Skip to the main content.

KEY MANAGEMENT CENTRE TO MASTERCARD EUROPE

 

 
DOWNLOAD CASE STUDY

WHO IS MASTERCARD?

 

MasterCard Europe is a European banking organization which owns and manages many of the most commonly used payment systems, including Maestro, EC (EuroCheque), Cirrus, CLIP and Eurocard. MasterCard Europe is a subsidiary of Mastercard Corp.

noun-bank-3314120-F08100

PROBLEM

MasterCard Europe invested significant resources into maintaining keys in their network. Staff travelled between hundreds of member banks and manually updated keys into each Network Security Platform (NSP). 

4-Dec-11-2024-09-57-15-1955-AM

SOLUTION

Cryptomathic developed a key management centre, a centralized solution to flexibly manage a very large number of keys throughout their entire life cycle - without drowning in work.

 

1-Dec-11-2024-09-57-15-1633-AM

RESULTS

Centralized key management, reduced manual workload, and faster, more secure cryptographic updates across the entire network.

 

3-Dec-11-2024-09-57-15-1753-AM

THE CUSTOMER VIEW

"The KMC is an extremely useful tool for updating and maintaining the security in our networks – this is a good example of the efficiency that allows us to stay in the lead."

Jean Paul Boly, MasterCard Europe Services, Elan Financial Services

 
2-Dec-11-2024-09-57-15-1681-AM

CHALLENGES

Data entry

MANUAL KEY MAINTENANCE

The burden of updating cryptographic keys across hundreds of member banks through on-site, manual processes.

insecure

LIMITED SECURITY & AUDITABILITY

Insufficient central control, weak authentication mechanisms, and limited logging, making secure, non-repudiable communication difficult.

streamlined inventory-2

DECENTRALISED OPERATIONS

A fragmented key management system making timely, consistent key updates across all NSPs difficult to achieve.

WHY CRYPTOMATHIC?

The Crypto Key Management System (CKMS) provides clients with a centralized solution to flexibly manage a very large number of keys throughout their entire life cycle - without drowning in work.

CKMS has been designed to reduce the enormous increases in work-load and costs associated with traditional key management through its flexible and automated protocols that allow, for example, keys to be securely pushed to any key distribution target as and when required and for key custodians to use asynchronous log-on to projects to add components securely, reducing the need for key ceremonies.

CKMS easily manages both symmetric keys and asymmetric key pairs using CKMS Key Projects — representation of the current state of a set of keys together with their history and general life cycle management. 

"With the Key Management Centre we are able to reduce costs while increasing both network security and performance. We chose to outsource the design and development of the KMC to Cryptomathic due to their extensive knowledge and strong market position within e-Security – especially cryptography. It was important to us that all relevant de facto and industry standards were followed to ensure interoperability throughout the network and to guarantee our member banks a cost-efficient and highly secure infrastructure"

Jean Paul Boly, MasterCard Europe Services, Elan Financial Services

cryptomathic_logo_orange-08 (3)

RESULTS

Through its partnership with Cryptomathic, MasterCard Europe realized several strategic outcomes:

 
OP EF-1

CENTRALIZED OPERATIONS

Manage all cryptographic keys from a single secured operations venue, eliminating the need for manual on-site updates across hundreds of banks.

noun-secure-authentication-7769266-F08100

MULTIPLE SECURE USER AUTHENTICATIONS

Key management process now operates from a secured venue using multiple secure user-authentication methods, each tied to unique administrative roles and credentials.

efficiency-1

ENHANCED EFFICIENCY

Operators can update keys on individual NSPs and deploy new shared network keys across all systems with just a single click.

CONCLUSION

Today MasterCard Europe benefits from a fully automated and centralized key management system developed by Cryptomathic. Every member bank has a number of hardware security modules that are fully managed and handled centrally from Brussels.

Strong authentication and digitally signed documents provide the required flexibility while preserving the highest level of security for operating the Network Security Platforms.