SlideShare una empresa de Scribd logo
1 de 21
Descargar para leer sin conexión
Consumer and Citizen Identities:
Government Issued or Trust Frameworks?
Maarten Wegdam, Novay

European Identity Conference 2011
12 May 2011, Munich
Novay?


    •   Independent Dutch ICT research institute
    •   Formerly Telematica Instituut
    •   “People driven, ICT empowered”
    •   ~55 researchers, multi-disciplinary
    •   Innovation projects
    •   Including financial sector, government and semi-
        government




2
Old problem




                  [New Yorker cartoon by Peter Steiner]




3
What to expect?


    • Re-usable identities are the way to go

    • Government vs trust framework: they co-exist

    • Banks and government are key

    • Convincing relying parties: needed and hard work




4
Identity in the offline world




5
And online?




           Id theft        Avoidable costs
                          Lost revenues (?)




       Frustrated users    Privacy/control
6
                               issues
Solution: re-usable identities

        (One or) a few trusted identities


          Of course: secure & trusted


       Of course: user controlled, privacy
                   sensitive

7
Trust in an identity
    Authentication    Identity    Level of
       means          binding    Assurance




8
Challenges for trusted re-usable identities


      lack of     privacy      market
    trust in Id   issues        entry
     Provider                  issues




9
The big choice: government or
     market as identity provider
     • Government – as in offline world



     • Market – as phone, internet access, email etc




10
The big choice: government or
     market as identity provider
     • Government – as in offline world



     • Market – as phone, internet access, email etc

     • Some form of controlled market




11
Decreasing (government) control


                   Government issued

                  Government regulated

                     Trust framework

                Free market (tech standard)

     Note: models 1 to 3 require some form of
       monopoly or regulator

12
Identity trust framework = a set of rules
            that all players agree upon

      To have more trust and a healthy ecosystem
      • A fair business model
      • New identity providers can join
      • Easy access for relying parties (scalability)
      • Balancing interests between players
      • Privacy assurances
      • Governance / audits
      • Support one or more levels of assurance
13
Success criteria C2B/C2G identity

     • Frequent use of eID essential
     • For private AND public services (C2B & C2G)
     • Bank involvement seems key
     • Government governance required
     • Easy entrance for relying parties
     • Ease of use for end-users
     • High (100%?) user penetration needed
     [based on use cases study in DK,BE.DE,NO,SE,EE,US in 2010]



14
Government issued eID           Identity trust framework

Easier market entry            Innovation ‘friendlier’
• 100% user coverage           User choice
• gov as relying party         International is easier (?)
Clearer bus model              Benefits of competition …
Neutral branding               Re-use existing identities
Privacy of Relying party

                       Trust: cultural?
 User privacy: one big brother or several medium brothers?


15
use-case:
     trusted and re-usable consumer identity in NL

Consortium
Financial sector
Vision on trust framework
Feasibility




16
vision on trust framework


     •   Business model – users should not pay (directly)
     •   Business case – re-use existing identities
     •   Very easy for relying parties to connect
     •   Several levels of assurance – ‘mid’ trust and up
     •   Mobile – from the start
     •   Privacy – state-of-the-art and consent
     •   Government needed for trust (link to eRecognition)




17
: my lessons learned


     • High-level mngt in financial industry do not
       understand nerdy terms like trust frameworks
     • Government needs to be ‘predictable’ !!!
        • Relying parties: so they don’t wait for gov
        • Identity providers: trust & no competition
     • Re-use existing & trusted: you need (all ?)
       banks as identity providers
        • not core business, there are risks, and unclear
          business case ...

18
My 2 cents for relying parties


     • Re-use identities from others when you can
     • Heterogeneity - no 1-identity-to-rule-them all, accept
       heterogeneity as inevitable
     • Stimulate trust frameworks - it is in your interest to
       reduce heterogeneity without introducing a monopoly
     • Architect your identity system to accept different
       levels of assurance, from different parties

     • If you have customers from only one nation, can wait
       a couple of years and live in a government-issued
       C2B eID country: things may be simpler.

19
5 things to keep an eye on


     1. Will social login (Facebook etc) become more
        trustworthy?
     2. Will domain-specific trust frameworks expand, e.g.
        higher education?
     3. Are four levels-of-assurance (trust levels) really
        needed? Will users understand?
     4. What is the value of an authentication for a relying
        party? (BankID is pretty cheap …)
     5. Are trust frameworks also about trusting the relying
        parties?



20
Take aways

           • Re-usable identities are the way to go
               • If both C2B and C2G: easier market entry, cheaper
           • Government vs trust framework: they co-exist
               • Privacy, political, legacy, legislation are factors
           • Banks and government are key
               • Market penetration as identity providers
               • Killer apps as relying parties
               • Trust
           • Convincing relying parties: needed and hard work

     More information:
     maarten.wegdam@novay.nl        http://maarten.wegdam.name
21

Más contenido relacionado

La actualidad más candente

Open banking [Evolution, Risks & Opportunities]
Open banking [Evolution, Risks & Opportunities]Open banking [Evolution, Risks & Opportunities]
Open banking [Evolution, Risks & Opportunities]Kannan Srinivasan
 
Digital Finance & Alternative Finance (1) (1).pptx
Digital Finance & Alternative Finance (1) (1).pptxDigital Finance & Alternative Finance (1) (1).pptx
Digital Finance & Alternative Finance (1) (1).pptxAnharSharif
 
The future of digital identity initial perspective
The future of digital identity   initial perspectiveThe future of digital identity   initial perspective
The future of digital identity initial perspectiveFuture Agenda
 
Fintech Simplified
Fintech SimplifiedFintech Simplified
Fintech SimplifiediHashmi ...
 
