SlideShare a Scribd company logo
Strong Customer Authentication
& Biometrics
January, 2019
©2019 Visa. All rights reserved. Visa public2
Today’s discussion:
1. Changing regulatory landscape
(Europe) & the impact on payments
2. Key enablers
3. 3DS 2.0
4. Visa Biometrics
5. Implementation details
©2019 Visa. All rights reserved. Visa public3
Changing landscape
Uncharted territory
Open ecosystem
New payments requirements
Ambiguity as we implement
©2019 Visa. All rights reserved. Visa public
©2019 Visa. All rights reserved. Visa public4
New Regulation
• Strong Customer Authentication (SCA)
Unless the payment qualifies as low risk, customers must authenticate transaction
with at least two independent factors
• Largest impact will be on remote electronic payments
SCA must be applied to all electronic payments unless out of scope or exempted.
Financial transactions can be classified in two ways:
European Payment Service Directive 2
Something you know Something you have Something you are
(PSD2 - September 2019)
Exemptions
Contactless payments at point of sale1
Unattended transport and parking terminals
Recurring transactions
Low value transactions
Secure corporate payments
Transaction risk analysis
Trusted beneficiaries
1
2
3
4
5
6
7
1 Contactless transactions are exempt from SCA unless transactions exceed the count/amount thresholds
Cardholder Initiated
Transactions (CIT)
In-scope
Merchant Initiated
Transactions (MIT)
Out of scope
Low Risk
Transaction
Value Band
PSP Fraud
Rate
<€100 13 bps/0.13%
€100-€250 6 bps/0.06%
€250-€500 1 bps/0.01%
©2019 Visa. All rights reserved. Visa public5
3-D Secure 2.0
• Industry standard for authentication
• 2.0 has an enhanced user
experience, expanded device usage,
greater data sharing and is
regulatory smart
Visa Biometrics
• Consumer-friendly alternative to
OTP’s
• FIDO implementation provides 2-
factor authentication with support
for fingerprint, face and voice
Products & programs for SCA compliance and optimization
©2019 Visa. All rights reserved. Visa public6
Issuer
Identifies which transactions
need additional authentication.
Cardholder
Most authentication is invisible
to the consumer.
Merchant
Benefits directly from
collaborative data exchange.
3-D Secure 2.0 —Who is involved?
Data
Expanded data contextualizes
the authentication.
©2019 Visa. All rights reserved. Visa public7
The issuer collaborates with the
merchant to authenticate the
cardholder’s identity before
authorization occurs
3-D Secure 2.0 —How it works.
Authentication verifies the identity
of the cardholder.
Authentication with 3-D Secure 2.0
complements authorization to strengthen
issuer confidence in approving the transaction.
Authentication with 3-D Secure Authorization
©2019 Visa. All rights reserved. Visa public8
73% of global consumers surveyed would be comfortable using biometrics to make a payment1
Research conducted by Visa from Sept-Nov 2017, among over 10,000 consumers who use at least one credit card, debit card, and/or mobile pay.
Why biometrics?
73%
Singapore
68%
Canada
70%
U.S.
83%
Brazil
75%
UAE
73%
Australia
70%
New Zealand
74%
Japan
78%
China
76%
South Africa
66%
France 65%
Ukraine
73%
S. Korea
63%
Russia
©2019 Visa. All rights reserved. Visa public9
Visa Biometrics
Streamline SCA by enabling biometrics authentication with 3DS 2.0 & FIDO
This page is intended for illustrative purposes only. It contains depictions of a product currently in the process of deployment, and should be understood as a representation of the
potential features of the fully-deployed product. The final version of this product may not contain all of the features described in this presentation.
Place order Authenticate with Biometrics Merchant SuccessNotification opens issuer app
©2019 Visa. All rights reserved. Visa public10
Customer
How it works
Visa Biometrics with 3DS and FIDO
