SlideShare a Scribd company logo
Open Banking and PSD2
Are your APIs ready for external testing?
Seshika Fernando
Head of Financial Solutions
WSO2
Kaveen Rodrigo
Software Engineer - Open Banking
WSO2
● Regulatory Technical Standards (RTS) entered into force in
March 2018
● Upcoming deadlines
○ March 2019 - Testing facility by all banks
Article 30 (RTS)
○ September 2019 - Full PSD2 compliance by all banks
Article 38 (RTS)
Status Quo
Key Features Required for Compliance
Popular Open Banking
API Specifications
Open Banking UK
September
Specification V3.0
Introduced with two new APIs for
confirmation of funds and notifications.
November (Expected)
Specification V3.1
February
Specification V2.0
Revised API changes and support for PSD2
in-scope payment accounts.
March
Open Banking Directory
The Directory helps account providers to
verify the identity of regulated TPPs
Berlin Group NextGEN PSD2
September
Specification V1.2
Consent Related Revisions on APIs
October
Specification V1.3
revisions on APIs and SCA methods.
February
Specification V1.0
Framework released initially.
May
Specification V1.1
Minor revisions on APIs
● Version 1.3 released in April.
● Latest specification version 1.4 was released last September.
○ Payment and Transfers APIs were aggregated in this release.
STET
● Lack of regulatory expertise
● Lack of resources to follow the regulatory/spec changes
● Lack of technology components
● Inability to change existing tech
● Lack of specialized skills
Key Challenges for Banks
● Covers all Regulatory Requirements
● Supports OB UK, Berlin Group and STET specifications
● Componentized Architecture allows Mix & Match
● Integration layer makes it easily pluggable
● Team of Open Banking regulatory experts
● Rich network of European partners
WSO2 Open Banking
Achieving upcoming deadlines with
WSO2 Open Banking
Meeting the
March Deadline*
Task Duration (days)
Discovery, Dev/Test Deployment and
Deployment Documentation
5
Implementation
- Mock Backends
- TPP Onboarding
- SCA
- Consent Mgmt
- TRA
- Branding
10
Sandbox Environment
- Deployment
- Functional Testing
- Systems Integration Testing
- Security Testing
- User Acceptance Testing (UAT)
12
Training 5
Total 32
* With 2 WSO2 Open Banking experts
Meeting the
September Deadline*
Task Duration (days)
Implementation
- Core banking integration
- Custom User stores
- TPP Onboarding
31
Deployment Automation 4
Testing (DEV/TEST, PROD)
- Functional
- Integration
- Security
- Performance
- UAT
20
Documentation & Training 5
Total 60
* With 2 WSO2 Open Banking experts
Open Banking
What’s in it for the banks
Expanding Distribution Channels
TPP A TPP BBANK
Upselling and Cross selling
Consolidated customer
account and payment
info across
multiple banks
Bank A
Bank B
Bank C
Merchant
TPPTPP
New Revenue Streams
Consolidated customer
account and payment
info across
multiple banks
Bank A
Bank B
Bank C
Merchant
TPPTPP
THANK YOU
wso2.com

More Related Content

PDF
[WSO2 Summit Brazil 2018] The API-driven World
PPTX
[WSO2Con EU 2018] How WSO2 Enabled Open Banking at Société Générale Internati...
PDF
[WSO2Con EU 2018] WSO2 Open Banking, So Good I Bought it Twice
PDF
API-first Integration for Microservices
PDF
[apidays LIVE HONK KONG] - Building an Integrated Supply Chain for APIs
PDF
[WSO2Con EU 2018] Simplifying Digital Transformation with an "API Aware" Mindset
PDF
Which ap is which business models_ a real-world guide for banks in sri lanka
PDF
[2021 Somos Summit] - Rethinking Identity Access Management and The Rise of t...
[WSO2 Summit Brazil 2018] The API-driven World
[WSO2Con EU 2018] How WSO2 Enabled Open Banking at Société Générale Internati...
[WSO2Con EU 2018] WSO2 Open Banking, So Good I Bought it Twice
API-first Integration for Microservices
[apidays LIVE HONK KONG] - Building an Integrated Supply Chain for APIs
[WSO2Con EU 2018] Simplifying Digital Transformation with an "API Aware" Mindset
Which ap is which business models_ a real-world guide for banks in sri lanka
[2021 Somos Summit] - Rethinking Identity Access Management and The Rise of t...

