SlideShare a Scribd company logo
1 of 10
Customer Identity Management
Democratised and Commoditised
PUBLIC
May 2017
Ian Sorbello - Head of Product Technology (Security)
2
PUBLIC
Overview
• HSBC Global – geography and markets
• One Strategy – global rollout, different needs
• Access Management
• Designed for variance
• Biometry
• APIs
• Identity Management
• Your organisation’s developers are your customers
3
PUBLIC
HSBC Global – Retail and Wealth
• 37 markets across 70
countries
• 37M customers
• 3 geographic IT points of presence (NA, EU, AP) –many localised sub
PoPs covering geopolitical and regulatory boundaries
• One solution, globally.
• Deploy to PROD, which PROD?
4
PUBLIC
Access Management
• Maturation of security standards - OIDC / OAuth2 / UMA / SSO
• Strong desire to USE these
• Zero desire to CODE these
• Subsume underlying identity
repositories
• Using ForgeRock Access Management
and ForgeRock Identity Management
• Security commoditised
ForgeRock Access
Management
IDP
RETAIL COMMERCIAL PRIVATE
5
PUBLIC
Access Management
Market 2 Market 3
PoP
ForgeRock Access
Management
Instance 2
App Y
ForgeRock Access
Management
Instance 1
Market 1
App X
Journey A Journey B
GEOPOLICTICAL AND
BUSINESS LINE
INSTANCING
Piloting – A/B
• Extreme multiplicity requires variation to be at the heart of the
solution… Security democratised
LOGICAL /
REALMS
GEOGRAPHIC
INSTANCING
6
PUBLIC
Access Management - Biometry
• Biometrics – growing in capability and usefulness
• Build biometrics on top of a solid foundation
• They are just new credentials (inherence factor)
• Assume rapid change in this space
• Build to pivot – add or jettison is a steady state
ForgeRock Access
Management
ForgeRock Access
Management
Knowledge
ForgeRock Access
Management Possession
ForgeRock Access
Management
Inherence Broker
Biometric 2
Biometric 1
7
PUBLIC
Banking APIs
• A polarised conversation: Should banks enable “programmatic” access?
• In the UK this decision was made for us: YOU MUST
• CMA OpenBanking initiative, authenticated journeys Q1 2018
• HSBC ready and primed for OIDC and OAuth to publish carefully
curated APIs / Services
• Because we use ForgeRock Access Management and this is what
ForgeRock Access Management does…
8
PUBLIC
Identity Management
• HSBC has identity data on clients globally
• Immediately, this helps the
digital bank (internal)
• Further, capacity to participate in
identity data markets
ForgeRock Access
Management
Customer Data
Customer Data
ForgeRock Access
Management
IDENTITY
as a SERVICE
Internal
Systems
Internal
Systems
Internal
Systems
9
PUBLIC
Look After Your Developers
• Developers love to build, but they
need permission:
• To innovate, to challenge, to
execute (securely)
• They need a way forward: via
security platforms, patterns and
architectural guardrails
• Publish usable security capabilities to your organisation.
(hint: ForgeRock). Your Devs will take care of your clients.
10
PUBLIC
Thank you …
Ian Sorbello
Head of Product Technology - Security | HSBC Digital Solutions (HDS)
HSBC Operations, Services and Technology (HOST) | HSBC Holdings plc
Level 7, 110 Southwark St, London SE1 0SU, United Kingdom
E-mail: ian.sorbello@hsbc.com
Website: www.hsbc.com

More Related Content

Similar to PPT_Template_4.pptx

Similar to PPT_Template_4.pptx (20)

The Future of DevOps and UrbanCode
The Future of DevOps and UrbanCodeThe Future of DevOps and UrbanCode
The Future of DevOps and UrbanCode
 
The Need for IoT Ecosystem to become a Producer Nation
The Need for IoT Ecosystem to become a Producer NationThe Need for IoT Ecosystem to become a Producer Nation
The Need for IoT Ecosystem to become a Producer Nation
 
omkar-hybris-cv
omkar-hybris-cvomkar-hybris-cv
omkar-hybris-cv
 
Infor on the Road 10.10.13
Infor on the Road 10.10.13Infor on the Road 10.10.13
Infor on the Road 10.10.13
 
Without App Standards, There's No Internet of Anything
Without App Standards, There's No Internet of AnythingWithout App Standards, There's No Internet of Anything
Without App Standards, There's No Internet of Anything
 
Modern Product Data Workflows: Iterate Your Way to a Top Product Experience
Modern Product Data Workflows: Iterate Your Way to a Top Product ExperienceModern Product Data Workflows: Iterate Your Way to a Top Product Experience
Modern Product Data Workflows: Iterate Your Way to a Top Product Experience
 
Modern Product Data Workflows: Iterate Your Way to a Top Analytics Product Ex...
Modern Product Data Workflows: Iterate Your Way to a Top Analytics Product Ex...Modern Product Data Workflows: Iterate Your Way to a Top Analytics Product Ex...
Modern Product Data Workflows: Iterate Your Way to a Top Analytics Product Ex...
 