3DS Program
Server
Visa Biometric FIDO
Server
ACSMerchant Server
Customer places order Request to 3DS Program Request to issuer’s ACS
Request for issuer to perform
consumer authentication
Issuer initiates authentication
request with Visa
Issuer Server
Issuer sends push notification to issuer’s mobile app for customer to authenticate
Customer selects push notification and launches mobile app, which requests authentication policy from issuer’s server Issuer requests authentication policy
Issuer sends authentication policy to issuer’s mobile app
Customer authenticates with biometrics and result is returned to issuer’s server
Issuer’s server completes
authentication with Visa
Issuer sends authentication resultACS sends response3DS Program returns resultsMerchant approves/denies transaction
©2019 Visa. All rights reserved. Visa public11 Source: FIDO Authentication for Mobile Payments – Featuring Biometrics for 3-D Secure 2.0
Why we chose a FIDO implementation
Secure
• Asymmetric key
cryptography
• End-to-end design and
review with security
industry
Compliant
• Aligns with NIST, W3C,
and PSD2
• Authenticators have
been certified
• Out-of-band on single
device
Data & Control
• Metadata from device,
authenticator
• Flexible UX above
standard API to manage
policies
Scale
• Financial ROI of open
standard economics
• Mitigate development
risk
©2019 Visa. All rights reserved. Visa public12
Category RTS FIDO
Program
Security measures shall be documented, tested,
evaluated and audited.
The FIDO certification program provides for an independent
assessment of the security level. The assessment is typically
performed by a FIDO accredited laboratory and evaluated by the
FIDO technical staff.
Authentication
Factors
Measures shall be adopted to mitigate the risk that
authentication factors are uncovered, used or
disclosed to unauthorized parties. Devices that read
biometric authentication shall have a very low
probability of an unauthorized user being
authenticated.
Once authentication factors are stored by the FIDO authenticator
during registration they do not leave the authenticator and
cannot be read, copied or transferred. FIDO authenticators that
capture, store, read and compare biometric data are subject to a
FIDO biometric certification that attests to the quality level of the
biometric implementation. Criteria such as FAR, FRR and PAD are
tested.
Multipurpose
Device
Security measures including data protection, secured
communication and separated environment shall be
adopted when using a multi-purpose device (i.e.
smartphone or tablet.)
FIDO authenticators are commonly implemented in multi-
purposes devices. The FIDO security standards call for firewalling
of the FIDO authenticator from other applications in the device
through a separated execution environment and protection of
this environment from intrusion or alteration. A TLS protected
channel is used for communication between the authentication
and server.
FIDO addresses many items of the European Banking Authority’s Regulatory Technical
Standards (RTS) with a few key areas detailed below
How FIDO helps with SCA compliance
©2019 Visa. All rights reserved. Visa public13
• PSD2 will challenge the payments industry but it will also bring an opportunity for
players & solutions to excel
─ The combination of FIDO, Biometrics & 3DS 2.0 meets the demand of both regulators and consumers
• Issuers & merchants:
─ Understand what the impacts are to your business
─ Plan and prioritize implementation of 3DS 2.0, authorization message enhancements, tokenization, and
biometrics
─ Work with service providers on timing for SCA readiness and how to address exemptions
• Service providers:
─ Innovate and continue to work with industry groups (FIDO, EMVCo, etc.) to prepare the next generation
of solutions
Key Takeaways
Moving forward together