B20: AMLO | FinTecha and New Technologies: AML/CTF Perspectives (5 Jul 2017)
B20: AMLO | FinTecha and New Technologies: AML/CTF Perspectives (5 Jul 2017)B20: AMLO | FinTecha and New Technologies: AML/CTF Perspectives (5 Jul 2017)
B20: AMLO | FinTecha and New Technologies: AML/CTF Perspectives (5 Jul 2017)Kullarat Phongsathaporn
 
Digital Identity Wallets: What They Mean For Banks
Digital Identity Wallets: What They Mean For BanksDigital Identity Wallets: What They Mean For Banks
Digital Identity Wallets: What They Mean For BanksEvernym
 
Hts Executive Summary
Hts Executive SummaryHts Executive Summary
Hts Executive Summaryjosesmeke
 
Case Study: The Future of Digital Payments
Case Study: The Future of Digital PaymentsCase Study: The Future of Digital Payments
Case Study: The Future of Digital PaymentsSME Banking Club
 
Socializing across the enterprise
Socializing across the enterpriseSocializing across the enterprise
Socializing across the enterpriseAndrea Rubei
 
Keynote Speaker Janice Kephart - Founder and CEO of The Secure Identity and B...
Keynote Speaker Janice Kephart - Founder and CEO of The Secure Identity and B...Keynote Speaker Janice Kephart - Founder and CEO of The Secure Identity and B...
Keynote Speaker Janice Kephart - Founder and CEO of The Secure Identity and B...Investorideas.com
 
E commerce assignt
E commerce assigntE commerce assignt
E commerce assigntmbarathi2
 
Crafting Decentralized Finance (DeFi) based Capital Market infrastructure
Crafting Decentralized Finance (DeFi) based Capital Market infrastructureCrafting Decentralized Finance (DeFi) based Capital Market infrastructure
Crafting Decentralized Finance (DeFi) based Capital Market infrastructureFloyd DCosta
 
DEFI development company in India | Hyderabad
DEFI development company in India | HyderabadDEFI development company in India | Hyderabad
DEFI development company in India | HyderabadAmniAugustine
 
The future of digital identity 2019 future agenda
The future of digital identity 2019   future agendaThe future of digital identity 2019   future agenda
The future of digital identity 2019 future agendaFuture Agenda
 
Financial Services: exchanges, settlements, payments and embedded finance
Financial Services: exchanges, settlements, payments and embedded financeFinancial Services: exchanges, settlements, payments and embedded finance
Financial Services: exchanges, settlements, payments and embedded financeEY
 
Defi smart contract development company
Defi smart contract development companyDefi smart contract development company
Defi smart contract development companyBrugusoftwaresolutions
 
NXT-ID, Inc.'s (OTCQB:NXTD) Presentation
NXT-ID, Inc.'s (OTCQB:NXTD) PresentationNXT-ID, Inc.'s (OTCQB:NXTD) Presentation
NXT-ID, Inc.'s (OTCQB:NXTD) PresentationInvestorideas.com
 

La actualidad más candente (20)

Open banking [Evolution, Risks & Opportunities]
Open banking [Evolution, Risks & Opportunities]Open banking [Evolution, Risks & Opportunities]
Open banking [Evolution, Risks & Opportunities]
 
Digital Finance & Alternative Finance (1) (1).pptx
Digital Finance & Alternative Finance (1) (1).pptxDigital Finance & Alternative Finance (1) (1).pptx
Digital Finance & Alternative Finance (1) (1).pptx
 
The future of digital identity initial perspective
The future of digital identity   initial perspectiveThe future of digital identity   initial perspective
The future of digital identity initial perspective
 
Fintech Simplified
Fintech SimplifiedFintech Simplified
Fintech Simplified
 
Cryptocurrency and Blockchain
Cryptocurrency and BlockchainCryptocurrency and Blockchain
Cryptocurrency and Blockchain
 
B20: AMLO | FinTecha and New Technologies: AML/CTF Perspectives (5 Jul 2017)
B20: AMLO | FinTecha and New Technologies: AML/CTF Perspectives (5 Jul 2017)B20: AMLO | FinTecha and New Technologies: AML/CTF Perspectives (5 Jul 2017)
B20: AMLO | FinTecha and New Technologies: AML/CTF Perspectives (5 Jul 2017)
 
Digital Identity Wallets: What They Mean For Banks
Digital Identity Wallets: What They Mean For BanksDigital Identity Wallets: What They Mean For Banks
Digital Identity Wallets: What They Mean For Banks
 
Hts Executive Summary
Hts Executive SummaryHts Executive Summary
Hts Executive Summary
 
Case Study: The Future of Digital Payments
Case Study: The Future of Digital PaymentsCase Study: The Future of Digital Payments
Case Study: The Future of Digital Payments
 
Digital Currencies: Where to from here?
Digital Currencies: Where to from here?Digital Currencies: Where to from here?
Digital Currencies: Where to from here?
 
Socializing across the enterprise
Socializing across the enterpriseSocializing across the enterprise
Socializing across the enterprise
 
Keynote Speaker Janice Kephart - Founder and CEO of The Secure Identity and B...
Keynote Speaker Janice Kephart - Founder and CEO of The Secure Identity and B...Keynote Speaker Janice Kephart - Founder and CEO of The Secure Identity and B...
Keynote Speaker Janice Kephart - Founder and CEO of The Secure Identity and B...
 
