🔝 genuine Escort Service 🔝✔️✔️
call girls in Vaishali (Ghaziabad) 🔝 >༒8448380779 🔝 genuine Escort Service 🔝✔️✔️call girls in Vaishali (Ghaziabad) 🔝 >༒8448380779 🔝 genuine Escort Service 🔝✔️✔️
call girls in Vaishali (Ghaziabad) 🔝 >༒8448380779 🔝 genuine Escort Service 🔝✔️✔️Delhi Call girls
 
why an Opensea Clone Script might be your perfect match.pdf
why an Opensea Clone Script might be your perfect match.pdfwhy an Opensea Clone Script might be your perfect match.pdf
why an Opensea Clone Script might be your perfect match.pdfjoe51371421
 
Unveiling the Tech Salsa of LAMs with Janus in Real-Time Applications
Unveiling the Tech Salsa of LAMs with Janus in Real-Time ApplicationsUnveiling the Tech Salsa of LAMs with Janus in Real-Time Applications
Unveiling the Tech Salsa of LAMs with Janus in Real-Time ApplicationsAlberto González Trastoy
 
Steps To Getting Up And Running Quickly With MyTimeClock Employee Scheduling ...
Steps To Getting Up And Running Quickly With MyTimeClock Employee Scheduling ...Steps To Getting Up And Running Quickly With MyTimeClock Employee Scheduling ...
Steps To Getting Up And Running Quickly With MyTimeClock Employee Scheduling ...MyIntelliSource, Inc.
 
Active Directory Penetration Testing, cionsystems.com.pdf
Active Directory Penetration Testing, cionsystems.com.pdfActive Directory Penetration Testing, cionsystems.com.pdf
Active Directory Penetration Testing, cionsystems.com.pdfCionsystems
 
The Ultimate Test Automation Guide_ Best Practices and Tips.pdf
The Ultimate Test Automation Guide_ Best Practices and Tips.pdfThe Ultimate Test Automation Guide_ Best Practices and Tips.pdf
The Ultimate Test Automation Guide_ Best Practices and Tips.pdfkalichargn70th171
 
(Genuine) Escort Service Lucknow | Starting ₹,5K To @25k with A/C 🧑🏽‍❤️‍🧑🏻 89...
(Genuine) Escort Service Lucknow | Starting ₹,5K To @25k with A/C 🧑🏽‍❤️‍🧑🏻 89...(Genuine) Escort Service Lucknow | Starting ₹,5K To @25k with A/C 🧑🏽‍❤️‍🧑🏻 89...
(Genuine) Escort Service Lucknow | Starting ₹,5K To @25k with A/C 🧑🏽‍❤️‍🧑🏻 89...gurkirankumar98700
 
Advancing Engineering with AI through the Next Generation of Strategic Projec...
Advancing Engineering with AI through the Next Generation of Strategic Projec...Advancing Engineering with AI through the Next Generation of Strategic Projec...
Advancing Engineering with AI through the Next Generation of Strategic Projec...OnePlan Solutions
 
A Secure and Reliable Document Management System is Essential.docx
A Secure and Reliable Document Management System is Essential.docxA Secure and Reliable Document Management System is Essential.docx
A Secure and Reliable Document Management System is Essential.docxComplianceQuest1
 
DNT_Corporate presentation know about us
DNT_Corporate presentation know about usDNT_Corporate presentation know about us
DNT_Corporate presentation know about usDynamic Netsoft
 
Unlocking the Future of AI Agents with Large Language Models
Unlocking the Future of AI Agents with Large Language ModelsUnlocking the Future of AI Agents with Large Language Models
Unlocking the Future of AI Agents with Large Language Modelsaagamshah0812
 
Short Story: Unveiling the Reasoning Abilities of Large Language Models by Ke...
Short Story: Unveiling the Reasoning Abilities of Large Language Models by Ke...Short Story: Unveiling the Reasoning Abilities of Large Language Models by Ke...
Short Story: Unveiling the Reasoning Abilities of Large Language Models by Ke...kellynguyen01
 
