SlideShare a Scribd company logo
1 of 16
© 2019 TransUnion LLC All Rights Reserved | 1
Keeping Good Customers
Happy and Safe
Account Management in
a Digital World
Scott Olson
© 2019 TransUnion LLC All Rights Reserved | 2
Account Authentication
Strategies
Needing to balance between
“fraud” and “friction”
© 2019 TransUnion LLC All Rights Reserved | 3
Fraudsters continue to leverage technology driving ATO losses
outpacing other fraud types
Source: Javelin 2018 Identity Fraud Study
0
1
2
3
4
5
6
2014 2015 2016 2017
Fraud Losses
(billions)
Account Takeover New Accounts
$500M
$1.1B
$1.5B
$1.4B
$2,3B
$5.1B
© 2019 TransUnion LLC All Rights Reserved | 4
Fraudsters leverage various entry points to perpetrate
Account Take Over
Credential Stuffing Phishing Attacks
Consumer Victims of ATO Spend on Average
$290 and 16 Hours to Resolve an Incident1
1Javelin 2018 Identity Fraud Study
Social Engineering
© 2019 TransUnion LLC All Rights Reserved | 5
Competing demands exist between providing the best customer
experience and reducing fraud risks
FRAUD /
INFOSEC
PRODUCT
UX/CX
Consumers want a
consistent, frictionless online
experience.
Data breaches exposed
millions of customer account
credentials. Account access is
a conduit to fraud.
Customer Experience Reducing Risk
© 2019 TransUnion LLC All Rights Reserved | 6
Customer notification not
authorization
Customers currently experience a variety of authentication methods and
only limited authorizations
Customer authenticates
with variety of methods
Front door security
© 2019 TransUnion LLC All Rights Reserved | 7
• Login, Password
• Call center, KBA, OTP
• Password resets: email links,
Captcha
• Mobile App: Face ID,
Fingerprint
• One size fits all
• Little flexibility for applying
in-session risk appropriate
authentication
• Customers resist stronger
authentication for every login
• Credit card notifications
• Account access or changes
• Inform customers after the
fact
Customers currently experience a variety of authentication methods and
only limited authorizations
Customer authenticates
with variety of methods
Front door security Customer notification
not authorization
© 2019 TransUnion LLC All Rights Reserved | 8
Customers should have a consistent, omnichannel authentication and
authorization experience appropriate to risk
Consistent customer
omnichannel experience
Risk-appropriate security Customer authorization of
transactions
© 2019 TransUnion LLC All Rights Reserved | 9
• The future of authentication lies in
the devices consumers use
• Mobile phone and company apps
can transform Secure Customer
Interactions
Business mobile apps offer path to use mobile device for omnichannel
authentication and authorization
Consistent customer
omnichannel experience
© 2019 TransUnion LLC All Rights Reserved | 10
• Leverage knowledge of consumer
devices at the front door
• Augment or replace passwords
• Fraud checks and stronger
authentication at points of risk
Risk-appropriate security
Frictionless check of device at login allows for best customer experience
and stronger authentication where appropriate
© 2019 TransUnion LLC All Rights Reserved | 11
• Approval of high risk activities
• Addresses friendly fraud
• Alerts customers of account activity
and allows them to proactively
block fraud
Customer authorization of
transactions
High risk transactions can be authorized to avoid call center interactions
and reduce friendly fraud
© 2019 TransUnion LLC All Rights Reserved | 12
Authentication Fraud Prevention
Appropriate
Authorization
Based On Transaction Risk
© 2019 TransUnion LLC All Rights Reserved | 13
IP ADDRESS
GEOLOCATION
EVASION
JAILBROKEN
DEVICE RECOGNITION
Enrollment Login Device check
Passive device-based authentication can reduce friction and increase trust
in the consumer-lender relationship
© 2019 TransUnion LLC All Rights Reserved | 14
• Single, Omni-channel
authentication experience
• Authorization of risky
transactions
• Increased stickiness of
mobile app
Device factor
Fingerprint scan
Facial scan
Geofencing
Circle code
Circle code
PIN code
Wearable factor
Increase security and provide customers with
app-based multifactor authentication
© 2019 TransUnion LLC All Rights Reserved | 15
Account Creation/
Loan Origination
Login
Check Balances
Change Account DetailsMake or schedule
payment
Authorize
Purchase
Withdrawal,Transfer,
Payment
KBA/OTP
Multifactor
KBA/OTP
Device
Multifactor
Device
Device
Multifactor
Device
Multifactor
For omnichannel access, there is a need to authenticate seamlessly at
available penetration points
Multifactor
Device
Online Fraud Detection
Online Fraud Detection
Online Fraud Detection
Originations CBIs
• Application abandonment
• Third party fraud
• Synthetic Identity Detection
• Consumer authentication
Login CBIs
• High friction with forgotten credentials
• Credential stuffing
• Account takeover
Rest of Activities CBIs
• Omni-channel Authentication
• Manage account
• Unauthorized transactions
• Transfer to rogue accounts
© 2019 TransUnion LLC All Rights Reserved | 16
Using mobile authentication for MFA & Transaction Authorization
to deliver secure, consistent omnichannel customer experience
[: demo :]

More Related Content

What's hot

Presentation banking
Presentation bankingPresentation banking
Presentation bankingAshraf Abir
 
