SlideShare une entreprise Scribd logo
1  sur  29
{{{
*Data Classification: Public – The information contained
in this document is intended for public use.
What have I got and where is it?
Identity, Attributes and UMA for a Pensions Dashboard
Kenneth May, Lead Architect, Origo
October 2017
Data Classification: Public*
2
Why the Pensions Dashboard?
• 11 pension pots during an average career (DWP)
• Auto-enrolment: millions of new pension savers
• Very time-consuming to obtain pensions overview
• Lost pots, unclaimed pensions savings, dormant assets
• Complex landscape
• Freedom and choice: consumer expectation of control
• Consumer expectations rising given on-line experiences elsewhere
• Increasing longevity but decline of DB pensions in private sector makes better awareness of
retirement preparation key
Data Classification: Public*
3
What have I got and where is it?
Data Classification: Public*
4
About Origo
• Origo is a not-for-profit FinTech company dedicated to the Financial Services
industry
• Since 1989, Origo has been bringing the industry together to solve common
operational problems that cannot be addressed in isolation
• We provide operating efficiencies, lowering costs for market participants and
improving outcomes for consumers
• Collaboration is at the core of what we do
• We're owned by UK financial services groups and provide the essential services
that the industry needs
Data Classification: Public*
5
R&D
Pension Register
Service
OIX Pension
Finder Alpha
Creating a
Pensions
Dashboard
HMT/ABI Pensions
Dashboard
Prototype Project
OIX Project
Digital ID for
Pension
Dashboards
Origo PFS Phase 2
Project Background
• Origo has contributed significant knowledge and
resource to all Dashboard related collaborative
projects
Data Classification: Public*
6
HMT/ABI Pensions
Dashboard
Prototype Project
OIX Project
Digital ID for
Pension
Dashboards
Origo PFS Phase 2
Project Background
Origo and ForgeRock
{{{
*Data Classification: Public – The information contained
in this document is intended for public use.
HMT/ABI Pensions Dashboard
7
Prototype Project
Data Classification: Public*
8
HMT/ABI Prototype
Components
Consumer
Smart phone
Dashboard
Native App
Browser
Dashboard site
Pension Finder Service
Integration Service
Provider ..n
Pension Provider 1 Pension Provider 2 Pension Provider 3 Pension Provider 4 Pension Provider 5 Pension Provider n……..
Integration Service
Provider 1
Digital Identity
Provider(s)
Data Classification: Public*
9
HMT/ABI Prototype
Integrations
Identity
Hub
Identity
Provider
Providers
Operated by IDEMIA
(Safran / OT-Morpho)
Access ManagementGateway
Business Layer / API Led Connectivity
Pension Finder Service
ISPs
Data Classification: Public*
10
HMT/ABI Prototype: Video Demonstration
10 https://vimeo.com/211481791/07512a092a
{{{
*Data Classification: Public – The information contained
in this document is intended for public use.
OIX Project & White Paper
11
Digital ID for Pensions Dashboards
Data Classification: Public*
12
OIX: Digital ID for Pensions Dashboards
Hypothesis
“To test how digital identities, which have
been certified against Government
standards, can be used to release attributes
from public and private sector sources. For
this project we will be using pensions data
where the user and their consent is at the
heart of the process”
http://oixuk.org/blog/2017/06/25/digital-id-for-pensions-dashboard/
Data Classification: Public*
13
• To access state pension, must be authenticated to LOA2 (as defined by UK Government)
• This implies GOV.UK Verify (or private sector equivalent)
• Granular, revocable, time-bound consent driven access to state pension data
• This aligns well with UMA
• Simple approach to finding private pension data
• Consistent approach to providing access to state and private pension data
• This implies same UMA approach for private pensions
OIX: Digital ID for Pensions Dashboards
Drivers
Data Classification: Public*
14
• UMA is a protocol based on OAuth2 open standards for consumer authorisation
• UMA 1.0 approved in 2015 - implementations are emerging
• Origo’s Pension Finder Service (PFS) is a good reference implementation using ForgeRock technology
• The standards fit well with EU General Data Protection Reforms, in particular the new
“Transparency and Consent” requirements
• Consumers will be able to see information on where their data is being shared and control the
consent processes
OIX: Digital ID for Pensions Dashboards
Positioning User Managed Access (UMA)
Data Classification: Public*
15
OIX: Digital ID for Pensions Dashboards
Introducing ‘Alice’
PFS
Provider/ISP Gateway
Pension Finder Service
small alice @ Provider:
existing customer portal login
(<LOA2)
Authorisation
Server
Resource
Server
State Pension API
Gateway
BIG ALICE @ Verify:
(LOA2)
CHECK YOUR STATE PENSION API
(via a DWP or HMRC API Gateway )
Resource
Server
Data Classification: Public*
OIX: Digital ID for Pensions Dashboards
UMA Scenario for PFS
3. Consumer pensions dashboard,
adviser client management
system (or any approved FinTech
software)
1. For a consumer pensions
dashboard (client), alice is
requesting party and Alice* is
resource owner
*Alice@LOA2
16
2. For an adviser client
management system, an IFA
Bob is requesting party
5. ISP or Pension Provider
registers resources for
protection at the
authorisation server.
Unique ID used for accessing
resource. Resource (data) is
always held at the resource
server (data controller).
4. Within an Attribute Exchange Hub
(Pension Finder Service) – controls
access to resources and federated
authorisation for resource servers
Can I allow this requesting party at
this client access to this resource?
PFS/AXH
Data Classification: Public*
17
• It is technically feasible to implement a private sector Verify Identity Hub that integrates with
existing GOV.UK Verify Identity Providers
• A target architecture has been defined with three key parts
• A draft profile for an open standard based on UMA has been developed that meets the DWP
indicative requirements for the release of State Pension data attributes
OIX: Digital ID for Pensions Dashboards
Outcomes
Data Classification: Public*
18
OIX: Digital ID for Pensions Dashboards
Benefits for launch
• A DWP and GDS approved design for secure access to State Pension data
• Encourages adoption of private sector Verify at LOA2
• LOA2 is stronger than most identities in private sector IT environments
• Potential for Providers to retain existing ID&V investment and optimise user experience for security
interactions with private sector Verify
• Potential for simplified legal and regulatory framework
• Aligns well with the new EU General Data Protection Regulation (GDPR)
• Consumer can control and monitor who sees their data from a central console
• Uses open standards (UMA is based on OAuth2)
• No technical barriers, other than development effort, to FinTech sector adoption
{{{
*Data Classification: Public – The information contained
in this document is intended for public use.
Demonstration
19
Data Classification: Public*
20
Demonstration
Origo PFS Phase 2
• HMT/ABI project has proven the basic architectural integration points
• The OIX Project set the direction for target state architecture
• Origo has worked on key topics and design principles for a target architecture that we believe will be
crucial to 2019 success
• Overall security architecture (aligning with OIX project outputs)
• Governance features of the PFS
• Performance design taking into account Privacy By Design
• Consent processes
• Systems Management APIs e.g. logging features
• Design optimisation for scalability at PFS, Dashboards, ISPs and PPs
Data Classification: Public*
21
• Enhancing the Pension Finder Service to
support Delegated Authority, an Attribute
Exchange Hub (AXH) and further advanced
features
Demonstration
Origo PFS Phase 2 Consumer
(resource owner Alice)
Browser Dashboard Client:
alice as requesting party Digital Identity
Providers via private
sector Identity Hub
Origo AXH (incl PFS)
Origo ISP
resource server
RS-ISP1
Authorisation
Server
(AS-PFS)
Origo
Data Aggregation for
Pension Providers OR
real-time integration
Alice@LoA2
PFS
Profiles
Find API
A. First time
search or refresh
B.
Subsequent
direct
request to
resource
Data Classification: Public*
Consumer
uses
Pensions
Dashboard
Dashboard
invokes Find
at PFS
PFS requires
identity
assertion at
LoA2
PFS
Orchestrates
Finds across
ISPs/PPs
Register
resources at
Authorisation
Server
Return
resource
locations to
Dashboard
Dashboard
requests
access to
resources
Resources
(pensions)
returned to
dashboard
Consumer
controls
access to
resources for
3rd parties
Demonstration
UMA Demonstration Scenario 1 – Consumer dashboard
22
Data Classification: Public*
Demonstration
UMA Demonstration Scenario 2 – Consumer shares access
Consumer
decides to
delegate
access
Consumer
selects
Adviser
Consent
stored at
Authorisation
Server
Consent
policy
sets
access rights
Adviser
receives
notification
of pension
shared (URI)
Adviser
Software stores
the URI
Adviser can
access
pension
23
Data Classification: Public*
Demonstration
UMA Demonstration Scenario 3 – Access by Adviser
Adviser
Software
tries to
access
pension
The PFS
requires
Adviser is
authenticated
at Unipass
PFS seeks
identity
assertion from
Unipass
Unipass
assertion
with Adviser
attributes
Attributes &
consent policy
checked
Adviser
Software is
given token
Adviser
Software
uses token
to access
resource
Resource
server
checks token
is valid with
the PFS-AS
Resource
(pension) is
supplied to
the Adviser
Software
24
{{{
*Data Classification: Public – The information contained
in this document is intended for public use.
Summary / Next steps
25
Data Classification: Public*
26
Summary
Pensions Dashboard – we’re ready for a 2019 launch…
• The prototype was successfully delivered in March. Origo’s Phase 2 completed in
October.
• UMA Profile developed by DWP and refined via OIX workshops. Now implemented
• ABI managed Project Group has set out its recommendations
• Origo stands ready to deliver for a full launch and has worked with ForgeRock and
other partners to show that:
• The technology is no barrier!
• The Conceptual Architecture is feasible – Origo’s PFS is already integrated with multiple Dashboards,
Adviser Software Systems, Integration Services Providers and Pensions Providers
Data Classification: Public*
27
Summary
Working with ForgeRock and UMA
• Pensions Dashboard is a valuable case study. As a relatively early adopter…
• Excellent support from ForgeRock
• UMA hard to grasp initially but becomes easier
• Hard to demonstrate technical aspects to a business audience
• building a clear case for investment takes care and time
• OOTB Authorisation Server UI requires customisation for real-world use cases
• ForgeRock Access Management has been great for supporting SSO federation
• Product suggestions
• Consider 2 versions of OOTB Authorisation Server UI:
• A ‘lite’ version that focuses only on sharing process would align better with POCs
• The full version is for admins and of limited use to non-expert consumers
• Comprehensive tooling to support development life cycle (e.g. purge of registered resources)
• Customisations (e.g. end points for Identity Gateway as resource server) should be
productionised
{{{
*Data Classification: Public – The information contained
in this document is intended for public use.
Thank you
For more information…
Kenneth May – Kenneth.May@origo.com
28
0131 451 5181
www.origo.com
{{{
*Data Classification: Public – The information contained
in this document is intended for public use.
Thank you
For more information…
Kenneth May – Kenneth.May@origo.com
29
0131 451 5181
www.origo.com

