ABSTRACT

Author: Neil McEvoy, neil.mcevoy@etsww.com

ETS Ltd
Dublin, Ireland
www.etsww.com


Title: Securing Access and Transactions from Web Based Threats’


Abstract: Securel handling of online / networked transactions and access control. The key point being the importance of using a secure data input device separate from the workstation to handle all secret data transmission, encrypting outputted data on request. As this data is encrypted throughout its journey to a secure server, it is therefore safe from worms, spy software, viruses, key logging devices, echelon, etc. both resident on the workstation or on the network. Implementation at the Bank of New Zealand and also relevant hypothetical scenarios will be presented. Finally, special attention will be paid to the importance of ensuring that these solutions are used securely, i.e. at project design phase ensuring that opportunity for users to compromise the solution is limited.”