TDI Startup Insurtech Award - Claim Genius
TDI Startup Insurtech Award - Claim GeniusTDI Startup Insurtech Award - Claim Genius
TDI Startup Insurtech Award - Claim GeniusThe Digital Insurer
 
apidays LIVE Hong Kong - Art and Science of Rate Limits for APIs by Shahnawaz...
apidays LIVE Hong Kong - Art and Science of Rate Limits for APIs by Shahnawaz...apidays LIVE Hong Kong - Art and Science of Rate Limits for APIs by Shahnawaz...
apidays LIVE Hong Kong - Art and Science of Rate Limits for APIs by Shahnawaz...apidays
 
The Digital Insurer Award - Liberty General Insurance
The Digital Insurer Award - Liberty General InsuranceThe Digital Insurer Award - Liberty General Insurance
The Digital Insurer Award - Liberty General InsuranceThe Digital Insurer
 
Mistral Mobile - Money Mobility Suite: m-Agent for agent banking and agent-ba...
Mistral Mobile - Money Mobility Suite: m-Agent for agent banking and agent-ba...Mistral Mobile - Money Mobility Suite: m-Agent for agent banking and agent-ba...
Mistral Mobile - Money Mobility Suite: m-Agent for agent banking and agent-ba...Mistral Mobile
 
Citcall : Real-Time User Verification with Missed-Call Based OTP
Citcall : Real-Time User Verification with Missed-Call Based OTPCitcall : Real-Time User Verification with Missed-Call Based OTP
Citcall : Real-Time User Verification with Missed-Call Based OTPTech in Asia ID
 
Myanmar Tracker - GPS Tracking , Asset Tracker, Fleet Management
Myanmar Tracker - GPS Tracking , Asset Tracker, Fleet ManagementMyanmar Tracker - GPS Tracking , Asset Tracker, Fleet Management
Myanmar Tracker - GPS Tracking , Asset Tracker, Fleet ManagementNadeem Jamal
 
The Digital Insurer Award - HDFC Life Insurance Company Ltd.
The Digital Insurer Award - HDFC Life Insurance Company Ltd.The Digital Insurer Award - HDFC Life Insurance Company Ltd.
The Digital Insurer Award - HDFC Life Insurance Company Ltd.The Digital Insurer
 
Verifone – final
Verifone – finalVerifone – final
Verifone – finalb_ryder
 
The Future of Banking Mobility
The Future of Banking MobilityThe Future of Banking Mobility
The Future of Banking MobilityChunJia Sio
 
Mobile payment-security-risk-and-response
Mobile payment-security-risk-and-responseMobile payment-security-risk-and-response
Mobile payment-security-risk-and-responseDESMOND YUEN
 
How fraud and chargeback prevention works
How fraud and chargeback prevention worksHow fraud and chargeback prevention works
How fraud and chargeback prevention worksIkajo International
 
Boosting and securing online shopping - making PIN on phone a reality
Boosting and securing online shopping - making PIN on phone a realityBoosting and securing online shopping - making PIN on phone a reality
Boosting and securing online shopping - making PIN on phone a realityBSP Media Group
 
Data sheet Securepay
Data sheet  SecurepayData sheet  Securepay
Data sheet Securepaygensoftpro
 
mobiquity®Wallet checkout - Quick, seamless and secure checkout
mobiquity®Wallet checkout - Quick, seamless and secure checkout mobiquity®Wallet checkout - Quick, seamless and secure checkout
mobiquity®Wallet checkout - Quick, seamless and secure checkout Mahindra Comviva
 

What's hot (20)

Presentation banking
Presentation bankingPresentation banking
Presentation banking
 
TDI Startup Insurtech Award - Claim Genius
TDI Startup Insurtech Award - Claim GeniusTDI Startup Insurtech Award - Claim Genius
TDI Startup Insurtech Award - Claim Genius
 
A guide to Financial Crime Management
A guide to Financial Crime ManagementA guide to Financial Crime Management
A guide to Financial Crime Management
 
Lttc 102013
Lttc 102013Lttc 102013
Lttc 102013
 
apidays LIVE Hong Kong - Art and Science of Rate Limits for APIs by Shahnawaz...
apidays LIVE Hong Kong - Art and Science of Rate Limits for APIs by Shahnawaz...apidays LIVE Hong Kong - Art and Science of Rate Limits for APIs by Shahnawaz...
apidays LIVE Hong Kong - Art and Science of Rate Limits for APIs by Shahnawaz...
 
The Digital Insurer Award - Liberty General Insurance
The Digital Insurer Award - Liberty General InsuranceThe Digital Insurer Award - Liberty General Insurance
The Digital Insurer Award - Liberty General Insurance
 
The guide to combatting cross channel fraud
The guide to combatting cross channel fraudThe guide to combatting cross channel fraud
The guide to combatting cross channel fraud
 
Mistral Mobile - Money Mobility Suite: m-Agent for agent banking and agent-ba...
Mistral Mobile - Money Mobility Suite: m-Agent for agent banking and agent-ba...Mistral Mobile - Money Mobility Suite: m-Agent for agent banking and agent-ba...
Mistral Mobile - Money Mobility Suite: m-Agent for agent banking and agent-ba...
 