Contenu connexe

Tendances

Silo Busters- The Value of User and Data Centricity beyond IoT Devices (Ident...
Silo Busters- The Value of User and Data Centricity beyond IoT Devices (Ident...Silo Busters- The Value of User and Data Centricity beyond IoT Devices (Ident...
Silo Busters- The Value of User and Data Centricity beyond IoT Devices (Ident...ForgeRock
 
The ForgeRock Identity Platform Extends CIAM, Fall 2017 Release
The ForgeRock Identity Platform Extends CIAM, Fall 2017 ReleaseThe ForgeRock Identity Platform Extends CIAM, Fall 2017 Release
The ForgeRock Identity Platform Extends CIAM, Fall 2017 ReleaseForgeRock
 
McKesson Case Study: Pharmacy Systems & Automation
McKesson Case Study: Pharmacy Systems & AutomationMcKesson Case Study: Pharmacy Systems & Automation
McKesson Case Study: Pharmacy Systems & AutomationForgeRock
 
ForgeRock and Trusona - Simplifying the Multi-factor User Experience
ForgeRock and Trusona - Simplifying the Multi-factor User ExperienceForgeRock and Trusona - Simplifying the Multi-factor User Experience
ForgeRock and Trusona - Simplifying the Multi-factor User ExperienceForgeRock
 
Gartner - ForgeRock Identity Live 2017 - Dusseldorf
Gartner - ForgeRock Identity Live 2017 - DusseldorfGartner - ForgeRock Identity Live 2017 - Dusseldorf
Gartner - ForgeRock Identity Live 2017 - DusseldorfForgeRock
 
Identity Gateway with the ForgeRock Identity Platform - So What’s New?
Identity Gateway with the ForgeRock Identity Platform - So What’s New?Identity Gateway with the ForgeRock Identity Platform - So What’s New?
Identity Gateway with the ForgeRock Identity Platform - So What’s New?ForgeRock
 
2015 Identity Summit - CTO Innovation Center
2015 Identity Summit - CTO Innovation Center2015 Identity Summit - CTO Innovation Center
2015 Identity Summit - CTO Innovation CenterForgeRock
 
Hermann Wimmer - ForgeRock Identity Live 2017 - Dusseldorf
Hermann Wimmer - ForgeRock Identity Live 2017 - DusseldorfHermann Wimmer - ForgeRock Identity Live 2017 - Dusseldorf
Hermann Wimmer - ForgeRock Identity Live 2017 - DusseldorfForgeRock
 
2015 Identity Summit - Stepping Up to New Data Protection Challenges
2015 Identity Summit - Stepping Up to New Data Protection Challenges2015 Identity Summit - Stepping Up to New Data Protection Challenges
2015 Identity Summit - Stepping Up to New Data Protection ChallengesForgeRock
 
Webinar: Identity Wars: The Unified Platform Awakens
Webinar: Identity Wars: The Unified Platform AwakensWebinar: Identity Wars: The Unified Platform Awakens
Webinar: Identity Wars: The Unified Platform AwakensForgeRock
 
FIDO Authentication Account Recovery Framework at Yahoo Japan
FIDO Authentication Account Recovery Framework at Yahoo JapanFIDO Authentication Account Recovery Framework at Yahoo Japan
FIDO Authentication Account Recovery Framework at Yahoo JapanFIDO Alliance
 
Intelligent Authentication (Identity Live Berlin 2018)
Intelligent Authentication  (Identity Live Berlin 2018)Intelligent Authentication  (Identity Live Berlin 2018)
Intelligent Authentication (Identity Live Berlin 2018)ForgeRock
 
Steinberg - Customer identity as the cornerstone of our approach to digitaliz...
Steinberg - Customer identity as the cornerstone of our approach to digitaliz...Steinberg - Customer identity as the cornerstone of our approach to digitaliz...
Steinberg - Customer identity as the cornerstone of our approach to digitaliz...ForgeRock
 
Provisioning IoT...Oh Baby You Know Meeee!
Provisioning IoT...Oh Baby You Know Meeee!Provisioning IoT...Oh Baby You Know Meeee!
Provisioning IoT...Oh Baby You Know Meeee!ForgeRock
 
Identity Live Sydney 2017 - Ashley Stevenson
Identity Live Sydney 2017 - Ashley StevensonIdentity Live Sydney 2017 - Ashley Stevenson
Identity Live Sydney 2017 - Ashley StevensonForgeRock
 
apidays LIVE New York 2021 - Securing access to high performing API in a regu...
apidays LIVE New York 2021 - Securing access to high performing API in a regu...apidays LIVE New York 2021 - Securing access to high performing API in a regu...
apidays LIVE New York 2021 - Securing access to high performing API in a regu...apidays
 
apidays LIVE Paris 2021 - Identification & Authentication for Individuals wit...
apidays LIVE Paris 2021 - Identification & Authentication for Individuals wit...apidays LIVE Paris 2021 - Identification & Authentication for Individuals wit...
apidays LIVE Paris 2021 - Identification & Authentication for Individuals wit...apidays
 
Digital authentication
Digital authenticationDigital authentication
Digital authenticationallanh0526
 
2015 Identity Summit - OpenAM: Friends with benefits
2015 Identity Summit - OpenAM: Friends with benefits2015 Identity Summit - OpenAM: Friends with benefits
2015 Identity Summit - OpenAM: Friends with benefitsForgeRock
 

Tendances (20)

Silo Busters- The Value of User and Data Centricity beyond IoT Devices (Ident...
Silo Busters- The Value of User and Data Centricity beyond IoT Devices (Ident...Silo Busters- The Value of User and Data Centricity beyond IoT Devices (Ident...
Silo Busters- The Value of User and Data Centricity beyond IoT Devices (Ident...
 
