SEPA goes Mobile Dr. Marijke De Soete ETSI Security Workshop January 2011 Sophia Antipolis, France

Similar documents
GSM Association (GSMA) Mobile Ticketing Initiative

Mobile Banking in Europe and potentials for MNOs

Business Models in Mobile NFC Services

Mobile Payments Building the NFC Ecosystem

NFC Service Launch in Hong Kong. Alex Kun SVP, Product Development and Management Wireless Business

Next steps for NFC and mobile wallets

Advances in NFC & Mobile Payments Trials and Technology

Smartcards, smartphones - and other payment methods. Senior Advisor Bent Bentsen at ATC 2008, Future SIM workshop Oslo, June 23, 2008

When Worlds Collide Payments meet mobile Osman Inegol, Mobile Business Unit

19 th Year of Publication. A monthly publication from South Indian Bank.

Mobile Payment & Retail Project. Maura Turolla, Telecom Italia - Innovazione

MOBILE WALLET TECHNOLOGIES: GLOBAL MARKETS. IFT070A April Priyanka Patel Project Analyst ISBN:

Session 2: Understanding the payment ecosystem and the issues Visa Europe

CEF e-invoicing. Presentation to the European Multi- Stakeholder Forum on e-invoicing. DIGIT Directorate-General for Informatics.

NFC Service Roaming. NFC Services and Innovation Group NTT DOCOMO, INC. June, 2013

Mobile NFC Services Opportunities & Challenges. NGUYEN Anh Ton VNTelecom Conference 31/10/2010

2009 Fare Collection Workshop

Mobile Security / Mobile Payments

Natural Security Alliance

16.68m GREECE CARRIER BILLING MARKET SPECIAL 42.6% 57.4% HANDSETS MOBILE MARKET GREECE SMARTPHONES VS. MASS MARKET HANDSETS PRESENTED BY

Country Update Germany & Austria

PRESENTED BY CARRIER BILLING MARKET SPECIAL HUNGARY MOBILE MARKET HUNGARY SMARTPHONES VS. MASS MARKET HANDSETS m 41.8% 58.

MDES to support converged wallets CEESCA 2015 Dubrovnik

MOBILE BANKING AND PAYMENTS

Secure Over-The-Air Services in NFC Ecosystems

NFC in Japan and NFC Forum

Digital Payments Security Discussion Secure Element (SE) vs Host Card Emulation (HCE) 15 October Frazier D. Evans

Visa paywave Implementation Overview and European Pilot Operating Principles Member Letter: VE 08/08 Type: General 16 April 2008

Country Update Germany & Austria

(Non-legislative acts) REGULATIONS

eidas Regulation eid and assurance levels Outcome of eias study

Mobile Financial Services Terms Explained

White Paper. The Impact of Payment Services Directive II (PSD2) on Authentication & Security

Drivers and Trends in Mobile Payments. MMT APAC Manila, Philippines Lance Blockley 18 January 2011

Mobile Payment in a cashless future Trends/Benefits/Solutions

SELF ASSESSMENT OF SEPA COMPLIANCE November, 2013

E-Government Moldova s Experience and Future Perspectives

MIFARE4MOBILE: the road TO NFC MASS ADOPTION. NFC WORLD CONGRESS Sophia Antipolis, 2011

Managing an NFC Ecosystem

Strong Customer Authentication and common and secure communication under PSD2. PSD2 in a nutshell

Secure Elements 101. Sree Swaminathan Director Product Development, First Data

The future of mobile banking

Building Digital Key Solution for Automotive

ETSY.COM - PRIVACY POLICY

State of US Mobile Payments (NFC)

The Role of TSM. TSM Functions. Guy Berg President Collis America May 6, 2009

Will Mobile Phones Replace Cards?