Citcall : Real-Time User Verification with Missed-Call Based OTP
Citcall : Real-Time User Verification with Missed-Call Based OTPCitcall : Real-Time User Verification with Missed-Call Based OTP
Citcall : Real-Time User Verification with Missed-Call Based OTP
 
Myanmar Tracker - GPS Tracking , Asset Tracker, Fleet Management
Myanmar Tracker - GPS Tracking , Asset Tracker, Fleet ManagementMyanmar Tracker - GPS Tracking , Asset Tracker, Fleet Management
Myanmar Tracker - GPS Tracking , Asset Tracker, Fleet Management
 
The Digital Insurer Award - HDFC Life Insurance Company Ltd.
The Digital Insurer Award - HDFC Life Insurance Company Ltd.The Digital Insurer Award - HDFC Life Insurance Company Ltd.
The Digital Insurer Award - HDFC Life Insurance Company Ltd.
 
Verifone – final
Verifone – finalVerifone – final
Verifone – final
 
The Future of Banking Mobility
The Future of Banking MobilityThe Future of Banking Mobility
The Future of Banking Mobility
 
Mobile payment-security-risk-and-response
Mobile payment-security-risk-and-responseMobile payment-security-risk-and-response
Mobile payment-security-risk-and-response
 
How fraud and chargeback prevention works
How fraud and chargeback prevention worksHow fraud and chargeback prevention works
How fraud and chargeback prevention works
 
Boosting and securing online shopping - making PIN on phone a reality
Boosting and securing online shopping - making PIN on phone a realityBoosting and securing online shopping - making PIN on phone a reality
Boosting and securing online shopping - making PIN on phone a reality
 
Lttc 6262013
Lttc 6262013Lttc 6262013
Lttc 6262013
 
Data sheet Securepay
Data sheet  SecurepayData sheet  Securepay
Data sheet Securepay
 
mobiquity®Wallet checkout - Quick, seamless and secure checkout
mobiquity®Wallet checkout - Quick, seamless and secure checkout mobiquity®Wallet checkout - Quick, seamless and secure checkout
mobiquity®Wallet checkout - Quick, seamless and secure checkout
 
Lttc 01222014-reduced
Lttc 01222014-reducedLttc 01222014-reduced
Lttc 01222014-reduced
 

Similar to Keeping Your Customers Happy and Safe: Authentication and Authorization Strategies

Identity, Authentication, and Programmable Telecoms Session
Identity, Authentication, and Programmable Telecoms SessionIdentity, Authentication, and Programmable Telecoms Session
Identity, Authentication, and Programmable Telecoms SessionAlan Quayle
 
Balancing Fraud & Customer Experience in a Mobile World
Balancing Fraud & Customer Experience in a Mobile WorldBalancing Fraud & Customer Experience in a Mobile World
Balancing Fraud & Customer Experience in a Mobile WorldComrade
 
apidays LIVE JAKARTA - Deliver A Dynamic & Secured Buying Experience by Shara...
apidays LIVE JAKARTA - Deliver A Dynamic & Secured Buying Experience by Shara...apidays LIVE JAKARTA - Deliver A Dynamic & Secured Buying Experience by Shara...
apidays LIVE JAKARTA - Deliver A Dynamic & Secured Buying Experience by Shara...apidays
 
Leverage Gartner’s Insight for Assessing the Total Cost of Fraud in Your Paym...
Leverage Gartner’s Insight for Assessing the Total Cost of Fraud in Your Paym...Leverage Gartner’s Insight for Assessing the Total Cost of Fraud in Your Paym...
Leverage Gartner’s Insight for Assessing the Total Cost of Fraud in Your Paym...TransUnion
 
Mobile banking - not just a niche service-a norm!
Mobile banking - not just a niche service-a norm!Mobile banking - not just a niche service-a norm!
Mobile banking - not just a niche service-a norm!Mahindra Comviva
 
Identity and Access Management Solutions for Financial Institutions
Identity and Access Management Solutions for Financial InstitutionsIdentity and Access Management Solutions for Financial Institutions
Identity and Access Management Solutions for Financial InstitutionsAlireza Ghahrood
 
Ronald Raffensperger, Digital Banking Forum 2021
Ronald Raffensperger, Digital Banking Forum 2021Ronald Raffensperger, Digital Banking Forum 2021
Ronald Raffensperger, Digital Banking Forum 2021Starttech Ventures
 
Adapting to Digital Change: Use APIs to Delight Customers & Win
Adapting to Digital Change: Use APIs to Delight Customers & WinAdapting to Digital Change: Use APIs to Delight Customers & Win
Adapting to Digital Change: Use APIs to Delight Customers & WinCA API Management
 
Leading Mobile Financial Services Provider : mFino by Sridhar Obilisetty
Leading Mobile Financial Services Provider : mFino by Sridhar ObilisettyLeading Mobile Financial Services Provider : mFino by Sridhar Obilisetty
Leading Mobile Financial Services Provider : mFino by Sridhar ObilisettySridhar Obilisetty
 
Mobile Risk Analysis: Take Your Mobile App Security to the Next Level
Mobile Risk Analysis: Take Your Mobile App Security to the Next LevelMobile Risk Analysis: Take Your Mobile App Security to the Next Level
Mobile Risk Analysis: Take Your Mobile App Security to the Next LevelCA Technologies
 