Building blockchain applications using Java
Building blockchain applications using JavaBuilding blockchain applications using Java
Building blockchain applications using Java
 
Javaday jplaton presentation final
Javaday jplaton presentation finalJavaday jplaton presentation final
Javaday jplaton presentation final
 
Optimizing IAM with Single Sign-On From the Cloud to On-Premise
Optimizing IAM with Single Sign-On From the Cloud to On-PremiseOptimizing IAM with Single Sign-On From the Cloud to On-Premise
Optimizing IAM with Single Sign-On From the Cloud to On-Premise
 
Hybris @ Neev
Hybris @ NeevHybris @ Neev
Hybris @ Neev
 
IoTMeetupGuildford#6: frontierCities - A Funding Opportunity for Developing S...
IoTMeetupGuildford#6: frontierCities - A Funding Opportunity for Developing S...IoTMeetupGuildford#6: frontierCities - A Funding Opportunity for Developing S...
IoTMeetupGuildford#6: frontierCities - A Funding Opportunity for Developing S...
 
[Workshop] Managing the API lifecycle with Open Source Technologies
[Workshop] Managing the API lifecycle with Open Source Technologies[Workshop] Managing the API lifecycle with Open Source Technologies
[Workshop] Managing the API lifecycle with Open Source Technologies
 
Identity Management with the ForgeRock Identity Platform - So What’s New?
Identity Management with the ForgeRock Identity Platform - So What’s New?Identity Management with the ForgeRock Identity Platform - So What’s New?
Identity Management with the ForgeRock Identity Platform - So What’s New?
 
API Adoption Patterns in Banking & The Promise of Microservices
API Adoption Patterns in Banking & The Promise of MicroservicesAPI Adoption Patterns in Banking & The Promise of Microservices
API Adoption Patterns in Banking & The Promise of Microservices
 
Big Data Expertise
Big Data ExpertiseBig Data Expertise
Big Data Expertise
 
Seoul Conference - Marketing Presentation
Seoul Conference - Marketing PresentationSeoul Conference - Marketing Presentation
Seoul Conference - Marketing Presentation
 
What's New in IdP 9.0 Behavioral Biometrics and more…
What's New in IdP 9.0 Behavioral Biometrics and more…What's New in IdP 9.0 Behavioral Biometrics and more…
What's New in IdP 9.0 Behavioral Biometrics and more…
 
Contextual Retail Engagement and Operations Enabled through MQTT, IBM Bluemix...
Contextual Retail Engagement and Operations Enabled through MQTT, IBM Bluemix...Contextual Retail Engagement and Operations Enabled through MQTT, IBM Bluemix...
Contextual Retail Engagement and Operations Enabled through MQTT, IBM Bluemix...
 
How To Manage Misaligned Stakeholders (Who Are Usually Misaligned)
How To Manage Misaligned Stakeholders (Who Are Usually Misaligned)How To Manage Misaligned Stakeholders (Who Are Usually Misaligned)
How To Manage Misaligned Stakeholders (Who Are Usually Misaligned)
 

Recently uploaded

Constitution of Company Article of Association
Constitution of Company Article of AssociationConstitution of Company Article of Association
Constitution of Company Article of Association
seri bangash
 
Shots fired Budget Presentation.pdf12312
Shots fired Budget Presentation.pdf12312Shots fired Budget Presentation.pdf12312
Shots fired Budget Presentation.pdf12312
LR1709MUSIC
 
Future of Trade 2024 - Decoupled and Reconfigured - Snapshot Report
Future of Trade 2024 - Decoupled and Reconfigured - Snapshot ReportFuture of Trade 2024 - Decoupled and Reconfigured - Snapshot Report
Future of Trade 2024 - Decoupled and Reconfigured - Snapshot Report
Dubai Multi Commodity Centre
 
Obat Aborsi Pasuruan 0851\7696\3835 Jual Obat Cytotec Di Pasuruan
Obat Aborsi Pasuruan 0851\7696\3835 Jual Obat Cytotec Di PasuruanObat Aborsi Pasuruan 0851\7696\3835 Jual Obat Cytotec Di Pasuruan
Obat Aborsi Pasuruan 0851\7696\3835 Jual Obat Cytotec Di Pasuruan
Obat Aborsi Jakarta Wa 085176963835 Apotek Jual Obat Cytotec Di Jakarta
 

