Secure-IT™

Two Factor Authentication

Protecting over 300 organisations in the UK

Secure access to information you may need when:

  • you are on the road
  • in your hotel room
  • in an internet café
  • at home
  • at a client’s premises
  • in your office
  • having lunch in the park !

Use what you have available:

  • Personal computer
  • Laptop
  • Mobile phone
  • Personal Data Assistant (PDA)
  • Broadband connection
  • 3G or GPRS
  • Dial-up
  • Virtually any internet access device

But do it securely !!

Secure-IT™ two factor authentication is used by such diverse organisations as Banks, Building Societies, Independent Financial Advisors, Local Authorities, NHS, Central Government Organisations,  Oil & Gas Exploration and many others.
To protect your organisation, employees, customers and suppliers, you need Secure-IT™

Secure-IT™
Securely enable your employees, customers and suppliers

Secure-IT™

The explosive growth of employees working remotely, the need to connect customers and suppliers to corporate systems has expanded the need for secure authenticated access whether across the Internet, via dial-up or using wireless connections.

The sophisticated tools and technology readily available to hackers makes the “security” of username and password logon now obsolete and insecure.

Two factor authentication is now the requirement of the day. Two factor authentication is based on “something you know and something you have in your possession”.

Something you have can be a hardware token (the most common device), smart cards, biometrics or PKI certificates, whilst something you know is your username.

Standards Based Solution

The Secure-IT™ authentication application can be loaded onto any Microsoft Windows based server, with its database installing as a standard application on a Microsoft SQL server.

For resilience,  the authentication servers can be located on more than one physical server, which for an organisation with multiple sites, allows the deployment of the servers at the point of entry to the network. The database may also be replicated using standard Microsoft techniques.

Management

The Secure-IT Manager can be installed on any Microsoft based personal computer to perform the administration of user records and privileges relating to the user.

For example the user definition can state:

  • time of access – restricting the user to certain times of the day if required
  • type of user access – Internet, leased line, dial-back, roving dial-back
  • method of access – hardware token, software token, smart card, biometrics

In addition to this users can be allocated to a user group or cost centre and user or group billing tariffs set up. In    this way a real-time summary of user or group activity and billing reports can be generated if required. You can also display real-time audit trail and event logs.

Strong Authentication Tokens

Secure-IT™ supports hardware tokens, software tokens, smartcards and biometric fingerprint options.

These may be mixed and matched as required with most organisations choosing hardware tokens.

Hardware Tokens

It is important to note, that unlike some other token based systems, it is not mandatory to re-purchase the tokens every 3 years. The BMS tokens have a life expectancy of 5-7 years.

The BMS GO3 token is the perfect balance between an elegant design, an unrivalled degree of portability and affordability in an easy to use security device. If required, the token can be reprogrammed for distribution to      another user in cases where an employee leaves the organisation.

Also available is the BMS 260 token which is small and lightweight and can be PIN code protected. In this case the PIN code is entered into the token which then calculates a dynamic password. This onetime password enables authorised access into the network.

Software Token

SecureDial™ is a software client which installs on a standard Microsoft client device running Windows 9x, NT, 2000, and XP. It provides authentication of the user and encrypts the connection between the user and corporate systems.

Smart Cards

Smartkey, enables the use of any PC/SC compliant smart card with the SecureDial™ software. Access to the card can be controlled through a PIN number or biometric fingerprint. The smart card can contain user identification and passwords for network logon, applications as well as digital certificates.

Biometric Fingerprint

There are no PIN numbers or passwords to remember and you can choose whether to store the fingerprint template   encrypted on a hard disk or on the SmartKey smartcard.

Use with your VPN

Secure-IT can be used with your SSL and /or IPsec VPN to add two factor authentication.


BMS can provide the full solution to your requirements. In addition to the Secure-IT ™ strong authentication, BMS can also provide the network infrastructure, the server hardware, installation, configuration and can also arrange for penetration testing of the total solution to CESG standards.