Salesforce Certified Field Service Consultant
Salesforce Certified Field Service ConsultantSalesforce Certified Field Service Consultant
Salesforce Certified Field Service ConsultantAxelRicardoTrocheRiq
 
Software Quality Assurance Interview Questions
Software Quality Assurance Interview QuestionsSoftware Quality Assurance Interview Questions
Software Quality Assurance Interview QuestionsArshad QA
 
HR Software Buyers Guide in 2024 - HRSoftware.com
HR Software Buyers Guide in 2024 - HRSoftware.comHR Software Buyers Guide in 2024 - HRSoftware.com
HR Software Buyers Guide in 2024 - HRSoftware.comFatema Valibhai
 
Learn the Fundamentals of XCUITest Framework_ A Beginner's Guide.pdf
Learn the Fundamentals of XCUITest Framework_ A Beginner's Guide.pdfLearn the Fundamentals of XCUITest Framework_ A Beginner's Guide.pdf
Learn the Fundamentals of XCUITest Framework_ A Beginner's Guide.pdfkalichargn70th171
 

Kürzlich hochgeladen (20)

Shapes for Sharing between Graph Data Spaces - and Epistemic Querying of RDF-...
Shapes for Sharing between Graph Data Spaces - and Epistemic Querying of RDF-...Shapes for Sharing between Graph Data Spaces - and Epistemic Querying of RDF-...
Shapes for Sharing between Graph Data Spaces - and Epistemic Querying of RDF-...
 
Tech Tuesday-Harness the Power of Effective Resource Planning with OnePlan’s ...
Tech Tuesday-Harness the Power of Effective Resource Planning with OnePlan’s ...Tech Tuesday-Harness the Power of Effective Resource Planning with OnePlan’s ...
Tech Tuesday-Harness the Power of Effective Resource Planning with OnePlan’s ...
 
Professional Resume Template for Software Developers
Professional Resume Template for Software DevelopersProfessional Resume Template for Software Developers
Professional Resume Template for Software Developers
 
call girls in Vaishali (Ghaziabad) 🔝 >༒8448380779 🔝 genuine Escort Service 🔝✔️✔️
call girls in Vaishali (Ghaziabad) 🔝 >༒8448380779 🔝 genuine Escort Service 🔝✔️✔️call girls in Vaishali (Ghaziabad) 🔝 >༒8448380779 🔝 genuine Escort Service 🔝✔️✔️
call girls in Vaishali (Ghaziabad) 🔝 >༒8448380779 🔝 genuine Escort Service 🔝✔️✔️
 
why an Opensea Clone Script might be your perfect match.pdf
why an Opensea Clone Script might be your perfect match.pdfwhy an Opensea Clone Script might be your perfect match.pdf
why an Opensea Clone Script might be your perfect match.pdf
 
Unveiling the Tech Salsa of LAMs with Janus in Real-Time Applications
Unveiling the Tech Salsa of LAMs with Janus in Real-Time ApplicationsUnveiling the Tech Salsa of LAMs with Janus in Real-Time Applications
Unveiling the Tech Salsa of LAMs with Janus in Real-Time Applications
 
Steps To Getting Up And Running Quickly With MyTimeClock Employee Scheduling ...
Steps To Getting Up And Running Quickly With MyTimeClock Employee Scheduling ...Steps To Getting Up And Running Quickly With MyTimeClock Employee Scheduling ...
Steps To Getting Up And Running Quickly With MyTimeClock Employee Scheduling ...
 
Call Girls In Mukherjee Nagar 📱 9999965857 🤩 Delhi 🫦 HOT AND SEXY VVIP 🍎 SE...
Call Girls In Mukherjee Nagar 📱  9999965857  🤩 Delhi 🫦 HOT AND SEXY VVIP 🍎 SE...Call Girls In Mukherjee Nagar 📱  9999965857  🤩 Delhi 🫦 HOT AND SEXY VVIP 🍎 SE...
Call Girls In Mukherjee Nagar 📱 9999965857 🤩 Delhi 🫦 HOT AND SEXY VVIP 🍎 SE...
 
