User-Friendly Login Procedures
Facebook Twitter LinkedIn

Panel: Balancing Authentication Security with User Adoption

Combined Session
Friday, September 27, 2019 11:30—12:30
Location: Emerald 2

Enzoic will participate in a panel discussion on experiences balancing the challenges of user adoption with authentication security in a consumer web environment. 

Passwords are the most common layer of security; however, billions of compromised users’ credentials are circulated on the public Internet and Dark Web. And due to the common practice of password reuse, attackers can take credentials exposure in the numerous data breaches and use them to login to other sites that haven’t been compromised. Consumer facing organizations are being forced to address security vulnerabilities created by their consumer’s password hygiene and security practices.

Numerous options exist in the market to harden authentication security. Each involves introducing some form of friction into the consumer’s experience. User testing shows consumers have extremely limited tolerance for disruptions introduced by security measures, even when those measures are designed to protect the consumer, personal information and valuable assets. Yet, when a consumer’s account is compromised on a site, the blame is directed back to site – and the brand suffers both financial and reputational damage. 

This panel will examine various approaches to balancing security and user experience. We’ll consider various approaches to hardening an authentication process and the associated tradeoffs involved. We will cover the recent changes in industry standards and how different approaches can be applied across mobile and web channels. Additional topics will include: false positive and false negative alerts, the consequences of alert fatigue, and device considerations. 

Attendees will leave with a better understanding of the options (CAPTCHAs, BOT Detection, Biometrics, Multi-factor authentication, Compromised credential detection, and other methods) in the context of consumer business requirements.

Key takeaways:

• Authentication attack methods in consumer web
• New industry standards for securing authentication
• UX review of various authentication options
• Understanding of multi-step, multi-factor and different authentication factor types

 

Michael Greene
Michael Greene
Enzoic (Formerly PasswordPing)
Michael Greene is CEO of Enzoic (formerly named PasswordPing), an innovative cyber-security startup that helps enterprises screen for compromised credentials and prevent credential stuffing and...
Dave McGibbon
Dave McGibbon
Passbase
Dave, born in Scotland and raised in New Jersey, is a former investment associate at GoogleX where he helped to commercialize Alphabet's ambitious Moonshot projects. Today, Dave is the founder and...
Dirk Wahlefeld
Dirk Wahlefeld
COGNITUM Software
Dirk Wahlefeld represents COGNITUM Software as a Product Manager for their patent-pending Identity Management product go:Identity and go:Roles. He is responsible for conceptual design and...
Subscribe for updates
Please provide your email address