Download presentation
Presentation is loading. Please wait.
Published byChristopher Morgan Modified over 9 years ago
1
30/09/09Copyright - The Earl of Erroll1 Lord Erroll - Merlin Member of the HOUSE of LORDS - an Independent Peer PITCOMParliamentary Information Technology Committee EURIMEuropean Information Society Group (Director) apCommsAll-Party Communications Group (Secretary) LASSeO Local Authority Smartcard Standards e-Organisation E-RAE-business Regulatory Alliance (President) ISSA UKInformation Systems Security Association Advisory Board Nominet UKPolicy Advisory Body All-Party Group for Entrepreneurship (Chairp'n) Select Committee on Science & Technology – Personal Internet Security www.era-int.com www.SecretSommelier.comwww.SecretSommelier.com PGP International Advisory BoardGTCInternational CouncilCRC Procurement
2
09/01/09Copyright - The Earl of Erroll2 DATA SECURITY I’ll speak for just under half a microcentury on ID and Citizen Cards
3
01/27/09Copyright - The Earl of Erroll3 Merlin
4
01/27/09Copyright - The Earl of Erroll4 A LORD
5
01/27/09Copyright - The Earl of Erroll5 A Territorial Soldier
6
©Parliamentary copyright 01/07 H O U S E o f L O R D S
7
01/27/09Copyright - The Earl of Erroll7 Me at my desk in the Lords
8
01/27/09Copyright - The Earl of Erroll8 The Home Office
9
25/02/09Copyright - The Earl of Erroll9 Trying a backflip
10
09/01/09Copyright - The Earl of Erroll10 PRIVACY & PROTECTION PRIVACY IDENTIFICATION Once it’s stored, it's no longer private it WILL leak 90% don't care!?
11
09/01/09Copyright - The Earl of Erroll11 BALANCE OF POWER Individualism Paternalism Capitalism Democratic Socialism
12
01/27/09Copyright - The Earl of Erroll12 IDENTITY CARDS ACT - PURPOSES - (a) in the interests of national security; (b) for the purposes of the prevention or detection of crime; (c) for the purposes of the enforcement of immigration controls; (d) for the purposes of the enforcement of prohibitions on unauthorised working or employment; or (e) for the purpose of securing the efficient and effective provision of public services.
13
DEFINITELY NEEDED Strong authentication when transacting business Local biometric verification for ICAO standard travel documents
14
ACCEPTABILITY Why would you want one? What is it useful for? What is the downside?
15
USES - IPS protect your identity from theft protect vulnerable people from those who have lied offer a convenient way to prove your age speed up many everyday transactions make it easier for you to travel in Europe make it simpler to prove your ID make the internet easier to use make it easier to replace lost and stolen documents protect your privacy
16
BENEFITS OF THE SCHEME Identity fraud has cost the UK over £1.7 billion CIFAS, the UK’s Fraud Prevention Service: 67,406 victims of identity fraud in 2006, up from 56,200 in 2005. Since 2000 almost 282,300 victims of identity fraud have been registered Over 10,000 fraudulent passport applications each year 430,000 illegal migrants could be living in the UK Between £20 & £50 million of ID-related benefit fraud committed each year
17
POLITICS Policy differentiation Authoritarianism Trust & Security Tamper Detection – Black Hats Cost Passport £375m - ID Card £125m – Foreign £326m
18
LOCAL AUTHORITIES Will still run their own schemes Different Purposes Administrative Efficiencies
19
ISSUES Trust Liability Repudiation
20
01/27/09Copyright - The Earl of Erroll20 ID issuing issues ID is issued for different purposes Some need more security than others Can each function trust the ID issued for another purpose Are you reliable in each of your personae Agree function and uses for electronic IDs
21
01/27/09Copyright - The Earl of Erroll21 Identity Recovery I’m not talking about Credit Card theft When you are impersonated How do you prove you are not the crook? How do you repudiate their transactions? How do you travel when your I.D. is on a “wanted” list? How do you restore your reputation? What is the true cost to you? Both Financial and Time
22
30/9/2009Copyright - The Earl of Erroll22 Generic Uses of I.D. Application Passport Authorisation Health Financial Electronic I.D. Purse Why Criminal Record Security, Benefits Allergy or Disease Creditworthiness P.K.I. / Certificates Cash & Tokens Need Name & Body Body Body only Reputation Anonymous
23
01/27/09Copyright - The Earl of Erroll23 -COMMUNICATION- we use language differently ENABLEMENT VRM I own my data “Identity Assurance” Advisers Flexibility & Discretion Consent Common Law CONTROL CRM We own citizens’ data “Identity Management” Inspectors Process & Procedure Demand Statute Law
24
09/01/09Copyright - The Earl of Erroll24 FINAL THOUGHTS Government Efficiency v. Privacy for the Entity Intrusion & Control must be targeted tightly Impact of data misuse – Data Integrity Mis-interpretation vs. Non-interpretation How does the SME or Citizen check the ID Card? If they can't, where is the benefit? CEN/TS 15480-1 & 2 (2007) LASSeO
25
25/02/09Copyright - The Earl of Erroll 25 Lord Erroll (Merlin) errollm@parliament.uk 01767 650 251 www.LordErroll.com www.SecretSommelier.com
Similar presentations
© 2024 SlidePlayer.com. Inc.
All rights reserved.