Jaana Porra, M.Sc., MBA, Ph.D. 280G MH, 713 743 45 83 Electronic Commerce in Practice -- Bank of America Lecture 13.

Slides:



Advertisements
Similar presentations
National Notifiable Disease Surveillance CSTE/CDC collaboration Reporting mandated at state level Reportable diseases vary by state Health care providers,
Advertisements

SeMa – in the spotlight SeMa Settlement Management system.
The Digital Business is the present and the future
ALTTC BSNL. 1. Introduction 2. Methodology 3. Transition cost and penetration curve 4. Theoretical consideration 5. Migration for Large organization 6.
1 Introduction General Accounting is responsible for managing the University’s general ledger accounting system. The General Accounting office’s main goal.
Auditing Concepts.
Network Design and Implementation
Chapter 10: Auditing the Expenditure Cycle
INTERNET BANKING & ONLINE FINANCIAL SERVICES:
K. Salah 1 Chapter 31 Security in the Internet. K. Salah 2 Figure 31.5 Position of TLS Transport Layer Security (TLS) was designed to provide security.
Chapter 12: Planning for Electronic Commerce Electronic Commerce, Seventh Annual Edition.
Well, Sort-of.
1 Chapter 12 Planning for Electronic Business: Resource and Implementation Issues.
All Organizations Need to Share and Communicate Information...
1 Chapter 12 Planning for Electronic Business: Resource and Implementation Issues.
Managing International IS9.200 Information Systems for Management1 Chapter 15 International Information Systems (IIS)
Why Managers Must Understand IT Managers play a key role –Frame opportunities and threats so others can understand them –Evaluate and prioritize problems.
ECommerce Project. The Team Project Sponsors: –Shelagh Holm, Director of Administrative Information Systems –Ron Ritter, Assoc Director and Treasurer,
E-Business – Technology and Networks Teodora Bakardjieva Prof. Dr., Varna Free University Varna Free University.
Chapter 13 Network Management and Operations. Agenda Objectives Scope Functions Software Security Physical Facility Staffing.
EDI, Supply Chain Management, and Global Information Systems
Make your messaging reliable use it Messaging. A single and global solution Send, receive and process any type of message through the appropriate channel.
Presentation Speakers: Billy Herndon Angel Dronsfield May 2001 duke.
November 2009 Network Disaster Recovery October 2014.
Marketing Management in India Post. Postal environment until recently - Relatively calm - Customer expectations limited to traditional services - highly.
S New Security Developments in DICOM Lawrence Tarbox, Ph.D Chair, DICOM WG 14 (Security) Siemens Corporate Research.
Electronic Commerce Semester 1 Term 1 Lecture 1. Defining Electronic Commerce Depending on whom you ask, electronic commerce (often referred to as e-
Strategies for Purchasing and Support Activities: From Electronic Data Interchange to Electronic Commerce.
Electronic Commerce & Marketing. What is E-Commerce? Business communications and transactions over networks and through computers, specifically –The buying.
1 Web Commerce Definition Benefits Impacts Other Types of Electronic Commerce.
Customer Enrollment: The Gateway to Electronic Billing Benefits Utility Payment Conference.
Chapter 6 E-Commerce. Agenda What is E-Commerce? Business to Business Business to Customer Business to employee Infrastructure Problems.
Atlanta Oracle Application User’s Group August 18, 2000.
Fundamentals of Information Systems, Third Edition1 Systems Design Answers the question “How will the information system do what it must do to solve a.
Oz – Foundations of Electronic Commerce © 2002 Prentice Hall EDI and the Internet Oz – Foundations of Electronic Commerce © 2002 Prentice Hall.
CIS E-Commerce 1 Electronic Commerce. CIS E-Commerce 2 Introduction What is “E-Commerce” Happy Puppy - A New Internet Company: –
NUOL Internet Application Services Final Presentation 24 th of May, 2004.
Payment and Remittance Information ACB Bank Your partner in efficient payments.
Making Claims management effective and profitable Danijela Ziser, Swiss Re, Claims Forum 2014.
Payment and Remittance Information ACB Bank Your tag line or logo here.
Introduction to E-Commerce. Define e-commerce in your own words.
Overview: Electronic Commerce Electronic Commerce, Seventh Annual Edition.
Medical Manager Unit 9 ICBS 170. Medical Manager Electronic Data Interchange (EDI)  Ability to request, receive, transfer and integrate information electronically.
© Prentice Hall, 2005Excellence in Business, Revised Edition Chapter Fundamentals of Information Management, the Internet, and E-Commerce.
Microsoft Financial Services The Road Ahead Dennis Vanderlip Financial Services Industry Manager Eastern Europe.
CHAPTER 8 INTERORGANIZATIONAL AND GLOBAL INFORMATION SYSTEMS 1/9.
Factors that Facilitate and Impede Cross Border Payments Carol Clark Payments in the Americas Federal Reserve Bank of Atlanta October 7, 2004.
Chapter 11 Management Control of Information Technology.
2015 NetSymm Overview NETSYMM OVERVIEW December
Electronic Data Interchange Systems
Chapter 8 Auditing in an E-commerce Environment
CHAPTER 1 RESOURCES OF ELECTRONIC MARKETING. On-Line Age Narrowcasting Specific product for specific market Listservs On-line messages Electronic funds.
Foundations of Information Systems in Business
Vijay V Vijayakumar.  Implementations  Server Side Security  Transmission Security  Client Side Security  ATM’s.
Electronic Commerce Semester 1 Term 1 Lecture 14.
1 Credit Card Services. 2 Challenge Because of Barclay’s need for quick, but intelligent growth, they looked to SES to build out a remote center for Barclays.
Auditing Concepts.
Dinesh Mirchandani University of Missouri – St. Louis
Discovering Computers 2010: Living in a Digital World Chapter 14
Controlling Computer-Based Information Systems, Part II
7 Sarbanes-Oxley, Internal Control, and Cash
7 Sarbanes-Oxley, Internal Control, and Cash
Chapter 7 Electronic Business Systems
e-Commission Communication
What is the purpose of a bank?
Intranets & Extranets Companies that do not have the resources to invest in enterprise applications can still achieve some measure of information integration.
Chapter 7 Electronic Business Systems
Copyright 2005 Prentice- Hall, Inc.
Presentation transcript:

Jaana Porra, M.Sc., MBA, Ph.D. 280G MH, Electronic Commerce in Practice -- Bank of America Lecture 13

Case 1 Segev, Porra, Roldan, 1998 Bank of America : Replacing the Corporate Network with the Internet for Critical Business Transactions -- What Happens to Security?

Bank of America (BofA) at the time the second largest banking company (assets more than $227 billion) in the United States and 36 other countries supported all major electronic payment options –FedWire –ACH (capable of FEDI) –SWIFT(capable of FEDI) –CHIPS

Financial Transactions and FEDI

FEDI transactions over the Internet The Pilot Project The purpose of the Pilot project was to test security, reliability and speed of exchanging FEDI transactions over the Internet under actual circumstances and with real transactions In 1994, BofA teamed up with the Lawrence Livermore National Laboratories to start the twelve month long Pilot At the BofA, the project organization included experts from the Global Payment Services, Interactive Banking unit, project management unit, telecommunications, information systems services unit, security and marketing. At the LLNL side the corresponding areas were represented in the Pilot Additionally SW/HW vendors and outside consultants were employed

The Technical System reviewing the available sw and hw options for the Internet security system integrating the chosen Privacy Enhanced Mail (PEM); Multi Purpose Internet Mail (MIME) and Sun workstation based solution with the existing BofA FEDI system (ECS) for encryption/decryption of the FEDI messages exchanged with LLNL over the Internet LLNL’s already had a PEM/MIME server. At their side the project was a part of improving the accounts payable system Designing and implementing the technical system consisted of:

Automated Data Flow with EDI EDI Translator Business Application

BofA Interim FEDI System (LLNL’s white paper: FEDI Pilot Project, 5/1/96)

Proposed Full-Scale Production System for BofA FEDI Services (Based on the LLNL white paper: FEDI Pilot Project, 5/1/96)

Diagram of the FEDI transaction exchange process (Based on the LLNL white paper: FEDI Pilot Project, 5/1/96)

The FEDI -Management System In addition to the technical security system, transactions were carefully monitored by the key participants in both organizations using –automatically generated messages –telephones –faxes –beepers –paper reports –weekly meetings for solving recurring problems Throughout the project the security of the network was additionally monitored using standard security procedures of both organizations. The groups managing the firewalls of each organization conducted their own independent tests

Results of the first phase During the seven months of the Pilot project all payments were received by the vendor banks within two days of the generation of the payment instructions No messages were lost No evidence of tampering with the transactions was discovered

Problem Summary

Second Phase of the Pilot After seven months, the maximum dollar amount for a single payment was increased from $ to $ /vendor/day LLNL expanded the use of the system to provide travel and entertainment reimbursements to its employees volume testing with files consisting up to 1,000 transactions was conducted the speed and reliability of the system remained high delays were mostly caused by the FEDI systems not by the network

Volume Testing Results

Volume Testing

Summary of Problems 49% of the problems encountered during the project stemmed from the systems being down or off line Other problems included –transaction delivery problems (duplicate, delayed or lost transactions) (24%) –Application, operating system incompatibilities (17%) –message delivery problems (5%) –decryption problems (5%) Error rate per month varied from 5% to 50%

The Future The Pilot project served as a proof of concept The production system is being designed based on the Pilot with heightened security, reliability and speed sensitivity The project prompted a network security processes reevaluation at BofA Organizational changes have taken place and are planned for Open issues include Internet based information systems security management of which one central area is encryption key management

Have a Great Summer! © 2000 Jaana Porra University of Houston