SlideShare a Scribd company logo
1 of 26
Continuity and Resilience (CORE)
ISO 22301 BCM Consulting Firm
Presentations by speakers at the
4th India Business & IT Resilience Summit
7th October, 2016 | Hotel Hilton, Mumbai India
Our Contact Details:
INDIA UAE
Continuity and Resilience
Level 15,Eros Corporate Tower
Nehru Place ,New Delhi-110019
Tel: +91 11 41055534/ +91 11 41613033
Fax: ++91 11 41055535
Email: ms@continuityandresilience.com
Continuity and Resilience
P. O. Box 127557
Abu Dhabi, United Arab Emirates
Mobile:+971 50 8460530
Tel: +971 2 8152831
Fax: +971 2 8152888
Email: info@continuityandresilience.com
BCM & IT resilience in Aadhaar
Sumnesh Joshi
ADG, UIDAI Mumbai
4th INDIA Business & IT Resilience Summit
October 7, 2016 Mumbai
Understanding Aadhaar System
The Unique ID initiative
UIDAI mandate
To provide a unique
number to the
residents of India
Collect basic
demographic
information and
biometric information
Guarantee non-
duplication through
biometrics
Offer online
authentication
services that can be
used across India
Context and Need for Unique IDs
To clean up existing
databases, to remove
Duplicates and Fakes
To improve targeting and
delivery of services
Enable service and
applications that require a
verifiable unique ID
www.uidai.gov.in
Enroll Once …
5
Demographic Data Biometric Data
Resident’s Photograph
Resident’s
Finger Prints
Resident’s
Iris
• Mandatory data:
– Name, Age/Date of Birth,
Gender and
– Address of the resident.
• Conditional data:
– Parents/Guardian details
• Optional data:
– Phone no., email address
• 12-digit Aadhaar Number - Unique, lifetime,
biometric based identity
… Authenticate many times
• Supports answering the question “is a resident the person
he/she claims to be”
– Verifies resident information (demographics, biometrics, and OTP) for
a given Aadhaar number (1:1 matching)
– Online identity verification that is lightweight, ubiquitous, and secure
– responds with a “yes/no” and no personal identity information is
returned as part of the response
– eKYC i.e sharing resident information with his / her consent
• Supports multi-factor authentication using demographics,
biometrics, OTP and combinations thereof
• Supports all types of protocols and devices
– Personal computer, mobile, PoS terminals, etc.
– Works with assisted and self-service applications
6
YES
OR
NO
Name, Gender
DOB, Address, …
OTP
OTP Request
AUA (Authentication Services)
OTP
KUA (e-KYC user) Services
Aadhaar
Holder
Auth
Server
Leased lines
ASA
ASA
ASA
ASA
ASA
AUA
AUA
UIDAI Data Centre
Sub-AUA
Authentication
Devices
Aadhaar Authentication Ecosystem Architecture
Work so far …
• Program launched on the ground in Sept 2010
• Enrolment
– About 106 crore enrolments currently done and target to achieve
100% coverage by March 2017
• Authentication
1. Around 90-95 lakh Auth transactions per day
2. 2,12,387 eKYC transaction per day using Finger print
3. 28,821 eKYC transactions per day using IRIS
4. 2.65 Cr Bank accounts have been opened using eKYC
5. 1,15,635 Micro ATM deployed
6. 1.14 Cr AePS transactions happened in July 16
11
Technology behind Aadhaar
Architecture Principles
• Design for large scale
– Every component needs to scale to large volumes
– Millions of transactions and billions of records
• No vendor lock-in across the system
– Use of open standards to ensure interoperability allowing multiple
vendors to supply systems/software/hardware
– If there are no standards, create one
– Allow the ecosystem to build plug-n-play libraries to standard APIs
– Use of open-source technologies wherever prudent
• Performance metrics made public through portal for
transparency (PII anonymized)
• Strong end-to-end security
13
Designed for Scale
• Horizontal scalability for all components
– “Open Scaleout” architecture is the key
– Distributed computing on commodity hardware
– Distributed data store and data partitioning
– Horizontal scaling of “data store” a must!
• NO single point of bottleneck for scaling
– Typically, in database driven architecture, RDBMS become
the single point of bottleneck
• Asynchronous processing throughout the system
– Allows loose coupling various components
– Allows independent component level scaling
14
Enrolment Volume
• 1000 million Aadhaars in 6 years
– Last 3months , 12 million aadhaar in a month
– 100+ trillion biometric matches a day!!!
• ~5MB per resident
– Maps to about 10 PB of raw data!
– About 5+ TB of incremental data every day
– Replication and backup across data centers
– New enrolments and updates adds more data
• Additional workflow/process/event data
– 100+ million events on an average moving through async channels
– Needing complete update and insert guarantees across data stores
– 15-20 TB I/O processing every day!
15
Authentication Volume
• 100+ million authentications per day
– Mostly during 10 hr period
– Possible high variance on peak and average
– Multi-DC Active-Active architecture
• 100 million authentications per day means
– 1 billion audit records every 10 days
– 4 TB encrypted audit logs every 10 days
– Need to keep recent audits online and older ones in archive
– Audit write must be guaranteed
16
BCM & IT resilience in Aadhaar
Need for BCM & IT resilience
• Aadhaar manages identity data of a billion+
residents
– Data protection and service continuity very critical
– Data protection required for 10+ PB
• Stringent BCM & IT resilience Goals
– Recovery Point Objective (RPO) must be zero (no data
loss across the system)
– Recovery Time Objective (RTO) must be less than 4
hours for enrolment and zero for authentication
• 24x7, multi data center operation
Need for BCM & IT resilience
• Having a business continuity and disaster
recovery plan is a necessity
– natural disasters such as flooding, earthquakes, to
man-made events such as power outages and
terrorism
• Loss of critical enrolment data and the core CIDR
services
– results in financial and intangible losses that are
difficult to calculate
• Loss of authentication service and data means
many services in the country will be affected
Data Center Details
• Currently 2 large data centers in Bangalore and
Manesar
• Data centers connected via 1 Gbps links
– All data replicated across data centers
– 5+ TB of data replicated every day
• 24x7 Network Operations Center (NoC)
• Well defined, secure, rigorous data center processes
• Applications architected to run in multi-DC high
availability mode allowing UIDAI to meet zero RPO
and near-zero RTO
Comprehensive Framework
Failure levels & Impact
ITIL Processes at CIDR
• Incident / Service Request Management
– Incident classification and SLA definition
– Tools and Knowledgebase for tracking and analysis
– People, Processes, and escalation
• Application Release Management
– Major releases, patch management
– Automated deployment through central systems
– Staging, testing, rollout processes, tools, and teams
• Availability Management
– Service availability, SLAs, metrics
– 24x7 NoC, monitoring, resolution, and escalation processes
Non–IT Related Requirements
• People
– Staff for DR site
– Call center (separate and integrated)
• Operational
– Declaring and communicating disaster to all
considered parties (registrars, others)
– Regular drills to ensure readiness in the event of a
disaster
Conclusion
• Aadhaar is the largest biometric based online
identity system in the World
– Providing “unique” identity to all residents
– Providing increased “access”, “Convenience”, and
“transparency” to common man
• Aadhaar data is very large and is most critical
• Aadhaar services are 24x7 across multiple DCs
• BCP & DR requires clear definition, detail planning,
and flawless execution
• Zero RPO and near Zero RTO must
26
THANK YOU