Lunch and Learn: Fraud Trends in Financial Services
Lunch and Learn: Fraud Trends in Financial ServicesLunch and Learn: Fraud Trends in Financial Services
Lunch and Learn: Fraud Trends in Financial ServicesTransUnion
 
Tradetech Hybrid MeetUp_N.Jaure_Onespan_210610
Tradetech Hybrid MeetUp_N.Jaure_Onespan_210610 Tradetech Hybrid MeetUp_N.Jaure_Onespan_210610
Tradetech Hybrid MeetUp_N.Jaure_Onespan_210610 FinTech Belgium
 
Strong Authentication for Payments
Strong Authentication for PaymentsStrong Authentication for Payments
Strong Authentication for PaymentsSrivatsan Srinivasan
 
Callcredit's Fraud Summit 2016 - Identity verification stream
Callcredit's Fraud Summit 2016 - Identity verification streamCallcredit's Fraud Summit 2016 - Identity verification stream
Callcredit's Fraud Summit 2016 - Identity verification streamCallcredit123
 
Introducing: Powered by Avant and AvantVerify
Introducing: Powered by Avant and AvantVerify Introducing: Powered by Avant and AvantVerify
Introducing: Powered by Avant and AvantVerify Kevin Lewis
 
How the UK's #1 Mobile Network Enhanced Its Approval Rate by 10%, with Zero F...
How the UK's #1 Mobile Network Enhanced Its Approval Rate by 10%, with Zero F...How the UK's #1 Mobile Network Enhanced Its Approval Rate by 10%, with Zero F...
How the UK's #1 Mobile Network Enhanced Its Approval Rate by 10%, with Zero F...Vesta Corporation
 
Verinite cards conclave: How Banks are utilizing multiple channels to maximiz...
Verinite cards conclave: How Banks are utilizing multiple channels to maximiz...Verinite cards conclave: How Banks are utilizing multiple channels to maximiz...
Verinite cards conclave: How Banks are utilizing multiple channels to maximiz...Deepika Singh
 
Biometrics for Payment Authentication
Biometrics for Payment AuthenticationBiometrics for Payment Authentication
Biometrics for Payment AuthenticationFIDO Alliance
 

Similar to Keeping Your Customers Happy and Safe: Authentication and Authorization Strategies (20)

Identity, Authentication, and Programmable Telecoms Session
Identity, Authentication, and Programmable Telecoms SessionIdentity, Authentication, and Programmable Telecoms Session
Identity, Authentication, and Programmable Telecoms Session
 
Balancing Fraud & Customer Experience in a Mobile World
Balancing Fraud & Customer Experience in a Mobile WorldBalancing Fraud & Customer Experience in a Mobile World
Balancing Fraud & Customer Experience in a Mobile World
 
apidays LIVE JAKARTA - Deliver A Dynamic & Secured Buying Experience by Shara...
apidays LIVE JAKARTA - Deliver A Dynamic & Secured Buying Experience by Shara...apidays LIVE JAKARTA - Deliver A Dynamic & Secured Buying Experience by Shara...
apidays LIVE JAKARTA - Deliver A Dynamic & Secured Buying Experience by Shara...
 
Leverage Gartner’s Insight for Assessing the Total Cost of Fraud in Your Paym...
Leverage Gartner’s Insight for Assessing the Total Cost of Fraud in Your Paym...Leverage Gartner’s Insight for Assessing the Total Cost of Fraud in Your Paym...
Leverage Gartner’s Insight for Assessing the Total Cost of Fraud in Your Paym...
 
Mobile banking - not just a niche service-a norm!
Mobile banking - not just a niche service-a norm!Mobile banking - not just a niche service-a norm!
Mobile banking - not just a niche service-a norm!
 
Identity and Access Management Solutions for Financial Institutions
Identity and Access Management Solutions for Financial InstitutionsIdentity and Access Management Solutions for Financial Institutions
Identity and Access Management Solutions for Financial Institutions
 
Ronald Raffensperger, Digital Banking Forum 2021
Ronald Raffensperger, Digital Banking Forum 2021Ronald Raffensperger, Digital Banking Forum 2021
Ronald Raffensperger, Digital Banking Forum 2021
 
PSD2, SCA, WTF?
PSD2, SCA, WTF?PSD2, SCA, WTF?
PSD2, SCA, WTF?
 
Adapting to Digital Change: Use APIs to Delight Customers & Win
Adapting to Digital Change: Use APIs to Delight Customers & WinAdapting to Digital Change: Use APIs to Delight Customers & Win
Adapting to Digital Change: Use APIs to Delight Customers & Win
 
Leading Mobile Financial Services Provider : mFino by Sridhar Obilisetty
Leading Mobile Financial Services Provider : mFino by Sridhar ObilisettyLeading Mobile Financial Services Provider : mFino by Sridhar Obilisetty
Leading Mobile Financial Services Provider : mFino by Sridhar Obilisetty
 
Mobile Risk Analysis: Take Your Mobile App Security to the Next Level
Mobile Risk Analysis: Take Your Mobile App Security to the Next LevelMobile Risk Analysis: Take Your Mobile App Security to the Next Level
Mobile Risk Analysis: Take Your Mobile App Security to the Next Level
 