More Related Content

PPTX
FIDO Masterclass
PDF
Biometrics for Payment Authentication
PDF
Current Trends Related to Mobile Network Operators & FIDO SCA Adoption
PDF
Strong Customer Authentication & Biometrics
PDF
FIDO Authentication and GDPR
PDF
FIDO & Mobile Connect
PDF
FIDO Authentication: Its Evolution and Opportunities in Business -FIDO Allian...
PPTX
Introduction to FIDO: A New Model for Authentication
FIDO Masterclass
Biometrics for Payment Authentication
Current Trends Related to Mobile Network Operators & FIDO SCA Adoption
Strong Customer Authentication & Biometrics
FIDO Authentication and GDPR
FIDO & Mobile Connect
FIDO Authentication: Its Evolution and Opportunities in Business -FIDO Allian...
Introduction to FIDO: A New Model for Authentication

What's hot (20)

PDF
Beyond Passwords: FIDO and the Future of User Authentication
PDF
Digital Identity In Government
PPTX
Fido Technical Overview
PDF
European Regulation And The Need For Strong Customer Authentication
PDF
FIDO, Strong Authentication and elD in Germany
PPTX
The State of Strong Authentication
PDF
NTT DOCOMO Deployment Case Study
PPTX
FIDO & GSMA Mobile Connect
PDF
GDPR(一般データ保護規則)とFIDO標準について
PDF
FIDO Workshop at the Cloud Identity Summit: FIDO Alliance Overview
PPTX
FIDO Alliance Vision and Updates
PDF
Expected Use Cases of FIDO Authentication for Social Applications
PPTX
Strong Authentication Trends in Government
PDF
Beyond Passwords: FIDO & the Future of Consumer Authentication
PDF
FIDO Authentication in the Shifting Regulatory Landscape
PPTX
Technical Principles of FIDO Authentication
PDF
FIDO Authentication Technical Overview
PDF
KICA Case Study: Bio-Authentication and PKI Trends in Korea -FIDO Alliance -T...
PDF
Introduction to the FIDO Alliance
PDF
FIDO Authentication in a Mobile Network
Beyond Passwords: FIDO and the Future of User Authentication
Digital Identity In Government
Fido Technical Overview
European Regulation And The Need For Strong Customer Authentication
FIDO, Strong Authentication and elD in Germany
The State of Strong Authentication
NTT DOCOMO Deployment Case Study
FIDO & GSMA Mobile Connect
GDPR(一般データ保護規則)とFIDO標準について
FIDO Workshop at the Cloud Identity Summit: FIDO Alliance Overview
FIDO Alliance Vision and Updates
Expected Use Cases of FIDO Authentication for Social Applications
Strong Authentication Trends in Government
Beyond Passwords: FIDO & the Future of Consumer Authentication
FIDO Authentication in the Shifting Regulatory Landscape
Technical Principles of FIDO Authentication
FIDO Authentication Technical Overview
KICA Case Study: Bio-Authentication and PKI Trends in Korea -FIDO Alliance -T...
Introduction to the FIDO Alliance
FIDO Authentication in a Mobile Network
Ad

Similar to Strong Customer Authentication & Biometrics (20)

PDF
FIDO & PSD2: Solving the Strong Customer Authentication Challenge in Europe
PDF
3D-Secure 2.2 Webinar
PDF
Introduction to FIDO Biometric Authentication
PDF
EBE 2019 - The end of passwords: Two-factor-authentication and biometrics are...
PDF
3-D Secure 2.0 - Stephan Rüdisüli, Netcetera & Patrick Juffern, INFORM
PPTX
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
PPTX
The end of passwords: Two-factor-authentication and biometrics are coming 2019
PPTX
"Client authentication in e-commerce solutions" by Jānis Kūliņš from Tieto La...
PPT
PSD2, SCA and the EBA’s Opinion on SCA – Decoded
PDF
Secure Payments: How Card Issuers and Merchants Can Stay Ahead of Fraudsters
PDF
FIDO & PSD2 – Achieving Strong Customer Authentication Compliance
PDF
Can security and convenience go hand in hand in e-commerce
PPTX
The Future of the Payment Industry in banking.pptx
PDF
Javelin Research's State of Strong Authentication 2019 Report Webinar
PDF
NEC Public Safety | Digital Identity for Banks
PDF
The Future of Payments
PPTX
IdentityVerification IDV + Passkeys.pptx
PDF
Psd2 brochure
PDF
Digital Payment and 3-D Secure by Netcetera
PDF
Mobile Practices European Release Final 27 04 11
FIDO & PSD2: Solving the Strong Customer Authentication Challenge in Europe
3D-Secure 2.2 Webinar
Introduction to FIDO Biometric Authentication
EBE 2019 - The end of passwords: Two-factor-authentication and biometrics are...
3-D Secure 2.0 - Stephan Rüdisüli, Netcetera & Patrick Juffern, INFORM
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
The end of passwords: Two-factor-authentication and biometrics are coming 2019
"Client authentication in e-commerce solutions" by Jānis Kūliņš from Tieto La...
PSD2, SCA and the EBA’s Opinion on SCA – Decoded
Secure Payments: How Card Issuers and Merchants Can Stay Ahead of Fraudsters
FIDO & PSD2 – Achieving Strong Customer Authentication Compliance
Can security and convenience go hand in hand in e-commerce
The Future of the Payment Industry in banking.pptx
Javelin Research's State of Strong Authentication 2019 Report Webinar
NEC Public Safety | Digital Identity for Banks
The Future of Payments
IdentityVerification IDV + Passkeys.pptx
Psd2 brochure
Digital Payment and 3-D Secure by Netcetera
Mobile Practices European Release Final 27 04 11
Ad

More from FIDO Alliance (20)