Active Directory Penetration Testing, cionsystems.com.pdf
Active Directory Penetration Testing, cionsystems.com.pdfActive Directory Penetration Testing, cionsystems.com.pdf
Active Directory Penetration Testing, cionsystems.com.pdf
 
The Ultimate Test Automation Guide_ Best Practices and Tips.pdf
The Ultimate Test Automation Guide_ Best Practices and Tips.pdfThe Ultimate Test Automation Guide_ Best Practices and Tips.pdf
The Ultimate Test Automation Guide_ Best Practices and Tips.pdf
 
(Genuine) Escort Service Lucknow | Starting ₹,5K To @25k with A/C 🧑🏽‍❤️‍🧑🏻 89...
(Genuine) Escort Service Lucknow | Starting ₹,5K To @25k with A/C 🧑🏽‍❤️‍🧑🏻 89...(Genuine) Escort Service Lucknow | Starting ₹,5K To @25k with A/C 🧑🏽‍❤️‍🧑🏻 89...
(Genuine) Escort Service Lucknow | Starting ₹,5K To @25k with A/C 🧑🏽‍❤️‍🧑🏻 89...
 
Advancing Engineering with AI through the Next Generation of Strategic Projec...
Advancing Engineering with AI through the Next Generation of Strategic Projec...Advancing Engineering with AI through the Next Generation of Strategic Projec...
Advancing Engineering with AI through the Next Generation of Strategic Projec...
 
A Secure and Reliable Document Management System is Essential.docx
A Secure and Reliable Document Management System is Essential.docxA Secure and Reliable Document Management System is Essential.docx
A Secure and Reliable Document Management System is Essential.docx
 
DNT_Corporate presentation know about us
DNT_Corporate presentation know about usDNT_Corporate presentation know about us
DNT_Corporate presentation know about us
 
Unlocking the Future of AI Agents with Large Language Models
Unlocking the Future of AI Agents with Large Language ModelsUnlocking the Future of AI Agents with Large Language Models
Unlocking the Future of AI Agents with Large Language Models
 
Short Story: Unveiling the Reasoning Abilities of Large Language Models by Ke...
Short Story: Unveiling the Reasoning Abilities of Large Language Models by Ke...Short Story: Unveiling the Reasoning Abilities of Large Language Models by Ke...
Short Story: Unveiling the Reasoning Abilities of Large Language Models by Ke...
 
Salesforce Certified Field Service Consultant
Salesforce Certified Field Service ConsultantSalesforce Certified Field Service Consultant
Salesforce Certified Field Service Consultant
 
Software Quality Assurance Interview Questions
Software Quality Assurance Interview QuestionsSoftware Quality Assurance Interview Questions
Software Quality Assurance Interview Questions
 
HR Software Buyers Guide in 2024 - HRSoftware.com
HR Software Buyers Guide in 2024 - HRSoftware.comHR Software Buyers Guide in 2024 - HRSoftware.com
HR Software Buyers Guide in 2024 - HRSoftware.com
 
Learn the Fundamentals of XCUITest Framework_ A Beginner's Guide.pdf
Learn the Fundamentals of XCUITest Framework_ A Beginner's Guide.pdfLearn the Fundamentals of XCUITest Framework_ A Beginner's Guide.pdf
Learn the Fundamentals of XCUITest Framework_ A Beginner's Guide.pdf
 