E commerce assignt
E commerce assigntE commerce assignt
E commerce assignt
 
Crafting Decentralized Finance (DeFi) based Capital Market infrastructure
Crafting Decentralized Finance (DeFi) based Capital Market infrastructureCrafting Decentralized Finance (DeFi) based Capital Market infrastructure
Crafting Decentralized Finance (DeFi) based Capital Market infrastructure
 
DEFI development company in India | Hyderabad
DEFI development company in India | HyderabadDEFI development company in India | Hyderabad
DEFI development company in India | Hyderabad
 
The future of digital identity 2019 future agenda
The future of digital identity 2019   future agendaThe future of digital identity 2019   future agenda
The future of digital identity 2019 future agenda
 
World bank project a case study of africa region
World bank project a case study of africa region World bank project a case study of africa region
World bank project a case study of africa region
 
Financial Services: exchanges, settlements, payments and embedded finance
Financial Services: exchanges, settlements, payments and embedded financeFinancial Services: exchanges, settlements, payments and embedded finance
Financial Services: exchanges, settlements, payments and embedded finance
 
Defi smart contract development company
Defi smart contract development companyDefi smart contract development company
Defi smart contract development company
 
NXT-ID, Inc.'s (OTCQB:NXTD) Presentation
NXT-ID, Inc.'s (OTCQB:NXTD) PresentationNXT-ID, Inc.'s (OTCQB:NXTD) Presentation
NXT-ID, Inc.'s (OTCQB:NXTD) Presentation
 

Destacado (6)

H1N1 Basics
H1N1 BasicsH1N1 Basics
H1N1 Basics
 
Bird Flu, Avain Influenza
Bird Flu, Avain InfluenzaBird Flu, Avain Influenza
Bird Flu, Avain Influenza
 
H1N1 Virus Powerpoint For Edu280 Tech.
H1N1 Virus Powerpoint For Edu280 Tech.H1N1 Virus Powerpoint For Edu280 Tech.
H1N1 Virus Powerpoint For Edu280 Tech.
 
H1N1 Virus
H1N1 VirusH1N1 Virus
H1N1 Virus
 
H1N1 Virus PowerPoint
H1N1 Virus PowerPointH1N1 Virus PowerPoint
H1N1 Virus PowerPoint
 
Influenza A (H1 N1)
Influenza A (H1 N1)Influenza A (H1 N1)
Influenza A (H1 N1)
 

Similar a Consumer and Citizen Identities: Government Issued or Trust Frameworks? (European Identity Conference 2011)

Consumer Identity: a Dutch Perspective on Benefits, Issues and Next Steps
Consumer Identity: a Dutch Perspective on Benefits, Issues and Next StepsConsumer Identity: a Dutch Perspective on Benefits, Issues and Next Steps
Consumer Identity: a Dutch Perspective on Benefits, Issues and Next Stepsguestbd878c
 
Consumer Identity: a Dutch Perspective on Benefits, Issues and Next Steps (EI...
Consumer Identity: a Dutch Perspective on Benefits, Issues and Next Steps (EI...Consumer Identity: a Dutch Perspective on Benefits, Issues and Next Steps (EI...
Consumer Identity: a Dutch Perspective on Benefits, Issues and Next Steps (EI...wegdam
 
cidSafe project, 23 September 2010, for EEMA event
cidSafe project, 23 September 2010, for EEMA eventcidSafe project, 23 September 2010, for EEMA event
cidSafe project, 23 September 2010, for EEMA eventwegdam
 
Are You Being Anti-Social
Are You Being Anti-SocialAre You Being Anti-Social
Are You Being Anti-SocialNetIQ
 
Building Consumers Trust: The role of transparency and control
Building Consumers Trust: The role of transparency and controlBuilding Consumers Trust: The role of transparency and control
Building Consumers Trust: The role of transparency and controlMicheleNati
 
What is self-sovereign identity (SSI)?
What is self-sovereign identity (SSI)?What is self-sovereign identity (SSI)?
What is self-sovereign identity (SSI)?Evernym
 
Trust Frameworks and Open Banking #fapisum - Japan/UK Open Banking and APIs S...
Trust Frameworks and Open Banking #fapisum - Japan/UK Open Banking and APIs S...Trust Frameworks and Open Banking #fapisum - Japan/UK Open Banking and APIs S...
Trust Frameworks and Open Banking #fapisum - Japan/UK Open Banking and APIs S...FinTechLabs.io
 
Activating a Community of Brand Evangelists
Activating a Community of Brand EvangelistsActivating a Community of Brand Evangelists
Activating a Community of Brand EvangelistsAffiliate Summit
 
CIS14: NSTIC: Identity Enables a New Digital Relationship
CIS14: NSTIC: Identity Enables a New Digital RelationshipCIS14: NSTIC: Identity Enables a New Digital Relationship
CIS14: NSTIC: Identity Enables a New Digital RelationshipCloudIDSummit
 
Eu fintech lab smouy rkhan
Eu fintech lab   smouy rkhanEu fintech lab   smouy rkhan
Eu fintech lab smouy rkhanStphaneMouy
 
The Privacy Advantage 2016 - Amit Pau
The Privacy Advantage 2016 - Amit PauThe Privacy Advantage 2016 - Amit Pau
The Privacy Advantage 2016 - Amit PauKrowdthink
 