The ForgeRock Identity Platform Extends CIAM, Fall 2017 Release
The ForgeRock Identity Platform Extends CIAM, Fall 2017 ReleaseThe ForgeRock Identity Platform Extends CIAM, Fall 2017 Release
The ForgeRock Identity Platform Extends CIAM, Fall 2017 Release
 
McKesson Case Study: Pharmacy Systems & Automation
McKesson Case Study: Pharmacy Systems & AutomationMcKesson Case Study: Pharmacy Systems & Automation
McKesson Case Study: Pharmacy Systems & Automation
 
ForgeRock and Trusona - Simplifying the Multi-factor User Experience
ForgeRock and Trusona - Simplifying the Multi-factor User ExperienceForgeRock and Trusona - Simplifying the Multi-factor User Experience
ForgeRock and Trusona - Simplifying the Multi-factor User Experience
 
Gartner - ForgeRock Identity Live 2017 - Dusseldorf
Gartner - ForgeRock Identity Live 2017 - DusseldorfGartner - ForgeRock Identity Live 2017 - Dusseldorf
Gartner - ForgeRock Identity Live 2017 - Dusseldorf
 
Identity Gateway with the ForgeRock Identity Platform - So What’s New?
Identity Gateway with the ForgeRock Identity Platform - So What’s New?Identity Gateway with the ForgeRock Identity Platform - So What’s New?
Identity Gateway with the ForgeRock Identity Platform - So What’s New?
 
2015 Identity Summit - CTO Innovation Center
2015 Identity Summit - CTO Innovation Center2015 Identity Summit - CTO Innovation Center
2015 Identity Summit - CTO Innovation Center
 
9.35am robert humphrey
9.35am robert humphrey9.35am robert humphrey
9.35am robert humphrey
 
Hermann Wimmer - ForgeRock Identity Live 2017 - Dusseldorf
Hermann Wimmer - ForgeRock Identity Live 2017 - DusseldorfHermann Wimmer - ForgeRock Identity Live 2017 - Dusseldorf
Hermann Wimmer - ForgeRock Identity Live 2017 - Dusseldorf
 
2015 Identity Summit - Stepping Up to New Data Protection Challenges
2015 Identity Summit - Stepping Up to New Data Protection Challenges2015 Identity Summit - Stepping Up to New Data Protection Challenges
2015 Identity Summit - Stepping Up to New Data Protection Challenges
 
Webinar: Identity Wars: The Unified Platform Awakens
Webinar: Identity Wars: The Unified Platform AwakensWebinar: Identity Wars: The Unified Platform Awakens
Webinar: Identity Wars: The Unified Platform Awakens
 
FIDO Authentication Account Recovery Framework at Yahoo Japan
FIDO Authentication Account Recovery Framework at Yahoo JapanFIDO Authentication Account Recovery Framework at Yahoo Japan
FIDO Authentication Account Recovery Framework at Yahoo Japan
 
Intelligent Authentication (Identity Live Berlin 2018)
Intelligent Authentication  (Identity Live Berlin 2018)Intelligent Authentication  (Identity Live Berlin 2018)
Intelligent Authentication (Identity Live Berlin 2018)
 
Steinberg - Customer identity as the cornerstone of our approach to digitaliz...
Steinberg - Customer identity as the cornerstone of our approach to digitaliz...Steinberg - Customer identity as the cornerstone of our approach to digitaliz...
Steinberg - Customer identity as the cornerstone of our approach to digitaliz...
 
Provisioning IoT...Oh Baby You Know Meeee!
Provisioning IoT...Oh Baby You Know Meeee!Provisioning IoT...Oh Baby You Know Meeee!
Provisioning IoT...Oh Baby You Know Meeee!
 
Identity Live Sydney 2017 - Ashley Stevenson
Identity Live Sydney 2017 - Ashley StevensonIdentity Live Sydney 2017 - Ashley Stevenson
Identity Live Sydney 2017 - Ashley Stevenson
 
apidays LIVE New York 2021 - Securing access to high performing API in a regu...
apidays LIVE New York 2021 - Securing access to high performing API in a regu...apidays LIVE New York 2021 - Securing access to high performing API in a regu...
apidays LIVE New York 2021 - Securing access to high performing API in a regu...
 
apidays LIVE Paris 2021 - Identification & Authentication for Individuals wit...
apidays LIVE Paris 2021 - Identification & Authentication for Individuals wit...apidays LIVE Paris 2021 - Identification & Authentication for Individuals wit...
apidays LIVE Paris 2021 - Identification & Authentication for Individuals wit...
 
Digital authentication
Digital authenticationDigital authentication
Digital authentication
 
2015 Identity Summit - OpenAM: Friends with benefits
2015 Identity Summit - OpenAM: Friends with benefits2015 Identity Summit - OpenAM: Friends with benefits
2015 Identity Summit - OpenAM: Friends with benefits
 

En vedette

Keynote : Customer Identity Builds Digital Trust - Paris Identity Summit
Keynote : Customer Identity Builds Digital Trust - Paris Identity SummitKeynote : Customer Identity Builds Digital Trust - Paris Identity Summit
Keynote : Customer Identity Builds Digital Trust - Paris Identity SummitForgeRock
 
The Future is Now: The ForgeRock Identity Platform, Early 2017 Release
The Future is Now: The ForgeRock Identity Platform, Early 2017 ReleaseThe Future is Now: The ForgeRock Identity Platform, Early 2017 Release
The Future is Now: The ForgeRock Identity Platform, Early 2017 ReleaseForgeRock
 
Identity Live Sydney 2017 - Michael Dowling
Identity Live Sydney 2017 - Michael DowlingIdentity Live Sydney 2017 - Michael Dowling
Identity Live Sydney 2017 - Michael DowlingForgeRock
 
Identity Live London 2017 | Ashley Stevenson
Identity Live London 2017 | Ashley StevensonIdentity Live London 2017 | Ashley Stevenson
Identity Live London 2017 | Ashley StevensonForgeRock
 
Identity Live London 2017 | Marko Orenius
Identity Live London 2017 | Marko OreniusIdentity Live London 2017 | Marko Orenius
Identity Live London 2017 | Marko OreniusForgeRock
 
A Backstage Tour of Identity - Paris Identity Summit 2016
A Backstage Tour of Identity - Paris Identity Summit 2016A Backstage Tour of Identity - Paris Identity Summit 2016
A Backstage Tour of Identity - Paris Identity Summit 2016ForgeRock
 
GDPR is coming in Hot. Top Burning Questions Answered to Help You Keep Your C...
GDPR is coming in Hot. Top Burning Questions Answered to Help You Keep Your C...GDPR is coming in Hot. Top Burning Questions Answered to Help You Keep Your C...
GDPR is coming in Hot. Top Burning Questions Answered to Help You Keep Your C...ForgeRock
 
Identity Live Sydney 2017 - Tim Sheedy
Identity Live Sydney 2017 - Tim SheedyIdentity Live Sydney 2017 - Tim Sheedy
Identity Live Sydney 2017 - Tim SheedyForgeRock
 
Winning with GDPR: How to Win Customer Loyalty and Trust
Winning with GDPR: How to Win Customer Loyalty and TrustWinning with GDPR: How to Win Customer Loyalty and Trust
Winning with GDPR: How to Win Customer Loyalty and TrustForgeRock
 
Identity Live London 2017 | Daniel Raskin
Identity Live London 2017 | Daniel RaskinIdentity Live London 2017 | Daniel Raskin
Identity Live London 2017 | Daniel RaskinForgeRock
 
