41
The right payment gateway provider and payment options can provide your business the competitive edge

Fraud and security concern, how it applies in e-Commerce and banking financial

Embed Size (px)

Citation preview

Page 1: Fraud and security concern, how it applies in e-Commerce and banking financial

The right payment gateway provider and

payment options can provide your business

the competitive edge

Page 2: Fraud and security concern, how it applies in e-Commerce and banking financial

Travel Portal

Seeking Approval Payment

Online Buyers / ]members

Payment Approval Payment Status Fulfillment

Payment Gateway

Banks/ Financial Insitutions

Purchase

E-Commerce Flow

Page 3: Fraud and security concern, how it applies in e-Commerce and banking financial

Critical Points when considering a payment gateway provider

1) State of the art FRAUD System . Flexible and it is a rule based system

. Extensive domestic, regional and global database

. Years of Experience and proven track record

. Pre trade/transaction attempted fraud and post trade

. Have critical fraud tools

. Many more!

2) Comprehensive connectivity to all major shopping carts

3) Many payment options and direct connectivity to the banks

4) Provide Multi currencies

5) Provider of the gateway must be registered and notified by Bank

Negara under the “system payment act 2003” and must be

well established and proven in the market.

6) Leading Payment gateway in South East Asia (SEA).

Choose ipay88 and you have all the above and beyond

Page 4: Fraud and security concern, how it applies in e-Commerce and banking financial

About iPay88 / Mobile88

• Founded Mobile88.com in Apr 2000

• Mobile88.com obtained MSC Status in 2003

• Founded iPay88 in year 2006

• iPay88 obtained MSC status in 2007

• iPay88 notified under “System Payment Act 2003” by Bank

Negara in 2007

Page 5: Fraud and security concern, how it applies in e-Commerce and banking financial

“iPay88 is an Online Payment Service offered to sellers (or e-merchants) which

allows sellers to be paid by their customers via online, anytime and anywhere by using

the various payment channels:”

What is iPay88 ?

Page 6: Fraud and security concern, how it applies in e-Commerce and banking financial

iPay88 – Comprehensive Payment Options (local)

Page 7: Fraud and security concern, how it applies in e-Commerce and banking financial

iPay88 Payment Network / Cloud – First in Asia

Page 8: Fraud and security concern, how it applies in e-Commerce and banking financial

How iPay88 help merchants on regional e-Commerce

• Credit Card penetration is still low in most of South East Asia countries.

- Need to educate the industry such as merchants and the users.

• Appointed by Mdec to be part of Digital Malaysia initiative and also to assist MSC status companies to expand to overseas markets.

• iPay88 supports local payment options

• Cover non-Card customer such as online banking, e wallets, payment over ATM, payment over the counter and payment over the Digital Kiosk.

• One Stop Regional Payment Gateway Service Provider – save time & cost

• iPay88 is an established award winning regional payment gateway in South East Asia – Full operational offices in Malaysia, Indonesia, Philippines, Singapore and Thailand.

• Soon will be Vietnam, Myanmar and Lao.

Page 9: Fraud and security concern, how it applies in e-Commerce and banking financial

iPay88 Products

Functions

&

Features

Page 10: Fraud and security concern, how it applies in e-Commerce and banking financial

Company Background

iPay88 - Achievement

“Most Outstanding Merchant 2009”

Platinum Partner

APICTA 2010 Malaysia – Best of Financial

Applications

Compliant with Payment System Act 2003

(notified by Bank Negara) since 2006 http://www.bnm.gov.my/microsites/payment/05_regulatees.htm

Fraud rate below 0.05%

Page 11: Fraud and security concern, how it applies in e-Commerce and banking financial

PRODUCT & SERVICES

Comprehensive Payment Methods :

• Credit Card

• Online Banking

• E-wallet

• Counter Payment (walk-in)

Cash Management Gateway

(Payout)

Coming Soon

Online Payment Gateway

Payout Channels :

