accelerating the creation and deployment of e-government services by ensuring citizen’s privacy,...

31
Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust Frédéric Trojani, Chairman Secure Identity Alliance SDW 2013, 23rd May

Upload: secure-identity-alliance

Post on 08-May-2015

197 views

Category:

Technology


2 download

DESCRIPTION

Presentation by Frederic Trojani, Chairman of the Board at SDW2013 in London

TRANSCRIPT

Page 1: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

Frédéric Trojani, Chairman Secure Identity Alliance

SDW 2013, 23rd May

Page 2: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

2

The economic value of digital identity

1

SDW 2013, 23rd May

Page 3: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

3

Today’s world is connected

SDW 2013, 23rd May

6.8 Billion Mobile Subscribers

2 Billion Internet Users (Most Are Mobile)

50 Billion Connected Devices

Page 4: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

4

Digital Identity can be a key growth driver in an overall stagnant European economy

Source: OECD, BCG

SDW2013, 23rd May

Consumers

Organizations

2020

997

669

328

2011

315

262

53

Digital Identity value European economy

EU-27 in 2011 and 2020, billion €

EU-27 in 2011, billion €

Budget deficit

520

GDP

12,629

~ 2×

budget defícit

~ 8% of GDP +14%

CAGR

Page 5: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

5

Public sector and healthcare stand to profit the most from personal data applications

PRIVATE- AND PUBLIC-SECTOR VALUE OF DIGITAL ECONOMY 2020, BILLION €

Source: BCG

15

5

8

6

1

36

9

34

7

112

5

14

7

6

11

52

16%

84%

Current value 2011

Further potential

SDW 2013 – 23rd May

@

Traditional production

Info/ enter-

tainment

Financial services

Web 2.0

comm.

E-com-

merce Telco & media

Retail Public/ health

Page 6: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

6

However Public Sector and Healthcare are lagging behind

Source: BCG

SDW 2013, 23rd May

Digital identity intensity

Evolutionary path of digital economy value creation

Digitization

Creating basic digital

product experience

I

Basic digital identity uses as secure authentication

Sharing data with third parties in both directions

External applications

Tapping data

ecosystem

opportunities

III

Usage data for R&D, delivery optimization, etc.

Internal enhancement

Leveraging personal

data internally

II

Page 7: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

7

@

Millions of bytes of data is being collected

SDW 2013 – 23rd May

Cell phone N° Address Interests Purchase history

Health Status Blood group Insurance Address

Tax status Social security Birthday Birthplace Gender Nationality

Credit rating Income Address Travel habits Work details

Page 8: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

8

Digital identity is the sum of all digitally available data about an individual

Source: BCG

Digital identity

Sum of all digitally

available data about an

individual, irrespective of its degree of validity, its form, or its accessibility

• Date of birth • Gender • Nationality • …

Where does she/he

come from?

Inherent characteristics

• Favorite brands • Taste in music • Interests

• …

What does she/he like?

Individual preferences

• Address • Medical record • Purchase

history • …

What did she/he

do?

Acquired attributes

SDW 2013 – 23rd May

Page 9: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

9

Digital identity creates wealth

DIGITAL IDENTITY VALUE: EUR 330 BILLION BY 2020 (SOURCE: BCG)

SDW2013 – 23rd May

Source: EU COM (2010)245

Content Creation

Borderless Services

Service Demand Increases

Networks Roll Out

Page 10: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

10

The central principle of trust

2

SDW2013, 23rd May

Page 11: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

11

Massive hack attacks show major flaws in today’s internet security

Source: BCG

40 million

employee

records stolen

77 million e-mail

addresses and

credit card data

stolen

E-mail addresses

and names of

millions of third

party customers

exposed

UK database

hacked, clients'

e-mail addresses

and names

exposed

Exposure of

names,

passwords and

other personal

information of 35

million Koreans

SDW2013, 23rd May

For Sony's PlayStation Network incident alone total

costs of up to $4.6 billion estimated

Medical and

financial

information of 5.1

million individuals

stolen

Breach enabled

monitoring of

boardroom-level

communications

of more than

10,000

executives

Customers'

phone numbers

were logged and

exposed to

website

publishers

Files containing

6.4 million

LinkedIn

members

passwords were

found on

hacker websites

More than

200,000

e-mail

addresses, along

with other

customer

information

exposed

major 2011/12 data breaches

Page 12: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

12

Page 13: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

13

Today’s online issues

USERNAMES AND PASSWORDS ARE BROKEN

Most people have >25 different passwords, or use the same one over and over

Even strong passwords are vulnerable…criminals have many paths to easily capture “keys to the kingdom”

Rising costs of identity theft

•11.6M U.S. victims (+13% YoY) in 2011 at a cost of $37 billion

•67% increase in # of Americans impacted by data breaches in 2011 (Source: Javelin Strategy & Research)

SDW2013 – 23rd May

Source: NSTIC

Page 14: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

14

Page 15: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

15

Today’s online issues

PASSWORD CHANGE AND NEW ACCOUNT SETUP ALIENATE CUSTOMERS

38% of adults sometimes think it would be easier to solve world peace than attempt to remember all their passwords

38% would rather undertake household chores, like cleaning the toilet or doing the dishes, than have to create another username and password

84% of people dislike being asked to register on a website

Shopping cart abandonment: 38% online users do not buy online because they have to register before purchasing. (source: Forrester)