More Related Content

Viewers also liked

5th ME Business & IT Resilience Summit 2016 - Pandemics in BCM
5th ME Business & IT Resilience Summit 2016 - Pandemics in BCM5th ME Business & IT Resilience Summit 2016 - Pandemics in BCM
5th ME Business & IT Resilience Summit 2016 - Pandemics in BCMContinuity and Resilience
 
Zero data Loss Recovery Appliance
Zero data Loss Recovery ApplianceZero data Loss Recovery Appliance
Zero data Loss Recovery ApplianceTrivadis
 
it-Select-a-Best-Fit-DR-Solution-Phases-1-3
it-Select-a-Best-Fit-DR-Solution-Phases-1-3it-Select-a-Best-Fit-DR-Solution-Phases-1-3
it-Select-a-Best-Fit-DR-Solution-Phases-1-3Robert Nardella
 
The Spanish Influenza Pandemic 1918
The Spanish Influenza Pandemic 1918The Spanish Influenza Pandemic 1918
The Spanish Influenza Pandemic 1918angelinatorre
 
Gestión de Incidentes de Seguridad de la Información - CERT / CSIRT
Gestión de Incidentes de Seguridad de la Información - CERT / CSIRTGestión de Incidentes de Seguridad de la Información - CERT / CSIRT
Gestión de Incidentes de Seguridad de la Información - CERT / CSIRTDaniel Sasia
 
Plan Continuidad de Negocio
Plan Continuidad de NegocioPlan Continuidad de Negocio
Plan Continuidad de NegocioDavid Ortega
 
Plan de Continuidad de Negocios
Plan de Continuidad de NegociosPlan de Continuidad de Negocios
Plan de Continuidad de NegociosCarlos Francavilla
 
Disaster recovery and the cloud
Disaster recovery and the cloudDisaster recovery and the cloud
Disaster recovery and the cloudJason Dea
 

Viewers also liked (9)

5th ME Business & IT Resilience Summit 2016 - Pandemics in BCM
5th ME Business & IT Resilience Summit 2016 - Pandemics in BCM5th ME Business & IT Resilience Summit 2016 - Pandemics in BCM
5th ME Business & IT Resilience Summit 2016 - Pandemics in BCM
 
Zero data Loss Recovery Appliance
Zero data Loss Recovery ApplianceZero data Loss Recovery Appliance
Zero data Loss Recovery Appliance
 
it-Select-a-Best-Fit-DR-Solution-Phases-1-3
it-Select-a-Best-Fit-DR-Solution-Phases-1-3it-Select-a-Best-Fit-DR-Solution-Phases-1-3
it-Select-a-Best-Fit-DR-Solution-Phases-1-3
 
The Spanish Influenza Pandemic 1918
The Spanish Influenza Pandemic 1918The Spanish Influenza Pandemic 1918
The Spanish Influenza Pandemic 1918
 
Pandemic Flu Presentation
Pandemic Flu PresentationPandemic Flu Presentation
Pandemic Flu Presentation
 
Gestión de Incidentes de Seguridad de la Información - CERT / CSIRT
Gestión de Incidentes de Seguridad de la Información - CERT / CSIRTGestión de Incidentes de Seguridad de la Información - CERT / CSIRT
Gestión de Incidentes de Seguridad de la Información - CERT / CSIRT
 
Plan Continuidad de Negocio
Plan Continuidad de NegocioPlan Continuidad de Negocio
Plan Continuidad de Negocio
 
