FIDO in Practice
Facebook Twitter LinkedIn

Enforce a faster sign-in with Biometrics and Pin – even for legacy apps of a DAX company

Combined Session
Thursday, May 11, 2023 14:45—15:15
Location: A 05-06

Join this session if you want to learn how a globally operating science and technology company introduced a faster and phishing-resistant sign-in – driven by the open-industry standard FIDO.

Employees use Biometrics or Pin, instead of Password & SMS, Call or App.

A “Detached Authentication” feature enables apps without FIDO/WebAuthn support and allow us to globally enforce the phishing-resistant sign-in – without fallback to other MFA methods.

Identity Verification is required for the registration and recovery of Biometrics or Pin. SaaS or self-developed identity verification methods can be used and combined.

The infrastructure for authentication and registration of Biometrics and Pin runs in a self-hosted environment. It allows us to stay true to our principles: Own Identities, Credentials and Authentication.

# What makes it unique

Passwordless Sign-in
– Biometrics of device-in-use 

Biometrics sign-in available for all apps
Detached Authentication for apps without WebAuthn


Biometrics sign-in enforced for all users
No SMS, Call or Authentication Apps


Onboarding, Registration, Recovery, Password Reset
– Self-services secured with identity verification


Centrally stored FIDO-Credentials for multiple IdPs
Self-hosted infrastructure with IdP plugins

Enforce a faster sign-in with Biometrics and Pin – even for legacy apps of a DAX company
Event Recording
Enforce a faster sign-in with Biometrics and Pin – even for legacy apps of a DAX company
Click here to watch the recording of this session. Please note that this video is only available to event participants and subscribers. You'll need to log in to watch it.
Enforce a faster sign-in with Biometrics and Pin – even for legacy apps of a DAX company
Presentation deck
Enforce a faster sign-in with Biometrics and Pin – even for legacy apps of a DAX company
Click here to download the slide deck. Please note that downloads are only available for event participants and subscribers. You'll need to log in to download it.
Dennis Kniep
Dennis Kniep
Merck KGaA, Darmstadt, Germany
Dennis is the Domain Architect of Identity and Access Management. He has a background as a software engineer and spent a decade as lead developer in IAM and security projects.  
Andreas Pellengahr
Andreas Pellengahr
Merck KGaA, Darmstadt, Germany
Andreas is passionately coordinating the IAM team in the Technology Office. He believes that Identities, Credentials and Authentication should be self-hosted and not in a cloud system.

Tickets

On-Demand Access
Re-live EIC 2023
€500
 
Watch 200 sessions on-demand
Download all available presentations
Subscribe for updates
Please provide your email address