Lunch and Learn: Fraud Trends in Financial Services
Lunch and Learn: Fraud Trends in Financial ServicesLunch and Learn: Fraud Trends in Financial Services
Lunch and Learn: Fraud Trends in Financial Services
 
Tradetech Hybrid MeetUp_N.Jaure_Onespan_210610
Tradetech Hybrid MeetUp_N.Jaure_Onespan_210610 Tradetech Hybrid MeetUp_N.Jaure_Onespan_210610
Tradetech Hybrid MeetUp_N.Jaure_Onespan_210610
 
Strong Authentication for Payments
Strong Authentication for PaymentsStrong Authentication for Payments
Strong Authentication for Payments
 
Callcredit's Fraud Summit 2016 - Identity verification stream
Callcredit's Fraud Summit 2016 - Identity verification streamCallcredit's Fraud Summit 2016 - Identity verification stream
Callcredit's Fraud Summit 2016 - Identity verification stream
 
Introducing: Powered by Avant and AvantVerify
Introducing: Powered by Avant and AvantVerify Introducing: Powered by Avant and AvantVerify
Introducing: Powered by Avant and AvantVerify
 
What is Mobile money
What is Mobile moneyWhat is Mobile money
What is Mobile money
 
How the UK's #1 Mobile Network Enhanced Its Approval Rate by 10%, with Zero F...
How the UK's #1 Mobile Network Enhanced Its Approval Rate by 10%, with Zero F...How the UK's #1 Mobile Network Enhanced Its Approval Rate by 10%, with Zero F...
How the UK's #1 Mobile Network Enhanced Its Approval Rate by 10%, with Zero F...
 
Verinite cards conclave: How Banks are utilizing multiple channels to maximiz...
Verinite cards conclave: How Banks are utilizing multiple channels to maximiz...Verinite cards conclave: How Banks are utilizing multiple channels to maximiz...
Verinite cards conclave: How Banks are utilizing multiple channels to maximiz...
 
Biometrics for Payment Authentication
Biometrics for Payment AuthenticationBiometrics for Payment Authentication
Biometrics for Payment Authentication
 

More from TransUnion

A New Imperative: Global Privacy and Data Strategies
A New Imperative: Global Privacy and Data StrategiesA New Imperative: Global Privacy and Data Strategies
A New Imperative: Global Privacy and Data StrategiesTransUnion
 
The Business Imperative for Identity, Trust and Data Stewardship
The Business Imperative for Identity, Trust and Data StewardshipThe Business Imperative for Identity, Trust and Data Stewardship
The Business Imperative for Identity, Trust and Data StewardshipTransUnion
 
2020 i gaming report webinar
2020 i gaming report webinar 2020 i gaming report webinar
2020 i gaming report webinar TransUnion
 
Financial services report webinar v4
Financial services report webinar v4Financial services report webinar v4
Financial services report webinar v4TransUnion
 
Webinar: Roll Out the VIP Path to Play
Webinar: Roll Out the VIP Path to PlayWebinar: Roll Out the VIP Path to Play
Webinar: Roll Out the VIP Path to PlayTransUnion
 
PSD2, SCA and the EBA’s Opinion on SCA – Decoded
PSD2, SCA and the EBA’s Opinion on SCA – DecodedPSD2, SCA and the EBA’s Opinion on SCA – Decoded
PSD2, SCA and the EBA’s Opinion on SCA – DecodedTransUnion
 
Combating Social Engineering and Account Takeover by a Former U.S. Cybercriminal
Combating Social Engineering and Account Takeover by a Former U.S. CybercriminalCombating Social Engineering and Account Takeover by a Former U.S. Cybercriminal
Combating Social Engineering and Account Takeover by a Former U.S. CybercriminalTransUnion
 
How Confused.com and iovation Fight Ghost Broking
How Confused.com and iovation Fight Ghost BrokingHow Confused.com and iovation Fight Ghost Broking
How Confused.com and iovation Fight Ghost BrokingTransUnion
 
The Insurance Digital Revolution Has a Fraud Problem
The Insurance Digital Revolution Has a Fraud ProblemThe Insurance Digital Revolution Has a Fraud Problem
The Insurance Digital Revolution Has a Fraud ProblemTransUnion
 
PSD2: The Advent of the New Payments Market in Europe
PSD2: The Advent of the New Payments Market in EuropePSD2: The Advent of the New Payments Market in Europe
PSD2: The Advent of the New Payments Market in EuropeTransUnion
 
2019 iovation Gambling Industry Report Highlights
2019 iovation Gambling Industry Report Highlights2019 iovation Gambling Industry Report Highlights
2019 iovation Gambling Industry Report HighlightsTransUnion
 
Nice Try, ATO: Use Customers’ Devices to Transparently Enhance Account Security
Nice Try, ATO: Use Customers’ Devices to Transparently Enhance Account SecurityNice Try, ATO: Use Customers’ Devices to Transparently Enhance Account Security
Nice Try, ATO: Use Customers’ Devices to Transparently Enhance Account SecurityTransUnion
 
Definitive Guide to Next-generation Fraud Prevention: Techniques for the Mobi...
Definitive Guide to Next-generation Fraud Prevention: Techniques for the Mobi...Definitive Guide to Next-generation Fraud Prevention: Techniques for the Mobi...
Definitive Guide to Next-generation Fraud Prevention: Techniques for the Mobi...TransUnion
 