Plan de Continuidad de Negocios
Plan de Continuidad de NegociosPlan de Continuidad de Negocios
Plan de Continuidad de Negocios
 
Disaster recovery and the cloud
Disaster recovery and the cloudDisaster recovery and the cloud
Disaster recovery and the cloud
 

Similar to BCM & IT Resilience in India's Aadhaar System

RFID-Case Studies-V1
RFID-Case Studies-V1RFID-Case Studies-V1
RFID-Case Studies-V1Atul Joshi
 
6 Practical Steps F&B Companies Can Take to Achieve Digital Transformation
6 Practical Steps F&B Companies Can Take to Achieve Digital Transformation6 Practical Steps F&B Companies Can Take to Achieve Digital Transformation
6 Practical Steps F&B Companies Can Take to Achieve Digital TransformationSafetyChain Software
 
Experience i fix video v1.1
Experience i fix video v1.1Experience i fix video v1.1
Experience i fix video v1.1Shahnawaz Alam
 
High capacity enrolment and authentication solution for the Unique Identifica...
High capacity enrolment and authentication solution for the Unique Identifica...High capacity enrolment and authentication solution for the Unique Identifica...
High capacity enrolment and authentication solution for the Unique Identifica...Mindtree Ltd.
 
DWS17 - Plenary Session : Big technological bets - Anukool LAKIHINA - Guavus
DWS17 - Plenary Session : Big technological bets - Anukool LAKIHINA -  GuavusDWS17 - Plenary Session : Big technological bets - Anukool LAKIHINA -  Guavus
DWS17 - Plenary Session : Big technological bets - Anukool LAKIHINA - GuavusIDATE DigiWorld
 
Moving To MicroServices
Moving To MicroServicesMoving To MicroServices
Moving To MicroServicesDavid Walker
 
Smart city - Steven furst fis
Smart city - Steven furst fisSmart city - Steven furst fis
Smart city - Steven furst fisChuong Nguyen
 
Kaushal Amin & Big 5 IT trends in the world
Kaushal Amin & Big 5 IT trends in the worldKaushal Amin & Big 5 IT trends in the world
Kaushal Amin & Big 5 IT trends in the worldQuang PM
 
Technology Trends and Big Data in 2013-2014
Technology Trends and Big Data in 2013-2014Technology Trends and Big Data in 2013-2014
Technology Trends and Big Data in 2013-2014KMS Technology
 
AWS APAC Webinar Week - Real Time Data Processing with Kinesis
AWS APAC Webinar Week - Real Time Data Processing with KinesisAWS APAC Webinar Week - Real Time Data Processing with Kinesis
AWS APAC Webinar Week - Real Time Data Processing with KinesisAmazon Web Services
 
Transforming Business Operations with Blockchain
Transforming Business Operations with BlockchainTransforming Business Operations with Blockchain
Transforming Business Operations with BlockchainPerficient, Inc.
 
NTGapps NTG LowCode Platform
NTGapps NTG LowCode Platform NTGapps NTG LowCode Platform
NTGapps NTG LowCode Platform Mustafa Kuğu
 
I Call Presentation
I Call PresentationI Call Presentation
I Call Presentationdnewcomer
 
I Call Presentation
I Call PresentationI Call Presentation
I Call Presentationdnewcomer
 
TGS-BP-BusinessPresentation-en-r00
TGS-BP-BusinessPresentation-en-r00TGS-BP-BusinessPresentation-en-r00
TGS-BP-BusinessPresentation-en-r00Itconic
 
NADRA Software Development
NADRA Software DevelopmentNADRA Software Development
NADRA Software DevelopmentBilal Ahmed
 
D3SF17- Improving Our China Clients Performance
D3SF17- Improving Our China Clients PerformanceD3SF17- Improving Our China Clients Performance
D3SF17- Improving Our China Clients PerformanceImperva Incapsula
 
2016 DSG Webinar Azure HDInsight 2 V4
2016 DSG Webinar Azure HDInsight 2 V42016 DSG Webinar Azure HDInsight 2 V4
2016 DSG Webinar Azure HDInsight 2 V4Janani Eshwaran
 
2016 DSG Webinar Azure HDInsight 2 V4
2016 DSG Webinar Azure HDInsight 2 V42016 DSG Webinar Azure HDInsight 2 V4
2016 DSG Webinar Azure HDInsight 2 V4Janani Eshwaran
 

Similar to BCM & IT Resilience in India's Aadhaar System (20)

RFID-Case Studies-V1
RFID-Case Studies-V1RFID-Case Studies-V1
RFID-Case Studies-V1
 
6 Practical Steps F&B Companies Can Take to Achieve Digital Transformation
6 Practical Steps F&B Companies Can Take to Achieve Digital Transformation6 Practical Steps F&B Companies Can Take to Achieve Digital Transformation
6 Practical Steps F&B Companies Can Take to Achieve Digital Transformation
 
Experience i fix video v1.1
Experience i fix video v1.1Experience i fix video v1.1
Experience i fix video v1.1
 
High capacity enrolment and authentication solution for the Unique Identifica...
High capacity enrolment and authentication solution for the Unique Identifica...High capacity enrolment and authentication solution for the Unique Identifica...
High capacity enrolment and authentication solution for the Unique Identifica...
 