GLOBAL MOBILE PAYMENT METHODS: FIRST HALF 2016

PRIVACY POLICY. What personal data we collect and why we collect it IN ORDER TO: (Date of last update: 1 st January 2019)

Visa Inc Investor Day. Technology at Visa. Rajat Taneja EVP, Technology and Operations

ebook - TRUSTED esim TESTING FRAMEWORK - June 2016 BUILDING A TRUSTED EMBEDDED SIM TESTING FRAMEWORK IN THE AGE OF IOT

How Mobile is Reshaping Payments

Research Infrastructures and Horizon 2020

Numbering for ecall - capacity, efficiency, sustainability

Mobile Commerce and Mobile Payments

M-payments surging ahead: distinct opportunities in developed and emerging markets

Mobile Banking and Payments Emerging Trends and Opportunities

Mobile Financial Services: An Approach To AML/CTF For Mobile Money Transfer

M-Payments in Asia Pacific

Global policy networks involvement in service innovation Turning the mobile phone into a wallet by applying NFC technology Revised July

EU Customs Policy for Supply Chain Security & Detection Technology (for CBRNE)

TAF-TAP TSI Steering Committee Agenda item..: Presentation of the activities of the sector TAP TSI. Brussels, 24 June 2015

Forging the Link Between Global Interoperability and New Business Opportunities

Mobile Payment Systems: Mobiiliraha (Mobile Cash) Petteri Hernelahti, Elisa

NFC embedded microsd smart Card - Mobile ticketing opportunities in Transit

Operator cooperation in South Korea has created a successful identity solution. SK Telecom South Korea

CEN and CENELEC Position Paper on the draft regulation ''Cybersecurity Act''

TECHNICAL STANDARDS ASSESSMENT REPORT

GSMA Embedded SIM Specification Remote SIM Provisioning for M2M. A single, common and global specification to accelerate growth in M2M

Mobile Prepaid: The Future is Now. Mary Carol Harris Visa Europe

BUSINESS JUSTIFICATION. Name of the request: Securities Transaction Regulatory Reporting

ECC Recommendation (17)04. Numbering for ecall

MUTUAL RECOGNITION MECHANISMS. Tahseen Ahmad Khan

Andrew Griffin Member of Mobile Wallet Taskforce, Mobey Forum

Emerging Risks in Emerging Payments

HSBC INTRODUCES A SOCIAL P2P PAYMENT APP TO HONG KONG Easy to use and available to everyone

GSMA Embedded SIM 9 th December Accelerating growth and operational efficiency in the M2M world

Mobile Banking: Boldly Go WNOHGB

ICB Industry Consultation Body

WHITE PAPER. Bluetooth 4 LE: the only viable solution for next generation payments

DIGITAL TECHNOLOGY An Evolution in the Payment Landscape. AMEX Digital Solutions

HEALTH IN ECSO (European Cyber Security Organisation) 18 October 2017

European Interoperability Reference Architecture (EIRA) overview

ehealth and DSM, Digital Single Market

SMART AND EFFICIENT ENERGY 5G PPP Phase 3 Topics ICT & ICT

Discussion on MS contribution to the WP2018

Global Prepaid Card Market with Focus on The United States ( ) April 2016

E-Signature Law of Iraq no. ( 78) of 2012

Improving the Student Experience with a Unified Credential. Jeff Staples VP Market Development Blackboard Transact

The enabling role of geospatial information in the European energy policies

Regulating mobile money:

SIM Evolution. Klaus Vedder. Presented by: 10 July 2018 ETSI th Sigos Conference

D220 - User Manual mypos Europe Ltd. mypos Mini Ice En

Interoperability for electro-mobility (emobility)

R e a c t i o n s t o t h e e - I n v o i c i n g r e p o r t o f t h e EU- E x p e r t g r o u p

EUROPEAN COMMISSION Enterprise Directorate-General

13174/15 AT/tl 1 DGE 2B

RCS Business Messaging: Recommended Good Practices

mypos Mini - User Manual mypos Europe Ltd. mypos Mini En

Mobile telephones/international roaming frequently asked questions (see also IP/05/161)

Transcription:

www.europeanpaymentscouncil.eu SEPA goes Mobile Dr. Marijke De Soete ETSI Security Workshop 2011 19-20 January 2011 Sophia Antipolis, France

Global mobile subscribers (millions) Mobile phone: some statistics Most successful communication device in history 5,000 4,500 4,000 Over a million new subscribers a day Many developed countries over 100% penetration Rising fast in developing countries Estimated 4.5 billion subscribers 3,500 3,000 2,500 2,000 1 billion subscribers 4 billion subscribers 1,500 2 billion subscribers 1,000 500 0 2003 2004 2005 2006 2007 2008 2009 2010 2011 Actual Projected Data source: Wireless Intelligence

