Sæt kryds ved ’Vis’
September 2016
Digital Identity - NemID
Head of Division Charlotte Jacoby
1
Digital Identity - NemID Head of Division Charlotte Jacoby - - PowerPoint PPT Presentation
St kryds ved Vis Digital Identity - NemID Head of Division Charlotte Jacoby September 2016 1 THE DANISH AGENCY FOR DIGITISATION Ministry of Finance Agency for the Modernisation of Agency for Digitisation Public Administration
Sæt kryds ved ’Vis’
September 2016
Head of Division Charlotte Jacoby
1THE DANISH AGENCY FOR DIGITISATION
2
Ministry of Finance
Agency for the Modernisation of Public Administration Agency for Digitisation Agency for Governmental Administration Agency for Governmental IT Services
THE DANISH AGENCY FOR DIGITISATION
Objectives Improving efficiency and effectiveness through digitisation Enabling public sector innovation through digitisation Ensuring outcomes of digitisation and e-gov implementation Projects Joint-government strategy and policy issues Shared public sector digital infrastructure
3
DANISH PUBLIC SECTOR - HISTORY
Strong tradition of joint public sector digitisation Multi-year joint government eGovernment strategies since 2001, include central, regional, and local government
correspondence digital by 2015)
4
DIGITISATION STRATEGY 2016-2020
5
A Stronger and More Secure Digital Denmark
Next generation eID and signature solution will be a central infrastructure
NEMID - THE COMMON KEY TO RELEVANT DOORS
Public sector…
… and the private sector
Eg.: insurance companies, pension funds, apoteket.dk, buy’n’sell-site, etc
DIGITAL INFRASTRUCTURE TODAY
NemID – for citizens (national eID since July 2010)
(e.g. banking and private service providers, Digital Post, recording of a deed) NemID – for businesses (since November 2011)
accessing data within the public health service) and private sector (e.g. when interacting with the public sector) NemLog-in
7
”IT LANDSCAPE”
PUBLIC SECTOR CORE SECURITY COMPONENTS
8
NemID Citizens’ Solution NemLog-in Public Sector Service Providers Public Sector Service Providers Public Sector Service Providers Public Sector Service Providers Public Sector
Other Private Sector SP’s and idP’s/Brokers Banks
NemID Business (employee) Solution Identity and authentication Login broker, authorization,etc.
GOAL AND FOUNDATION – OCES STANDARD
(CA)
9
OCES CERTIFICATES
Issued as
Used for
OCES 2.0 - NEMID
Centrally securely stored private keys Access with 2-factor authentication independent of pc Something you know (password) Something you have (one time password) X.509 v3 CA certificates 2048 – 4096 bits RSA SHA256 End user certificates 2048 bits RSA SHA256 CRL’s and OCSP
NEMID AUTHENTICATION
End-user registration - citizen
CA/DanID
Netbank Citizen Service centres Nemid.nu Identity validated online – Activation password and code card sent to registered CPR address Physical presence: On-site issuance Hand-over of activition password and code card Identity known – code card sent to registered CPR address
NEMID – A NATIONAL SUCCESS – HOW COME?
Ambitious joint government eGovernment strategies based on a broad political mandate Digital maturity of the population
months
(source: European Com m issi on. Digital Scoreboard, 2015)
Collaboration with the financial sector cross-sector high-frequency usage
High degree of trust and recognition
14
A SUCCESSFUL SECURITY SOLUTION REQUIRES A GOOD BALANCE BETWEEN MANY ASPECTS
Security
User- friendliness
Economy
attack types
sign
communicate
platforms
disabilities
implementation costs
NEXT-GENERATION SOLUTION
Objectives
technologies) Means
16
STATUS AND NEXT STEPS
June 2016
Tender and Contract 2017 Solution development from 2017
from 2019
17
IDEA ANALYSIS ACQUISITION
IMPLEMENTATON REALISATION
PUBLIC-PRIVATE PARTNERSHIP
Partnership agreement with Danish Bankers' Association Win-win partnership Agreed timeline and milestones Focus on core solution and interfaces Shared financing and contribution of resources Joint steering group and programme team
18
19
BASIC FUNCTIONALITY PRIVACY AND CONTEXT- DEPENDENT INFORMATION SEPARATION OF E- ID AND E-SIGNATURE MORE LOGIN-FACTORS IMPROVED ADMINISTRATIVE SOLUTIONS FOR BUSINESSES ENHANCED USE OF PRIVATE NEMID IN THE BUSINESS AREA
MORE LEVELS OF ASSURANCE
NEW ELEMENTS
STAY IN TOUCH
digst.dk/English digst.dk/Servicemenu/English/News/Newsletter
20
chaja@digst.dk
REFERENCES AND LINKS
da/digital_signatur/oces-standarden/oces-certifikatpolitikker/
https://www.nets- danid.dk/produkter/for_tjenesteudbydere/nemid_tjenesteudbyder/nemid_tj enesteudbyder_support/tjenesteudbyderpakken/
www.openoces.org
da/Produkter/Sikkerhed/NemID-tjenesteudbyder/NemID- JavaScript/Pages/default.aspx