SlideShare a Scribd company logo
1 of 21
IDEMIA RESTRICTED
a Secure Identity Alliance initiative
IDEMIA RESTRICTED
OSIA initiative
Debora Comparin, SIA
IDEMIA RESTRICTED
2Shaping the future of identity
Vendor lock-in
Open Standards Identity APIs
IDEMIA RESTRICTED
3
The promise
Interoperability
to make identity ecosystems thrive
today
IDEMIA RESTRICTED
a Secure Identity Alliance initiative
4
Level playing field competition
Spur innovation
Open market to SMEs and local players
Integrator/ Vendor / Technology lock-in free
Sovereignty of choice and control/ownership of solution
Open flow of data and services
Favour ROI of identity systems
Enable identity as a service
Interoperability
1
2
3
The needs
IDEMIA RESTRICTED
a Secure Identity Alliance initiative
5
Interoperability is a characteristic of a product or system, whose interfaces are completely understood, to work
with other products or systems, present or future, in either implementation or access, without any restrictions.
De facto standard
A
DC
B
Compatibility
GDT Interop, John McCreesh, Ed Daniel
Level of Operability
A
DC
B
One-on-one agreement Imposed by a dominant player
Interoperability
Consensus-driven and universal Open Standard
A
DC
B
Open Standard
Interoperability as consensus-based open standard
IDEMIA RESTRICTED
a Secure Identity Alliance initiative
6
A universal interoperability framework
as a set of open standards interfaces (APIs)
It’s happening today
 developed by the identity industry
 in partnership with governments
Our solution
OSIA community today
Working Group members Advisory Committee
7
AC Chair:
AC Members:
OSIA community today
8
OSIA community today
9
IDEMIA RESTRICTED
a Secure Identity Alliance initiative
10
GUIDELINES
API
List of services
Service 1
Service 2
Service 3
…
Service N
Select and deploy
A
DC
B
INPUT/OUTPUT
DATA DICTIONARY
DATA FORMAT
PROTOCOL
Driven by use cases of Civil Identity Systems
OSIA universal interoperability framework
as set of open standards interfaces (APIs)
a Secure Identity Alliance initiative
11
GUIDELINES
API: Biometrics
List of services
Verify (1:1)
Identify (1:N)
Create
Read
…
Select and deploy
DC
B
INPUT/OUTPUT
DATA DICTIONARY
DATA FORMAT
PROTOCOL
ABIS
OSIA universal interoperability framework
as set of open standards interfaces (APIs)
a Secure Identity Alliance initiative
List of services
12
List of APIs
Complete list of services
Enrollment Services
UIN Management
Data Access
Population Registry Services
Biometrics
Notification
Credential Services
ID Usage
SERVICES Enroll Client Enroll Server PR UIN gen. ABIS CR DMS 3rd Party serv.
Subscribe U U U U
Unsubscribe U U U U
Confirm
Publish I I I I
Read Person Attributes U IU U IU U
Match Person Attributes U IU IU U
Verify Person Attributes U IU IU U
Query Person UIN U IU IU
Query Person List
Read document U IU IU
Generate UIN U I U
Create Person U I
Read Person U I
Update Person U I
Delete Person U I
Find People U I
Create Person
Read Person
Update Person
Delete Person
Create Identity
Read Identity
Update Identity
Partial Update Identity
Delete Identity
Set Identity Status
Define Reference
Read Reference
Read Galleries
Read Gallery Content
Create U U I
Read U U I U
Update U U I
Delete U U I
Read Template U U I
Read Galleries
Read Gallery content U U I
Identify U I U
Verify U I U
Create Credential
Read Credential Issuance
Update Credential
Delete Credential
Read Credential
