Authentication Rod Matthews 30 September 2009. 2 1) DWP Government GatewaySlides 2-5 2) Government Policy Slide 6 3) Remote Authentication Slides 7-11.

Slides:



Advertisements
Similar presentations
© State Services Commission, 2006 Authentication to access government services What might the future hold? Laurence Millar Deputy Commissioner Information.
Advertisements

Customer First : Strategic Context and Opportunities Rory Mair.
Jeff Wallbank KPSN Partnership Development Manager How will the PSN change the shape of the Public Sector and the ways in which it delivers services.
Shared Services Vision
What are the Business Benefits of Unified Communications? Mario Devargas Monday, 20 April 2015.
New to Social Housing and the customer ‘journey’ Marc Slack Head of ICT.
Current developments: A View from Social Care Terry Dafter Chair of ADASS Informatics Network November 2014.
Enhancing Access To, and use and Quality of, Information and Communication Technologies.
Our strategy to create a sustainable Cornwall A prosperous Cornwall that is resilient and resourceful. A place where communities are.
Identity cards and systems Professor M. Angela Sasse University College London Professor Brian Collins RMCS Shrivenham.
Digital public services and innovation
The Green Deal Finance Company - a collaborative company to enable and underpin the Green Deal The Green Deal in Scotland July 2012.
Integration, cooperation and partnerships
Federating Identity Management in the Government of Canada Identity North Conference November 20 th 2012 Presented by: Rita Whittle Senior Director, Cyber.
The Crown and Suppliers: A New Way of Working People & Security15:35 – 16:20 Channels & Citizen Engagement Social Media ICT Capability Risk Management.
Private Cloud: Application Transformation Business Priorities Presentation.
World class services for a world class city Steve Pennant Connected London Strategy Capital Ambition Programme Board 20 Jan.
Chapter © 2012 Pearson Education, Inc. Publishing as Prentice Hall.
e-Government Workshop Charlie Aitken 9 September 2003.
CS 736 A methodology for Analyzing the Performance of Authentication Protocol by Laseinde Olaoluwa Peter Department of Computer Science West Virginia.
Transforming Services Creating Efficiencies Empowering Citizens Transforming Services Creating Efficiencies Empowering Citizens Transforming Services Creating.
William Hoyle Chief Executive 1. Trade4all is a newly registered UK charity. Our mission is ‘to bring small scale producers out of poverty by transforming.
Agenda 08:00 - Guests Arrive / Breakfast 08:30 - Paul Masterton: Objectives for the day 08:40 - Ian Gorst: The incentive to reform 08:55 - Mike King:
Employee Authentication Services (EAS) A potential pan-government service Chief Information Officer Group (CIOG) – DCSF.
GREATER BIRMINGHAM & SOLIHULL LOCAL ENTERPRISE PARTNERSHIP AREA Priority Axes 1 - Call Workshop Promoting Research and Innovation through European Structural.
Payment Gateways for e-Government services 24 May 2007
Wales and Third Sector EU Funding. Government of Wales Act 1998 sets out the National Assembly’s legal obligations to the sector and how it proposes,
Cyber Authentication Renewal Project Executive Overview June – minute Brief.
1 EAP and EAI Alignment: FiXs Pilot Project December 14, 2005 David Temoshok Director, Identity Policy and Management GSA Office of Governmentwide Policy.
© 2008 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Cisco Secure Mobile Banking Enabling the Collaborative Customer Experience.
Still Putting People First Jo Bryan Commissioning and Service Development Manager.
Development Plans for the Deployment of Smartcards in the North East Region Conn Crawford (NERSC)
1 7 th CACR Information Workshop Vulnerabilities of Multi- Application Systems April 25, 2001 MAXIMUS.
Copyright OASIS, 2001 OASIS e-Government Technical Committee John Borras Office of e-Envoy Cabinet Office UK Government May 2003.
Broadband Developments Stuart Robertson Competitive Locations Highlands and Islands Enterprise.
Private Sewer Transfer David Walter Managing Director, Dyno Rod Drainage and Sewerage Service provision in the future.
DWP Co-design Pilots: How do we collaborate in tackling worklessness locally? Date Friday 1st of July 2011.
© 2005 IBM Corporation IBM Business-Centric SOA Event SOA on your terms and our expertise Operational Efficiency Achieved through People and SOA Martin.
Catawba County Board of Commissioners Retreat June 11, 2007 It is a great time to be an innovator 2007 Technology Strategic Plan *
Creating a Fairer Scotland: Employment Support Services Local Government Event 3 rd September 2015 Mike McElhinney.
COAG AUSTRALIA The Prime Minister, Premiers and Chief Ministers signed the IGA at the COAG meeting on 13 April The key objectives of the Strategy,
Last Updated 1/17/02 1 Business Drivers Guiding Portal Evolution Portals Integrate web-based systems to increase productivity and reduce.
SELF DIRECTED SUPPORT Equality Impact Assessment.
Promoting excellence in social security Building on sector wide commonalities to enhance the benefits of Information.
The Political Economy of Climate Finance – A Donor Perspective Malcolm Smart Senior Economic Adviser Department for International Development Governance.
Clinical Computing Secure, reliable technology that improves clinical workflow at the point of care.
Directgov – strategic change, or just another website… Will Stengel.
CITU e-government A Corporate IT Strategy for Government Sue Broyd Central IT Unit Cabinet Office MAY 2000.
Transformational Government Workshop 9 th December 2010 Washington DC.
Enterprise & Environment Directorate TRANSPORT FOR REGIONAL GROWTH 5 NOVEMBER 2015 Keith Winter, Executive Director, Enterprise and Environment, Fife Council.
Chapter © 2012 Pearson Education, Inc. Publishing as Prentice Hall.
IAM VISION OUR CREATIVE INSPIRATION IAM STRATEGY & ROADMAP TEAM JUNE 3, 2015.
Commissioning Support Programme Post-16 Commissioning David Brown NASS Conference 9 th October 2009.
SESSION 2.1 GOVERNMENT ORGANISATION MANAGEMENT: FROM NPM TO COLLABORATION EDWIN LAU, DIVISION HEAD PUBLIC GOVERNANCE AND TERRITORIAL DEVELOPMENT DIRECTORATE,
Lecturer: Eng. Mohamed Adam Isak PH.D Researcher in CS M.Sc. and B.Sc. of Information Technology Engineering, Lecturer in University of Somalia and Mogadishu.
GETTING IN ON THE ACT Sue Leonard PAVS Chief Officer 23 rd March
1 Tell Us Once Delivery Partnerships Tell Us Once – because your time matters Tell Us Once Delivery Partnerships Shaping the Future.
OFFICE OF INNOVATION & TECHNOLOGY CITY OF PHILADELPHIA Innovation & Technology Status Update Adel W. EbeidCity of Philadelphia, Office of Innovation &
Printing (Net-Print) Joanne Button August 23rd 2016.
Nick Mothershaw - Experian
Cyber Security and Consumer Financial Transactions Data Security
Employee Authentication Services (EAS)
Technology Enabled Care and Support in Devon
Innovative HR Innovative HR in the UK Civil Service Deborah Crewe, Modernising People Management.
Introduction of ISO/IEC Identity Proofing
Scotland’s Digital Health and Care Strategy
Public Services Broker
Template and Process for Expression of Interest by Countries
Update Scottish Government Support for Advice Services
FARES DATA BUILD TOOL RICHARD MASON – INFORMATION STRATEGY MANAGER, INTEGRATED AND SMART TRAVEL (IST) PROGRAMMME PUBLIC TRANSPORT AND MAAS FORUM – 9 JULY.
Presentation transcript:

Authentication Rod Matthews 30 September 2009

2 1) DWP Government GatewaySlides 2-5 2) Government Policy Slide 6 3) Remote Authentication Slides 7-11  Good  Bad  Different 4) A Changing Landscape Slide 12 Presentation Agenda

3 xGovernment Enterprise Architecture Strategy Channel Services Integrated Services Process ServicesInformation Services Infrastructure Services Service Management Security Services Local Application Services GG + Alerts GG + Secure GG Transaction Orchestration GG Secure Transaction Engine GG Strong Authentication GG Common White label UI GG + Payment Engine Common Infrastructure Services Access to Public Services (Remote Access) Safeguarding Identity E.G. Champion Assets E.G. Transformational Government Government Gateway

Identity and Verification Engine ID&V Hub / Broker 17m Service Users 90 Authenticated eServices Remote Authentication Citizens Businesses Government Employees EU & Foreign Nationals Secure Data Transfer Payment Engine Secure Alerts Transaction Engine Gateway + 4 Access to Public Services (Remote Access) Common Infrastructure Government Gateway

Take-up

The Safeguarding Identity Strategy (published on 23 June) contains 15 Actions; AtPS is leading Actions 6 & 7 in evidencing the shape and implications of a Shared Service to provide xGov Remote Authentication to e-Services AtPS also leads Actions 4 & 5 which defines a trusted set of identity credentials and their convergence across government AtPS contributes to other Actions, for example (11) the facility to repair a compromised identity and (13), which enables avoidable contact through linking services by consent. AtPS is aligned and coordinated with the DWP Change Programme, Identity Programme, and is enabled by shared resources with IPS and Directgov. DCSF lead on the issue of Employee Authentication, working collaboratively with the Government Gateway AtPS reports to the Safeguarding identity Steering Group, chaired by Sir David Normington 6 Safeguarding Identity Strategy Government Policy Delivering the objectives is a work-in-progress – this presentation is not policy