Future of digital identity Programme summary - 15 dec 2018 lr
Future of digital identity  Programme summary - 15 dec 2018 lrFuture of digital identity  Programme summary - 15 dec 2018 lr
Future of digital identity Programme summary - 15 dec 2018 lrFuture Agenda
 
Crypto Valley Conference 2019 - CULedger
Crypto Valley Conference 2019 - CULedgerCrypto Valley Conference 2019 - CULedger
Crypto Valley Conference 2019 - CULedgerDarrell O'Donnell
 
Advertising in The Age of Digital Identity - Azadeh Dindayal
Advertising in The Age of Digital Identity - Azadeh DindayalAdvertising in The Age of Digital Identity - Azadeh Dindayal
Advertising in The Age of Digital Identity - Azadeh DindayalIdentityNorthEvents
 
Hp 17 s-bbo-1350-brian-reed
Hp 17 s-bbo-1350-brian-reedHp 17 s-bbo-1350-brian-reed
Hp 17 s-bbo-1350-brian-reedSatya Harish
 
Jan Keil - Identity and access management Facts. Challenges. Solution
Jan Keil - Identity and access management Facts. Challenges. SolutionJan Keil - Identity and access management Facts. Challenges. Solution
Jan Keil - Identity and access management Facts. Challenges. SolutionTimetogrowup
 
Digital Retail Experiences
Digital Retail ExperiencesDigital Retail Experiences
Digital Retail ExperiencesVinay Dixit
 

Similar a Consumer and Citizen Identities: Government Issued or Trust Frameworks? (European Identity Conference 2011) (20)

Consumer Identity: a Dutch Perspective on Benefits, Issues and Next Steps
Consumer Identity: a Dutch Perspective on Benefits, Issues and Next StepsConsumer Identity: a Dutch Perspective on Benefits, Issues and Next Steps
Consumer Identity: a Dutch Perspective on Benefits, Issues and Next Steps
 
Consumer Identity: a Dutch Perspective on Benefits, Issues and Next Steps (EI...
Consumer Identity: a Dutch Perspective on Benefits, Issues and Next Steps (EI...Consumer Identity: a Dutch Perspective on Benefits, Issues and Next Steps (EI...
Consumer Identity: a Dutch Perspective on Benefits, Issues and Next Steps (EI...
 
cidSafe project, 23 September 2010, for EEMA event
cidSafe project, 23 September 2010, for EEMA eventcidSafe project, 23 September 2010, for EEMA event
cidSafe project, 23 September 2010, for EEMA event
 
Are You Being Anti-Social
Are You Being Anti-SocialAre You Being Anti-Social
Are You Being Anti-Social
 
Building Consumers Trust: The role of transparency and control
Building Consumers Trust: The role of transparency and controlBuilding Consumers Trust: The role of transparency and control
Building Consumers Trust: The role of transparency and control
 
What is self-sovereign identity (SSI)?
What is self-sovereign identity (SSI)?What is self-sovereign identity (SSI)?
What is self-sovereign identity (SSI)?
 
Trust Frameworks and Open Banking #fapisum - Japan/UK Open Banking and APIs S...
Trust Frameworks and Open Banking #fapisum - Japan/UK Open Banking and APIs S...Trust Frameworks and Open Banking #fapisum - Japan/UK Open Banking and APIs S...
Trust Frameworks and Open Banking #fapisum - Japan/UK Open Banking and APIs S...
 
Activating a Community of Brand Evangelists
Activating a Community of Brand EvangelistsActivating a Community of Brand Evangelists
Activating a Community of Brand Evangelists
 
CIS14: NSTIC: Identity Enables a New Digital Relationship
CIS14: NSTIC: Identity Enables a New Digital RelationshipCIS14: NSTIC: Identity Enables a New Digital Relationship
CIS14: NSTIC: Identity Enables a New Digital Relationship
 
Eu fintech lab smouy rkhan
Eu fintech lab   smouy rkhanEu fintech lab   smouy rkhan
Eu fintech lab smouy rkhan
 
The Privacy Advantage 2016 - Amit Pau
The Privacy Advantage 2016 - Amit PauThe Privacy Advantage 2016 - Amit Pau
The Privacy Advantage 2016 - Amit Pau
 
Future of digital identity Programme summary - 15 dec 2018 lr
Future of digital identity  Programme summary - 15 dec 2018 lrFuture of digital identity  Programme summary - 15 dec 2018 lr
Future of digital identity Programme summary - 15 dec 2018 lr
 
Open Banking beyond PSD2 in the EU
Open Banking beyond PSD2 in the EU Open Banking beyond PSD2 in the EU
Open Banking beyond PSD2 in the EU
 
Crypto Valley Conference 2019 - CULedger
Crypto Valley Conference 2019 - CULedgerCrypto Valley Conference 2019 - CULedger
Crypto Valley Conference 2019 - CULedger
 
Advertising in The Age of Digital Identity - Azadeh Dindayal
Advertising in The Age of Digital Identity - Azadeh DindayalAdvertising in The Age of Digital Identity - Azadeh Dindayal
Advertising in The Age of Digital Identity - Azadeh Dindayal
 
Hp 17 s-bbo-1350-brian-reed
Hp 17 s-bbo-1350-brian-reedHp 17 s-bbo-1350-brian-reed
Hp 17 s-bbo-1350-brian-reed
 