Fraud Prevention Strategies to Fight First-Party Fraud and Synthetic Identity...
Fraud Prevention Strategies to Fight First-Party Fraud and Synthetic Identity...Fraud Prevention Strategies to Fight First-Party Fraud and Synthetic Identity...
Fraud Prevention Strategies to Fight First-Party Fraud and Synthetic Identity...TransUnion
 
Battling Credit Write-Offs by Identifying Synthetic Identity (Gartner Report ...
Battling Credit Write-Offs by Identifying Synthetic Identity (Gartner Report ...Battling Credit Write-Offs by Identifying Synthetic Identity (Gartner Report ...
Battling Credit Write-Offs by Identifying Synthetic Identity (Gartner Report ...TransUnion
 
Working at the Margins: Change Agents in the Converged World (Gartner Report ...
Working at the Margins: Change Agents in the Converged World (Gartner Report ...Working at the Margins: Change Agents in the Converged World (Gartner Report ...
Working at the Margins: Change Agents in the Converged World (Gartner Report ...TransUnion
 
Feeding the Beast-How Fraud Tools Bring Context into Authentication (Gartner ...
Feeding the Beast-How Fraud Tools Bring Context into Authentication (Gartner ...Feeding the Beast-How Fraud Tools Bring Context into Authentication (Gartner ...
Feeding the Beast-How Fraud Tools Bring Context into Authentication (Gartner ...TransUnion
 
Gartner Offers a Converged and Compelling Future (Gartner Report Part 1)
Gartner Offers a Converged and Compelling Future (Gartner Report Part 1)Gartner Offers a Converged and Compelling Future (Gartner Report Part 1)
Gartner Offers a Converged and Compelling Future (Gartner Report Part 1)TransUnion
 
4 GDPR Hacks to Mitigate Breach Risks Post GDPR
4 GDPR Hacks to Mitigate Breach Risks Post GDPR4 GDPR Hacks to Mitigate Breach Risks Post GDPR
4 GDPR Hacks to Mitigate Breach Risks Post GDPRTransUnion
 
Lunch and Learn: MFA vs 2FA Just A Numbers Game, or Real Value?
Lunch and Learn: MFA vs 2FA Just A Numbers Game, or Real Value?Lunch and Learn: MFA vs 2FA Just A Numbers Game, or Real Value?
Lunch and Learn: MFA vs 2FA Just A Numbers Game, or Real Value?TransUnion
 

More from TransUnion (20)

A New Imperative: Global Privacy and Data Strategies
A New Imperative: Global Privacy and Data StrategiesA New Imperative: Global Privacy and Data Strategies
A New Imperative: Global Privacy and Data Strategies
 
The Business Imperative for Identity, Trust and Data Stewardship
The Business Imperative for Identity, Trust and Data StewardshipThe Business Imperative for Identity, Trust and Data Stewardship
The Business Imperative for Identity, Trust and Data Stewardship
 
2020 i gaming report webinar
2020 i gaming report webinar 2020 i gaming report webinar
2020 i gaming report webinar
 
Financial services report webinar v4
Financial services report webinar v4Financial services report webinar v4
Financial services report webinar v4
 
Webinar: Roll Out the VIP Path to Play
Webinar: Roll Out the VIP Path to PlayWebinar: Roll Out the VIP Path to Play
Webinar: Roll Out the VIP Path to Play
 
PSD2, SCA and the EBA’s Opinion on SCA – Decoded
PSD2, SCA and the EBA’s Opinion on SCA – DecodedPSD2, SCA and the EBA’s Opinion on SCA – Decoded
PSD2, SCA and the EBA’s Opinion on SCA – Decoded
 
Combating Social Engineering and Account Takeover by a Former U.S. Cybercriminal
Combating Social Engineering and Account Takeover by a Former U.S. CybercriminalCombating Social Engineering and Account Takeover by a Former U.S. Cybercriminal
Combating Social Engineering and Account Takeover by a Former U.S. Cybercriminal
 
How Confused.com and iovation Fight Ghost Broking
How Confused.com and iovation Fight Ghost BrokingHow Confused.com and iovation Fight Ghost Broking
How Confused.com and iovation Fight Ghost Broking
 
The Insurance Digital Revolution Has a Fraud Problem
The Insurance Digital Revolution Has a Fraud ProblemThe Insurance Digital Revolution Has a Fraud Problem
The Insurance Digital Revolution Has a Fraud Problem
 
PSD2: The Advent of the New Payments Market in Europe
PSD2: The Advent of the New Payments Market in EuropePSD2: The Advent of the New Payments Market in Europe
PSD2: The Advent of the New Payments Market in Europe
 
2019 iovation Gambling Industry Report Highlights
2019 iovation Gambling Industry Report Highlights2019 iovation Gambling Industry Report Highlights
2019 iovation Gambling Industry Report Highlights
 
Nice Try, ATO: Use Customers’ Devices to Transparently Enhance Account Security
Nice Try, ATO: Use Customers’ Devices to Transparently Enhance Account SecurityNice Try, ATO: Use Customers’ Devices to Transparently Enhance Account Security
Nice Try, ATO: Use Customers’ Devices to Transparently Enhance Account Security
 
Definitive Guide to Next-generation Fraud Prevention: Techniques for the Mobi...
Definitive Guide to Next-generation Fraud Prevention: Techniques for the Mobi...Definitive Guide to Next-generation Fraud Prevention: Techniques for the Mobi...
Definitive Guide to Next-generation Fraud Prevention: Techniques for the Mobi...
 
