Home Why is SCA one of the most important PSD2 requirements?
News

Why is SCA one of the most important PSD2 requirements?

cloud computing
(© peshkov – stock.adobe.com)

In the realm of PSD2, there is yet another three-letter abbreviation which is super important. SCA or Strong Customer Authentication is a cornerstone pillar which allows open banking in the EU and the whole PSD2 conceptual nature to be brought into the real world. In this article, we will focus on why it is one of the most important PSD2 requirements and what exactly is SCA. So, let’s begin!

Introduction to SCA

Strong Customer Authentication is the core principle that is developed and created to ensure the security and transparency of every transaction that happens digitally. PSD2 requirements clearly disclose how a customer should be authenticated and thus, developers and the banks have to follow the rules and ensure that their solutions are tamper-proof.

The factors which allow banks and TPPs (Third Party Providers) to identify and authenticate a transaction are inheritance, knowledge, and possession. Let’s look at them one by one.

Inheritance – seemingly impossible to hack, yet difficult to manage

Inheritance is the term given to information and data, related to the personal identification of an individual, that’s inherited. This is usually used to refer to biometric data, such as fingerprints, facial features, voice or eye recognition, etc.. Most service providers employ only facial recognition and fingerprint scanners for authentication through inheritance. Storing and analyzing such data is very expensive, hence the current implementation is quite limited.

Possession – the connection between all three factors

Possession refers to a belonging that can be used for authentication. For the most part, when it comes to financial transactions this is usually a mobile phone or something like a password generator, given by the bank. This is something that’s given and owned by the person and is in their possession with authorized access and passwords to their bank services. It’s usually a device that’s used for password input or fingerprint scanning.

Knowledge – make sure to secure it

Knowledge is the data or information that only that person should be aware of. This refers to passwords or PIN codes. Even though they are meant to be secured and private, PINs and passwords are actually the easiest ones to hack and compromise. This is why the authentication is done with any two out of three factors and compromising a password won’t automatically allow a hacker or cybercriminal to access your account.

Is SCA really successful and what’s the future looking like?

SCA can be labeled as an advanced and very secure type of multi-Factor authentication. It isn’t the most unique conceptual idea in the world but it is definitely amongst the best-fulfilled ones.

Right now, SCA is the cornerstone that allows open banking to flourish under the new PSD2 requirements. Since around 90% of people own smartphones (in the EU) and have access to the internet, this concept is fully accessible to 90% of the EU population. We are at a time when this technology can be embraced and put to good use!

Story by Umair Marry

Support AFP




Contributors

Contributors

Have a guest column, letter to the editor, story idea or a news tip? Email editor Chris Graham at [email protected]. Subscribe to AFP podcasts on Apple PodcastsSpotifyPandora and YouTube.

Latest News

henry zatkowski uva baseball
Baseball

UVA Baseball: ‘Hoos get past Duke, 6-4, to advance in ACC tourney

staunton
Local

Staunton: New pool house set to open with start of summer swimming season

The City of Staunton is going all out to mark the start of the summer season, with a grand opening for the new Gypsy Hill Park Pool House set for Saturday. The new single-story facility replaces the original 1958 pool house, which had reached the end of its functional life due to structural issues and deteriorating infrastructure. Key...

Larry Bushart
Politics, U.S. & World

Tennessee man jailed for posting anti-Trump meme settles suit against sheriff

The Tennessee man who spent 37 days in jail for posting an anti-Trump meme on Facebook settled his suit against the county sheriff for a lot less than I would have.

fueling up at gas station
Politics, U.S. & World

Gas price forecast: $4.80 a gallon through the summer months

college football
Football

NAACP calling on Black athletes to boycott Southern states over racial gerrymandering

swimming
Etc.

UVA Swimming: DeSorbo announces new associate head coach

prescription drug pills on pile of money
Politics, Virginia

Spanberger tries, and fails, to explain Affordable Medicine Act veto