DWS17 - Plenary Session : Big technological bets - Anukool LAKIHINA - Guavus
DWS17 - Plenary Session : Big technological bets - Anukool LAKIHINA -  GuavusDWS17 - Plenary Session : Big technological bets - Anukool LAKIHINA -  Guavus
DWS17 - Plenary Session : Big technological bets - Anukool LAKIHINA - Guavus
 
Moving To MicroServices
Moving To MicroServicesMoving To MicroServices
Moving To MicroServices
 
Smart city - Steven furst fis
Smart city - Steven furst fisSmart city - Steven furst fis
Smart city - Steven furst fis
 
Kaushal Amin & Big 5 IT trends in the world
Kaushal Amin & Big 5 IT trends in the worldKaushal Amin & Big 5 IT trends in the world
Kaushal Amin & Big 5 IT trends in the world
 
Technology Trends and Big Data in 2013-2014
Technology Trends and Big Data in 2013-2014Technology Trends and Big Data in 2013-2014
Technology Trends and Big Data in 2013-2014
 
AWS APAC Webinar Week - Real Time Data Processing with Kinesis
AWS APAC Webinar Week - Real Time Data Processing with KinesisAWS APAC Webinar Week - Real Time Data Processing with Kinesis
AWS APAC Webinar Week - Real Time Data Processing with Kinesis
 
Transforming Business Operations with Blockchain
Transforming Business Operations with BlockchainTransforming Business Operations with Blockchain
Transforming Business Operations with Blockchain
 
NTGapps NTG LowCode Platform
NTGapps NTG LowCode Platform NTGapps NTG LowCode Platform
NTGapps NTG LowCode Platform
 
I Call Presentation
I Call PresentationI Call Presentation
I Call Presentation
 
I Call Presentation
I Call PresentationI Call Presentation
I Call Presentation
 
TGS-BP-BusinessPresentation-en-r00
TGS-BP-BusinessPresentation-en-r00TGS-BP-BusinessPresentation-en-r00
TGS-BP-BusinessPresentation-en-r00
 
NADRA Software Development
NADRA Software DevelopmentNADRA Software Development
NADRA Software Development
 
D3SF17- Improving Our China Clients Performance
D3SF17- Improving Our China Clients PerformanceD3SF17- Improving Our China Clients Performance
D3SF17- Improving Our China Clients Performance
 
2016 DSG Webinar Azure HDInsight 2 V4
2016 DSG Webinar Azure HDInsight 2 V42016 DSG Webinar Azure HDInsight 2 V4
2016 DSG Webinar Azure HDInsight 2 V4
 
2016 DSG Webinar Azure HDInsight 2 V4
2016 DSG Webinar Azure HDInsight 2 V42016 DSG Webinar Azure HDInsight 2 V4
2016 DSG Webinar Azure HDInsight 2 V4
 
Deepak Kumar
Deepak KumarDeepak Kumar
Deepak Kumar
 

More from Continuity and Resilience

The Business Continuity Conference, 25th October 2023 in Riyadh - Mr. Atiq Bajwa
The Business Continuity Conference, 25th October 2023 in Riyadh - Mr. Atiq BajwaThe Business Continuity Conference, 25th October 2023 in Riyadh - Mr. Atiq Bajwa
The Business Continuity Conference, 25th October 2023 in Riyadh - Mr. Atiq BajwaContinuity and Resilience
 
The Business Continuity Conference, 25th October 2023 in Riyadh - Nuha Eltinay
The Business Continuity Conference, 25th October 2023 in Riyadh - Nuha EltinayThe Business Continuity Conference, 25th October 2023 in Riyadh - Nuha Eltinay
The Business Continuity Conference, 25th October 2023 in Riyadh - Nuha EltinayContinuity and Resilience
 
The Business Continuity Conference, 25th October 2023 in Riyadh - Paul Gant
The Business Continuity Conference, 25th October 2023 in Riyadh -  Paul GantThe Business Continuity Conference, 25th October 2023 in Riyadh -  Paul Gant
The Business Continuity Conference, 25th October 2023 in Riyadh - Paul GantContinuity and Resilience
 
The Business Continuity Conference, 25th October 2023 in Riyadh - David Boll...
The Business Continuity Conference, 25th October 2023 in Riyadh - David Boll...The Business Continuity Conference, 25th October 2023 in Riyadh - David Boll...
The Business Continuity Conference, 25th October 2023 in Riyadh - David Boll...Continuity and Resilience
 
The Business Continuity Conference, 25th October 2023 in Riyadh - Abdulrahma...
The Business Continuity Conference, 25th October 2023 in Riyadh - Abdulrahma...The Business Continuity Conference, 25th October 2023 in Riyadh - Abdulrahma...
The Business Continuity Conference, 25th October 2023 in Riyadh - Abdulrahma...Continuity and Resilience
 
Advancing the Enterprise Towards Enterprise Resilience
Advancing the Enterprise Towards Enterprise ResilienceAdvancing the Enterprise Towards Enterprise Resilience
Advancing the Enterprise Towards Enterprise ResilienceContinuity and Resilience
 
Value of Work Place Services in the Middle East
Value of Work Place Services in the Middle EastValue of Work Place Services in the Middle East
Value of Work Place Services in the Middle EastContinuity and Resilience
 
Social Media Influence in the field of Crisis Management– Case Studies
Social Media Influence in the field of Crisis Management– Case StudiesSocial Media Influence in the field of Crisis Management– Case Studies
Social Media Influence in the field of Crisis Management– Case StudiesContinuity and Resilience
 