Recently uploaded (20)

wagamamaLab presentation @MIT 20240509 IRODORI
wagamamaLab presentation @MIT 20240509 IRODORIwagamamaLab presentation @MIT 20240509 IRODORI
wagamamaLab presentation @MIT 20240509 IRODORI
 
Daftar Rumpun, Pohon, dan Cabang Ilmu (2024).pdf
Daftar Rumpun, Pohon, dan Cabang Ilmu (2024).pdfDaftar Rumpun, Pohon, dan Cabang Ilmu (2024).pdf
Daftar Rumpun, Pohon, dan Cabang Ilmu (2024).pdf
 
Navigating Tax Season with Confidence Streamlines CPA Firms
Navigating Tax Season with Confidence Streamlines CPA FirmsNavigating Tax Season with Confidence Streamlines CPA Firms
Navigating Tax Season with Confidence Streamlines CPA Firms
 
PitchBook’s Guide to VC Funding for Startups
PitchBook’s Guide to VC Funding for StartupsPitchBook’s Guide to VC Funding for Startups
PitchBook’s Guide to VC Funding for Startups
 
WAM Corporate Presentation May 2024_w.pdf
WAM Corporate Presentation May 2024_w.pdfWAM Corporate Presentation May 2024_w.pdf
WAM Corporate Presentation May 2024_w.pdf
 
Blinkit: Revolutionizing the On-Demand Grocery Delivery Service.pptx
Blinkit: Revolutionizing the On-Demand Grocery Delivery Service.pptxBlinkit: Revolutionizing the On-Demand Grocery Delivery Service.pptx
Blinkit: Revolutionizing the On-Demand Grocery Delivery Service.pptx
 
Constitution of Company Article of Association
Constitution of Company Article of AssociationConstitution of Company Article of Association
Constitution of Company Article of Association
 
How Bookkeeping helps you in Cost Saving, Tax Saving and Smooth Business Runn...
How Bookkeeping helps you in Cost Saving, Tax Saving and Smooth Business Runn...How Bookkeeping helps you in Cost Saving, Tax Saving and Smooth Business Runn...
How Bookkeeping helps you in Cost Saving, Tax Saving and Smooth Business Runn...
 
hyundai capital 2023 consolidated financial statements
hyundai capital 2023 consolidated financial statementshyundai capital 2023 consolidated financial statements
hyundai capital 2023 consolidated financial statements
 
Innomantra Viewpoint - Building Moonshots : May-Jun 2024.pdf
Innomantra Viewpoint - Building Moonshots : May-Jun 2024.pdfInnomantra Viewpoint - Building Moonshots : May-Jun 2024.pdf
Innomantra Viewpoint - Building Moonshots : May-Jun 2024.pdf
 
Goal Presentation_NEW EMPLOYEE_NETAPS FOUNDATION.pptx
Goal Presentation_NEW EMPLOYEE_NETAPS FOUNDATION.pptxGoal Presentation_NEW EMPLOYEE_NETAPS FOUNDATION.pptx
Goal Presentation_NEW EMPLOYEE_NETAPS FOUNDATION.pptx
 
Elevate Your Online Presence with SEO Services
Elevate Your Online Presence with SEO ServicesElevate Your Online Presence with SEO Services
Elevate Your Online Presence with SEO Services
 
How Do Venture Capitalists Make Decisions?
How Do Venture Capitalists Make Decisions?How Do Venture Capitalists Make Decisions?
How Do Venture Capitalists Make Decisions?
 
Shots fired Budget Presentation.pdf12312
Shots fired Budget Presentation.pdf12312Shots fired Budget Presentation.pdf12312
Shots fired Budget Presentation.pdf12312
 
Most Visionary Leaders in Cloud Revolution, Shaping Tech’s Next Era - 2024 (2...
Most Visionary Leaders in Cloud Revolution, Shaping Tech’s Next Era - 2024 (2...Most Visionary Leaders in Cloud Revolution, Shaping Tech’s Next Era - 2024 (2...
Most Visionary Leaders in Cloud Revolution, Shaping Tech’s Next Era - 2024 (2...
 
