![]() |
Subscribe About Us Contact Us | |||||||
|
|
BANK tech-trends News January 4, 2010 - January 8, 2010
Hardware NewsSome observers argue that the days of the BIOS are numbered. They point out that the Unified Extensible Firmware Interface (UEFI) will introduce a more powerful solution able to better cope with the demands of today’s diverse hardware. In a nutshell, UEFI is an interface that takes care of handing over the pre-boot environment to the operating system. A BIOS relies on the x86 architecture’s 16-bit real mode, but UEFI introduces full hardware independence and interfaces split into boot and runtime services. Unfortunately, industry support for UEFI is still weak, and the standard has some shortcomings, but look for UEFI to gradually replace the conventional BIOS and offer new interfaces to operating systems, facilitating boot-up and introducing a lot of flexibility through UEFI applications and OS-independent device drivers. Software Updates Microsoft provides a free tool called Process Monitor that monitors your computer’s registry, as well as the files and folders on your computer, and reports on everything affected by the running processes. You can use Process Monitor to manage NTFS permissions. Process Monitor lets you eliminate administrative rights and configure applications to run with the least amount of privileges. Eliminating administrative rights is an easy way to prevent malware from being installed on your Windows Server and workstation systems. The new IPsec-based Connection Security Rules in Windows Server 2008, Windows Vista and Windows 7 provide an excellent tool for implementing server isolation. IPsec-based isolation was possible to achieve in earlier OSs such as Windows XP and Windows 2003, but Server 2008 and Vista integrate IPsec and firewall functionality for the first time via the Windows Firewall with Advanced Security Console and Group Policy. By implementing server and domain isolation, you propagate a network policy that requires that specific servers — customers of domain — accept authenticated and secured communications only from other domain-customer computers. This network policy isolates specific servers from computers that aren't domain customers, or computers that are domain customers but don't satisfy certain criteria.
ATMs/KiosksRobert Siciliano, an identity theft protection expert at Intelius, has created a stir in the ATM industry by buying a used ATM on Craig's list that he was able to extract card info from with little effort. He was able to print out transaction journal entries, revealing full account numbers for cards used at the ATM before he purchased it. This was an older machine that did not have the PANs (personal account numbers) masked. Yet some criticized Sicilano, stating that the 16-digit account numbers would do him no good without the Track 2 information from the card, the name and expiration date; and in order to create a fake card and withdraw cash, he would have to have a PIN. Siciliano contends that people should not be able to sell an ATM on Craig’s list or eBay. Meanwhile, the ATM Industry Association says that they do not condone the auctioning of ATMs, online or otherwise., however they point out that this kind of control would have to be mandated legislatively. Wireless World GSMA, EMVCo and GlobalPlatform are working together to
develop a cross-industry NFC certification process. The three
associations will design a model which will allow certification
processes to be put in place to ensure that any NFC payments application
will work on any platform. "When fully developed and operational, these
schemes will work together to ensure that any certified payment
application will work with any certified UICC [SIM] platform, reducing
the incidence of certification failures when new application/platform
combinations are subsequently added for testing," say the associations.
Security Section
Leaders Roundtable Core Systems: Helping Banks Focus on Opportunities
Technology and Marketing Many analysts believe that the number of products offered to customers should be reduced. They argue that as product selection grows, it becomes harder for customers to understand the differences between accounts and their pricing, and harder for your front line employees to explain their unique benefits. Peak Performance Consulting Group believes just the opposite. They contend that With more options, there is an increased tendency is justify the choice of a better product, even if it costs more. They say that "selective complexity" can serve to create greater justification to buy the services that are perceived as needed, even if they are not the least cost. Case in point: one institution has gone so far as to offer "Free Checking", which can be customized with the addition of up to seven additional fee based services. Online Banking/E-Commerce/Website Design
Internet Access Multiprotocol Label Switching has been one of the most successful technologies of the past decade, and the advantages of MPLS are many: in addition to protocol neutrality, MPLS is highly scalable and can intelligently route time-sensitive voice and video packets through low-latency routes throughout the network. Of course, MPLS is evolving and MPLS Transport Profile (MPLS-TP), will be the next most immediate version of the technology to hit the market. MPLS-TP is basically the same as MPLS but with key new features such as the ability to take advantage of Quality of Service and fast reroute. It brings the benefit of packet switching to optical and transport networks and can run over any physical layer, from Ethernet to SONET/SDH to OTN. Call Centers There is no the "industry standard" in call centers regarding performance reviews, but some centers have two performance reviews a year: a mid-year and end-of-year review. At the beginning of the year, objectives and goals based on the organization's overall business plan are set for each individual, along with personal objectives, such as cross-training, improving availability, improving attendance, etc. At the mid-year mark, the review focuses on where the agent is in meeting their objectives, and there is an opportunity to adjust/change/eliminate goals based on business need. Finally, the end of year performance review takes into consideration the half year review, as well as performance over the last 6 months of the year.
| |||||||
Speaking Engagements | Vendor Case Studies | Newsletters | Consulting | Webinars |
||||||||