Jan Keil - Identity and access management Facts. Challenges. Solution
Jan Keil - Identity and access management Facts. Challenges. SolutionJan Keil - Identity and access management Facts. Challenges. Solution
Jan Keil - Identity and access management Facts. Challenges. Solution
 
Materi Perlindungan Konsumen.pdf
Materi Perlindungan Konsumen.pdfMateri Perlindungan Konsumen.pdf
Materi Perlindungan Konsumen.pdf
 
Market research trends and opportunities
Market research   trends and opportunitiesMarket research   trends and opportunities
Market research trends and opportunities
 
Digital Retail Experiences
Digital Retail ExperiencesDigital Retail Experiences
Digital Retail Experiences
 

Más de wegdam

Van irisscan tot kontafdruk- biometrische authenticatie anno 2017 - Heliview ...
Van irisscan tot kontafdruk- biometrische authenticatie anno 2017 - Heliview ...Van irisscan tot kontafdruk- biometrische authenticatie anno 2017 - Heliview ...
Van irisscan tot kontafdruk- biometrische authenticatie anno 2017 - Heliview ...wegdam
 
Digital onboarding: selfie-check with passport, a case study
Digital onboarding: selfie-check with passport, a case studyDigital onboarding: selfie-check with passport, a case study
Digital onboarding: selfie-check with passport, a case studywegdam
 
Banken als identiteitsproviders (BankID, eID Stelsel) - PIMN / ECP bijeenkoms...
Banken als identiteitsproviders (BankID, eID Stelsel) - PIMN / ECP bijeenkoms...Banken als identiteitsproviders (BankID, eID Stelsel) - PIMN / ECP bijeenkoms...
Banken als identiteitsproviders (BankID, eID Stelsel) - PIMN / ECP bijeenkoms...wegdam
 
FIDOs place in the identity ecosystem
FIDOs place in the identity ecosystemFIDOs place in the identity ecosystem
FIDOs place in the identity ecosystemwegdam
 
AWARENESS overview @ closing working - context-aware mobile health (March 2008)
AWARENESS overview @ closing working - context-aware mobile health (March 2008)AWARENESS overview @ closing working - context-aware mobile health (March 2008)
AWARENESS overview @ closing working - context-aware mobile health (March 2008)wegdam
 
#SNRD12 Maak student baas over eigen data
#SNRD12 Maak student baas over eigen data#SNRD12 Maak student baas over eigen data
#SNRD12 Maak student baas over eigen datawegdam
 
Novay Tuesday Update - Digitale identiteiten: herbruikbaar en mobiel
Novay Tuesday Update - Digitale identiteiten: herbruikbaar en mobielNovay Tuesday Update - Digitale identiteiten: herbruikbaar en mobiel
Novay Tuesday Update - Digitale identiteiten: herbruikbaar en mobielwegdam
 
Cloud privacy & security - Een verkenning van tools en technieken
Cloud privacy & security - Een verkenning van tools en techniekenCloud privacy & security - Een verkenning van tools en technieken
Cloud privacy & security - Een verkenning van tools en techniekenwegdam
 
XACML pilot at a large Dutch bank, Using XACML to implement context-enhanced ...
XACML pilot at a large Dutch bank, Using XACML to implement context-enhanced ...XACML pilot at a large Dutch bank, Using XACML to implement context-enhanced ...
XACML pilot at a large Dutch bank, Using XACML to implement context-enhanced ...wegdam
 
Identiteit & Authenticatie voor UMCs SIG Informatie Beveiliging IAM themadag ...
Identiteit & Authenticatie voor UMCs SIG Informatie Beveiliging IAM themadag ...Identiteit & Authenticatie voor UMCs SIG Informatie Beveiliging IAM themadag ...
Identiteit & Authenticatie voor UMCs SIG Informatie Beveiliging IAM themadag ...wegdam
 
Digitale identiteiten: vertrouwen, identity providers en de toekomst (Novay T...
Digitale identiteiten: vertrouwen, identity providers en de toekomst (Novay T...Digitale identiteiten: vertrouwen, identity providers en de toekomst (Novay T...
Digitale identiteiten: vertrouwen, identity providers en de toekomst (Novay T...wegdam
 
The user perspective on consent for identity federations (TNC 2011)
The user perspective on consent for identity federations (TNC 2011)The user perspective on consent for identity federations (TNC 2011)
The user perspective on consent for identity federations (TNC 2011)wegdam
 
User controlled privacy voor de SURFfederatie
User controlled privacy voor de SURFfederatieUser controlled privacy voor de SURFfederatie
User controlled privacy voor de SURFfederatiewegdam
 
2de cid safe netwerkbijeenkomst (Dutch, 29
2de cid safe netwerkbijeenkomst (Dutch, 292de cid safe netwerkbijeenkomst (Dutch, 29
2de cid safe netwerkbijeenkomst (Dutch, 29wegdam
 
User consent for consumer identity (@ISSE2010)
User consent for consumer identity (@ISSE2010)User consent for consumer identity (@ISSE2010)
User consent for consumer identity (@ISSE2010)wegdam
 
cidSafe project overview (in Dutch!!!)
cidSafe project overview (in Dutch!!!)cidSafe project overview (in Dutch!!!)
cidSafe project overview (in Dutch!!!)wegdam
 
OpenIdplus.nl Proof of Concept uitkomsten (in Dutch)
OpenIdplus.nl Proof of Concept uitkomsten (in Dutch)OpenIdplus.nl Proof of Concept uitkomsten (in Dutch)
OpenIdplus.nl Proof of Concept uitkomsten (in Dutch)wegdam
 