Keynote: Tech, Trust, and Transformation - Paris Identity Summit 2016
Keynote: Tech, Trust, and Transformation - Paris Identity Summit 2016Keynote: Tech, Trust, and Transformation - Paris Identity Summit 2016
Keynote: Tech, Trust, and Transformation - Paris Identity Summit 2016ForgeRock
 
OpenAM: An Introduction
OpenAM: An IntroductionOpenAM: An Introduction
OpenAM: An IntroductionForgeRock
 
DevOps Unleashed: Strategies that Speed Deployments
DevOps Unleashed: Strategies that Speed DeploymentsDevOps Unleashed: Strategies that Speed Deployments
DevOps Unleashed: Strategies that Speed DeploymentsForgeRock
 
The Business Ecosystem is a Neighborhood - ForgeRock Identity Live Austin 2017
The Business Ecosystem is a Neighborhood - ForgeRock Identity Live Austin 2017The Business Ecosystem is a Neighborhood - ForgeRock Identity Live Austin 2017
The Business Ecosystem is a Neighborhood - ForgeRock Identity Live Austin 2017ForgeRock
 
Paradigmo. Rock Kit, the Rapid Deployment Toolkit for ForgeRock Identity Plat...
Paradigmo. Rock Kit, the Rapid Deployment Toolkit for ForgeRock Identity Plat...Paradigmo. Rock Kit, the Rapid Deployment Toolkit for ForgeRock Identity Plat...
Paradigmo. Rock Kit, the Rapid Deployment Toolkit for ForgeRock Identity Plat...ForgeRock
 
Identity Live Sydney 2017 - Allan Foster & Eve Maler
Identity Live Sydney 2017 - Allan Foster & Eve MalerIdentity Live Sydney 2017 - Allan Foster & Eve Maler
Identity Live Sydney 2017 - Allan Foster & Eve MalerForgeRock
 
OpenAM - An Introduction
OpenAM - An IntroductionOpenAM - An Introduction
OpenAM - An IntroductionForgeRock
 
T-Systems. Automating ForgeRock Full Stack Deployments to a Magenta Cloud.
T-Systems. Automating ForgeRock Full Stack Deployments to a Magenta Cloud.T-Systems. Automating ForgeRock Full Stack Deployments to a Magenta Cloud.
T-Systems. Automating ForgeRock Full Stack Deployments to a Magenta Cloud.ForgeRock
 
IoT Wonderland: Understanding the Magic of OAuth2 Device Registration Flow
IoT Wonderland: Understanding the Magic of OAuth2 Device Registration FlowIoT Wonderland: Understanding the Magic of OAuth2 Device Registration Flow
IoT Wonderland: Understanding the Magic of OAuth2 Device Registration FlowForgeRock
 
Identity Live Sydney 2017 - Andrew Latham
Identity Live Sydney 2017 - Andrew LathamIdentity Live Sydney 2017 - Andrew Latham
Identity Live Sydney 2017 - Andrew LathamForgeRock
 

En vedette (20)

Keynote : Customer Identity Builds Digital Trust - Paris Identity Summit
Keynote : Customer Identity Builds Digital Trust - Paris Identity SummitKeynote : Customer Identity Builds Digital Trust - Paris Identity Summit
Keynote : Customer Identity Builds Digital Trust - Paris Identity Summit
 
The Future is Now: The ForgeRock Identity Platform, Early 2017 Release
The Future is Now: The ForgeRock Identity Platform, Early 2017 ReleaseThe Future is Now: The ForgeRock Identity Platform, Early 2017 Release
The Future is Now: The ForgeRock Identity Platform, Early 2017 Release
 
Identity Live Sydney 2017 - Michael Dowling
Identity Live Sydney 2017 - Michael DowlingIdentity Live Sydney 2017 - Michael Dowling
Identity Live Sydney 2017 - Michael Dowling
 
Identity Live London 2017 | Ashley Stevenson
Identity Live London 2017 | Ashley StevensonIdentity Live London 2017 | Ashley Stevenson
Identity Live London 2017 | Ashley Stevenson
 
Identity Live London 2017 | Marko Orenius
Identity Live London 2017 | Marko OreniusIdentity Live London 2017 | Marko Orenius
Identity Live London 2017 | Marko Orenius
 
A Backstage Tour of Identity - Paris Identity Summit 2016
A Backstage Tour of Identity - Paris Identity Summit 2016A Backstage Tour of Identity - Paris Identity Summit 2016
A Backstage Tour of Identity - Paris Identity Summit 2016
 
GDPR is coming in Hot. Top Burning Questions Answered to Help You Keep Your C...
GDPR is coming in Hot. Top Burning Questions Answered to Help You Keep Your C...GDPR is coming in Hot. Top Burning Questions Answered to Help You Keep Your C...
GDPR is coming in Hot. Top Burning Questions Answered to Help You Keep Your C...
 
Identity Live Sydney 2017 - Tim Sheedy
Identity Live Sydney 2017 - Tim SheedyIdentity Live Sydney 2017 - Tim Sheedy
Identity Live Sydney 2017 - Tim Sheedy
 
Winning with GDPR: How to Win Customer Loyalty and Trust
Winning with GDPR: How to Win Customer Loyalty and TrustWinning with GDPR: How to Win Customer Loyalty and Trust
Winning with GDPR: How to Win Customer Loyalty and Trust
 
Identity Live London 2017 | Daniel Raskin
Identity Live London 2017 | Daniel RaskinIdentity Live London 2017 | Daniel Raskin
Identity Live London 2017 | Daniel Raskin
 
Keynote: Tech, Trust, and Transformation - Paris Identity Summit 2016
Keynote: Tech, Trust, and Transformation - Paris Identity Summit 2016Keynote: Tech, Trust, and Transformation - Paris Identity Summit 2016
Keynote: Tech, Trust, and Transformation - Paris Identity Summit 2016
 
OpenAM: An Introduction
OpenAM: An IntroductionOpenAM: An Introduction
OpenAM: An Introduction
 
DevOps Unleashed: Strategies that Speed Deployments
DevOps Unleashed: Strategies that Speed DeploymentsDevOps Unleashed: Strategies that Speed Deployments
DevOps Unleashed: Strategies that Speed Deployments
 
The Business Ecosystem is a Neighborhood - ForgeRock Identity Live Austin 2017
The Business Ecosystem is a Neighborhood - ForgeRock Identity Live Austin 2017The Business Ecosystem is a Neighborhood - ForgeRock Identity Live Austin 2017
The Business Ecosystem is a Neighborhood - ForgeRock Identity Live Austin 2017
 
Paradigmo. Rock Kit, the Rapid Deployment Toolkit for ForgeRock Identity Plat...
Paradigmo. Rock Kit, the Rapid Deployment Toolkit for ForgeRock Identity Plat...Paradigmo. Rock Kit, the Rapid Deployment Toolkit for ForgeRock Identity Plat...
Paradigmo. Rock Kit, the Rapid Deployment Toolkit for ForgeRock Identity Plat...
 
Identity Live Sydney 2017 - Allan Foster & Eve Maler
Identity Live Sydney 2017 - Allan Foster & Eve MalerIdentity Live Sydney 2017 - Allan Foster & Eve Maler
Identity Live Sydney 2017 - Allan Foster & Eve Maler
 
OpenAM - An Introduction
OpenAM - An IntroductionOpenAM - An Introduction
OpenAM - An Introduction
 
T-Systems. Automating ForgeRock Full Stack Deployments to a Magenta Cloud.
T-Systems. Automating ForgeRock Full Stack Deployments to a Magenta Cloud.T-Systems. Automating ForgeRock Full Stack Deployments to a Magenta Cloud.
T-Systems. Automating ForgeRock Full Stack Deployments to a Magenta Cloud.
 