Cyber Resilience Tips and Techniques For Protection & Response
Cyber ResilienceTips and Techniques For Protection & Response Cyber ResilienceTips and Techniques For Protection & Response
Cyber Resilience Tips and Techniques For Protection & Response Continuity and Resilience
 
Business Continuity and Information Security- An Excellent Fit!
Business Continuity and Information Security- An Excellent Fit!Business Continuity and Information Security- An Excellent Fit!
Business Continuity and Information Security- An Excellent Fit!Continuity and Resilience
 
Crisis Communication & BCM in Aviation Sector
Crisis Communication & BCM in Aviation SectorCrisis Communication & BCM in Aviation Sector
Crisis Communication & BCM in Aviation SectorContinuity and Resilience
 
Effectiveness of Disaster Management Ground Reality and Potential.
Effectiveness of Disaster Management Ground Reality and Potential.Effectiveness of Disaster Management Ground Reality and Potential.
Effectiveness of Disaster Management Ground Reality and Potential.Continuity and Resilience
 

More from Continuity and Resilience (20)

The Business Continuity Conference, 25th October 2023 in Riyadh - Mr. Atiq Bajwa
The Business Continuity Conference, 25th October 2023 in Riyadh - Mr. Atiq BajwaThe Business Continuity Conference, 25th October 2023 in Riyadh - Mr. Atiq Bajwa
The Business Continuity Conference, 25th October 2023 in Riyadh - Mr. Atiq Bajwa
 
The Business Continuity Conference, 25th October 2023 in Riyadh - Nuha Eltinay
The Business Continuity Conference, 25th October 2023 in Riyadh - Nuha EltinayThe Business Continuity Conference, 25th October 2023 in Riyadh - Nuha Eltinay
The Business Continuity Conference, 25th October 2023 in Riyadh - Nuha Eltinay
 
The Business Continuity Conference, 25th October 2023 in Riyadh - Paul Gant
The Business Continuity Conference, 25th October 2023 in Riyadh -  Paul GantThe Business Continuity Conference, 25th October 2023 in Riyadh -  Paul Gant
The Business Continuity Conference, 25th October 2023 in Riyadh - Paul Gant
 
The Business Continuity Conference, 25th October 2023 in Riyadh - David Boll...
The Business Continuity Conference, 25th October 2023 in Riyadh - David Boll...The Business Continuity Conference, 25th October 2023 in Riyadh - David Boll...
The Business Continuity Conference, 25th October 2023 in Riyadh - David Boll...
 
The Business Continuity Conference, 25th October 2023 in Riyadh - Abdulrahma...
The Business Continuity Conference, 25th October 2023 in Riyadh - Abdulrahma...The Business Continuity Conference, 25th October 2023 in Riyadh - Abdulrahma...
The Business Continuity Conference, 25th October 2023 in Riyadh - Abdulrahma...
 
DEFLUFFING RESILIENCE
DEFLUFFING RESILIENCEDEFLUFFING RESILIENCE
DEFLUFFING RESILIENCE
 
CREATING AND MAINTAINING A BCM PROGRAM
CREATING AND MAINTAINING A BCM PROGRAMCREATING AND MAINTAINING A BCM PROGRAM
CREATING AND MAINTAINING A BCM PROGRAM
 
BCM Challenges and Compliance
BCM Challenges and Compliance BCM Challenges and Compliance
BCM Challenges and Compliance
 
Thriving in the Crisis Situation
Thriving in the Crisis SituationThriving in the Crisis Situation
Thriving in the Crisis Situation
 
Cyber Security & IT Resilience
Cyber Security & IT Resilience Cyber Security & IT Resilience
Cyber Security & IT Resilience
 
Enterprise Resilience
Enterprise ResilienceEnterprise Resilience
Enterprise Resilience
 
Advancing the Enterprise Towards Enterprise Resilience
Advancing the Enterprise Towards Enterprise ResilienceAdvancing the Enterprise Towards Enterprise Resilience
Advancing the Enterprise Towards Enterprise Resilience
 
Bcm is all about people!
Bcm   is all about people!Bcm   is all about people!
Bcm is all about people!
 
SAMA BCM Framework
SAMA BCM Framework SAMA BCM Framework
SAMA BCM Framework
 
Value of Work Place Services in the Middle East
Value of Work Place Services in the Middle EastValue of Work Place Services in the Middle East
Value of Work Place Services in the Middle East
 
Social Media Influence in the field of Crisis Management– Case Studies
Social Media Influence in the field of Crisis Management– Case StudiesSocial Media Influence in the field of Crisis Management– Case Studies
Social Media Influence in the field of Crisis Management– Case Studies
 
Cyber Resilience Tips and Techniques For Protection & Response
Cyber ResilienceTips and Techniques For Protection & Response Cyber ResilienceTips and Techniques For Protection & Response
Cyber Resilience Tips and Techniques For Protection & Response
 
Business Continuity and Information Security- An Excellent Fit!
Business Continuity and Information Security- An Excellent Fit!Business Continuity and Information Security- An Excellent Fit!
Business Continuity and Information Security- An Excellent Fit!
 
Crisis Communication & BCM in Aviation Sector
Crisis Communication & BCM in Aviation SectorCrisis Communication & BCM in Aviation Sector
Crisis Communication & BCM in Aviation Sector
 
Effectiveness of Disaster Management Ground Reality and Potential.
Effectiveness of Disaster Management Ground Reality and Potential.Effectiveness of Disaster Management Ground Reality and Potential.
Effectiveness of Disaster Management Ground Reality and Potential.
 