What's hot (20)

PDF
[WSO2Con EU 2018] GDPR Compliance and IAM Services in a European Municipality
PDF
[WSO2 Summit Americas 2020 ] Fintech Ecosystems & Consumer Experiences: The N...
PDF
Best Practices for Productizing APIs with API Management and Automated Testing
PDF
[WSO2 Summit Americas 2020] CIAM and Securing the Integrated API Supply Chain
PDF
[WSO2 Summit EMEA 2020] Fintech Ecosystems & Consumer Experiences: The Next G...
PDF
[WSO2 Summit EMEA 2020] The Integrated API Supply Chain
PDF
[WSO2Con USA 2018] Design and Implementation of the Veridium Authenticator: A...
PPTX
Apache kafka an ideal data streaming solution for your bank
PDF
An Entry Point to Impactful Open Banking Architecture
PDF
[WSO2 Summit EMEA 2020] CIAM and Securing the Integrated API Supply Chain
PDF
[WSO2 Summit APAC 2020] APIs: The Products of the 21st Century
PDF
[WSO2 Summit EMEA 2020] Experiencing the Benefits of API Driven Open Banking
PDF
The Best of Both Worlds: Introducing WSO2 API Manager 4.0.0
PDF
[WSO2Con EU 2018] Implementing a Zero Downtime WSO2 API Manager with an API C...
PDF
[apidays LIVE HONK KONG] - OAS to Managed API in Seconds
PDF
[APIdays INTERFACE 2021] Authentication and Authorization Best Practices for ...
PDF
[APIdays Singapore 2019] Managing the API lifecycle with Open Source Technolo...
PDF
2018 Year in Review and 2019 Targets - A Year of WSO2 Integration Agility
PDF
Role of API Management in an API led Digital Economy
PDF
[APIdays INTERFACE 2021] Programming the Cloud through APIs
[WSO2Con EU 2018] GDPR Compliance and IAM Services in a European Municipality
[WSO2 Summit Americas 2020 ] Fintech Ecosystems & Consumer Experiences: The N...
Best Practices for Productizing APIs with API Management and Automated Testing
[WSO2 Summit Americas 2020] CIAM and Securing the Integrated API Supply Chain
[WSO2 Summit EMEA 2020] Fintech Ecosystems & Consumer Experiences: The Next G...
[WSO2 Summit EMEA 2020] The Integrated API Supply Chain
[WSO2Con USA 2018] Design and Implementation of the Veridium Authenticator: A...
Apache kafka an ideal data streaming solution for your bank
An Entry Point to Impactful Open Banking Architecture
[WSO2 Summit EMEA 2020] CIAM and Securing the Integrated API Supply Chain
[WSO2 Summit APAC 2020] APIs: The Products of the 21st Century
[WSO2 Summit EMEA 2020] Experiencing the Benefits of API Driven Open Banking
The Best of Both Worlds: Introducing WSO2 API Manager 4.0.0
[WSO2Con EU 2018] Implementing a Zero Downtime WSO2 API Manager with an API C...
[apidays LIVE HONK KONG] - OAS to Managed API in Seconds
[APIdays INTERFACE 2021] Authentication and Authorization Best Practices for ...
[APIdays Singapore 2019] Managing the API lifecycle with Open Source Technolo...
2018 Year in Review and 2019 Targets - A Year of WSO2 Integration Agility
Role of API Management in an API led Digital Economy
[APIdays INTERFACE 2021] Programming the Cloud through APIs
Ad