IoT Wonderland: Understanding the Magic of OAuth2 Device Registration Flow
IoT Wonderland: Understanding the Magic of OAuth2 Device Registration FlowIoT Wonderland: Understanding the Magic of OAuth2 Device Registration Flow
IoT Wonderland: Understanding the Magic of OAuth2 Device Registration Flow
 
Identity Live Sydney 2017 - Andrew Latham
Identity Live Sydney 2017 - Andrew LathamIdentity Live Sydney 2017 - Andrew Latham
Identity Live Sydney 2017 - Andrew Latham
 

Similaire à Identity Live London 2017 | Kenneth May

Publishing Context Information as Open Data
Publishing Context Information as Open DataPublishing Context Information as Open Data
Publishing Context Information as Open DataFrancisco de la Vega
 
HP Iot platform and solution plans
HP Iot platform and solution plansHP Iot platform and solution plans
HP Iot platform and solution plansJeff Edlund
 
Infor LX/BPCS Vision Roadmap
Infor LX/BPCS Vision RoadmapInfor LX/BPCS Vision Roadmap
Infor LX/BPCS Vision RoadmapProximity Group
 
First-North - EUSN Presentation (November 16 2016) Final-v1 Yogi Notes 2016-1...
First-North - EUSN Presentation (November 16 2016) Final-v1 Yogi Notes 2016-1...First-North - EUSN Presentation (November 16 2016) Final-v1 Yogi Notes 2016-1...
First-North - EUSN Presentation (November 16 2016) Final-v1 Yogi Notes 2016-1...Yogi Golle
 
Building the next geneation Personal Data Platforms
Building the next geneation Personal Data PlatformsBuilding the next geneation Personal Data Platforms
Building the next geneation Personal Data PlatformsBig Data Value Association
 
Identity as a Service: a missing gap for moving enterprise applications in In...
Identity as a Service: a missing gap for moving enterprise applications in In...Identity as a Service: a missing gap for moving enterprise applications in In...
Identity as a Service: a missing gap for moving enterprise applications in In...Hoang Tri Vo
 
The Cloud Computing Contract Playbook: Contracting for Cloud Services
The Cloud Computing Contract Playbook: Contracting for Cloud ServicesThe Cloud Computing Contract Playbook: Contracting for Cloud Services
The Cloud Computing Contract Playbook: Contracting for Cloud ServicesThis account is closed
 
Pistoia Alliance European Conference 2015 - Stuart Robertson / Exostar
Pistoia Alliance European Conference 2015 - Stuart Robertson / ExostarPistoia Alliance European Conference 2015 - Stuart Robertson / Exostar
Pistoia Alliance European Conference 2015 - Stuart Robertson / ExostarPistoia Alliance
 
apidays New York 2022 - Discussing the significance of API standardization, D...
apidays New York 2022 - Discussing the significance of API standardization, D...apidays New York 2022 - Discussing the significance of API standardization, D...
apidays New York 2022 - Discussing the significance of API standardization, D...apidays
 
HP Communications and Media | Solutions IoT Platform
HP Communications and Media | Solutions IoT Platform HP Communications and Media | Solutions IoT Platform
HP Communications and Media | Solutions IoT Platform Norberto Enomoto
 
File Sharing Use Cases in Financial Services
File Sharing Use Cases in Financial ServicesFile Sharing Use Cases in Financial Services
File Sharing Use Cases in Financial ServicesBlackBerry
 
Juanjo Hierro_FIWARE Marketplace and Data Publication features.pptx
Juanjo Hierro_FIWARE Marketplace and Data Publication features.pptxJuanjo Hierro_FIWARE Marketplace and Data Publication features.pptx
Juanjo Hierro_FIWARE Marketplace and Data Publication features.pptxFIWARE
 
Cloud and security impacts
Cloud and security impactsCloud and security impacts
Cloud and security impactsShekhar Gupta
 
FDX API Overview (Dinesh).pdf
FDX API Overview (Dinesh).pdfFDX API Overview (Dinesh).pdf
FDX API Overview (Dinesh).pdfDeepChandi2
 
The Cloud Computing Contract Playbook - Contracting for Cloud Services, Sept. 30
The Cloud Computing Contract Playbook - Contracting for Cloud Services, Sept. 30The Cloud Computing Contract Playbook - Contracting for Cloud Services, Sept. 30
The Cloud Computing Contract Playbook - Contracting for Cloud Services, Sept. 30This account is closed
 

Similaire à Identity Live London 2017 | Kenneth May (20)

Publishing Context Information as Open Data
Publishing Context Information as Open DataPublishing Context Information as Open Data
Publishing Context Information as Open Data
 
What is IHAN® project all about in technical matter?
What is IHAN® project all about in technical matter?What is IHAN® project all about in technical matter?
What is IHAN® project all about in technical matter?
 
HP Iot platform and solution plans
HP Iot platform and solution plansHP Iot platform and solution plans
HP Iot platform and solution plans
 
Infor LX/BPCS Vision Roadmap
Infor LX/BPCS Vision RoadmapInfor LX/BPCS Vision Roadmap
Infor LX/BPCS Vision Roadmap
 
First-North - EUSN Presentation (November 16 2016) Final-v1 Yogi Notes 2016-1...
First-North - EUSN Presentation (November 16 2016) Final-v1 Yogi Notes 2016-1...First-North - EUSN Presentation (November 16 2016) Final-v1 Yogi Notes 2016-1...
First-North - EUSN Presentation (November 16 2016) Final-v1 Yogi Notes 2016-1...
 
Building the next geneation Personal Data Platforms
Building the next geneation Personal Data PlatformsBuilding the next geneation Personal Data Platforms
Building the next geneation Personal Data Platforms
 
Identity as a Service: a missing gap for moving enterprise applications in In...
Identity as a Service: a missing gap for moving enterprise applications in In...Identity as a Service: a missing gap for moving enterprise applications in In...
Identity as a Service: a missing gap for moving enterprise applications in In...
 
Smash Hit
Smash HitSmash Hit
Smash Hit
 
The Cloud Computing Contract Playbook: Contracting for Cloud Services
The Cloud Computing Contract Playbook: Contracting for Cloud ServicesThe Cloud Computing Contract Playbook: Contracting for Cloud Services
The Cloud Computing Contract Playbook: Contracting for Cloud Services
 
Fiware overview
Fiware overviewFiware overview
Fiware overview
 
Pistoia Alliance European Conference 2015 - Stuart Robertson / Exostar
Pistoia Alliance European Conference 2015 - Stuart Robertson / ExostarPistoia Alliance European Conference 2015 - Stuart Robertson / Exostar
Pistoia Alliance European Conference 2015 - Stuart Robertson / Exostar
 
apidays New York 2022 - Discussing the significance of API standardization, D...
apidays New York 2022 - Discussing the significance of API standardization, D...apidays New York 2022 - Discussing the significance of API standardization, D...
apidays New York 2022 - Discussing the significance of API standardization, D...
 
HP Communications and Media | Solutions IoT Platform
HP Communications and Media | Solutions IoT Platform HP Communications and Media | Solutions IoT Platform
HP Communications and Media | Solutions IoT Platform
 
2019 04-08 hopu-aj
2019 04-08 hopu-aj2019 04-08 hopu-aj
2019 04-08 hopu-aj
 
File Sharing Use Cases in Financial Services
File Sharing Use Cases in Financial ServicesFile Sharing Use Cases in Financial Services
File Sharing Use Cases in Financial Services
 
Juanjo Hierro_FIWARE Marketplace and Data Publication features.pptx
Juanjo Hierro_FIWARE Marketplace and Data Publication features.pptxJuanjo Hierro_FIWARE Marketplace and Data Publication features.pptx
Juanjo Hierro_FIWARE Marketplace and Data Publication features.pptx
 
Cloud and security impacts
Cloud and security impactsCloud and security impacts
Cloud and security impacts
 
FDX API Overview (Dinesh).pdf
FDX API Overview (Dinesh).pdfFDX API Overview (Dinesh).pdf
FDX API Overview (Dinesh).pdf
 
ICC Data and Device management
ICC Data and Device managementICC Data and Device management
ICC Data and Device management
 
The Cloud Computing Contract Playbook - Contracting for Cloud Services, Sept. 30
The Cloud Computing Contract Playbook - Contracting for Cloud Services, Sept. 30The Cloud Computing Contract Playbook - Contracting for Cloud Services, Sept. 30
The Cloud Computing Contract Playbook - Contracting for Cloud Services, Sept. 30
 