A personal device.. Mobile phones: an interactive access device for financial services. that gives instant communications to everyone, anytime, any place. that supports multimedia... that supports a variety of interactive services. that is easy to use The mobile is expected to become one of the strongest channels for accessing payments and bank services in the future. Need for cooperation on standards, security features and business models across industries (banks, MNOs, etc). Convenience for end-users is absolutely key! 18 January 2011

e-id e-signature login Trust Services Banking Mobile financial services information account management bill payments trading alerts tickets Remote payments Contactsless payments POS vending top Up content ticketing fast food parking ATM Source: Mobey Forum 18 January 2011

EUROPEAN PAYMENTS COUNCIL (EPC) 74 members from 32 countries represent all credit sectors on payments (approximately 8000 banks) see www.europeanpaymentscouncil.eu IS THE DECISION-MAKING AND COORDINATION BODY OF THE EUROPEAN BANKING INDUSTRY IN RELATION TO PAYMENTS Who are EPC? REPRESENTS THE EUROPEAN BANKING INDUSTRY IN PAYMENTS EPC develops the payment schemes and frameworks necessary to realise the Single Euro Payments Area (SEPA) Specifies business and security requirements and standards to facilitate the initiation of SEPA payments via e- & mobile channels

SEPA Payments SEPA is the area where customers of payment services will be able to make and receive payments in Euro domestically and cross-border under the same basic conditions, rights and obligations, regardless of their location. The SEPA area comprises the EU, Iceland, Liechtenstein, Monaco, Norway and Switzerland. SEPA payment instruments are: SEPA Credit Transfer SEPA Direct Debit SEPA Cards. The mobile handset is expected to become an important enabler for SEPA payments in the future. 6

EPC Roadmap on M-Payments The European banking industry (EPC) has created a Strategy and Roadmap on Mobile-Payments that in 1-2 years will Enable more efficient and faster adoption of payments via the Mobile Channel while leveraging existing SEPA instruments Using a mobile phone ( handset ) as a payment initiation device Will entail both Contactless (Proximity) and Remote Payments Mobile Contactless Payment (SEPA card-based): handset interacts (contactless) with Point Of Sale (POS) terminal to perform payment transaction ( Tap-and-Go ) Mobile Remote Payment (SEPA card or SEPA Credit Transfer-based): handset can be used to purchase goods and services via internet/web browser, telephone voice/data call or to perform account to account payments in different market segments: P2B, B2B, 7

EPC s focus in the mobile payments ecosystem In line with its scope and roadmap the EPC has focused over the past year on the Mobile Contactless Payments (MCP) and Remote Payments. Standarisation and Industry Bodies Certification Providers SE Manufacturers SE Issuers (Including MNOs) The following documents are specified: App Developers TSMs White paper on Mobile Payments covering contactless and remote payments Requirements and specifications for MCP Service Management Roles (TSM document) in cooperation with GSMA Interoperability Implementation Guidelines (under preparation) Schemes POS Providers Customers Merchants Handset Manufact. Other Stakeholders

EPC White paper on M-payments EPC published a White paper on M-Payments aimed to create awareness on the subject in the banking community and beyond. http://www.europeanpaymentscouncil.eu/knowledge_bank_detail.cf m?documents_id=402 The 1 st release includes a high level overview on M-payments as new channel to existing SEPA payment instruments. Through the description of use cases in a daily life of a customer with a mobile phone it is shown how m-payments can provide efficiency, convenience and cost-effectiveness. Also introduced are the main characteristics of the m-payments categories (contactless and remote payments) as prioritised by EPC as well as the payment service provisioning. A further section provides more details on MCP including some business, technical infrastructure, user experience and standardisation aspects. 9

EPC-GSMA collaboration 30 th June 2008: EPC and GSMA announced a co-operation agreement (http://www.europeanpaymentscouncil.eu/news_detail.cfm?news_id=65) Cross Industry cooperation enable banks to deliver more efficiently mobile payments services leveraging the mobile operator's infrastructure for the benefits of customers of the banks and MNOs Initial focus of GSMA-EPC co-operation is on Mobile Contactless Payments (MCPs)

MCP Service Management (1) Joint work has focused initially on developing a set of requirements and specifications for MCP Service Management Roles (SMRs) and related processes covering functional, technical, security and legal aspects while ensuring interoperability. Hereby the MCP, issued by the Banks (Issuers) is stored on the UICC into the mobile phone. These SMRs cover the full life cycle management of MCP applications including loading, personalisation, activation, maintenance, blocking, etc... and deletion of the MCP. These SMRs can be fulfilled by MNOs, Issuers or dedicated Third Parties: Trusted Service Managers (TSMs), or a combination thereof.