Similar to Open Banking and PSD2: Are your APIs ready for external testing? (20)

PDF
Vinay_Patange_StanChart_Cannes_2010_Ver2
PDF
Thinking Back and Looking Ahead for Open Banking: Perspectives from OBIE and ...
PDF
What's New With WSO2 Open Banking
PDF
Getting your API Management Strategy on Point for PSD2 Compliance
PDF
What’s new in WSO2 Open Banking
PDF
Secure and Accelerated PSD2 Compliance with WSO2 Open Banking - A Technical D...
PDF
Volkswagen | ECU Software Development with codeBeamer ALM: IT Aspects
PDF
What’s New With WSO2 Open Banking?
PDF
Horizen Quarterly Live Update - 4Q 2019
PPTX
Webinar materials | PSD2: Ensuring a seamless payments journey - connecting A...
PDF
Spring IO 2016 - Spring Cloud Microservices, a journey inside a financial entity
PDF
SpringIO 2016 - Spring Cloud MicroServices, a journey inside a financial entity
PDF
EXTENT-2016: Key Challenges and Lessons Learned from Testing a New Trading Sy...
PDF
Zanders NGO Event December 2014: Zanders
PPT
香港六合彩
PDF
swift_standards_masterclass_2019_presentation (1).pdf
PDF
PCI DSS 3.0 Overview and Key Updates
PPTX
Innovation in the network – Adding value to voice OpenCloud Bouygues
PDF
Finologee's PSD2 Value Proposition
PDF
Python in the Financial Industry The universal tool for end-to-end developme...
Vinay_Patange_StanChart_Cannes_2010_Ver2
Thinking Back and Looking Ahead for Open Banking: Perspectives from OBIE and ...
What's New With WSO2 Open Banking
Getting your API Management Strategy on Point for PSD2 Compliance
What’s new in WSO2 Open Banking
Secure and Accelerated PSD2 Compliance with WSO2 Open Banking - A Technical D...
Volkswagen | ECU Software Development with codeBeamer ALM: IT Aspects
What’s New With WSO2 Open Banking?
Horizen Quarterly Live Update - 4Q 2019
Webinar materials | PSD2: Ensuring a seamless payments journey - connecting A...
Spring IO 2016 - Spring Cloud Microservices, a journey inside a financial entity
SpringIO 2016 - Spring Cloud MicroServices, a journey inside a financial entity
EXTENT-2016: Key Challenges and Lessons Learned from Testing a New Trading Sy...
Zanders NGO Event December 2014: Zanders
香港六合彩
swift_standards_masterclass_2019_presentation (1).pdf
PCI DSS 3.0 Overview and Key Updates
Innovation in the network – Adding value to voice OpenCloud Bouygues
Finologee's PSD2 Value Proposition
Python in the Financial Industry The universal tool for end-to-end developme...
Ad

More from WSO2 (20)