PPTX
Securing Account Lifecycles in the Age of Deepfakes.pptx
PPTX
FIDO Seminar: Perspectives on Passkeys & Consumer Adoption.pptx
PPTX
FIDO Seminar: Evolving Landscape of Post-Quantum Cryptography.pptx
PPTX
FIDO Seminar: Targeting Trust: The Future of Identity in the Workforce.pptx
PPTX
FIDO Seminar: New Data: Passkey Adoption in the Workforce.pptx
PPTX
FIDO Seminar: Authentication for a Billion Consumers - Amazon.pptx
PPTX
FIDO Alliance Seminar State of Passkeys.pptx
PPTX
FIDO Munich Seminar: FIDO Tech Principles.pptx
PPTX
FIDO Munich Seminar: Securing Smart Car.pptx
PPTX
FIDO Munich Seminar: Strong Workforce Authn Push & Pull Factors.pptx
PPTX
FIDO Munich Seminar: Biometrics and Passkeys for In-Vehicle Apps.pptx
PPTX
FIDO Munich Seminar Workforce Authentication Case Study.pptx
PPTX
FIDO Munich Seminar In-Vehicle Payment Trends.pptx
PPTX
FIDO Munich Seminar FIDO Automotive Apps.pptx
PPTX
FIDO Munich Seminar Blueprint for In-Vehicle Payment Standard.pptx
PPTX
FIDO Munich Seminar Introduction to FIDO.pptx
PPTX
UX Webinar Series: Essentials for Adopting Passkeys as the Foundation of your...
PPTX
UX Webinar Series: Drive Revenue and Decrease Costs with Passkeys for Consume...
PPTX
UX Webinar Series: Aligning Authentication Experiences with Business Goals
PDF
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
Securing Account Lifecycles in the Age of Deepfakes.pptx
FIDO Seminar: Perspectives on Passkeys & Consumer Adoption.pptx
FIDO Seminar: Evolving Landscape of Post-Quantum Cryptography.pptx
FIDO Seminar: Targeting Trust: The Future of Identity in the Workforce.pptx
FIDO Seminar: New Data: Passkey Adoption in the Workforce.pptx
FIDO Seminar: Authentication for a Billion Consumers - Amazon.pptx
FIDO Alliance Seminar State of Passkeys.pptx
FIDO Munich Seminar: FIDO Tech Principles.pptx
FIDO Munich Seminar: Securing Smart Car.pptx
FIDO Munich Seminar: Strong Workforce Authn Push & Pull Factors.pptx
FIDO Munich Seminar: Biometrics and Passkeys for In-Vehicle Apps.pptx
FIDO Munich Seminar Workforce Authentication Case Study.pptx
FIDO Munich Seminar In-Vehicle Payment Trends.pptx
FIDO Munich Seminar FIDO Automotive Apps.pptx
FIDO Munich Seminar Blueprint for In-Vehicle Payment Standard.pptx
FIDO Munich Seminar Introduction to FIDO.pptx
UX Webinar Series: Essentials for Adopting Passkeys as the Foundation of your...
UX Webinar Series: Drive Revenue and Decrease Costs with Passkeys for Consume...
UX Webinar Series: Aligning Authentication Experiences with Business Goals
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf

Recently uploaded (20)