Suspend Credential
Unsuspend Credential
Cancel Credential
Verify ID I
Identify I
Read Attributes I
Read Attributes set I
ID Usage
Population Registry Services
Enrollment Services
Credential Services
Notification
UIN Management
Data Access
Biometrics
ID ECOSYSTEM COMPONENTS
IDEMIA RESTRICTED
a Secure Identity Alliance initiative
OSIA Open Standards interfaces matched with
high-level modules of the identity ecosystem
13
PRIVATE SECTOR
(ex. banks, telcos)
GOVERNMENT
(ex. social security,
tax agency)
ENROLLMENT THIRD PARTY
SERVICES
(ex. data access,
authentication)
Civil
Registry
Population
Registry
UIN
Generator
Biometric
System
Enr.
Client
Enr.
Server
Document
Management
System
ID PROVIDER(s)
IDEMIA RESTRICTED
a Secure Identity Alliance initiative
OSIA in a nutshell
14
Choose your components from the market1
Easily connect them to build your solution2
IDEMIA RESTRICTED
a Secure Identity Alliance initiative
OSIA Guiding Principles
15
Sovereignty
Technology
Neutrality
Privacy by
Design
IDEMIA RESTRICTED
a Secure Identity Alliance initiative
What we have achieved
16
List of APIs
Complete list of services
Enrollment Services
UIN Management
Data Access
Population Registry Services
Biometrics
Notification
Credential Services
ID Usage
SERVICES Enroll Client Enroll Server PR UIN gen. ABIS CR DMS 3rd Party serv.
Subscribe U U U U
Unsubscribe U U U U
Confirm
Publish I I I I
Read Person Attributes U IU U IU U
Match Person Attributes U IU IU U
Verify Person Attributes U IU IU U
Query Person UIN U IU IU
Query Person List
Read document U IU IU
Generate UIN U I U
Create Person U I
Read Person U I
Update Person U I
Delete Person U I
Find People U I
Create Person
Read Person
Update Person
Delete Person
Create Identity
Read Identity
Update Identity
Partial Update Identity
Delete Identity
Set Identity Status
Define Reference
Read Reference
Read Galleries
Read Gallery Content
Create U U I
Read U U I U
Update U U I
Delete U U I
Read Template U U I
Read Galleries
Read Gallery content U U I
Identify U I U
Verify U I U
Create Credential
Read Credential Issuance
Update Credential
Delete Credential
Read Credential
Suspend Credential
Unsuspend Credential
Cancel Credential
Verify ID I
Identify I
Read Attributes I
Read Attributes set I
ID Usage
Population Registry Services
Enrollment Services
Credential Services
Notification
UIN Management
Data Access
Biometrics
ID ECOSYSTEM COMPONENTS
Nov 2019
Nov 2019
Dec 2019
IDEMIA RESTRICTED
OSIA Project Plan
17
June ‘18 Sept ‘18 Dec ‘18 Mar ‘19 June ‘19 Sept ‘19 Dec ‘19 Mar ‘20 June ‘20 Sept ‘20 Dec ‘20
Initiative pres @ SIA Board
Positioning/content
OSIA Branding
Marketing material
APIs dev: functional
APIs dev: technical
OSIA public launch @ ID4A
Certification scheme design
Certification public launch @ ID4A
PR/comm
Year I Year II
IDEMIA RESTRICTED
a Secure Identity Alliance initiative
Where to find OSIA specs?
18
OSIA GITHUB PAGE
https://github.com/SecureIdentityAlliance/osia
www.OSIA.io
IDEMIA RESTRICTED
a Secure Identity Alliance initiative
How to reference OSIA in tenders?
19
OSIA - [API name] v. [version number]
Ex.
OSIA - Notifications - v. 1.0.0
OSIA - UIN Management - v. 1.0.0
OSIA - Data Access - v. 1.0.0
OSIA - Biometrics - v. 1.0.0
IDEMIA RESTRICTED
a Secure Identity Alliance initiative
OSIA implementation
Democratic Republic of Congo - Kinshasa
IDEMIA RESTRICTED
www.secureidentityalliance.org