Fraud Prevention Strategies to Fight First-Party Fraud and Synthetic Identity...
Fraud Prevention Strategies to Fight First-Party Fraud and Synthetic Identity...Fraud Prevention Strategies to Fight First-Party Fraud and Synthetic Identity...
Fraud Prevention Strategies to Fight First-Party Fraud and Synthetic Identity...
 
Battling Credit Write-Offs by Identifying Synthetic Identity (Gartner Report ...
Battling Credit Write-Offs by Identifying Synthetic Identity (Gartner Report ...Battling Credit Write-Offs by Identifying Synthetic Identity (Gartner Report ...
Battling Credit Write-Offs by Identifying Synthetic Identity (Gartner Report ...
 
Working at the Margins: Change Agents in the Converged World (Gartner Report ...
Working at the Margins: Change Agents in the Converged World (Gartner Report ...Working at the Margins: Change Agents in the Converged World (Gartner Report ...
Working at the Margins: Change Agents in the Converged World (Gartner Report ...
 
Feeding the Beast-How Fraud Tools Bring Context into Authentication (Gartner ...
Feeding the Beast-How Fraud Tools Bring Context into Authentication (Gartner ...Feeding the Beast-How Fraud Tools Bring Context into Authentication (Gartner ...
Feeding the Beast-How Fraud Tools Bring Context into Authentication (Gartner ...
 
Gartner Offers a Converged and Compelling Future (Gartner Report Part 1)
Gartner Offers a Converged and Compelling Future (Gartner Report Part 1)Gartner Offers a Converged and Compelling Future (Gartner Report Part 1)
Gartner Offers a Converged and Compelling Future (Gartner Report Part 1)
 
4 GDPR Hacks to Mitigate Breach Risks Post GDPR
4 GDPR Hacks to Mitigate Breach Risks Post GDPR4 GDPR Hacks to Mitigate Breach Risks Post GDPR
4 GDPR Hacks to Mitigate Breach Risks Post GDPR
 
Lunch and Learn: MFA vs 2FA Just A Numbers Game, or Real Value?
Lunch and Learn: MFA vs 2FA Just A Numbers Game, or Real Value?Lunch and Learn: MFA vs 2FA Just A Numbers Game, or Real Value?
Lunch and Learn: MFA vs 2FA Just A Numbers Game, or Real Value?
 

Recently uploaded

Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...Patryk Bandurski
 
IAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsIAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsEnterprise Knowledge
 
A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)Gabriella Davis
 
Maximizing Board Effectiveness 2024 Webinar.pptx
Maximizing Board Effectiveness 2024 Webinar.pptxMaximizing Board Effectiveness 2024 Webinar.pptx
Maximizing Board Effectiveness 2024 Webinar.pptxOnBoard
 
SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024Scott Keck-Warren
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerThousandEyes
 
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationFrom Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationSafe Software
 
AI as an Interface for Commercial Buildings
AI as an Interface for Commercial BuildingsAI as an Interface for Commercial Buildings
AI as an Interface for Commercial BuildingsMemoori
 
GenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationGenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationMichael W. Hawkins
 
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024BookNet Canada
 
Pigging Solutions Piggable Sweeping Elbows
Pigging Solutions Piggable Sweeping ElbowsPigging Solutions Piggable Sweeping Elbows
Pigging Solutions Piggable Sweeping ElbowsPigging Solutions
 
Understanding the Laravel MVC Architecture
Understanding the Laravel MVC ArchitectureUnderstanding the Laravel MVC Architecture
Understanding the Laravel MVC ArchitecturePixlogix Infotech
 
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticsKotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticscarlostorres15106
 
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...Neo4j
 
Handwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsHandwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsMaria Levchenko
 
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...shyamraj55
 
08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking Men08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking MenDelhi Call girls
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationRadu Cotescu
 
Breaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path MountBreaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path MountPuma Security, LLC
 
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationBeyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationSafe Software
 

Recently uploaded (20)

Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
 
IAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsIAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI Solutions
 
A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)
 
Maximizing Board Effectiveness 2024 Webinar.pptx
Maximizing Board Effectiveness 2024 Webinar.pptxMaximizing Board Effectiveness 2024 Webinar.pptx
Maximizing Board Effectiveness 2024 Webinar.pptx
 
SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationFrom Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
 
AI as an Interface for Commercial Buildings
AI as an Interface for Commercial BuildingsAI as an Interface for Commercial Buildings
AI as an Interface for Commercial Buildings
 
GenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationGenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day Presentation
 
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
 
Pigging Solutions Piggable Sweeping Elbows
Pigging Solutions Piggable Sweeping ElbowsPigging Solutions Piggable Sweeping Elbows
Pigging Solutions Piggable Sweeping Elbows
 
Understanding the Laravel MVC Architecture
Understanding the Laravel MVC ArchitectureUnderstanding the Laravel MVC Architecture
Understanding the Laravel MVC Architecture
 