SDW2013 – 23rd May

Source: NSTIC

Page 16: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

16

Page 17: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

17

Today’s online issues

SDW 2013, 23rd May

Source: NSTIC

IDENTITIES ARE DIFFICULT TO VERIFY OVER THE INTERNET

Numerous government services must still be conducted in person or by mail, leading to continual rising costs

Electronic health records could save billions, but can’t move forward without solving authentication challenge for providers and individuals

Many transactions, such as signing an auto loan or a mortgage, are still considered too risky to be conducted online due to liability risks

Page 18: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

18

Page 19: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

19

Today’s online issues

SDW 2013, 23rd May

Source: NSTIC

PRIVACY REMAINS A CHALLENGE

Individuals often must provide more Personally Identifiable Information (PII) than necessary for a particular transaction

This data is often stored, creating “honey pots” of information for cybercriminals to pursue

Individuals have few practical means to control use of their information

Almost two-thirds of adults (62%) hesitant to enter personal information line without knowing how the site or brand was planning to use the info

Page 20: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

20

Today’s online issues

SDW2013 – 23rd May

Thanks to information available online, one can ask a birth certificate leading to a passport or an ID card

Source Bearing Point

Users behavior can taint the whole trust chain

Page 21: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

21

TRUST : IF TRUST IS BROKEN SO IS THE SYSTEM

SDW2013, 23rd May

Content Creation

Borderless Services

Service Demand Increases

Networks Roll Out

Today’s online issues

TRUST

Page 22: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

22

The ‘logical’ role of government

3

SDW2013, 23rd May

Page 23: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

23

In creating an environment where citizens are empowered via

SDW2013 – 23rd May

Convenience/Mobility

Trust

Privacy Security

Page 24: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

24

Where governments play the root identity

SDW 2013 , 23rd May

ID Service Provider

2

3

Service Providers

REVOCATION

Government/ Root ID

User

@

Page 25: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

25

And where Digital Identity is stored in a Secure Element

500 million ePassport in use (Source Icao 2012)

1350 million national eID cards in use (Source ABI 2012)

450 million eHealth cards in use (Source ABI 2012)

250 million eDriving License cards (Source ABI 2012)

25 billion SIM cards shipped since inception

EMV Payment Cards have hit the 1 billion mark in 2011 (annual shipments)

SDW 2013, 23rd May

WHAT IS UNIQUE ABOUT THE SECURE ELEMENT?

Private: Personal data stored in Secure Element (health records, biometrics , others)

Portability : different access devices can be used

Citizen control: data transmission initiated by owner

Highly customizable: Multi-services platform

Highly Secured: Certified at every stage of lifecycle

Connected: Remotely manageable

Multi-party: Secured domains managed independently by each entity

Standardized

Interoperable: devices/ physical support & services

Proven and mature technology – no relevant fraud since inception

Page 26: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

26

A Logical role however complex

“AN ONLINE ENVIRONMENT WHERE INDIVIDUALS AND ORGANIZATIONS WILL BE ABLE TO TRUST EACH OTHER BECAUSE THEY FOLLOW AGREED UPON STANDARDS TO OBTAIN AND AUTHENTICATE THEIR DIGITAL IDENTITIES.” NSTIC

REGULATIONS

NSTIC in the US (National Program Office of the National Strategy for Trusted Identities in Cyberspace)

e-IDAS in Europe (regulation on eIdentification, eAuthentication and eSignatures and Trusted Services)

National specific initiatives: Sweden, Estonia, etc.

STANDARDS: CEN, ETSI, ICAO, ISO AND OTHERS

INITIATIVES : GSMA MOBILE ID

SDW2013 – 23rd May

Page 27: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

27

To ensure the success of eGovernment Services

SDW 2013, 23rd May

Only 15 % of eGovernement Services are considered as success

Citizens benefited, no adverse results

50 % of Partial success

Main goals not achieved

Initial success but problems after one year

success for one group but failure for others

35 % are not implemented or abandoned

Belgium Estonia

Page 28: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

28

Establishing secure partnership

4

SDW2013, 23rd May

Page 29: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

29

A Short Introduction

• The Secure Identity Alliance is committed to helping public bodies across the world deliver e-government services to citizens through the widespread

adoption of secure e-document technologies.

• Founded in March 2013 by leading eDocument and eService Companies

• Board Members:

SDW2013, 23rd May

Page 30: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

30

Objective

Accelerate the transition to smart eDocuments to support an open, interoperable and efficient roll-out of eGovernment online services by:

Describe and promote use cases of convenient value-added eGovernment services

Share experiences and best practices between industry and governments modernizing their services, in particular towards ensuring the privacy of end-users’ personal information

Promote standardization of relevant and appropriate industry specifications

Make recommendations on the most up-to-date means to properly address the governments identity and privacy challenges

• eDocument hardware, software and secure printing technologies, materials and physical security expertise

• Deliver the level of confidence and assurance needed for the rapid adoption of eServices that can be trusted by citizens

Provide consistent reference information on security, identity and privacy challenges in a transparent manner

SDW 2013, 23rd May

In short, the Secure Identity Alliance offers a trusted partner for governments

when defining their eDocument strategies and implementing associated

eGovernment services.

Page 31: Accelerating the creation and deployment of e-Government services by ensuring Citizen’s Privacy, Security, Convenience and Trust

First Secure Identity Alliance Members Information (Recruitment) Meeting

TODAY at 12:40

In this Conference Room.

www.secure identityalliance.org

Invitation