More Related Content

Similar to Open Standards for Trusted and Universal ID Systems

Blockchain-Anchored Identity -- Daniel Buchner, Microsoft
Blockchain-Anchored Identity -- Daniel Buchner, MicrosoftBlockchain-Anchored Identity -- Daniel Buchner, Microsoft
Blockchain-Anchored Identity -- Daniel Buchner, Microsoftbernardgolden
 
Self-Sovereign Identity: Lightening Talk at RightsCon
Self-Sovereign Identity: Lightening Talk at RightsCon Self-Sovereign Identity: Lightening Talk at RightsCon
Self-Sovereign Identity: Lightening Talk at RightsCon Kaliya "Identity Woman" Young
 
Handling PII and sensitive content in SAP BusinessObjects
Handling PII and sensitive content in SAP BusinessObjects Handling PII and sensitive content in SAP BusinessObjects
Handling PII and sensitive content in SAP BusinessObjects Wiiisdom
 
Identity Proofing to provision accurately
Identity Proofing to provision accuratelyIdentity Proofing to provision accurately
Identity Proofing to provision accuratelyDavid Kelts, CIPT
 
Identity Management for Web Application Developers
Identity Management for Web Application DevelopersIdentity Management for Web Application Developers
Identity Management for Web Application DevelopersWSO2
 
An Expert Panel on Safe Credentials
An Expert Panel on Safe CredentialsAn Expert Panel on Safe Credentials
An Expert Panel on Safe CredentialsEvernym
 
Data Con LA 2022 - Pre- recorded - Web3 and Decentralized Identity
Data Con LA 2022 - Pre- recorded - Web3 and Decentralized IdentityData Con LA 2022 - Pre- recorded - Web3 and Decentralized Identity
Data Con LA 2022 - Pre- recorded - Web3 and Decentralized IdentityData Con LA
 
Understanding 'Authentication' and 'Identity Federation'
Understanding 'Authentication' and 'Identity Federation'Understanding 'Authentication' and 'Identity Federation'
Understanding 'Authentication' and 'Identity Federation'Naohiro Fujie
 
KuppingerCole CIWUSA17 - Chaining Identity Blocks to boost your UX and KYC st...
KuppingerCole CIWUSA17 - Chaining Identity Blocks to boost your UX and KYC st...KuppingerCole CIWUSA17 - Chaining Identity Blocks to boost your UX and KYC st...
KuppingerCole CIWUSA17 - Chaining Identity Blocks to boost your UX and KYC st...Jean-François LOMBARDO
 
CIS14: Are the Enterprises Ready for Identity of Everything?
CIS14: Are the Enterprises Ready for Identity of Everything?CIS14: Are the Enterprises Ready for Identity of Everything?
CIS14: Are the Enterprises Ready for Identity of Everything?CloudIDSummit
 
Identity progress-linked-digital-world
Identity progress-linked-digital-worldIdentity progress-linked-digital-world
Identity progress-linked-digital-worldMEDICI
 
The Domains of Identity & Self-Sovereign Identity MyData 2018
The Domains of Identity & Self-Sovereign Identity MyData 2018The Domains of Identity & Self-Sovereign Identity MyData 2018
The Domains of Identity & Self-Sovereign Identity MyData 2018Kaliya "Identity Woman" Young
 
Trust, Blockchains, and Self-Soveriegn Identity
Trust, Blockchains, and Self-Soveriegn IdentityTrust, Blockchains, and Self-Soveriegn Identity
Trust, Blockchains, and Self-Soveriegn IdentityPhil Windley
 
The Future of Authentication - Verifiable Credentials / Self-Sovereign Identity
The Future of Authentication - Verifiable Credentials / Self-Sovereign IdentityThe Future of Authentication - Verifiable Credentials / Self-Sovereign Identity
The Future of Authentication - Verifiable Credentials / Self-Sovereign IdentityEvernym
 
User Identity and Authentication
User Identity and AuthenticationUser Identity and Authentication
User Identity and AuthenticationAmazon Web Services
 
Digital Identity Landscape for Vancouver IAM Meetup 2017 12-19
Digital Identity Landscape for Vancouver IAM Meetup 2017 12-19Digital Identity Landscape for Vancouver IAM Meetup 2017 12-19
Digital Identity Landscape for Vancouver IAM Meetup 2017 12-19Andrew Hughes
 
CIS13: Is Identity the Answer to the Great Question of Life, the Universe, an...
CIS13: Is Identity the Answer to the Great Question of Life, the Universe, an...CIS13: Is Identity the Answer to the Great Question of Life, the Universe, an...
CIS13: Is Identity the Answer to the Great Question of Life, the Universe, an...CloudIDSummit
 