PPTX
2. RBI.pptx202029291023i38039013i92292992
PPTX
Q1 PE AND HEALTH 5 WEEK 5 DAY 1 powerpoint template
PPTX
ML Credit Scoring of Thin-File Borrowers
PDF
The Right Social Media Strategy Can Transform Your Business
PDF
CLIMATE CHANGE AS A THREAT MULTIPLIER: ASSESSING ITS IMPACT ON RESOURCE SCARC...
PPT
Fundamentals of Financial Management Chapter 3
PPTX
Role and functions of International monetary fund.pptx
PPTX
Machine Learning (ML) is a branch of Artificial Intelligence (AI)
PPTX
Very useful ppt for your banking assignments Banking.pptx
DOCX
Final. 150 minutes exercise agrumentative Essay
PPTX
lesson in englishhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhh
PDF
5a An Age-Based, Three-Dimensional Distribution Model Incorporating Sequence ...
PPTX
OAT_ORI_Fed Independence_August 2025.pptx
PDF
1a In Search of the Numbers ssrn 1488130 Oct 2009.pdf
PPT
KPMG FA Benefits Report_FINAL_Jan 27_2010.ppt
PDF
6a Transition Through Old Age in a Dynamic Retirement Distribution Model JFP ...
PDF
2a A Dynamic and Adaptive Approach to Distribution Planning and Monitoring JF...
PPTX
Module5_Session1 (mlzrkfbbbbbbbbbbbz1).pptx
PPT
features and equilibrium under MONOPOLY 17.11.20.ppt
2. RBI.pptx202029291023i38039013i92292992
Q1 PE AND HEALTH 5 WEEK 5 DAY 1 powerpoint template
ML Credit Scoring of Thin-File Borrowers
The Right Social Media Strategy Can Transform Your Business
CLIMATE CHANGE AS A THREAT MULTIPLIER: ASSESSING ITS IMPACT ON RESOURCE SCARC...
Fundamentals of Financial Management Chapter 3
Role and functions of International monetary fund.pptx
Machine Learning (ML) is a branch of Artificial Intelligence (AI)
Very useful ppt for your banking assignments Banking.pptx
Final. 150 minutes exercise agrumentative Essay
lesson in englishhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhh
5a An Age-Based, Three-Dimensional Distribution Model Incorporating Sequence ...
OAT_ORI_Fed Independence_August 2025.pptx
1a In Search of the Numbers ssrn 1488130 Oct 2009.pdf
KPMG FA Benefits Report_FINAL_Jan 27_2010.ppt
6a Transition Through Old Age in a Dynamic Retirement Distribution Model JFP ...
2a A Dynamic and Adaptive Approach to Distribution Planning and Monitoring JF...
Module5_Session1 (mlzrkfbbbbbbbbbbbz1).pptx
features and equilibrium under MONOPOLY 17.11.20.ppt