Currently: the Provision of authentication facilities is fragmented and will not enable citizen centric services (e.g. Directgov, TUO) Departments have implemented, and may act independently in providing remote credentials, these require individual support and maintenance facilities and have different lifecycles, this means multiple credentials and inconvenience and likely confusion for the Citizen, and; the supplier and technology communities find this difficult to engage with effectively 7 Bad …….. A fragmented approach is a more costly approach Mums maiden name My date of birth Authentication

Normal credentials cannot be used for remote authentication (without enhancement): ­ a remote credential must be ‘presented’ via reader hardware and/or network which government may not trust (e.g. home PC) ­ as currently planned, the UK ID card (even if politically endorsed) will not enable remote authentication without additional readers New remote credentials will be required in addition to the ID card: ­ CESG anticipate that ‘Shared Secret’ solutions will be increasingly compromised around 2012 ­ DWP would not require its customers to enrol in the NIR and purchase an identity card Decisions on selection and provision of remote credentials to citizens must be driven by clear business objectives: ­ balance cost, integrity and usability for specific user group abilities and usage ­ failure to achieve this will lead to rejection of remote channels The introduction of new remote credentials may also require new infrastructure, plus process costs of re-enrolment: ­ there is no remote credential strategy in government (or DWP) to provide: multiple credentials to enable different user groups a succession plan for credentials that become compromised ­ failure to maintain suitable credentials will compromise secure delivery of public services However, the private sector faces similar challenges: ­ government should seek opportunities to share cost and risk, and to improve citizen experience, through collaboration and partnership 8 The Challenge with Credentials Authentication

RM 9 Bronze Identity Open Identity Foreign National Bronze Identity Open Identity Foreign National Bronze Credential ID & Pwd + Challenge ID & Password Bronze Credential ID & Pwd + Challenge ID & Password Bronze Service Level 1 services Bronze Service Level 1 services Gold Identity National Identity Register Gold Identity National Identity Register Gold Credential UK ID Card with Biometric UK ID Card Chipped UK Gov ID Card Gold Credential UK ID Card with Biometric UK ID Card Chipped UK Gov ID Card Silver + Credential Chipped UK Gov Card +PIN + C/R Chipped UK Gov Card + PIN Chipped Card and PIN Memorable Information (C/R) Silver + Credential Chipped UK Gov Card +PIN + C/R Chipped UK Gov Card + PIN Chipped Card and PIN Memorable Information (C/R) Gold Services Level 3 services Gold Services Level 3 services Silver Identity DWP CISx Departmental Case System Verified EU Private (EG Banking) Sector Silver Identity DWP CISx Departmental Case System Verified EU Private (EG Banking) Sector Silver Credential Chipped UK Gov Card +PIN + C/R Chipped Bank Card + PIN + C/R Memorable Information (C/R) EU State Chipped ID Card Silver Credential Chipped UK Gov Card +PIN + C/R Chipped Bank Card + PIN + C/R Memorable Information (C/R) EU State Chipped ID Card Bronze + Credential ID & Pwd + (Challenge) ID & Password Bronze + Credential ID & Pwd + (Challenge) ID & Password Silver Service Level 2 services Silver Service Level 2 services Authentication Trust……

 A Shared Service can encourage departments to use, support and sustain the preferred ‘pool’ of credentials and therefore foster convergence or reduction of Public sector provided credentials  This in turn enables rapid deployment, seamless convergence, lower cost access, improved citizen experience and greater convenience. AtPS proposed a shared service solution (built on the Government Gateway) that allows multiple remote credentials to be used interchangeably to access a range of Public Services based on the strength of the remote credential, integrity of the identity, and the authentication level required for access to each service. 10 The Shared Service provides the vehicle to coordinate the policy, participation, risk management and funding perspectives, and enable a cross-government Governance perspective Good…… Authentication Pool of Credentials EG Shared Service (Gateway Authentication Broker)

11 Different…… Tell-Us-Once Surf Records Matching Case Based Reasoning 1:M (Workflow) Self Service & Avoidable Contact Shared Service (Gateway Authentication Broker) Pool of Credentials EG Point of Contact Choices Reduced Credentialing Minimised Redundancy Trust (Bronze, Silver, Gold) EG 1:1 Authentication EG

 A clear Credential Strategy  Trust convergence for Departments, Directgov and Tell-Us-Once  Matches the drive to single entry points for Gov Services (Directgov)  Maximising what can be done once within the perimeter (Tell-Us-Once)  Social Inclusion and customer convenience in the e-channel  Reaching out to high transactors (vulnerable groups)  Minimising the overhead of for inexperienced e-tourists  Maximising self-service, via the e-channel  Minimises e-service up-front deployment costs  Minimises credential dependency – enables rolling ‘renewal’  Sets a landscape for Public / Private Sector coalescence – potentially partnership 12 Direction of Travel……

Questions Rod Matthews 30 September