Future of Trade 2024 - Decoupled and Reconfigured - Snapshot Report
Future of Trade 2024 - Decoupled and Reconfigured - Snapshot ReportFuture of Trade 2024 - Decoupled and Reconfigured - Snapshot Report
Future of Trade 2024 - Decoupled and Reconfigured - Snapshot Report
 
Beyond Numbers A Holistic Approach to Forensic Accounting
Beyond Numbers A Holistic Approach to Forensic AccountingBeyond Numbers A Holistic Approach to Forensic Accounting
Beyond Numbers A Holistic Approach to Forensic Accounting
 
MichaelStarkes_UncutGemsProjectSummary.pdf
MichaelStarkes_UncutGemsProjectSummary.pdfMichaelStarkes_UncutGemsProjectSummary.pdf
MichaelStarkes_UncutGemsProjectSummary.pdf
 
Obat Aborsi Pasuruan 0851\7696\3835 Jual Obat Cytotec Di Pasuruan
Obat Aborsi Pasuruan 0851\7696\3835 Jual Obat Cytotec Di PasuruanObat Aborsi Pasuruan 0851\7696\3835 Jual Obat Cytotec Di Pasuruan
Obat Aborsi Pasuruan 0851\7696\3835 Jual Obat Cytotec Di Pasuruan
 
HAL Financial Performance Analysis and Future Prospects
HAL Financial Performance Analysis and Future ProspectsHAL Financial Performance Analysis and Future Prospects
HAL Financial Performance Analysis and Future Prospects
 

PPT_Template_4.pptx

  • 1. Customer Identity Management Democratised and Commoditised PUBLIC May 2017 Ian Sorbello - Head of Product Technology (Security)
  • 2. 2 PUBLIC Overview • HSBC Global – geography and markets • One Strategy – global rollout, different needs • Access Management • Designed for variance • Biometry • APIs • Identity Management • Your organisation’s developers are your customers
  • 3. 3 PUBLIC HSBC Global – Retail and Wealth • 37 markets across 70 countries • 37M customers • 3 geographic IT points of presence (NA, EU, AP) –many localised sub PoPs covering geopolitical and regulatory boundaries • One solution, globally. • Deploy to PROD, which PROD?
  • 4. 4 PUBLIC Access Management • Maturation of security standards - OIDC / OAuth2 / UMA / SSO • Strong desire to USE these • Zero desire to CODE these • Subsume underlying identity repositories • Using ForgeRock Access Management and ForgeRock Identity Management • Security commoditised ForgeRock Access Management IDP RETAIL COMMERCIAL PRIVATE
  • 5. 5 PUBLIC Access Management Market 2 Market 3 PoP ForgeRock Access Management Instance 2 App Y ForgeRock Access Management Instance 1 Market 1 App X Journey A Journey B GEOPOLICTICAL AND BUSINESS LINE INSTANCING Piloting – A/B • Extreme multiplicity requires variation to be at the heart of the solution… Security democratised LOGICAL / REALMS GEOGRAPHIC INSTANCING
  • 6. 6 PUBLIC Access Management - Biometry • Biometrics – growing in capability and usefulness • Build biometrics on top of a solid foundation • They are just new credentials (inherence factor) • Assume rapid change in this space • Build to pivot – add or jettison is a steady state ForgeRock Access Management ForgeRock Access Management Knowledge ForgeRock Access Management Possession ForgeRock Access Management Inherence Broker Biometric 2 Biometric 1
  • 7. 7 PUBLIC Banking APIs • A polarised conversation: Should banks enable “programmatic” access? • In the UK this decision was made for us: YOU MUST • CMA OpenBanking initiative, authenticated journeys Q1 2018 • HSBC ready and primed for OIDC and OAuth to publish carefully curated APIs / Services • Because we use ForgeRock Access Management and this is what ForgeRock Access Management does…
  • 8. 8 PUBLIC Identity Management • HSBC has identity data on clients globally • Immediately, this helps the digital bank (internal) • Further, capacity to participate in identity data markets ForgeRock Access Management Customer Data Customer Data ForgeRock Access Management IDENTITY as a SERVICE Internal Systems Internal Systems Internal Systems
  • 9. 9 PUBLIC Look After Your Developers • Developers love to build, but they need permission: • To innovate, to challenge, to execute (securely) • They need a way forward: via security platforms, patterns and architectural guardrails • Publish usable security capabilities to your organisation. (hint: ForgeRock). Your Devs will take care of your clients.
  • 10. 10 PUBLIC Thank you … Ian Sorbello Head of Product Technology - Security | HSBC Digital Solutions (HDS) HSBC Operations, Services and Technology (HOST) | HSBC Holdings plc Level 7, 110 Southwark St, London SE1 0SU, United Kingdom E-mail: ian.sorbello@hsbc.com Website: www.hsbc.com