PDF
Demystifying CMS-0057-F - Compliance Made Seamless with WSO2
PDF
Quantum Threats Are Closer Than You Think – Act Now to Stay Secure
PDF
Modern Platform Engineering with Choreo - The AI-Native Internal Developer Pl...
PDF
Application Modernization with Choreo - The AI-Native Internal Developer Plat...
PDF
Build Smarter, Deliver Faster with Choreo - An AI Native Internal Developer P...
PDF
Platformless Modernization with Choreo.pdf
PDF
Application Modernization with Choreo for the BFSI Sector
PDF
Choreo - The AI-Native Internal Developer Platform as a Service: Overview
PDF
[Roundtable] Choreo - The AI-Native Internal Developer Platform as a Service
PPTX
WSO2Con 2025 - Building AI Applications in the Enterprise (Part 1)
PPTX
WSO2Con 2025 - Building Secure Business Customer and Partner Experience (B2B)...
PPTX
WSO2Con 2025 - Building Secure Customer Experience Apps
PPTX
WSO2Con 2025 - AI-Driven API Design, Development, and Consumption with Enhanc...
PPTX
WSO2Con 2025 - AI-Driven API Design, Development, and Consumption with Enhanc...
PPTX
WSO2Con 2025 - Unified Management of Ingress and Egress Across Multiple API G...
PPTX
WSO2Con 2025 - How an Internal Developer Platform Lets Developers Focus on Code
PPTX
WSO2Con 2025 - Architecting Cloud-Native Applications
PDF
Mastering Intelligent Digital Experiences with Platformless Modernization
PDF
Accelerate Enterprise Software Engineering with Platformless
PDF
WSO2Con2024 - WSO2's IAM Vision: Identity-Led Digital Transformation
Demystifying CMS-0057-F - Compliance Made Seamless with WSO2
Quantum Threats Are Closer Than You Think – Act Now to Stay Secure
Modern Platform Engineering with Choreo - The AI-Native Internal Developer Pl...
Application Modernization with Choreo - The AI-Native Internal Developer Plat...
Build Smarter, Deliver Faster with Choreo - An AI Native Internal Developer P...
Platformless Modernization with Choreo.pdf
Application Modernization with Choreo for the BFSI Sector
Choreo - The AI-Native Internal Developer Platform as a Service: Overview
[Roundtable] Choreo - The AI-Native Internal Developer Platform as a Service
WSO2Con 2025 - Building AI Applications in the Enterprise (Part 1)
WSO2Con 2025 - Building Secure Business Customer and Partner Experience (B2B)...
WSO2Con 2025 - Building Secure Customer Experience Apps
WSO2Con 2025 - AI-Driven API Design, Development, and Consumption with Enhanc...
WSO2Con 2025 - AI-Driven API Design, Development, and Consumption with Enhanc...
WSO2Con 2025 - Unified Management of Ingress and Egress Across Multiple API G...
WSO2Con 2025 - How an Internal Developer Platform Lets Developers Focus on Code
WSO2Con 2025 - Architecting Cloud-Native Applications
Mastering Intelligent Digital Experiences with Platformless Modernization
Accelerate Enterprise Software Engineering with Platformless
WSO2Con2024 - WSO2's IAM Vision: Identity-Led Digital Transformation

Recently uploaded (20)

DOCX
The AUB Centre for AI in Media Proposal.docx
PDF
Dropbox Q2 2025 Financial Results & Investor Presentation
PPTX
20250228 LYD VKU AI Blended-Learning.pptx
PDF
Diabetes mellitus diagnosis method based random forest with bat algorithm
PDF
Peak of Data & AI Encore- AI for Metadata and Smarter Workflows
PDF
Agricultural_Statistics_at_a_Glance_2022_0.pdf
PDF
Chapter 3 Spatial Domain Image Processing.pdf
PDF
The Rise and Fall of 3GPP – Time for a Sabbatical?
PDF
Mobile App Security Testing_ A Comprehensive Guide.pdf
PDF
Review of recent advances in non-invasive hemoglobin estimation
PPTX
Big Data Technologies - Introduction.pptx
PDF
Machine learning based COVID-19 study performance prediction
PDF
Bridging biosciences and deep learning for revolutionary discoveries: a compr...
PDF
Encapsulation theory and applications.pdf
PPTX
Digital-Transformation-Roadmap-for-Companies.pptx
PDF
Electronic commerce courselecture one. Pdf
PDF
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
PDF
Reach Out and Touch Someone: Haptics and Empathic Computing
PDF
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
PDF
Empathic Computing: Creating Shared Understanding
The AUB Centre for AI in Media Proposal.docx
Dropbox Q2 2025 Financial Results & Investor Presentation
20250228 LYD VKU AI Blended-Learning.pptx
Diabetes mellitus diagnosis method based random forest with bat algorithm
Peak of Data & AI Encore- AI for Metadata and Smarter Workflows
Agricultural_Statistics_at_a_Glance_2022_0.pdf
Chapter 3 Spatial Domain Image Processing.pdf
The Rise and Fall of 3GPP – Time for a Sabbatical?
Mobile App Security Testing_ A Comprehensive Guide.pdf
Review of recent advances in non-invasive hemoglobin estimation
Big Data Technologies - Introduction.pptx
Machine learning based COVID-19 study performance prediction
Bridging biosciences and deep learning for revolutionary discoveries: a compr...
Encapsulation theory and applications.pdf
Digital-Transformation-Roadmap-for-Companies.pptx
Electronic commerce courselecture one. Pdf
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
Reach Out and Touch Someone: Haptics and Empathic Computing
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
Empathic Computing: Creating Shared Understanding