Similar to Open Standards for Trusted and Universal ID Systems (20)

Openid
OpenidOpenid
Openid
 
Blockchain-Anchored Identity -- Daniel Buchner, Microsoft
Blockchain-Anchored Identity -- Daniel Buchner, MicrosoftBlockchain-Anchored Identity -- Daniel Buchner, Microsoft
Blockchain-Anchored Identity -- Daniel Buchner, Microsoft
 
Self-Sovereign Identity: Lightening Talk at RightsCon
Self-Sovereign Identity: Lightening Talk at RightsCon Self-Sovereign Identity: Lightening Talk at RightsCon
Self-Sovereign Identity: Lightening Talk at RightsCon
 
Handling PII and sensitive content in SAP BusinessObjects
Handling PII and sensitive content in SAP BusinessObjects Handling PII and sensitive content in SAP BusinessObjects
Handling PII and sensitive content in SAP BusinessObjects
 
Identity Proofing to provision accurately
Identity Proofing to provision accuratelyIdentity Proofing to provision accurately
Identity Proofing to provision accurately
 
Identity Management for Web Application Developers
Identity Management for Web Application DevelopersIdentity Management for Web Application Developers
Identity Management for Web Application Developers
 
Identity Managment
Identity ManagmentIdentity Managment
Identity Managment
 
An Expert Panel on Safe Credentials
An Expert Panel on Safe CredentialsAn Expert Panel on Safe Credentials
An Expert Panel on Safe Credentials
 
Data Con LA 2022 - Pre- recorded - Web3 and Decentralized Identity
Data Con LA 2022 - Pre- recorded - Web3 and Decentralized IdentityData Con LA 2022 - Pre- recorded - Web3 and Decentralized Identity
Data Con LA 2022 - Pre- recorded - Web3 and Decentralized Identity
 
Understanding 'Authentication' and 'Identity Federation'
Understanding 'Authentication' and 'Identity Federation'Understanding 'Authentication' and 'Identity Federation'
Understanding 'Authentication' and 'Identity Federation'
 
KuppingerCole CIWUSA17 - Chaining Identity Blocks to boost your UX and KYC st...
KuppingerCole CIWUSA17 - Chaining Identity Blocks to boost your UX and KYC st...KuppingerCole CIWUSA17 - Chaining Identity Blocks to boost your UX and KYC st...
KuppingerCole CIWUSA17 - Chaining Identity Blocks to boost your UX and KYC st...
 
CIS14: Are the Enterprises Ready for Identity of Everything?
CIS14: Are the Enterprises Ready for Identity of Everything?CIS14: Are the Enterprises Ready for Identity of Everything?
CIS14: Are the Enterprises Ready for Identity of Everything?
 
Identity progress-linked-digital-world
Identity progress-linked-digital-worldIdentity progress-linked-digital-world
Identity progress-linked-digital-world
 
Ping Identity
Ping IdentityPing Identity
Ping Identity
 
The Domains of Identity & Self-Sovereign Identity MyData 2018
The Domains of Identity & Self-Sovereign Identity MyData 2018The Domains of Identity & Self-Sovereign Identity MyData 2018
The Domains of Identity & Self-Sovereign Identity MyData 2018
 
Trust, Blockchains, and Self-Soveriegn Identity
Trust, Blockchains, and Self-Soveriegn IdentityTrust, Blockchains, and Self-Soveriegn Identity
Trust, Blockchains, and Self-Soveriegn Identity
 
The Future of Authentication - Verifiable Credentials / Self-Sovereign Identity
The Future of Authentication - Verifiable Credentials / Self-Sovereign IdentityThe Future of Authentication - Verifiable Credentials / Self-Sovereign Identity
The Future of Authentication - Verifiable Credentials / Self-Sovereign Identity
 
User Identity and Authentication
User Identity and AuthenticationUser Identity and Authentication
User Identity and Authentication
 
Digital Identity Landscape for Vancouver IAM Meetup 2017 12-19
Digital Identity Landscape for Vancouver IAM Meetup 2017 12-19Digital Identity Landscape for Vancouver IAM Meetup 2017 12-19
Digital Identity Landscape for Vancouver IAM Meetup 2017 12-19
 
CIS13: Is Identity the Answer to the Great Question of Life, the Universe, an...
CIS13: Is Identity the Answer to the Great Question of Life, the Universe, an...CIS13: Is Identity the Answer to the Great Question of Life, the Universe, an...
CIS13: Is Identity the Answer to the Great Question of Life, the Universe, an...
 