• Bank TT

• Remittance Channels

• Local Banks Transfer

Page 12: Fraud and security concern, how it applies in e-Commerce and banking financial

Online Payment

Direct Link

(online payment

gateway)

Virtual Terminal

Email Payment

(Request for

Money)

Virtual Link

(Virtual Shopping

Cart+Payment)

Auto-Debit

(Scheduled

Collections)

Multi-Pay

(0% Installment)

Mobile-Pay

(Pay using

Mobile Phone)

E-WalletEscrow Service

(C2C)

Page 13: Fraud and security concern, how it applies in e-Commerce and banking financial

PRODUCT & SERVICES

PayOut (Cash Management)

Oversea

Remittance

Cheque

(Issue & mail)

Local Banks

Cash

Management

Telegraphy

Transfer

Payout

(Payment to 3rd

party)

Page 14: Fraud and security concern, how it applies in e-Commerce and banking financial

ipay88.com

Mobile88 Group

of Companies

Malaysia Oversea

IPay88 Sdn Bhd

Mobile88 Sdn Bhd

RubyMax Sdn Bhd

Positive Reliance

Sdn Bhd

PT. Dinamik Mobile

(Indonesia)

IPay88 International

Limited (U.K.)

IPay88 Philippines

Inc.

100% owned

100% owned

100% owned

40% owned

100% owned

100% owned

2011 Trnx amount: US$54mil

Net Profit: US$250,000

Initial Paid-up Capital: PHP250,000

Page 15: Fraud and security concern, how it applies in e-Commerce and banking financial

Online Payment Switching Gateway

Security and Fraud Control

PRESENTATION

Page 16: Fraud and security concern, how it applies in e-Commerce and banking financial

Fraud Administration

&

Monitoring System (FAMS)

FAMS

Page 17: Fraud and security concern, how it applies in e-Commerce and banking financial

Current Process

‣ All transaction flow through Kasikorn Bank

credit card processing gateway

‣ Fraud only get notified by Kasikorn Bank

credit card processing gateway when

customers file their disputes

‣ Only able to manage post-transaction risks

monitoring - high risks for dispute rates

CURRENT PROCESS

ipay88.com

Page 18: Fraud and security concern, how it applies in e-Commerce and banking financial

New Process

‣ Deploy IPay88 FAMS into Kasikorn Bank’s

Credit Card Processing system

‣ All transactions flow through Kasikorn Bank’s

Credit Card Processing system will filter by

the IPay88 FAMS

‣ Able to conduct Pre-transaction and

During-transaction risks assessment and

filtering, reduce at least 80% of the frauds

NEW PROCESS

ipay88.com

Page 19: Fraud and security concern, how it applies in e-Commerce and banking financial

New Process

‣ Pre-transaction Filtering:

‣ filter by email

‣ filter by black list IP

‣ filter by black list country

‣ filter by white-list IP/country

‣ filter by white-list email/name

NEW PROCESS stage one: pre-transaction fraud filtering

ipay88.com

Page 20: Fraud and security concern, how it applies in e-Commerce and banking financial

‣ During-transaction Filtering:

‣ filter by black-list credit card number

‣ filter by Bin-number

‣ filter by issue bank

‣ filter by Verified by Visa/Master

‣ filter by white-list credit card number

‣ filter by white-list Bin-number

NEW PROCESS stage two: during-transaction fraud filtering

ipay88.com

Page 21: Fraud and security concern, how it applies in e-Commerce and banking financial

New Process

‣ Post-transaction Filtering:

‣ Velocity check

‣ Historical pattern check

‣ Product risk filtering

‣ Fraud statistical trending

NEW PROCESS stage three: post-transaction fraud filtering

ipay88.com

Page 22: Fraud and security concern, how it applies in e-Commerce and banking financial

New Process

‣ Merchant Monitoring:

‣ Web crawler for webpage indexing

‣ Risks profile management

‣ Fraud level monitoring

‣ Merchant risks management base on

industry and category

NEW PROCESS on-going : merchant monitoring

ipay88.com

Page 23: Fraud and security concern, how it applies in e-Commerce and banking financial

Data Communication via HTTPS (SSL)

SHA1 Digital Signature verification

Pre-determined Source & Target URLs

Merchant re-query

PCI DSS Certified

System Security

Page 24: Fraud and security concern, how it applies in e-Commerce and banking financial

Detail Transaction Log

Page 25: Fraud and security concern, how it applies in e-Commerce and banking financial

• Transaction limit

• Transaction value

• Within certain time frame

• By IP address, email, credit card …etc

• Merchant limit

• Limit set by monthly, or daily

• Maximum amount per transaction

FRAUD CONTROL

Page 26: Fraud and security concern, how it applies in e-Commerce and banking financial

• Frequency Check

• Number of attempt

• Number of card used

• By matrix (using same email, IP Address, Contact, name…..)

• IP Filtering

• Reject or highlight transaction from high-risk country

• Bin bank filtering

• Fraud score from 3rd Party (Fraud Labs)

• Accept only 3D compliant card for high risk category (Exp: Gadget, Virtual Products)

FRAUD CONTROL

Page 27: Fraud and security concern, how it applies in e-Commerce and banking financial

FREQUENCY CHECK

Page 28: Fraud and security concern, how it applies in e-Commerce and banking financial
Page 29: Fraud and security concern, how it applies in e-Commerce and banking financial

IP/COUNTRY FILTER

Page 30: Fraud and security concern, how it applies in e-Commerce and banking financial

• Blacklist Database

• Credit Card

• IP Address

• Email

• Update credit card list from hacker forums

• White list

• Pre-register credit card

• Eg: Apply to high risk merchant – virtual products

FRAUD CONTROL

Page 31: Fraud and security concern, how it applies in e-Commerce and banking financial

BLACK LIST DATABASE

Page 32: Fraud and security concern, how it applies in e-Commerce and banking financial

• Eye-Balling to track potential fraud

• IP location and Card Issued location (system highlight)

• Customer name and Card Issued location

• Website Auditing

• Random check every quarterly (focus on high risk category).

• Automated website audit (3 levels web pages)

• To track possible changes of products / services by merchants (to sell other illegal products)

FRAUD CONTROL

Page 33: Fraud and security concern, how it applies in e-Commerce and banking financial

Foreign issued Credit Card will be highlighted.

FRAUD CONTROL

Page 34: Fraud and security concern, how it applies in e-Commerce and banking financial

• Customizable transaction filters (rules)

• By merchant

• By category

• Any other conditions (base on database parameters)

RULES BASE

FRAUD FILTERING

Page 35: Fraud and security concern, how it applies in e-Commerce and banking financial

CUSTOMIZE RULES

Page 36: Fraud and security concern, how it applies in e-Commerce and banking financial

CUSTOMIZE RULES

Page 37: Fraud and security concern, how it applies in e-Commerce and banking financial

Achievement

&

Portfolio

Page 38: Fraud and security concern, how it applies in e-Commerce and banking financial

Media & Portal :

Telco & Bank:

Groups Buy :

Fashion :

Event :

Ticketing:

Jobs :

Classifieds:

Some of iPay88 Clients (for reference)

Page 39: Fraud and security concern, how it applies in e-Commerce and banking financial

NGO & Charity :

Gift & Flowers:

IT Services :

Games:

Foods & Glocery:

Govertment :

Investment:

Some of iPay88 Clients (for reference)

E-Mall:

Page 40: Fraud and security concern, how it applies in e-Commerce and banking financial

Largest Regional Payment Network Connected to more than 250 banks in Asia & Europe

Philippines :

CHINA :

Thailand :

Australia & NZ :

Malaysia :

Europe :

Saudi Arab :

Indonesia :

Page 41: Fraud and security concern, how it applies in e-Commerce and banking financial

Thank you