Recently uploaded

GENUINE Babe,Call Girls IN Baderpur Delhi | +91-8377087607
GENUINE Babe,Call Girls IN Baderpur  Delhi | +91-8377087607GENUINE Babe,Call Girls IN Baderpur  Delhi | +91-8377087607
GENUINE Babe,Call Girls IN Baderpur Delhi | +91-8377087607dollysharma2066
 
Day 0- Bootcamp Roadmap for PLC Bootcamp
Day 0- Bootcamp Roadmap for PLC BootcampDay 0- Bootcamp Roadmap for PLC Bootcamp
Day 0- Bootcamp Roadmap for PLC BootcampPLCLeadershipDevelop
 
Agile Coaching Change Management Framework.pptx
Agile Coaching Change Management Framework.pptxAgile Coaching Change Management Framework.pptx
Agile Coaching Change Management Framework.pptxalinstan901
 
VIP 7001035870 Find & Meet Hyderabad Call Girls Ameerpet high-profile Call Girl
VIP 7001035870 Find & Meet Hyderabad Call Girls Ameerpet high-profile Call GirlVIP 7001035870 Find & Meet Hyderabad Call Girls Ameerpet high-profile Call Girl
VIP 7001035870 Find & Meet Hyderabad Call Girls Ameerpet high-profile Call Girladitipandeya
 
CALL ON ➥8923113531 🔝Call Girls Charbagh Lucknow best sexual service
CALL ON ➥8923113531 🔝Call Girls Charbagh Lucknow best sexual serviceCALL ON ➥8923113531 🔝Call Girls Charbagh Lucknow best sexual service
CALL ON ➥8923113531 🔝Call Girls Charbagh Lucknow best sexual serviceanilsa9823
 
Call Now Pooja Mehta : 7738631006 Door Step Call Girls Rate 100% Satisfactio...
Call Now Pooja Mehta :  7738631006 Door Step Call Girls Rate 100% Satisfactio...Call Now Pooja Mehta :  7738631006 Door Step Call Girls Rate 100% Satisfactio...
Call Now Pooja Mehta : 7738631006 Door Step Call Girls Rate 100% Satisfactio...Pooja Nehwal
 
BDSM⚡Call Girls in Sector 99 Noida Escorts >༒8448380779 Escort Service
BDSM⚡Call Girls in Sector 99 Noida Escorts >༒8448380779 Escort ServiceBDSM⚡Call Girls in Sector 99 Noida Escorts >༒8448380779 Escort Service
BDSM⚡Call Girls in Sector 99 Noida Escorts >༒8448380779 Escort ServiceDelhi Call girls
 
operational plan ppt.pptx nursing management
operational plan ppt.pptx nursing managementoperational plan ppt.pptx nursing management
operational plan ppt.pptx nursing managementTulsiDhidhi1
 
internal analysis on strategic management
internal analysis on strategic managementinternal analysis on strategic management
internal analysis on strategic managementharfimakarim
 

Recently uploaded (20)

Peak Performance & Resilience - Dr Dorian Dugmore
Peak Performance & Resilience - Dr Dorian DugmorePeak Performance & Resilience - Dr Dorian Dugmore
Peak Performance & Resilience - Dr Dorian Dugmore
 
Becoming an Inclusive Leader - Bernadette Thompson
Becoming an Inclusive Leader - Bernadette ThompsonBecoming an Inclusive Leader - Bernadette Thompson
Becoming an Inclusive Leader - Bernadette Thompson
 
Imagine - HR; are handling the 'bad banter' - Stella Chandler.pdf
Imagine - HR; are handling the 'bad banter' - Stella Chandler.pdfImagine - HR; are handling the 'bad banter' - Stella Chandler.pdf
Imagine - HR; are handling the 'bad banter' - Stella Chandler.pdf
 
GENUINE Babe,Call Girls IN Baderpur Delhi | +91-8377087607
GENUINE Babe,Call Girls IN Baderpur  Delhi | +91-8377087607GENUINE Babe,Call Girls IN Baderpur  Delhi | +91-8377087607
GENUINE Babe,Call Girls IN Baderpur Delhi | +91-8377087607
 
Unlocking the Future - Dr Max Blumberg, Founder of Blumberg Partnership
Unlocking the Future - Dr Max Blumberg, Founder of Blumberg PartnershipUnlocking the Future - Dr Max Blumberg, Founder of Blumberg Partnership
Unlocking the Future - Dr Max Blumberg, Founder of Blumberg Partnership
 
Day 0- Bootcamp Roadmap for PLC Bootcamp
Day 0- Bootcamp Roadmap for PLC BootcampDay 0- Bootcamp Roadmap for PLC Bootcamp
Day 0- Bootcamp Roadmap for PLC Bootcamp
 
Agile Coaching Change Management Framework.pptx
Agile Coaching Change Management Framework.pptxAgile Coaching Change Management Framework.pptx
Agile Coaching Change Management Framework.pptx
 
Intro_University_Ranking_Introduction.pptx
Intro_University_Ranking_Introduction.pptxIntro_University_Ranking_Introduction.pptx
Intro_University_Ranking_Introduction.pptx
 
VIP 7001035870 Find & Meet Hyderabad Call Girls Ameerpet high-profile Call Girl
VIP 7001035870 Find & Meet Hyderabad Call Girls Ameerpet high-profile Call GirlVIP 7001035870 Find & Meet Hyderabad Call Girls Ameerpet high-profile Call Girl
VIP 7001035870 Find & Meet Hyderabad Call Girls Ameerpet high-profile Call Girl
 