Recently uploaded

React Native vs Ionic - The Best Mobile App Framework
React Native vs Ionic - The Best Mobile App FrameworkReact Native vs Ionic - The Best Mobile App Framework
React Native vs Ionic - The Best Mobile App FrameworkPixlogix Infotech
 
Bridging Between CAD & GIS: 6 Ways to Automate Your Data Integration
Bridging Between CAD & GIS:  6 Ways to Automate Your Data IntegrationBridging Between CAD & GIS:  6 Ways to Automate Your Data Integration
Bridging Between CAD & GIS: 6 Ways to Automate Your Data Integrationmarketing932765
 
A Journey Into the Emotions of Software Developers
A Journey Into the Emotions of Software DevelopersA Journey Into the Emotions of Software Developers
A Journey Into the Emotions of Software DevelopersNicole Novielli
 
Arizona Broadband Policy Past, Present, and Future Presentation 3/25/24
Arizona Broadband Policy Past, Present, and Future Presentation 3/25/24Arizona Broadband Policy Past, Present, and Future Presentation 3/25/24
Arizona Broadband Policy Past, Present, and Future Presentation 3/25/24Mark Goldstein
 
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024BookNet Canada
 
The Fit for Passkeys for Employee and Consumer Sign-ins: FIDO Paris Seminar.pptx
The Fit for Passkeys for Employee and Consumer Sign-ins: FIDO Paris Seminar.pptxThe Fit for Passkeys for Employee and Consumer Sign-ins: FIDO Paris Seminar.pptx
The Fit for Passkeys for Employee and Consumer Sign-ins: FIDO Paris Seminar.pptxLoriGlavin3
 
So einfach geht modernes Roaming fuer Notes und Nomad.pdf
So einfach geht modernes Roaming fuer Notes und Nomad.pdfSo einfach geht modernes Roaming fuer Notes und Nomad.pdf
So einfach geht modernes Roaming fuer Notes und Nomad.pdfpanagenda
 
Digital Identity is Under Attack: FIDO Paris Seminar.pptx
Digital Identity is Under Attack: FIDO Paris Seminar.pptxDigital Identity is Under Attack: FIDO Paris Seminar.pptx
Digital Identity is Under Attack: FIDO Paris Seminar.pptxLoriGlavin3
 
TeamStation AI System Report LATAM IT Salaries 2024
TeamStation AI System Report LATAM IT Salaries 2024TeamStation AI System Report LATAM IT Salaries 2024
TeamStation AI System Report LATAM IT Salaries 2024Lonnie McRorey
 
Scale your database traffic with Read & Write split using MySQL Router
Scale your database traffic with Read & Write split using MySQL RouterScale your database traffic with Read & Write split using MySQL Router
Scale your database traffic with Read & Write split using MySQL RouterMydbops
 
2024 April Patch Tuesday
2024 April Patch Tuesday2024 April Patch Tuesday
2024 April Patch TuesdayIvanti
 
Emixa Mendix Meetup 11 April 2024 about Mendix Native development
Emixa Mendix Meetup 11 April 2024 about Mendix Native developmentEmixa Mendix Meetup 11 April 2024 about Mendix Native development
Emixa Mendix Meetup 11 April 2024 about Mendix Native developmentPim van der Noll
 
TrustArc Webinar - How to Build Consumer Trust Through Data Privacy
TrustArc Webinar - How to Build Consumer Trust Through Data PrivacyTrustArc Webinar - How to Build Consumer Trust Through Data Privacy
TrustArc Webinar - How to Build Consumer Trust Through Data PrivacyTrustArc
 
How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.Curtis Poe
 
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptxMerck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptxLoriGlavin3
 