Strong Customer Authentication & Biometrics

  • 1. Strong Customer Authentication & Biometrics January, 2019
  • 2. ©2019 Visa. All rights reserved. Visa public2 Today’s discussion: 1. Changing regulatory landscape (Europe) & the impact on payments 2. Key enablers 3. 3DS 2.0 4. Visa Biometrics 5. Implementation details
  • 3. ©2019 Visa. All rights reserved. Visa public3 Changing landscape Uncharted territory Open ecosystem New payments requirements Ambiguity as we implement ©2019 Visa. All rights reserved. Visa public
  • 4. ©2019 Visa. All rights reserved. Visa public4 New Regulation • Strong Customer Authentication (SCA) Unless the payment qualifies as low risk, customers must authenticate transaction with at least two independent factors • Largest impact will be on remote electronic payments SCA must be applied to all electronic payments unless out of scope or exempted. Financial transactions can be classified in two ways: European Payment Service Directive 2 Something you know Something you have Something you are (PSD2 - September 2019) Exemptions Contactless payments at point of sale1 Unattended transport and parking terminals Recurring transactions Low value transactions Secure corporate payments Transaction risk analysis Trusted beneficiaries 1 2 3 4 5 6 7 1 Contactless transactions are exempt from SCA unless transactions exceed the count/amount thresholds Cardholder Initiated Transactions (CIT) In-scope Merchant Initiated Transactions (MIT) Out of scope Low Risk Transaction Value Band PSP Fraud Rate <€100 13 bps/0.13% €100-€250 6 bps/0.06% €250-€500 1 bps/0.01%
  • 5. ©2019 Visa. All rights reserved. Visa public5 3-D Secure 2.0 • Industry standard for authentication • 2.0 has an enhanced user experience, expanded device usage, greater data sharing and is regulatory smart Visa Biometrics • Consumer-friendly alternative to OTP’s • FIDO implementation provides 2- factor authentication with support for fingerprint, face and voice Products & programs for SCA compliance and optimization
  • 6. ©2019 Visa. All rights reserved. Visa public6 Issuer Identifies which transactions need additional authentication. Cardholder Most authentication is invisible to the consumer. Merchant Benefits directly from collaborative data exchange. 3-D Secure 2.0 —Who is involved? Data Expanded data contextualizes the authentication.
  • 7. ©2019 Visa. All rights reserved. Visa public7 The issuer collaborates with the merchant to authenticate the cardholder’s identity before authorization occurs 3-D Secure 2.0 —How it works. Authentication verifies the identity of the cardholder. Authentication with 3-D Secure 2.0 complements authorization to strengthen issuer confidence in approving the transaction. Authentication with 3-D Secure Authorization
  • 8. ©2019 Visa. All rights reserved. Visa public8 73% of global consumers surveyed would be comfortable using biometrics to make a payment1 Research conducted by Visa from Sept-Nov 2017, among over 10,000 consumers who use at least one credit card, debit card, and/or mobile pay. Why biometrics? 73% Singapore 68% Canada 70% U.S. 83% Brazil 75% UAE 73% Australia 70% New Zealand 74% Japan 78% China 76% South Africa 66% France 65% Ukraine 73% S. Korea 63% Russia
  • 9. ©2019 Visa. All rights reserved. Visa public9 Visa Biometrics Streamline SCA by enabling biometrics authentication with 3DS 2.0 & FIDO This page is intended for illustrative purposes only. It contains depictions of a product currently in the process of deployment, and should be understood as a representation of the potential features of the fully-deployed product. The final version of this product may not contain all of the features described in this presentation. Place order Authenticate with Biometrics Merchant SuccessNotification opens issuer app
  • 10. ©2019 Visa. All rights reserved. Visa public10 Customer How it works Visa Biometrics with 3DS and FIDO 3DS Program Server Visa Biometric FIDO Server ACSMerchant Server Customer places order Request to 3DS Program Request to issuer’s ACS Request for issuer to perform consumer authentication Issuer initiates authentication request with Visa Issuer Server Issuer sends push notification to issuer’s mobile app for customer to authenticate Customer selects push notification and launches mobile app, which requests authentication policy from issuer’s server Issuer requests authentication policy Issuer sends authentication policy to issuer’s mobile app Customer authenticates with biometrics and result is returned to issuer’s server Issuer’s server completes authentication with Visa Issuer sends authentication resultACS sends response3DS Program returns resultsMerchant approves/denies transaction
  • 11. ©2019 Visa. All rights reserved. Visa public11 Source: FIDO Authentication for Mobile Payments – Featuring Biometrics for 3-D Secure 2.0 Why we chose a FIDO implementation Secure • Asymmetric key cryptography • End-to-end design and review with security industry Compliant • Aligns with NIST, W3C, and PSD2 • Authenticators have been certified • Out-of-band on single device Data & Control • Metadata from device, authenticator • Flexible UX above standard API to manage policies Scale • Financial ROI of open standard economics • Mitigate development risk
  • 12. ©2019 Visa. All rights reserved. Visa public12 Category RTS FIDO Program Security measures shall be documented, tested, evaluated and audited. The FIDO certification program provides for an independent assessment of the security level. The assessment is typically performed by a FIDO accredited laboratory and evaluated by the FIDO technical staff. Authentication Factors Measures shall be adopted to mitigate the risk that authentication factors are uncovered, used or disclosed to unauthorized parties. Devices that read biometric authentication shall have a very low probability of an unauthorized user being authenticated. Once authentication factors are stored by the FIDO authenticator during registration they do not leave the authenticator and cannot be read, copied or transferred. FIDO authenticators that capture, store, read and compare biometric data are subject to a FIDO biometric certification that attests to the quality level of the biometric implementation. Criteria such as FAR, FRR and PAD are tested. Multipurpose Device Security measures including data protection, secured communication and separated environment shall be adopted when using a multi-purpose device (i.e. smartphone or tablet.) FIDO authenticators are commonly implemented in multi- purposes devices. The FIDO security standards call for firewalling of the FIDO authenticator from other applications in the device through a separated execution environment and protection of this environment from intrusion or alteration. A TLS protected channel is used for communication between the authentication and server. FIDO addresses many items of the European Banking Authority’s Regulatory Technical Standards (RTS) with a few key areas detailed below How FIDO helps with SCA compliance
  • 13. ©2019 Visa. All rights reserved. Visa public13 • PSD2 will challenge the payments industry but it will also bring an opportunity for players & solutions to excel ─ The combination of FIDO, Biometrics & 3DS 2.0 meets the demand of both regulators and consumers • Issuers & merchants: ─ Understand what the impacts are to your business ─ Plan and prioritize implementation of 3DS 2.0, authorization message enhancements, tokenization, and biometrics ─ Work with service providers on timing for SCA readiness and how to address exemptions • Service providers: ─ Innovate and continue to work with industry groups (FIDO, EMVCo, etc.) to prepare the next generation of solutions Key Takeaways Moving forward together