Using ePassports for online authentication - ICT Delta 2010
Using ePassports for online authentication - ICT Delta 2010Using ePassports for online authentication - ICT Delta 2010
Using ePassports for online authentication - ICT Delta 2010wegdam
 
User & Mobile Centric Identity
User & Mobile Centric IdentityUser & Mobile Centric Identity
User & Mobile Centric Identitywegdam
 
Identity federation & user centric identity
Identity federation & user centric identityIdentity federation & user centric identity
Identity federation & user centric identitywegdam
 

Más de wegdam (20)

Van irisscan tot kontafdruk- biometrische authenticatie anno 2017 - Heliview ...
Van irisscan tot kontafdruk- biometrische authenticatie anno 2017 - Heliview ...Van irisscan tot kontafdruk- biometrische authenticatie anno 2017 - Heliview ...
Van irisscan tot kontafdruk- biometrische authenticatie anno 2017 - Heliview ...
 
Digital onboarding: selfie-check with passport, a case study
Digital onboarding: selfie-check with passport, a case studyDigital onboarding: selfie-check with passport, a case study
Digital onboarding: selfie-check with passport, a case study
 
Banken als identiteitsproviders (BankID, eID Stelsel) - PIMN / ECP bijeenkoms...
Banken als identiteitsproviders (BankID, eID Stelsel) - PIMN / ECP bijeenkoms...Banken als identiteitsproviders (BankID, eID Stelsel) - PIMN / ECP bijeenkoms...
Banken als identiteitsproviders (BankID, eID Stelsel) - PIMN / ECP bijeenkoms...
 
FIDOs place in the identity ecosystem
FIDOs place in the identity ecosystemFIDOs place in the identity ecosystem
FIDOs place in the identity ecosystem
 
AWARENESS overview @ closing working - context-aware mobile health (March 2008)
AWARENESS overview @ closing working - context-aware mobile health (March 2008)AWARENESS overview @ closing working - context-aware mobile health (March 2008)
AWARENESS overview @ closing working - context-aware mobile health (March 2008)
 
#SNRD12 Maak student baas over eigen data
#SNRD12 Maak student baas over eigen data#SNRD12 Maak student baas over eigen data
#SNRD12 Maak student baas over eigen data
 
Novay Tuesday Update - Digitale identiteiten: herbruikbaar en mobiel
Novay Tuesday Update - Digitale identiteiten: herbruikbaar en mobielNovay Tuesday Update - Digitale identiteiten: herbruikbaar en mobiel
Novay Tuesday Update - Digitale identiteiten: herbruikbaar en mobiel
 
Cloud privacy & security - Een verkenning van tools en technieken
Cloud privacy & security - Een verkenning van tools en techniekenCloud privacy & security - Een verkenning van tools en technieken
Cloud privacy & security - Een verkenning van tools en technieken
 
XACML pilot at a large Dutch bank, Using XACML to implement context-enhanced ...
XACML pilot at a large Dutch bank, Using XACML to implement context-enhanced ...XACML pilot at a large Dutch bank, Using XACML to implement context-enhanced ...
XACML pilot at a large Dutch bank, Using XACML to implement context-enhanced ...
 
Identiteit & Authenticatie voor UMCs SIG Informatie Beveiliging IAM themadag ...
Identiteit & Authenticatie voor UMCs SIG Informatie Beveiliging IAM themadag ...Identiteit & Authenticatie voor UMCs SIG Informatie Beveiliging IAM themadag ...
Identiteit & Authenticatie voor UMCs SIG Informatie Beveiliging IAM themadag ...
 
Digitale identiteiten: vertrouwen, identity providers en de toekomst (Novay T...
Digitale identiteiten: vertrouwen, identity providers en de toekomst (Novay T...Digitale identiteiten: vertrouwen, identity providers en de toekomst (Novay T...
Digitale identiteiten: vertrouwen, identity providers en de toekomst (Novay T...
 
The user perspective on consent for identity federations (TNC 2011)
The user perspective on consent for identity federations (TNC 2011)The user perspective on consent for identity federations (TNC 2011)
The user perspective on consent for identity federations (TNC 2011)
 
User controlled privacy voor de SURFfederatie
User controlled privacy voor de SURFfederatieUser controlled privacy voor de SURFfederatie
User controlled privacy voor de SURFfederatie
 
2de cid safe netwerkbijeenkomst (Dutch, 29
2de cid safe netwerkbijeenkomst (Dutch, 292de cid safe netwerkbijeenkomst (Dutch, 29
2de cid safe netwerkbijeenkomst (Dutch, 29
 
User consent for consumer identity (@ISSE2010)
User consent for consumer identity (@ISSE2010)User consent for consumer identity (@ISSE2010)
User consent for consumer identity (@ISSE2010)
 
cidSafe project overview (in Dutch!!!)
cidSafe project overview (in Dutch!!!)cidSafe project overview (in Dutch!!!)
cidSafe project overview (in Dutch!!!)
 