Top 10 Hubspot Development Companies in 2024
Top 10 Hubspot Development Companies in 2024Top 10 Hubspot Development Companies in 2024
Top 10 Hubspot Development Companies in 2024TopCSSGallery
 
Long journey of Ruby standard library at RubyConf AU 2024
Long journey of Ruby standard library at RubyConf AU 2024Long journey of Ruby standard library at RubyConf AU 2024
Long journey of Ruby standard library at RubyConf AU 2024Hiroshi SHIBATA
 
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyesHow to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyesThousandEyes
 
QCon London: Mastering long-running processes in modern architectures
QCon London: Mastering long-running processes in modern architecturesQCon London: Mastering long-running processes in modern architectures
QCon London: Mastering long-running processes in modern architecturesBernd Ruecker
 
How to write a Business Continuity Plan
How to write a Business Continuity PlanHow to write a Business Continuity Plan
How to write a Business Continuity PlanDatabarracks
 

Recently uploaded (20)

React Native vs Ionic - The Best Mobile App Framework
React Native vs Ionic - The Best Mobile App FrameworkReact Native vs Ionic - The Best Mobile App Framework
React Native vs Ionic - The Best Mobile App Framework
 
Bridging Between CAD & GIS: 6 Ways to Automate Your Data Integration
Bridging Between CAD & GIS:  6 Ways to Automate Your Data IntegrationBridging Between CAD & GIS:  6 Ways to Automate Your Data Integration
Bridging Between CAD & GIS: 6 Ways to Automate Your Data Integration
 
A Journey Into the Emotions of Software Developers
A Journey Into the Emotions of Software DevelopersA Journey Into the Emotions of Software Developers
A Journey Into the Emotions of Software Developers
 
Arizona Broadband Policy Past, Present, and Future Presentation 3/25/24
Arizona Broadband Policy Past, Present, and Future Presentation 3/25/24Arizona Broadband Policy Past, Present, and Future Presentation 3/25/24
Arizona Broadband Policy Past, Present, and Future Presentation 3/25/24
 
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
 
The Fit for Passkeys for Employee and Consumer Sign-ins: FIDO Paris Seminar.pptx
The Fit for Passkeys for Employee and Consumer Sign-ins: FIDO Paris Seminar.pptxThe Fit for Passkeys for Employee and Consumer Sign-ins: FIDO Paris Seminar.pptx
The Fit for Passkeys for Employee and Consumer Sign-ins: FIDO Paris Seminar.pptx
 
So einfach geht modernes Roaming fuer Notes und Nomad.pdf
So einfach geht modernes Roaming fuer Notes und Nomad.pdfSo einfach geht modernes Roaming fuer Notes und Nomad.pdf
So einfach geht modernes Roaming fuer Notes und Nomad.pdf
 
Digital Identity is Under Attack: FIDO Paris Seminar.pptx
Digital Identity is Under Attack: FIDO Paris Seminar.pptxDigital Identity is Under Attack: FIDO Paris Seminar.pptx
Digital Identity is Under Attack: FIDO Paris Seminar.pptx
 
TeamStation AI System Report LATAM IT Salaries 2024
TeamStation AI System Report LATAM IT Salaries 2024TeamStation AI System Report LATAM IT Salaries 2024
TeamStation AI System Report LATAM IT Salaries 2024
 
Scale your database traffic with Read & Write split using MySQL Router
Scale your database traffic with Read & Write split using MySQL RouterScale your database traffic with Read & Write split using MySQL Router
Scale your database traffic with Read & Write split using MySQL Router
 
2024 April Patch Tuesday
2024 April Patch Tuesday2024 April Patch Tuesday
2024 April Patch Tuesday
 
Emixa Mendix Meetup 11 April 2024 about Mendix Native development
Emixa Mendix Meetup 11 April 2024 about Mendix Native developmentEmixa Mendix Meetup 11 April 2024 about Mendix Native development
Emixa Mendix Meetup 11 April 2024 about Mendix Native development
 
TrustArc Webinar - How to Build Consumer Trust Through Data Privacy
TrustArc Webinar - How to Build Consumer Trust Through Data PrivacyTrustArc Webinar - How to Build Consumer Trust Through Data Privacy
TrustArc Webinar - How to Build Consumer Trust Through Data Privacy
 
How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.
 