CALL ON ➥8923113531 🔝Call Girls Charbagh Lucknow best sexual service
CALL ON ➥8923113531 🔝Call Girls Charbagh Lucknow best sexual serviceCALL ON ➥8923113531 🔝Call Girls Charbagh Lucknow best sexual service
CALL ON ➥8923113531 🔝Call Girls Charbagh Lucknow best sexual service
 
Disrupt or be Disrupted - Kirk Vallis.pdf
Disrupt or be Disrupted - Kirk Vallis.pdfDisrupt or be Disrupted - Kirk Vallis.pdf
Disrupt or be Disrupted - Kirk Vallis.pdf
 
Call Now Pooja Mehta : 7738631006 Door Step Call Girls Rate 100% Satisfactio...
Call Now Pooja Mehta :  7738631006 Door Step Call Girls Rate 100% Satisfactio...Call Now Pooja Mehta :  7738631006 Door Step Call Girls Rate 100% Satisfactio...
Call Now Pooja Mehta : 7738631006 Door Step Call Girls Rate 100% Satisfactio...
 
Call Girls Service Tilak Nagar @9999965857 Delhi 🫦 No Advance VVIP 🍎 SERVICE
Call Girls Service Tilak Nagar @9999965857 Delhi 🫦 No Advance  VVIP 🍎 SERVICECall Girls Service Tilak Nagar @9999965857 Delhi 🫦 No Advance  VVIP 🍎 SERVICE
Call Girls Service Tilak Nagar @9999965857 Delhi 🫦 No Advance VVIP 🍎 SERVICE
 
BDSM⚡Call Girls in Sector 99 Noida Escorts >༒8448380779 Escort Service
BDSM⚡Call Girls in Sector 99 Noida Escorts >༒8448380779 Escort ServiceBDSM⚡Call Girls in Sector 99 Noida Escorts >༒8448380779 Escort Service
BDSM⚡Call Girls in Sector 99 Noida Escorts >༒8448380779 Escort Service
 
operational plan ppt.pptx nursing management
operational plan ppt.pptx nursing managementoperational plan ppt.pptx nursing management
operational plan ppt.pptx nursing management
 
Rohini Sector 16 Call Girls Delhi 9999965857 @Sabina Saikh No Advance
Rohini Sector 16 Call Girls Delhi 9999965857 @Sabina Saikh No AdvanceRohini Sector 16 Call Girls Delhi 9999965857 @Sabina Saikh No Advance
Rohini Sector 16 Call Girls Delhi 9999965857 @Sabina Saikh No Advance
 
internal analysis on strategic management
internal analysis on strategic managementinternal analysis on strategic management
internal analysis on strategic management
 
LoveLocalGov - Chris Twigg, Inner Circle
LoveLocalGov - Chris Twigg, Inner CircleLoveLocalGov - Chris Twigg, Inner Circle
LoveLocalGov - Chris Twigg, Inner Circle
 
Leadership in Crisis - Helio Vogas, Risk & Leadership Keynote Speaker
Leadership in Crisis - Helio Vogas, Risk & Leadership Keynote SpeakerLeadership in Crisis - Helio Vogas, Risk & Leadership Keynote Speaker
Leadership in Crisis - Helio Vogas, Risk & Leadership Keynote Speaker
 
Imagine - Creating Healthy Workplaces - Anthony Montgomery.pdf
Imagine - Creating Healthy Workplaces - Anthony Montgomery.pdfImagine - Creating Healthy Workplaces - Anthony Montgomery.pdf
Imagine - Creating Healthy Workplaces - Anthony Montgomery.pdf
 

