MANUAL KEY MAINTENANCE
The burden of updating cryptographic keys across hundreds of member banks through on-site, manual processes.
MasterCard Europe is a European banking organization which owns and manages many of the most commonly used payment systems, including Maestro, EC (EuroCheque), Cirrus, CLIP and Eurocard. MasterCard Europe is a subsidiary of Mastercard Corp.
PROBLEM
MasterCard Europe invested significant resources into maintaining keys in their network. Staff travelled between hundreds of member banks and manually updated keys into each Network Security Platform (NSP).
SOLUTION
Cryptomathic developed a key management centre, a centralized solution to flexibly manage a very large number of keys throughout their entire life cycle - without drowning in work.
RESULTS
Centralized key management, reduced manual workload, and faster, more secure cryptographic updates across the entire network.
THE CUSTOMER VIEW
"The KMC is an extremely useful tool for updating and maintaining the security in our networks – this is a good example of the efficiency that allows us to stay in the lead."
Jean Paul Boly, MasterCard Europe Services, Elan Financial Services
MANUAL KEY MAINTENANCE
The burden of updating cryptographic keys across hundreds of member banks through on-site, manual processes.
LIMITED SECURITY & AUDITABILITY
Insufficient central control, weak authentication mechanisms, and limited logging, making secure, non-repudiable communication difficult.
DECENTRALISED OPERATIONS
A fragmented key management system making timely, consistent key updates across all NSPs difficult to achieve.
The Crypto Key Management System (CKMS) provides clients with a centralized solution to flexibly manage a very large number of keys throughout their entire life cycle - without drowning in work.
CKMS has been designed to reduce the enormous increases in work-load and costs associated with traditional key management through its flexible and automated protocols that allow, for example, keys to be securely pushed to any key distribution target as and when required and for key custodians to use asynchronous log-on to projects to add components securely, reducing the need for key ceremonies.
CKMS easily manages both symmetric keys and asymmetric key pairs using CKMS Key Projects — representation of the current state of a set of keys together with their history and general life cycle management.
"With the Key Management Centre we are able to reduce costs while increasing both network security and performance. We chose to outsource the design and development of the KMC to Cryptomathic due to their extensive knowledge and strong market position within e-Security – especially cryptography. It was important to us that all relevant de facto and industry standards were followed to ensure interoperability throughout the network and to guarantee our member banks a cost-efficient and highly secure infrastructure"
Jean Paul Boly, MasterCard Europe Services, Elan Financial Services
Through its partnership with Cryptomathic, MasterCard Europe realized several strategic outcomes:
CENTRALIZED OPERATIONS
Manage all cryptographic keys from a single secured operations venue, eliminating the need for manual on-site updates across hundreds of banks.
MULTIPLE SECURE USER AUTHENTICATIONS
Key management process now operates from a secured venue using multiple secure user-authentication methods, each tied to unique administrative roles and credentials.
ENHANCED EFFICIENCY
Operators can update keys on individual NSPs and deploy new shared network keys across all systems with just a single click.
Today MasterCard Europe benefits from a fully automated and centralized key management system developed by Cryptomathic. Every member bank has a number of hardware security modules that are fully managed and handled centrally from Brussels.
Strong authentication and digitally signed documents provide the required flexibility while preserving the highest level of security for operating the Network Security Platforms.