OpenIdplus.nl Proof of Concept uitkomsten (in Dutch)
OpenIdplus.nl Proof of Concept uitkomsten (in Dutch)OpenIdplus.nl Proof of Concept uitkomsten (in Dutch)
OpenIdplus.nl Proof of Concept uitkomsten (in Dutch)
 
Using ePassports for online authentication - ICT Delta 2010
Using ePassports for online authentication - ICT Delta 2010Using ePassports for online authentication - ICT Delta 2010
Using ePassports for online authentication - ICT Delta 2010
 
User & Mobile Centric Identity
User & Mobile Centric IdentityUser & Mobile Centric Identity
User & Mobile Centric Identity
 
Identity federation & user centric identity
Identity federation & user centric identityIdentity federation & user centric identity
Identity federation & user centric identity
 

Último

Anypoint Exchange: It’s Not Just a Repo!
Anypoint Exchange: It’s Not Just a Repo!Anypoint Exchange: It’s Not Just a Repo!
Anypoint Exchange: It’s Not Just a Repo!Manik S Magar
 
DevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsDevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsSergiu Bodiu
 
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek SchlawackFwdays
 
SALESFORCE EDUCATION CLOUD | FEXLE SERVICES
SALESFORCE EDUCATION CLOUD | FEXLE SERVICESSALESFORCE EDUCATION CLOUD | FEXLE SERVICES
SALESFORCE EDUCATION CLOUD | FEXLE SERVICESmohitsingh558521
 
How to write a Business Continuity Plan
How to write a Business Continuity PlanHow to write a Business Continuity Plan
How to write a Business Continuity PlanDatabarracks
 
Time Series Foundation Models - current state and future directions
Time Series Foundation Models - current state and future directionsTime Series Foundation Models - current state and future directions
Time Series Foundation Models - current state and future directionsNathaniel Shimoni
 
Artificial intelligence in cctv survelliance.pptx
Artificial intelligence in cctv survelliance.pptxArtificial intelligence in cctv survelliance.pptx
Artificial intelligence in cctv survelliance.pptxhariprasad279825
 
TrustArc Webinar - How to Build Consumer Trust Through Data Privacy
TrustArc Webinar - How to Build Consumer Trust Through Data PrivacyTrustArc Webinar - How to Build Consumer Trust Through Data Privacy
TrustArc Webinar - How to Build Consumer Trust Through Data PrivacyTrustArc
 
Gen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfGen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfAddepto
 
A Deep Dive on Passkeys: FIDO Paris Seminar.pptx
A Deep Dive on Passkeys: FIDO Paris Seminar.pptxA Deep Dive on Passkeys: FIDO Paris Seminar.pptx
A Deep Dive on Passkeys: FIDO Paris Seminar.pptxLoriGlavin3
 
The Ultimate Guide to Choosing WordPress Pros and Cons
The Ultimate Guide to Choosing WordPress Pros and ConsThe Ultimate Guide to Choosing WordPress Pros and Cons
The Ultimate Guide to Choosing WordPress Pros and ConsPixlogix Infotech
 
Rise of the Machines: Known As Drones...
Rise of the Machines: Known As Drones...Rise of the Machines: Known As Drones...
Rise of the Machines: Known As Drones...Rick Flair
 
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024BookNet Canada
 
Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 3652toLead Limited
 
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptxThe Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptxLoriGlavin3
 
Training state-of-the-art general text embedding
Training state-of-the-art general text embeddingTraining state-of-the-art general text embedding
Training state-of-the-art general text embeddingZilliz
 
Generative AI for Technical Writer or Information Developers
Generative AI for Technical Writer or Information DevelopersGenerative AI for Technical Writer or Information Developers
Generative AI for Technical Writer or Information DevelopersRaghuram Pandurangan
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebUiPathCommunity
 
Sample pptx for embedding into website for demo
Sample pptx for embedding into website for demoSample pptx for embedding into website for demo
Sample pptx for embedding into website for demoHarshalMandlekar2
 
New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024BookNet Canada
 

Último (20)

Anypoint Exchange: It’s Not Just a Repo!
Anypoint Exchange: It’s Not Just a Repo!Anypoint Exchange: It’s Not Just a Repo!
Anypoint Exchange: It’s Not Just a Repo!
 
DevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsDevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platforms
 
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
 
SALESFORCE EDUCATION CLOUD | FEXLE SERVICES
SALESFORCE EDUCATION CLOUD | FEXLE SERVICESSALESFORCE EDUCATION CLOUD | FEXLE SERVICES
SALESFORCE EDUCATION CLOUD | FEXLE SERVICES
 
How to write a Business Continuity Plan
How to write a Business Continuity PlanHow to write a Business Continuity Plan
How to write a Business Continuity Plan
 
Time Series Foundation Models - current state and future directions
Time Series Foundation Models - current state and future directionsTime Series Foundation Models - current state and future directions
Time Series Foundation Models - current state and future directions
 
Artificial intelligence in cctv survelliance.pptx
Artificial intelligence in cctv survelliance.pptxArtificial intelligence in cctv survelliance.pptx
Artificial intelligence in cctv survelliance.pptx
 
TrustArc Webinar - How to Build Consumer Trust Through Data Privacy
TrustArc Webinar - How to Build Consumer Trust Through Data PrivacyTrustArc Webinar - How to Build Consumer Trust Through Data Privacy
TrustArc Webinar - How to Build Consumer Trust Through Data Privacy
 
Gen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfGen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdf
 
A Deep Dive on Passkeys: FIDO Paris Seminar.pptx
A Deep Dive on Passkeys: FIDO Paris Seminar.pptxA Deep Dive on Passkeys: FIDO Paris Seminar.pptx
A Deep Dive on Passkeys: FIDO Paris Seminar.pptx
 
The Ultimate Guide to Choosing WordPress Pros and Cons
The Ultimate Guide to Choosing WordPress Pros and ConsThe Ultimate Guide to Choosing WordPress Pros and Cons
The Ultimate Guide to Choosing WordPress Pros and Cons
 
Rise of the Machines: Known As Drones...
Rise of the Machines: Known As Drones...Rise of the Machines: Known As Drones...
Rise of the Machines: Known As Drones...
 