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticsKotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
 
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
 
Handwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsHandwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed texts
 
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
 
08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking Men08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking Men
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organization
 
Breaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path MountBreaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path Mount
 
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationBeyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
 

Keeping Your Customers Happy and Safe: Authentication and Authorization Strategies

  • 1. © 2019 TransUnion LLC All Rights Reserved | 1 Keeping Good Customers Happy and Safe Account Management in a Digital World Scott Olson
  • 2. © 2019 TransUnion LLC All Rights Reserved | 2 Account Authentication Strategies Needing to balance between “fraud” and “friction”
  • 3. © 2019 TransUnion LLC All Rights Reserved | 3 Fraudsters continue to leverage technology driving ATO losses outpacing other fraud types Source: Javelin 2018 Identity Fraud Study 0 1 2 3 4 5 6 2014 2015 2016 2017 Fraud Losses (billions) Account Takeover New Accounts $500M $1.1B $1.5B $1.4B $2,3B $5.1B
  • 4. © 2019 TransUnion LLC All Rights Reserved | 4 Fraudsters leverage various entry points to perpetrate Account Take Over Credential Stuffing Phishing Attacks Consumer Victims of ATO Spend on Average $290 and 16 Hours to Resolve an Incident1 1Javelin 2018 Identity Fraud Study Social Engineering
  • 5. © 2019 TransUnion LLC All Rights Reserved | 5 Competing demands exist between providing the best customer experience and reducing fraud risks FRAUD / INFOSEC PRODUCT UX/CX Consumers want a consistent, frictionless online experience. Data breaches exposed millions of customer account credentials. Account access is a conduit to fraud. Customer Experience Reducing Risk
  • 6. © 2019 TransUnion LLC All Rights Reserved | 6 Customer notification not authorization Customers currently experience a variety of authentication methods and only limited authorizations Customer authenticates with variety of methods Front door security
  • 7. © 2019 TransUnion LLC All Rights Reserved | 7 • Login, Password • Call center, KBA, OTP • Password resets: email links, Captcha • Mobile App: Face ID, Fingerprint • One size fits all • Little flexibility for applying in-session risk appropriate authentication • Customers resist stronger authentication for every login • Credit card notifications • Account access or changes • Inform customers after the fact Customers currently experience a variety of authentication methods and only limited authorizations Customer authenticates with variety of methods Front door security Customer notification not authorization
  • 8. © 2019 TransUnion LLC All Rights Reserved | 8 Customers should have a consistent, omnichannel authentication and authorization experience appropriate to risk Consistent customer omnichannel experience Risk-appropriate security Customer authorization of transactions
  • 9. © 2019 TransUnion LLC All Rights Reserved | 9 • The future of authentication lies in the devices consumers use • Mobile phone and company apps can transform Secure Customer Interactions Business mobile apps offer path to use mobile device for omnichannel authentication and authorization Consistent customer omnichannel experience
  • 10. © 2019 TransUnion LLC All Rights Reserved | 10 • Leverage knowledge of consumer devices at the front door • Augment or replace passwords • Fraud checks and stronger authentication at points of risk Risk-appropriate security Frictionless check of device at login allows for best customer experience and stronger authentication where appropriate
  • 11. © 2019 TransUnion LLC All Rights Reserved | 11 • Approval of high risk activities • Addresses friendly fraud • Alerts customers of account activity and allows them to proactively block fraud Customer authorization of transactions High risk transactions can be authorized to avoid call center interactions and reduce friendly fraud
  • 12. © 2019 TransUnion LLC All Rights Reserved | 12 Authentication Fraud Prevention Appropriate Authorization Based On Transaction Risk
  • 13. © 2019 TransUnion LLC All Rights Reserved | 13 IP ADDRESS GEOLOCATION EVASION JAILBROKEN DEVICE RECOGNITION Enrollment Login Device check Passive device-based authentication can reduce friction and increase trust in the consumer-lender relationship
  • 14. © 2019 TransUnion LLC All Rights Reserved | 14 • Single, Omni-channel authentication experience • Authorization of risky transactions • Increased stickiness of mobile app Device factor Fingerprint scan Facial scan Geofencing Circle code Circle code PIN code Wearable factor Increase security and provide customers with app-based multifactor authentication
  • 15. © 2019 TransUnion LLC All Rights Reserved | 15 Account Creation/ Loan Origination Login Check Balances Change Account DetailsMake or schedule payment Authorize Purchase Withdrawal,Transfer, Payment KBA/OTP Multifactor KBA/OTP Device Multifactor Device Device Multifactor Device Multifactor For omnichannel access, there is a need to authenticate seamlessly at available penetration points Multifactor Device Online Fraud Detection Online Fraud Detection Online Fraud Detection Originations CBIs • Application abandonment • Third party fraud • Synthetic Identity Detection • Consumer authentication Login CBIs • High friction with forgotten credentials • Credential stuffing • Account takeover Rest of Activities CBIs • Omni-channel Authentication • Manage account • Unauthorized transactions • Transfer to rogue accounts
  • 16. © 2019 TransUnion LLC All Rights Reserved | 16 Using mobile authentication for MFA & Transaction Authorization to deliver secure, consistent omnichannel customer experience [: demo :]