BCM & IT Resilience in India's Aadhaar System

  • 1. Continuity and Resilience (CORE) ISO 22301 BCM Consulting Firm Presentations by speakers at the 4th India Business & IT Resilience Summit 7th October, 2016 | Hotel Hilton, Mumbai India Our Contact Details: INDIA UAE Continuity and Resilience Level 15,Eros Corporate Tower Nehru Place ,New Delhi-110019 Tel: +91 11 41055534/ +91 11 41613033 Fax: ++91 11 41055535 Email: ms@continuityandresilience.com Continuity and Resilience P. O. Box 127557 Abu Dhabi, United Arab Emirates Mobile:+971 50 8460530 Tel: +971 2 8152831 Fax: +971 2 8152888 Email: info@continuityandresilience.com
  • 2. BCM & IT resilience in Aadhaar Sumnesh Joshi ADG, UIDAI Mumbai 4th INDIA Business & IT Resilience Summit October 7, 2016 Mumbai
  • 4. The Unique ID initiative UIDAI mandate To provide a unique number to the residents of India Collect basic demographic information and biometric information Guarantee non- duplication through biometrics Offer online authentication services that can be used across India Context and Need for Unique IDs To clean up existing databases, to remove Duplicates and Fakes To improve targeting and delivery of services Enable service and applications that require a verifiable unique ID www.uidai.gov.in
  • 5. Enroll Once … 5 Demographic Data Biometric Data Resident’s Photograph Resident’s Finger Prints Resident’s Iris • Mandatory data: – Name, Age/Date of Birth, Gender and – Address of the resident. • Conditional data: – Parents/Guardian details • Optional data: – Phone no., email address • 12-digit Aadhaar Number - Unique, lifetime, biometric based identity
  • 6. … Authenticate many times • Supports answering the question “is a resident the person he/she claims to be” – Verifies resident information (demographics, biometrics, and OTP) for a given Aadhaar number (1:1 matching) – Online identity verification that is lightweight, ubiquitous, and secure – responds with a “yes/no” and no personal identity information is returned as part of the response – eKYC i.e sharing resident information with his / her consent • Supports multi-factor authentication using demographics, biometrics, OTP and combinations thereof • Supports all types of protocols and devices – Personal computer, mobile, PoS terminals, etc. – Works with assisted and self-service applications 6
  • 7. YES OR NO Name, Gender DOB, Address, … OTP OTP Request AUA (Authentication Services)
  • 9.
  • 10. Aadhaar Holder Auth Server Leased lines ASA ASA ASA ASA ASA AUA AUA UIDAI Data Centre Sub-AUA Authentication Devices Aadhaar Authentication Ecosystem Architecture
  • 11. Work so far … • Program launched on the ground in Sept 2010 • Enrolment – About 106 crore enrolments currently done and target to achieve 100% coverage by March 2017 • Authentication 1. Around 90-95 lakh Auth transactions per day 2. 2,12,387 eKYC transaction per day using Finger print 3. 28,821 eKYC transactions per day using IRIS 4. 2.65 Cr Bank accounts have been opened using eKYC 5. 1,15,635 Micro ATM deployed 6. 1.14 Cr AePS transactions happened in July 16 11
  • 13. Architecture Principles • Design for large scale – Every component needs to scale to large volumes – Millions of transactions and billions of records • No vendor lock-in across the system – Use of open standards to ensure interoperability allowing multiple vendors to supply systems/software/hardware – If there are no standards, create one – Allow the ecosystem to build plug-n-play libraries to standard APIs – Use of open-source technologies wherever prudent • Performance metrics made public through portal for transparency (PII anonymized) • Strong end-to-end security 13
  • 14. Designed for Scale • Horizontal scalability for all components – “Open Scaleout” architecture is the key – Distributed computing on commodity hardware – Distributed data store and data partitioning – Horizontal scaling of “data store” a must! • NO single point of bottleneck for scaling – Typically, in database driven architecture, RDBMS become the single point of bottleneck • Asynchronous processing throughout the system – Allows loose coupling various components – Allows independent component level scaling 14
  • 15. Enrolment Volume • 1000 million Aadhaars in 6 years – Last 3months , 12 million aadhaar in a month – 100+ trillion biometric matches a day!!! • ~5MB per resident – Maps to about 10 PB of raw data! – About 5+ TB of incremental data every day – Replication and backup across data centers – New enrolments and updates adds more data • Additional workflow/process/event data – 100+ million events on an average moving through async channels – Needing complete update and insert guarantees across data stores – 15-20 TB I/O processing every day! 15
  • 16. Authentication Volume • 100+ million authentications per day – Mostly during 10 hr period – Possible high variance on peak and average – Multi-DC Active-Active architecture • 100 million authentications per day means – 1 billion audit records every 10 days – 4 TB encrypted audit logs every 10 days – Need to keep recent audits online and older ones in archive – Audit write must be guaranteed 16
  • 17. BCM & IT resilience in Aadhaar
  • 18. Need for BCM & IT resilience • Aadhaar manages identity data of a billion+ residents – Data protection and service continuity very critical – Data protection required for 10+ PB • Stringent BCM & IT resilience Goals – Recovery Point Objective (RPO) must be zero (no data loss across the system) – Recovery Time Objective (RTO) must be less than 4 hours for enrolment and zero for authentication • 24x7, multi data center operation
  • 19. Need for BCM & IT resilience • Having a business continuity and disaster recovery plan is a necessity – natural disasters such as flooding, earthquakes, to man-made events such as power outages and terrorism • Loss of critical enrolment data and the core CIDR services – results in financial and intangible losses that are difficult to calculate • Loss of authentication service and data means many services in the country will be affected
  • 20. Data Center Details • Currently 2 large data centers in Bangalore and Manesar • Data centers connected via 1 Gbps links – All data replicated across data centers – 5+ TB of data replicated every day • 24x7 Network Operations Center (NoC) • Well defined, secure, rigorous data center processes • Applications architected to run in multi-DC high availability mode allowing UIDAI to meet zero RPO and near-zero RTO
  • 23. ITIL Processes at CIDR • Incident / Service Request Management – Incident classification and SLA definition – Tools and Knowledgebase for tracking and analysis – People, Processes, and escalation • Application Release Management – Major releases, patch management – Automated deployment through central systems – Staging, testing, rollout processes, tools, and teams • Availability Management – Service availability, SLAs, metrics – 24x7 NoC, monitoring, resolution, and escalation processes
  • 24. Non–IT Related Requirements • People – Staff for DR site – Call center (separate and integrated) • Operational – Declaring and communicating disaster to all considered parties (registrars, others) – Regular drills to ensure readiness in the event of a disaster
  • 25. Conclusion • Aadhaar is the largest biometric based online identity system in the World – Providing “unique” identity to all residents – Providing increased “access”, “Convenience”, and “transparency” to common man • Aadhaar data is very large and is most critical • Aadhaar services are 24x7 across multiple DCs • BCP & DR requires clear definition, detail planning, and flawless execution • Zero RPO and near Zero RTO must

Editor's Notes

  1. Talks about the need for UID and our mandate