Digital Payments - Netcetera Innovation Summit 2018

  • 1. Bernried, September 2018 Kurt Schmid, Managing Director Digital Payments A small step for a programmer, a big step for payments Merchant Tokenization & Secure Remote Commerce
  • 2. Questions Who likes to enter PANs again and again for every new merchant? Who is worried of fraud on his/her card? Who knows all the places where your card data is stored? Why is Amazon so powerful? 2
  • 4. When the PAN and other card data is known fraud can be made with little efforts The PAN and other card data therefore is in PCI- Scope The weakest link makes the level of security Why Tokenization? What is the problem? Securing the Card Number (PAN)
  • 5. Key and surrounding roles 5 Token Requestor Token Service Provider Card Issuer Merchant End User PSPScheme Acquirer NSP IoT Device Wallet (X Pay) TR TSP Issuer TSP
  • 6. Card Issuer Token Service Provider Token Requestor Main Use Case: Digitize (Tokenize) Card 6 Yellow case Step up auth.
  • 7. Main Use Case: Secure variant of Digitize 7 Token Requestor Token Service Provider Card Issuer authenticates Encrypted PAN Green case
  • 8. Scaling Up Tokenization (1) 8 Token Requestor Token Service Provider Card Issuer
  • 9. Scaling Up Tokenization (2) 9 Token Requestor Token Service Provider Card Issuer MDES, VTS, AETS
  • 10. Scaling Up Tokenization (3) 10 Token Requestor Token Service Provider Card Issuer Aggregators Token Requestor TSP Card Issuer TSP
  • 11. Know Usage for Mobile Contactless Payment 11 Enabling an App to perform mobile contactless payment at the POS Request Tokens via MDES, VTS etc. for Cloud Based Payments NFC Interface to Terminals nbased on Host Card Emulation (HCE) Replenishment of short living card keys to increase security (“SUK”, “LUK” instead of CMKs)
  • 12. MyBankApp Accounts 6,750.00 Recent Transactions Ready to Pay Tokenization in use for Mobile Contactless Payments 12 Token Requestor (CMS-D, MAP) Scheme Token Service (MDES VTS AETS) Card Issuer authenticates Encrypted PAN PSP, Acquirer Network AuthDeTok.
  • 13. E-Commerce Payment 13 Enabling an e-Commerce application for Payments Card Not Present and 3DS today’s prevailing methods for checkout
  • 14. Concerns in eComm Payments 14 Risk/Fraud through different attacks Low Conversion rates on mobile channels Abandonning the checkout process Higher costs for CNP versus CP Merchant concerns Issuer concerns Risk/Fraud through different attacks Cost of customer care Lost transactional Revenue Consumer concerns Ease of onboarding Convience at shopping
  • 15. Why not use Tokenization in e-Commerce? Each merchant does not store the PAN but a token Security will be Card Present like by using a cryptogram 15 The basic Ideas: Mastercard started M4M (MDES for Merchants) VISA speaking about Tokenizazion in eCommerce and Card of File (COF)
  • 16. Tokenization in use for e-Commerce Payments 16 Token Requestor (CMS-D, MAP) Scheme Token Service (MDES VTS AETS) Card Issuer PSP, Acquirer Network AuthDeTok. COF PAN Entry
  • 17. Use Cases Enroll: Add card manually or tokenize from card of file Display cards: Card art coming from token service (User sees his real card image) Transact: Generate EMV cryptogram (can be used for one or more transactions) Lifecycle: Issuer Account Update
  • 19. Secure Remote Commerce Framework (“SRC”) Defined by EMVCo ( /) Scheme agnostic to help interoperability Pay securely by credit card” button in checkout Will be scheme neutral successor of MasterPass & Visa Checkout starting 2019 / 2020 Will support card tokenization using MDES and VTS Will support card present type security (“cryptograms”) Demonstrator available from Netcetera, Training courses will be available
  • 20. Roles used in SRC 20 Token Requestor Token Service Provider (Scheme) Card Issuer Supporting SRC SRC System Digital Card Facilitator Digital Shopping Application (aka Merchant) PSP SRC Inititator
  • 21. SRC Flow once device is registered / returned user
  • 23. Benefits Seamless experience – Starts with card entry like user is used to do No onboarding required – but device / merchant pairing possible from issuer app Works with all schemes in the same way Tokenization and EMV-like security will prevent fraud and lower the costs
  • 24. As Issuer As Merchant As PSP As Acquirer How to approach this? Ask for a training on SRC done by our expert Thomas Fromherz
  • 25. Europaplatz4 4020Linz Austria info@netcetera.com +43664 11211 00 Kurt Schmid Managing Director Digital Payment Kurt.Schmid@netcetera.com