Plus de ForgeRock

Get the Exact Identity Solution You Need - In the Cloud - AWS and Beyond
Get the Exact Identity Solution You Need - In the Cloud - AWS and BeyondGet the Exact Identity Solution You Need - In the Cloud - AWS and Beyond
Get the Exact Identity Solution You Need - In the Cloud - AWS and BeyondForgeRock
 
Identity Live Sydney: Identity Management - A Strategic Opportunity
Identity Live Sydney: Identity Management  - A Strategic OpportunityIdentity Live Sydney: Identity Management  - A Strategic Opportunity
Identity Live Sydney: Identity Management - A Strategic OpportunityForgeRock
 
Identity Live Singapore: Transform Your Cybersecurity Capability
Identity Live Singapore: Transform Your Cybersecurity CapabilityIdentity Live Singapore: Transform Your Cybersecurity Capability
Identity Live Singapore: Transform Your Cybersecurity CapabilityForgeRock
 
Identity Live Singapore 2018 Keynote Presentation
Identity Live Singapore 2018 Keynote PresentationIdentity Live Singapore 2018 Keynote Presentation
Identity Live Singapore 2018 Keynote PresentationForgeRock
 
Identity Live Sydney 2018 Keynote Presentation
Identity Live Sydney 2018 Keynote PresentationIdentity Live Sydney 2018 Keynote Presentation
Identity Live Sydney 2018 Keynote PresentationForgeRock
 
Identity Live Singapore: Just Ask 'Em
Identity Live Singapore: Just Ask 'EmIdentity Live Singapore: Just Ask 'Em
Identity Live Singapore: Just Ask 'EmForgeRock
 
Identity Live Singapore: Building Trust & Privacy in a Connected Society
Identity Live Singapore: Building Trust & Privacy in a Connected SocietyIdentity Live Singapore: Building Trust & Privacy in a Connected Society
Identity Live Singapore: Building Trust & Privacy in a Connected SocietyForgeRock
 
Identity Live Sydney: Intelligent Authentication
Identity Live Sydney: Intelligent Authentication Identity Live Sydney: Intelligent Authentication
Identity Live Sydney: Intelligent Authentication ForgeRock
 
Identity Live Sydney: Building Trust and Privacy in a Connected Society
Identity Live  Sydney:  Building Trust and Privacy in a Connected SocietyIdentity Live  Sydney:  Building Trust and Privacy in a Connected Society
Identity Live Sydney: Building Trust and Privacy in a Connected SocietyForgeRock
 
Get the Exact Identity Solution you Need in the Cloud - Deep Dive
Get the Exact Identity Solution you Need in the Cloud - Deep DiveGet the Exact Identity Solution you Need in the Cloud - Deep Dive
Get the Exact Identity Solution you Need in the Cloud - Deep DiveForgeRock
 
Get the Exact Identity Solution You Need - In the Cloud - Overview
Get the Exact Identity Solution You Need - In the Cloud - OverviewGet the Exact Identity Solution You Need - In the Cloud - Overview
Get the Exact Identity Solution You Need - In the Cloud - OverviewForgeRock
 
Opening Keynote (Identity Live Berlin 2018)
Opening Keynote (Identity Live Berlin 2018)Opening Keynote (Identity Live Berlin 2018)
Opening Keynote (Identity Live Berlin 2018)ForgeRock
 
BMW Group - Identity Enables the Next 100 Years.. (Identity Live Berlin 2018)
BMW Group - Identity Enables the Next 100 Years..  (Identity Live Berlin 2018)BMW Group - Identity Enables the Next 100 Years..  (Identity Live Berlin 2018)
BMW Group - Identity Enables the Next 100 Years.. (Identity Live Berlin 2018)ForgeRock
 
Trust is Everything - The Future of Identity and the ForgeRock Platform (Iden...
Trust is Everything - The Future of Identity and the ForgeRock Platform (Iden...Trust is Everything - The Future of Identity and the ForgeRock Platform (Iden...
Trust is Everything - The Future of Identity and the ForgeRock Platform (Iden...ForgeRock
 
Shift from GDPR readiness to sustained compliance to improve your business an...
Shift from GDPR readiness to sustained compliance to improve your business an...Shift from GDPR readiness to sustained compliance to improve your business an...
Shift from GDPR readiness to sustained compliance to improve your business an...ForgeRock
 
Customer Safeguarding, Fraud and GDPR: Manah Khalil
Customer Safeguarding, Fraud and GDPR: Manah KhalilCustomer Safeguarding, Fraud and GDPR: Manah Khalil
Customer Safeguarding, Fraud and GDPR: Manah KhalilForgeRock
 
Applying Innovative Tools for GDPR Success
Applying Innovative Tools for GDPR SuccessApplying Innovative Tools for GDPR Success
Applying Innovative Tools for GDPR SuccessForgeRock
 
What the Internet of Things Means for Consumer Privacy: Veronica Lara
What the Internet of Things Means for Consumer Privacy: Veronica LaraWhat the Internet of Things Means for Consumer Privacy: Veronica Lara
What the Internet of Things Means for Consumer Privacy: Veronica LaraForgeRock
 
Identity Live in Austin Keynote
Identity Live in Austin Keynote Identity Live in Austin Keynote
Identity Live in Austin Keynote ForgeRock
 
The Value of User and Data Centricity Beyond IoT Devices: Stein Myrseth and G...
The Value of User and Data Centricity Beyond IoT Devices: Stein Myrseth and G...The Value of User and Data Centricity Beyond IoT Devices: Stein Myrseth and G...
The Value of User and Data Centricity Beyond IoT Devices: Stein Myrseth and G...ForgeRock
 

Plus de ForgeRock (20)

Get the Exact Identity Solution You Need - In the Cloud - AWS and Beyond
Get the Exact Identity Solution You Need - In the Cloud - AWS and BeyondGet the Exact Identity Solution You Need - In the Cloud - AWS and Beyond
Get the Exact Identity Solution You Need - In the Cloud - AWS and Beyond
 
Identity Live Sydney: Identity Management - A Strategic Opportunity
Identity Live Sydney: Identity Management  - A Strategic OpportunityIdentity Live Sydney: Identity Management  - A Strategic Opportunity
Identity Live Sydney: Identity Management - A Strategic Opportunity
 
Identity Live Singapore: Transform Your Cybersecurity Capability
Identity Live Singapore: Transform Your Cybersecurity CapabilityIdentity Live Singapore: Transform Your Cybersecurity Capability
Identity Live Singapore: Transform Your Cybersecurity Capability
 
Identity Live Singapore 2018 Keynote Presentation
Identity Live Singapore 2018 Keynote PresentationIdentity Live Singapore 2018 Keynote Presentation
Identity Live Singapore 2018 Keynote Presentation
 
Identity Live Sydney 2018 Keynote Presentation
Identity Live Sydney 2018 Keynote PresentationIdentity Live Sydney 2018 Keynote Presentation
Identity Live Sydney 2018 Keynote Presentation
 
Identity Live Singapore: Just Ask 'Em
Identity Live Singapore: Just Ask 'EmIdentity Live Singapore: Just Ask 'Em
Identity Live Singapore: Just Ask 'Em
 
Identity Live Singapore: Building Trust & Privacy in a Connected Society
Identity Live Singapore: Building Trust & Privacy in a Connected SocietyIdentity Live Singapore: Building Trust & Privacy in a Connected Society
Identity Live Singapore: Building Trust & Privacy in a Connected Society
 
Identity Live Sydney: Intelligent Authentication
Identity Live Sydney: Intelligent Authentication Identity Live Sydney: Intelligent Authentication
Identity Live Sydney: Intelligent Authentication
 
Identity Live Sydney: Building Trust and Privacy in a Connected Society
Identity Live  Sydney:  Building Trust and Privacy in a Connected SocietyIdentity Live  Sydney:  Building Trust and Privacy in a Connected Society
Identity Live Sydney: Building Trust and Privacy in a Connected Society
 
Get the Exact Identity Solution you Need in the Cloud - Deep Dive
Get the Exact Identity Solution you Need in the Cloud - Deep DiveGet the Exact Identity Solution you Need in the Cloud - Deep Dive
Get the Exact Identity Solution you Need in the Cloud - Deep Dive
 
Get the Exact Identity Solution You Need - In the Cloud - Overview
Get the Exact Identity Solution You Need - In the Cloud - OverviewGet the Exact Identity Solution You Need - In the Cloud - Overview
Get the Exact Identity Solution You Need - In the Cloud - Overview
 
Opening Keynote (Identity Live Berlin 2018)
Opening Keynote (Identity Live Berlin 2018)Opening Keynote (Identity Live Berlin 2018)
Opening Keynote (Identity Live Berlin 2018)
 
BMW Group - Identity Enables the Next 100 Years.. (Identity Live Berlin 2018)
BMW Group - Identity Enables the Next 100 Years..  (Identity Live Berlin 2018)BMW Group - Identity Enables the Next 100 Years..  (Identity Live Berlin 2018)
BMW Group - Identity Enables the Next 100 Years.. (Identity Live Berlin 2018)
 
Trust is Everything - The Future of Identity and the ForgeRock Platform (Iden...
Trust is Everything - The Future of Identity and the ForgeRock Platform (Iden...Trust is Everything - The Future of Identity and the ForgeRock Platform (Iden...
Trust is Everything - The Future of Identity and the ForgeRock Platform (Iden...
 