Open Banking and PSD2: Are your APIs ready for external testing?

  • 1. Open Banking and PSD2 Are your APIs ready for external testing? Seshika Fernando Head of Financial Solutions WSO2 Kaveen Rodrigo Software Engineer - Open Banking WSO2
  • 2. ● Regulatory Technical Standards (RTS) entered into force in March 2018 ● Upcoming deadlines ○ March 2019 - Testing facility by all banks Article 30 (RTS) ○ September 2019 - Full PSD2 compliance by all banks Article 38 (RTS) Status Quo
  • 3. Key Features Required for Compliance
  • 4. Popular Open Banking API Specifications
  • 5. Open Banking UK September Specification V3.0 Introduced with two new APIs for confirmation of funds and notifications. November (Expected) Specification V3.1 February Specification V2.0 Revised API changes and support for PSD2 in-scope payment accounts. March Open Banking Directory The Directory helps account providers to verify the identity of regulated TPPs
  • 6. Berlin Group NextGEN PSD2 September Specification V1.2 Consent Related Revisions on APIs October Specification V1.3 revisions on APIs and SCA methods. February Specification V1.0 Framework released initially. May Specification V1.1 Minor revisions on APIs
  • 7. ● Version 1.3 released in April. ● Latest specification version 1.4 was released last September. ○ Payment and Transfers APIs were aggregated in this release. STET
  • 8. ● Lack of regulatory expertise ● Lack of resources to follow the regulatory/spec changes ● Lack of technology components ● Inability to change existing tech ● Lack of specialized skills Key Challenges for Banks
  • 9. ● Covers all Regulatory Requirements ● Supports OB UK, Berlin Group and STET specifications ● Componentized Architecture allows Mix & Match ● Integration layer makes it easily pluggable ● Team of Open Banking regulatory experts ● Rich network of European partners WSO2 Open Banking
  • 10. Achieving upcoming deadlines with WSO2 Open Banking
  • 11. Meeting the March Deadline* Task Duration (days) Discovery, Dev/Test Deployment and Deployment Documentation 5 Implementation - Mock Backends - TPP Onboarding - SCA - Consent Mgmt - TRA - Branding 10 Sandbox Environment - Deployment - Functional Testing - Systems Integration Testing - Security Testing - User Acceptance Testing (UAT) 12 Training 5 Total 32 * With 2 WSO2 Open Banking experts
  • 12. Meeting the September Deadline* Task Duration (days) Implementation - Core banking integration - Custom User stores - TPP Onboarding 31 Deployment Automation 4 Testing (DEV/TEST, PROD) - Functional - Integration - Security - Performance - UAT 20 Documentation & Training 5 Total 60 * With 2 WSO2 Open Banking experts
  • 13. Open Banking What’s in it for the banks
  • 15. Upselling and Cross selling Consolidated customer account and payment info across multiple banks Bank A Bank B Bank C Merchant TPPTPP
  • 16. New Revenue Streams Consolidated customer account and payment info across multiple banks Bank A Bank B Bank C Merchant TPPTPP