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptxMerck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptx
 
Top 10 Hubspot Development Companies in 2024
Top 10 Hubspot Development Companies in 2024Top 10 Hubspot Development Companies in 2024
Top 10 Hubspot Development Companies in 2024
 
Long journey of Ruby standard library at RubyConf AU 2024
Long journey of Ruby standard library at RubyConf AU 2024Long journey of Ruby standard library at RubyConf AU 2024
Long journey of Ruby standard library at RubyConf AU 2024
 
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyesHow to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
 
QCon London: Mastering long-running processes in modern architectures
QCon London: Mastering long-running processes in modern architecturesQCon London: Mastering long-running processes in modern architectures
QCon London: Mastering long-running processes in modern architectures
 
How to write a Business Continuity Plan
How to write a Business Continuity PlanHow to write a Business Continuity Plan
How to write a Business Continuity Plan
 

Open Standards for Trusted and Universal ID Systems

  • 1. IDEMIA RESTRICTED a Secure Identity Alliance initiative IDEMIA RESTRICTED OSIA initiative Debora Comparin, SIA
  • 2. IDEMIA RESTRICTED 2Shaping the future of identity Vendor lock-in Open Standards Identity APIs
  • 3. IDEMIA RESTRICTED 3 The promise Interoperability to make identity ecosystems thrive today
  • 4. IDEMIA RESTRICTED a Secure Identity Alliance initiative 4 Level playing field competition Spur innovation Open market to SMEs and local players Integrator/ Vendor / Technology lock-in free Sovereignty of choice and control/ownership of solution Open flow of data and services Favour ROI of identity systems Enable identity as a service Interoperability 1 2 3 The needs
  • 5. IDEMIA RESTRICTED a Secure Identity Alliance initiative 5 Interoperability is a characteristic of a product or system, whose interfaces are completely understood, to work with other products or systems, present or future, in either implementation or access, without any restrictions. De facto standard A DC B Compatibility GDT Interop, John McCreesh, Ed Daniel Level of Operability A DC B One-on-one agreement Imposed by a dominant player Interoperability Consensus-driven and universal Open Standard A DC B Open Standard Interoperability as consensus-based open standard
  • 6. IDEMIA RESTRICTED a Secure Identity Alliance initiative 6 A universal interoperability framework as a set of open standards interfaces (APIs) It’s happening today  developed by the identity industry  in partnership with governments Our solution
  • 7. OSIA community today Working Group members Advisory Committee 7 AC Chair: AC Members:
  • 10. IDEMIA RESTRICTED a Secure Identity Alliance initiative 10 GUIDELINES API List of services Service 1 Service 2 Service 3 … Service N Select and deploy A DC B INPUT/OUTPUT DATA DICTIONARY DATA FORMAT PROTOCOL Driven by use cases of Civil Identity Systems OSIA universal interoperability framework as set of open standards interfaces (APIs)
  • 11. a Secure Identity Alliance initiative 11 GUIDELINES API: Biometrics List of services Verify (1:1) Identify (1:N) Create Read … Select and deploy DC B INPUT/OUTPUT DATA DICTIONARY DATA FORMAT PROTOCOL ABIS OSIA universal interoperability framework as set of open standards interfaces (APIs)