MCP Service Management (2) The TSM acts as an aggregator for stakeholders in the mobile value chain. B2C NFC-enabled handset Customer = Cardholder & Mobile Subscriber B2C Issuing Bank B2B TSM B2B MNO

MCP Service Management (3) from chaotic, slow MCP ecosystem development smooth and safe, quickly built-up MCP ecosystem The joint work aims to facilitate the development of commercial relationships between the MNOs, Issuers and TSMs which are the key stakeholders in the MCP ecosystem. EPC and GSMA published the document October 21 st 2010 with a press release. http://www.europeanpaymentscouncil.eu/knowledge_bank_detail.cfm?d ocuments_id=423

MCP Service Management (4) Request Issuing Bank Request for Payment Application TSM Customer Load Payment Application to UICC UICC MNO NFC Mobile Phone Provisioning and life cycle management of MCP Payment Application on a UICC owned by an MNO (for matter of simplicity, the TSM has been depicted as an independent entity; however SMRs can be implemented in different ways depending on the market situation).

Trusted Service Management General & Logical architecture Trusted Service Management Roles - MNO Technical roles Issuing Bank Commercial Roles (Performed either directly between MNO and Bank or by a Third Party) MNO Domain of responsibilities Bank Domain of responsibilities

TSM roles operational implementation 3-Party Issuing and Lifecycle Model Commercial actors are the Customer, the Issuer and the MNO. SM technical roles are the set of technical functions performed on behalf of the Issuer and/or the MNO. The TSM is not involved in the commercial relationship between the Issuer and MNO. There is a direct commercial relationship between the Issuer and MNO.

TSM roles operational implementation 4-Party Issuing and Lifecycle Model MNO Domain of Responsibility MNO - SMTechnical Roles TSM for SM Commercial Roles Issuer Domain of Responsibility Issuer Commercial actors are the Customer, the Issuer, the MNO and the TSM performing SM commercial roles on behalf of Issuers and MNOs in addition to SM technical roles The TSM has a commercial relationship with the Issuer and MNO. Customer MNO Issuer Customer TSM for SM Technical Roles There is no direct commercial relationship between the Issuer and MNO. Technical Relationship Commercial Relationship TSM for SM Commercial Roles SM Technical Roles.

Trusted Service Management - Multi-TSM Model Commercial actors are the Customer, the Issuer, the MNO and the TSM performing both SM commercial and technical roles. Multiple TSMs are involved. There is no direct commercial relationship between Issuers and MNOs

Next EPC M-Payments deliverables EPC White paper for Mobile Payments 2 nd edition expected September 2011 Additions to 1st edition to cover in more detail Mobile Remote Payments EPC Interoperability Implementation Guidelines for Mobile Contactless Payments expected September 2011 Business and Service aspects Technical aspects & infrastructure Security & risk management aspects Aims to cover three types of SE: UICC, embedded SE and SD card EPC Interoperability Implementation Guidelines for Mobile Remote SCT Payments expected 2012 Will cover both Mobile Remote Card Payments and Mobile Remote SEPA Credit Transfers Business and Service aspects Technical aspects & infrastructure Security & risk management aspects 18 January 2011 Slide 19

What to be expected? The EPC work in the Mobile Payments area will pave the way for efficient launches of SEPA interoperable mobile payments schemes within the next 2-5 years. This will entail both contactless and remote SEPA payments via the Mobile Channel. This will be an important building block helping fostering the evolution towards Digital Europe. 18 January 2011 Slide 20

Information EPC website: http://www.europeanpaymentscouncil.eu/ All documentation can be freely downloaded or contact: marijke.desoete@pandora.be 21