Shift from GDPR readiness to sustained compliance to improve your business an...
Shift from GDPR readiness to sustained compliance to improve your business an...Shift from GDPR readiness to sustained compliance to improve your business an...
Shift from GDPR readiness to sustained compliance to improve your business an...
 
Customer Safeguarding, Fraud and GDPR: Manah Khalil
Customer Safeguarding, Fraud and GDPR: Manah KhalilCustomer Safeguarding, Fraud and GDPR: Manah Khalil
Customer Safeguarding, Fraud and GDPR: Manah Khalil
 
Applying Innovative Tools for GDPR Success
Applying Innovative Tools for GDPR SuccessApplying Innovative Tools for GDPR Success
Applying Innovative Tools for GDPR Success
 
What the Internet of Things Means for Consumer Privacy: Veronica Lara
What the Internet of Things Means for Consumer Privacy: Veronica LaraWhat the Internet of Things Means for Consumer Privacy: Veronica Lara
What the Internet of Things Means for Consumer Privacy: Veronica Lara
 
Identity Live in Austin Keynote
Identity Live in Austin Keynote Identity Live in Austin Keynote
Identity Live in Austin Keynote
 
The Value of User and Data Centricity Beyond IoT Devices: Stein Myrseth and G...
The Value of User and Data Centricity Beyond IoT Devices: Stein Myrseth and G...The Value of User and Data Centricity Beyond IoT Devices: Stein Myrseth and G...
The Value of User and Data Centricity Beyond IoT Devices: Stein Myrseth and G...
 

Dernier

Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot ModelMcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot ModelDeepika Singh
 
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdfRising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdfOrbitshub
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businesspanagenda
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProduct Anonymous
 
Six Myths about Ontologies: The Basics of Formal Ontology
Six Myths about Ontologies: The Basics of Formal OntologySix Myths about Ontologies: The Basics of Formal Ontology
Six Myths about Ontologies: The Basics of Formal Ontologyjohnbeverley2021
 
Elevate Developer Efficiency & build GenAI Application with Amazon Q​
Elevate Developer Efficiency & build GenAI Application with Amazon Q​Elevate Developer Efficiency & build GenAI Application with Amazon Q​
Elevate Developer Efficiency & build GenAI Application with Amazon Q​Bhuvaneswari Subramani
 
Artificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyArtificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyKhushali Kathiriya
 
Corporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptxCorporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptxRustici Software
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc
 
Exploring Multimodal Embeddings with Milvus
Exploring Multimodal Embeddings with MilvusExploring Multimodal Embeddings with Milvus
Exploring Multimodal Embeddings with MilvusZilliz
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerThousandEyes
 
DEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
DEV meet-up UiPath Document Understanding May 7 2024 AmsterdamDEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
DEV meet-up UiPath Document Understanding May 7 2024 AmsterdamUiPathCommunity
 
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWEREMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWERMadyBayot
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FMESafe Software
 
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Victor Rentea
 
Platformless Horizons for Digital Adaptability
Platformless Horizons for Digital AdaptabilityPlatformless Horizons for Digital Adaptability
Platformless Horizons for Digital AdaptabilityWSO2
 
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ..."I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...Zilliz
 
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...Angeliki Cooney
 
FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024The Digital Insurer
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoffsammart93
 

Dernier (20)

Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot ModelMcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
 
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdfRising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
Six Myths about Ontologies: The Basics of Formal Ontology
Six Myths about Ontologies: The Basics of Formal OntologySix Myths about Ontologies: The Basics of Formal Ontology
Six Myths about Ontologies: The Basics of Formal Ontology
 
Elevate Developer Efficiency & build GenAI Application with Amazon Q​
Elevate Developer Efficiency & build GenAI Application with Amazon Q​Elevate Developer Efficiency & build GenAI Application with Amazon Q​
Elevate Developer Efficiency & build GenAI Application with Amazon Q​
 
Artificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyArtificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : Uncertainty
 
Corporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptxCorporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptx
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
 
Exploring Multimodal Embeddings with Milvus
Exploring Multimodal Embeddings with MilvusExploring Multimodal Embeddings with Milvus
Exploring Multimodal Embeddings with Milvus
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
DEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
DEV meet-up UiPath Document Understanding May 7 2024 AmsterdamDEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
DEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
 
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWEREMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
 
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
 
Platformless Horizons for Digital Adaptability
Platformless Horizons for Digital AdaptabilityPlatformless Horizons for Digital Adaptability
Platformless Horizons for Digital Adaptability
 
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ..."I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
 