  • 12. a Secure Identity Alliance initiative List of services 12 List of APIs Complete list of services Enrollment Services UIN Management Data Access Population Registry Services Biometrics Notification Credential Services ID Usage SERVICES Enroll Client Enroll Server PR UIN gen. ABIS CR DMS 3rd Party serv. Subscribe U U U U Unsubscribe U U U U Confirm Publish I I I I Read Person Attributes U IU U IU U Match Person Attributes U IU IU U Verify Person Attributes U IU IU U Query Person UIN U IU IU Query Person List Read document U IU IU Generate UIN U I U Create Person U I Read Person U I Update Person U I Delete Person U I Find People U I Create Person Read Person Update Person Delete Person Create Identity Read Identity Update Identity Partial Update Identity Delete Identity Set Identity Status Define Reference Read Reference Read Galleries Read Gallery Content Create U U I Read U U I U Update U U I Delete U U I Read Template U U I Read Galleries Read Gallery content U U I Identify U I U Verify U I U Create Credential Read Credential Issuance Update Credential Delete Credential Read Credential Suspend Credential Unsuspend Credential Cancel Credential Verify ID I Identify I Read Attributes I Read Attributes set I ID Usage Population Registry Services Enrollment Services Credential Services Notification UIN Management Data Access Biometrics ID ECOSYSTEM COMPONENTS
  • 13. IDEMIA RESTRICTED a Secure Identity Alliance initiative OSIA Open Standards interfaces matched with high-level modules of the identity ecosystem 13 PRIVATE SECTOR (ex. banks, telcos) GOVERNMENT (ex. social security, tax agency) ENROLLMENT THIRD PARTY SERVICES (ex. data access, authentication) Civil Registry Population Registry UIN Generator Biometric System Enr. Client Enr. Server Document Management System ID PROVIDER(s)
  • 14. IDEMIA RESTRICTED a Secure Identity Alliance initiative OSIA in a nutshell 14 Choose your components from the market1 Easily connect them to build your solution2
  • 15. IDEMIA RESTRICTED a Secure Identity Alliance initiative OSIA Guiding Principles 15 Sovereignty Technology Neutrality Privacy by Design
  • 16. IDEMIA RESTRICTED a Secure Identity Alliance initiative What we have achieved 16 List of APIs Complete list of services Enrollment Services UIN Management Data Access Population Registry Services Biometrics Notification Credential Services ID Usage SERVICES Enroll Client Enroll Server PR UIN gen. ABIS CR DMS 3rd Party serv. Subscribe U U U U Unsubscribe U U U U Confirm Publish I I I I Read Person Attributes U IU U IU U Match Person Attributes U IU IU U Verify Person Attributes U IU IU U Query Person UIN U IU IU Query Person List Read document U IU IU Generate UIN U I U Create Person U I Read Person U I Update Person U I Delete Person U I Find People U I Create Person Read Person Update Person Delete Person Create Identity Read Identity Update Identity Partial Update Identity Delete Identity Set Identity Status Define Reference Read Reference Read Galleries Read Gallery Content Create U U I Read U U I U Update U U I Delete U U I Read Template U U I Read Galleries Read Gallery content U U I Identify U I U Verify U I U Create Credential Read Credential Issuance Update Credential Delete Credential Read Credential Suspend Credential Unsuspend Credential Cancel Credential Verify ID I Identify I Read Attributes I Read Attributes set I ID Usage Population Registry Services Enrollment Services Credential Services Notification UIN Management Data Access Biometrics ID ECOSYSTEM COMPONENTS Nov 2019 Nov 2019 Dec 2019
  • 17. IDEMIA RESTRICTED OSIA Project Plan 17 June ‘18 Sept ‘18 Dec ‘18 Mar ‘19 June ‘19 Sept ‘19 Dec ‘19 Mar ‘20 June ‘20 Sept ‘20 Dec ‘20 Initiative pres @ SIA Board Positioning/content OSIA Branding Marketing material APIs dev: functional APIs dev: technical OSIA public launch @ ID4A Certification scheme design Certification public launch @ ID4A PR/comm Year I Year II
  • 18. IDEMIA RESTRICTED a Secure Identity Alliance initiative Where to find OSIA specs? 18 OSIA GITHUB PAGE https://github.com/SecureIdentityAlliance/osia www.OSIA.io
  • 19. IDEMIA RESTRICTED a Secure Identity Alliance initiative How to reference OSIA in tenders? 19 OSIA - [API name] v. [version number] Ex. OSIA - Notifications - v. 1.0.0 OSIA - UIN Management - v. 1.0.0 OSIA - Data Access - v. 1.0.0 OSIA - Biometrics - v. 1.0.0
  • 20. IDEMIA RESTRICTED a Secure Identity Alliance initiative OSIA implementation Democratic Republic of Congo - Kinshasa