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
 
Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365
 
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptxThe Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
 
Training state-of-the-art general text embedding
Training state-of-the-art general text embeddingTraining state-of-the-art general text embedding
Training state-of-the-art general text embedding
 
Generative AI for Technical Writer or Information Developers
Generative AI for Technical Writer or Information DevelopersGenerative AI for Technical Writer or Information Developers
Generative AI for Technical Writer or Information Developers
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio Web
 
Sample pptx for embedding into website for demo
Sample pptx for embedding into website for demoSample pptx for embedding into website for demo
Sample pptx for embedding into website for demo
 
New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
 

Consumer and Citizen Identities: Government Issued or Trust Frameworks? (European Identity Conference 2011)

  • 1. Consumer and Citizen Identities: Government Issued or Trust Frameworks? Maarten Wegdam, Novay European Identity Conference 2011 12 May 2011, Munich
  • 2. Novay? • Independent Dutch ICT research institute • Formerly Telematica Instituut • “People driven, ICT empowered” • ~55 researchers, multi-disciplinary • Innovation projects • Including financial sector, government and semi- government 2
  • 3. Old problem [New Yorker cartoon by Peter Steiner] 3
  • 4. What to expect? • Re-usable identities are the way to go • Government vs trust framework: they co-exist • Banks and government are key • Convincing relying parties: needed and hard work 4
  • 5. Identity in the offline world 5
  • 6. And online? Id theft Avoidable costs Lost revenues (?) Frustrated users Privacy/control 6 issues
  • 7. Solution: re-usable identities (One or) a few trusted identities Of course: secure & trusted Of course: user controlled, privacy sensitive 7
  • 8. Trust in an identity Authentication Identity Level of means binding Assurance 8
  • 9. Challenges for trusted re-usable identities lack of privacy market trust in Id issues entry Provider issues 9
  • 10. The big choice: government or market as identity provider • Government – as in offline world • Market – as phone, internet access, email etc 10
  • 11. The big choice: government or market as identity provider • Government – as in offline world • Market – as phone, internet access, email etc • Some form of controlled market 11
  • 12. Decreasing (government) control Government issued Government regulated Trust framework Free market (tech standard) Note: models 1 to 3 require some form of monopoly or regulator 12
  • 13. Identity trust framework = a set of rules that all players agree upon To have more trust and a healthy ecosystem • A fair business model • New identity providers can join • Easy access for relying parties (scalability) • Balancing interests between players • Privacy assurances • Governance / audits • Support one or more levels of assurance 13
  • 14. Success criteria C2B/C2G identity • Frequent use of eID essential • For private AND public services (C2B & C2G) • Bank involvement seems key • Government governance required • Easy entrance for relying parties • Ease of use for end-users • High (100%?) user penetration needed [based on use cases study in DK,BE.DE,NO,SE,EE,US in 2010] 14
  • 15. Government issued eID Identity trust framework Easier market entry Innovation ‘friendlier’ • 100% user coverage User choice • gov as relying party International is easier (?) Clearer bus model Benefits of competition … Neutral branding Re-use existing identities Privacy of Relying party Trust: cultural? User privacy: one big brother or several medium brothers? 15
  • 16. use-case: trusted and re-usable consumer identity in NL Consortium Financial sector Vision on trust framework Feasibility 16
  • 17. vision on trust framework • Business model – users should not pay (directly) • Business case – re-use existing identities • Very easy for relying parties to connect • Several levels of assurance – ‘mid’ trust and up • Mobile – from the start • Privacy – state-of-the-art and consent • Government needed for trust (link to eRecognition) 17
  • 18. : my lessons learned • High-level mngt in financial industry do not understand nerdy terms like trust frameworks • Government needs to be ‘predictable’ !!! • Relying parties: so they don’t wait for gov • Identity providers: trust & no competition • Re-use existing & trusted: you need (all ?) banks as identity providers • not core business, there are risks, and unclear business case ... 18
  • 19. My 2 cents for relying parties • Re-use identities from others when you can • Heterogeneity - no 1-identity-to-rule-them all, accept heterogeneity as inevitable • Stimulate trust frameworks - it is in your interest to reduce heterogeneity without introducing a monopoly • Architect your identity system to accept different levels of assurance, from different parties • If you have customers from only one nation, can wait a couple of years and live in a government-issued C2B eID country: things may be simpler. 19
  • 20. 5 things to keep an eye on 1. Will social login (Facebook etc) become more trustworthy? 2. Will domain-specific trust frameworks expand, e.g. higher education? 3. Are four levels-of-assurance (trust levels) really needed? Will users understand? 4. What is the value of an authentication for a relying party? (BankID is pretty cheap …) 5. Are trust frameworks also about trusting the relying parties? 20
  • 21. Take aways • Re-usable identities are the way to go • If both C2B and C2G: easier market entry, cheaper • Government vs trust framework: they co-exist • Privacy, political, legacy, legislation are factors • Banks and government are key • Market penetration as identity providers • Killer apps as relying parties • Trust • Convincing relying parties: needed and hard work More information: maarten.wegdam@novay.nl http://maarten.wegdam.name 21