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
 
FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 

Identity Live London 2017 | Kenneth May

  • 1. {{{ *Data Classification: Public – The information contained in this document is intended for public use. What have I got and where is it? Identity, Attributes and UMA for a Pensions Dashboard Kenneth May, Lead Architect, Origo October 2017
  • 2. Data Classification: Public* 2 Why the Pensions Dashboard? • 11 pension pots during an average career (DWP) • Auto-enrolment: millions of new pension savers • Very time-consuming to obtain pensions overview • Lost pots, unclaimed pensions savings, dormant assets • Complex landscape • Freedom and choice: consumer expectation of control • Consumer expectations rising given on-line experiences elsewhere • Increasing longevity but decline of DB pensions in private sector makes better awareness of retirement preparation key
  • 3. Data Classification: Public* 3 What have I got and where is it?
  • 4. Data Classification: Public* 4 About Origo • Origo is a not-for-profit FinTech company dedicated to the Financial Services industry • Since 1989, Origo has been bringing the industry together to solve common operational problems that cannot be addressed in isolation • We provide operating efficiencies, lowering costs for market participants and improving outcomes for consumers • Collaboration is at the core of what we do • We're owned by UK financial services groups and provide the essential services that the industry needs
  • 5. Data Classification: Public* 5 R&D Pension Register Service OIX Pension Finder Alpha Creating a Pensions Dashboard HMT/ABI Pensions Dashboard Prototype Project OIX Project Digital ID for Pension Dashboards Origo PFS Phase 2 Project Background • Origo has contributed significant knowledge and resource to all Dashboard related collaborative projects
  • 6. Data Classification: Public* 6 HMT/ABI Pensions Dashboard Prototype Project OIX Project Digital ID for Pension Dashboards Origo PFS Phase 2 Project Background Origo and ForgeRock
  • 7. {{{ *Data Classification: Public – The information contained in this document is intended for public use. HMT/ABI Pensions Dashboard 7 Prototype Project
  • 8. Data Classification: Public* 8 HMT/ABI Prototype Components Consumer Smart phone Dashboard Native App Browser Dashboard site Pension Finder Service Integration Service Provider ..n Pension Provider 1 Pension Provider 2 Pension Provider 3 Pension Provider 4 Pension Provider 5 Pension Provider n…….. Integration Service Provider 1 Digital Identity Provider(s)
  • 9. Data Classification: Public* 9 HMT/ABI Prototype Integrations Identity Hub Identity Provider Providers Operated by IDEMIA (Safran / OT-Morpho) Access ManagementGateway Business Layer / API Led Connectivity Pension Finder Service ISPs
  • 10. Data Classification: Public* 10 HMT/ABI Prototype: Video Demonstration 10 https://vimeo.com/211481791/07512a092a
  • 11. {{{ *Data Classification: Public – The information contained in this document is intended for public use. OIX Project & White Paper 11 Digital ID for Pensions Dashboards
  • 12. Data Classification: Public* 12 OIX: Digital ID for Pensions Dashboards Hypothesis “To test how digital identities, which have been certified against Government standards, can be used to release attributes from public and private sector sources. For this project we will be using pensions data where the user and their consent is at the heart of the process” http://oixuk.org/blog/2017/06/25/digital-id-for-pensions-dashboard/
  • 13. Data Classification: Public* 13 • To access state pension, must be authenticated to LOA2 (as defined by UK Government) • This implies GOV.UK Verify (or private sector equivalent) • Granular, revocable, time-bound consent driven access to state pension data • This aligns well with UMA • Simple approach to finding private pension data • Consistent approach to providing access to state and private pension data • This implies same UMA approach for private pensions OIX: Digital ID for Pensions Dashboards Drivers
  • 14. Data Classification: Public* 14 • UMA is a protocol based on OAuth2 open standards for consumer authorisation • UMA 1.0 approved in 2015 - implementations are emerging • Origo’s Pension Finder Service (PFS) is a good reference implementation using ForgeRock technology • The standards fit well with EU General Data Protection Reforms, in particular the new “Transparency and Consent” requirements • Consumers will be able to see information on where their data is being shared and control the consent processes OIX: Digital ID for Pensions Dashboards Positioning User Managed Access (UMA)
  • 15. Data Classification: Public* 15 OIX: Digital ID for Pensions Dashboards Introducing ‘Alice’ PFS Provider/ISP Gateway Pension Finder Service small alice @ Provider: existing customer portal login (<LOA2) Authorisation Server Resource Server State Pension API Gateway BIG ALICE @ Verify: (LOA2) CHECK YOUR STATE PENSION API (via a DWP or HMRC API Gateway ) Resource Server
  • 16. Data Classification: Public* OIX: Digital ID for Pensions Dashboards UMA Scenario for PFS 3. Consumer pensions dashboard, adviser client management system (or any approved FinTech software) 1. For a consumer pensions dashboard (client), alice is requesting party and Alice* is resource owner *Alice@LOA2 16 2. For an adviser client management system, an IFA Bob is requesting party 5. ISP or Pension Provider registers resources for protection at the authorisation server. Unique ID used for accessing resource. Resource (data) is always held at the resource server (data controller). 4. Within an Attribute Exchange Hub (Pension Finder Service) – controls access to resources and federated authorisation for resource servers Can I allow this requesting party at this client access to this resource? PFS/AXH
  • 17. Data Classification: Public* 17 • It is technically feasible to implement a private sector Verify Identity Hub that integrates with existing GOV.UK Verify Identity Providers • A target architecture has been defined with three key parts • A draft profile for an open standard based on UMA has been developed that meets the DWP indicative requirements for the release of State Pension data attributes OIX: Digital ID for Pensions Dashboards Outcomes
  • 18. Data Classification: Public* 18 OIX: Digital ID for Pensions Dashboards Benefits for launch • A DWP and GDS approved design for secure access to State Pension data • Encourages adoption of private sector Verify at LOA2 • LOA2 is stronger than most identities in private sector IT environments • Potential for Providers to retain existing ID&V investment and optimise user experience for security interactions with private sector Verify • Potential for simplified legal and regulatory framework • Aligns well with the new EU General Data Protection Regulation (GDPR) • Consumer can control and monitor who sees their data from a central console • Uses open standards (UMA is based on OAuth2) • No technical barriers, other than development effort, to FinTech sector adoption
  • 19. {{{ *Data Classification: Public – The information contained in this document is intended for public use. Demonstration 19
  • 20. Data Classification: Public* 20 Demonstration Origo PFS Phase 2 • HMT/ABI project has proven the basic architectural integration points • The OIX Project set the direction for target state architecture • Origo has worked on key topics and design principles for a target architecture that we believe will be crucial to 2019 success • Overall security architecture (aligning with OIX project outputs) • Governance features of the PFS • Performance design taking into account Privacy By Design • Consent processes • Systems Management APIs e.g. logging features • Design optimisation for scalability at PFS, Dashboards, ISPs and PPs
  • 21. Data Classification: Public* 21 • Enhancing the Pension Finder Service to support Delegated Authority, an Attribute Exchange Hub (AXH) and further advanced features Demonstration Origo PFS Phase 2 Consumer (resource owner Alice) Browser Dashboard Client: alice as requesting party Digital Identity Providers via private sector Identity Hub Origo AXH (incl PFS) Origo ISP resource server RS-ISP1 Authorisation Server (AS-PFS) Origo Data Aggregation for Pension Providers OR real-time integration Alice@LoA2 PFS Profiles Find API A. First time search or refresh B. Subsequent direct request to resource
  • 22. Data Classification: Public* Consumer uses Pensions Dashboard Dashboard invokes Find at PFS PFS requires identity assertion at LoA2 PFS Orchestrates Finds across ISPs/PPs Register resources at Authorisation Server Return resource locations to Dashboard Dashboard requests access to resources Resources (pensions) returned to dashboard Consumer controls access to resources for 3rd parties Demonstration UMA Demonstration Scenario 1 – Consumer dashboard 22
  • 23. Data Classification: Public* Demonstration UMA Demonstration Scenario 2 – Consumer shares access Consumer decides to delegate access Consumer selects Adviser Consent stored at Authorisation Server Consent policy sets access rights Adviser receives notification of pension shared (URI) Adviser Software stores the URI Adviser can access pension 23
  • 24. Data Classification: Public* Demonstration UMA Demonstration Scenario 3 – Access by Adviser Adviser Software tries to access pension The PFS requires Adviser is authenticated at Unipass PFS seeks identity assertion from Unipass Unipass assertion with Adviser attributes Attributes & consent policy checked Adviser Software is given token Adviser Software uses token to access resource Resource server checks token is valid with the PFS-AS Resource (pension) is supplied to the Adviser Software 24
  • 25. {{{ *Data Classification: Public – The information contained in this document is intended for public use. Summary / Next steps 25
  • 26. Data Classification: Public* 26 Summary Pensions Dashboard – we’re ready for a 2019 launch… • The prototype was successfully delivered in March. Origo’s Phase 2 completed in October. • UMA Profile developed by DWP and refined via OIX workshops. Now implemented • ABI managed Project Group has set out its recommendations • Origo stands ready to deliver for a full launch and has worked with ForgeRock and other partners to show that: • The technology is no barrier! • The Conceptual Architecture is feasible – Origo’s PFS is already integrated with multiple Dashboards, Adviser Software Systems, Integration Services Providers and Pensions Providers
  • 27. Data Classification: Public* 27 Summary Working with ForgeRock and UMA • Pensions Dashboard is a valuable case study. As a relatively early adopter… • Excellent support from ForgeRock • UMA hard to grasp initially but becomes easier • Hard to demonstrate technical aspects to a business audience • building a clear case for investment takes care and time • OOTB Authorisation Server UI requires customisation for real-world use cases • ForgeRock Access Management has been great for supporting SSO federation • Product suggestions • Consider 2 versions of OOTB Authorisation Server UI: • A ‘lite’ version that focuses only on sharing process would align better with POCs • The full version is for admins and of limited use to non-expert consumers • Comprehensive tooling to support development life cycle (e.g. purge of registered resources) • Customisations (e.g. end points for Identity Gateway as resource server) should be productionised
  • 28. {{{ *Data Classification: Public – The information contained in this document is intended for public use. Thank you For more information… Kenneth May – Kenneth.May@origo.com 28 0131 451 5181 www.origo.com
  • 29. {{{ *Data Classification: Public – The information contained in this document is intended for public use. Thank you For more information… Kenneth May – Kenneth.May@origo.com 29 0131 451 5181 www.origo.com