What is EMV 3-D Secure?

What is EMV 3-D Secure?

Jean Fang

Product Manager at FIME

Views 474

What is EMV 3-D Secure?

28.05.2019 12:30 pm

Consumers are managing their financial services in more digital and diverse ways than ever before. But as card-not-present (CNP) transactions across e-commerce, m-commerce and remote commerce rise across the globe so does fraud. Adding security without simply creating more points of friction is a real challenge, but one that the EMV® 3-D Secure protocol – EMV 3DS for short – is trying to combat.

The protocols are generating real interest across the industry, but what exactly is EMV 3DS? And what are the key considerations stakeholders in the online payments and financial services world should be making?

EMV 3DS – the background, the basics

Three-Domain Secure (3DS) is a standard messaging protocol used to identify and verify cardholders for CNP transactions. It creates a standardized, harmonized and secure authentication solution for all stakeholders: merchants, issuers, acquirers and schemes.

Initiated by Visa and followed by other payment schemes such as Mastercard. A new version of EMV 3DS has now been developed and is being maintained by the industry body, EMVCo.

We can break the main goals of the latest EMV 3DS specifications into three:

· Increase approval rates

Fundamentally, achieving this boosts the total volume of transactions and increases revenues for retailers, banks and schemes alike.

· Reduce fraud

Merchants or issuing banks have historically been liable for fraudulent chargebacks, but now the responsibility is shifting depending on which version of EMV 3DS is supported during the authentication. EMV 3DS risk-based-authentication helps reduce fraud and brings huge savings, as well as more confident consumers.

· Enhance the user-experience

Improved online authentication solutions – remembering the 3rd, 4th and 7th digit of a password set five years ago, for example – are far from user-friendly. And the stats speak for themselves: eCommerce cart abandonment rate is at nearly 70%, and around 28% of US online shoppers admit to quitting orders due to checkout processes being too long or complicated.

Cutting out complex additional steps for consumers will reduce cart abandonment and result in better sales for retailers (as well as customers happier to return!).

So, how does EMV 3DS work?

By improving communication ‘in the background’ between the issuing bank, the acquirer and the merchant, EMV 3DS streamlines the user experience. At a high level, basic account holder information can now be automatically retrieved and verified without additional consumer input.

EMVCo’s latest specification features even more intelligent risk-based decision-making with advanced algorithms and smarter data sharing that help evaluate if a purchase is ‘normal’ or not. For example, considering user location, amount spent and frequency of transactions. This means additional authentication processes are only requested when really needed.

Say I’m making an m-commerce payment on holiday in Australia from a site I’ve never visited before – I may then be taken through some of the new, simpler additional authentication solutions defined.

These now include one-time passwords sent via SMS, biometric authentication, use of existing authentication on mobile devices and background authentication checks.

Crucially, EMV 3DS is no longer just for payments. The use cases for identification and verification (ID&V) are expanding, so the scope of EMV 3DS has become much broader to include adding cards to a digital wallet, open banking services and financial services apps, etc.

Next steps to EMV 3DS implementation

EMV 3DS is a compelling authentication solution fit for the digital, omnichannel age. But as with any major system upgrade, implementation does not come without its challenges.

Selecting a trusted partner who understands the nuances and complexities of this new payments infrastructure can help take the strain of compliance. Whether defining and certifying a new solution, or upgrading an existing implementation, thorough testing and certification needs to be championed throughout. This is key to minimizing unexpected delays and costs on the path to service launch.

FIME’s long history supporting the industry’s digital transformation and participation in EMVCo enable us to deliver unrivalled expert support for your projects.


Latest blogs

Denis Novikov Qulix Systems

How Can Digital Customer Onboarding in Banks Increase Sales and Build Loyalty?

While banking product portfolios tend to become similar, banks must select between 2 most popular strategies (or combine them): to compete in pricing or to focus on customer experience improvement.  If you prefer the first strategy, you may skip Read more »

Nick Ogden Worldpay

Worldpay founder Nick Ogden tops Payments Power 10 and other highlights from PayExpo 2019

Last week, fintech, banking, retail and gaming professionals attended the UK’s largest payments event, PayExpo 2019. Event attendees visited a series of conference sessions, debates and networking opportunities – and start-ups had the chance to Read more »

Lina Andolf-Orup Fingerprints

Finger on the pulse! The Countdown to 2020 has Begun

With 2020 in sight, now is the perfect time to pause and reflect on the past three months and see how the world of biometrics has evolved since our last update. With everything from high profile announcements to some news you may not have heard, Q3 Read more »

Hardik Shah Currencies Direct

Security vs user experience – Are frictionless payments eroding the barriers between risk and usability?

With the advent of the smartphone, and the rise of interconnected devices we’ve seen the creation of a world where practically everyone has instant online access 24/7. In turn, we’ve seen rising demands from consumers for quick and easy access to Read more »

Arnaud Crouzet FIME

Technical challenge or business enabler? Seizing the opportunity of PCI DSS compliance

As data breaches continue to rise globally, protecting the integrity of customer data (especially in the payments world) is vital. Read more »

Related Blogs

Ganeshan Venkateshwaran Trianz

Winning consumer trust with successful cloud migration in financial services

Trianz enables cloud automation infrastructure for a leading US-based Fintech company through 5 step cloud transformation strategy Consumers today are increasingly concerned about data privacy and security across their applications. Recent scandals Read more »

Jeff Axelrad Amazon Web Services (AWS)

What are the European Banking Authority Guidelines on Outsourcing and what do they mean for financial services organisations?

Financial institutions across the globe use AWS to transform the way they do business. It’s exciting to watch our customers in the financial services industry, such as Allianz, Barclays, Goldman Sachs Monzo, Tandem, and Starling Bank, innovate in Read more »

Patrick Lastennet Interxion

Financial Services – at the Transformation Tipping Point

The financial services industry has slowly but surely joined the digital age. A sector once dominated by behemoths, it has traditionally been measured and patient when implementing new technologies. Lingering concerns about migration cost, security Read more »

Suki Nagra DXC Technology

How to Get the Data Journey Right in Financial Services

Digital transformation in banking is becoming increasingly important as the FS sector looks to evolve the propositions they offer to customers, whilst becoming more agile and responsive to change. One of the key ingredients to success is improving Read more »

Ian Massingham Amazon Web Services

Three Keys to Compliance: Cloud in Financial Services

The global perception of “moving to the cloud” has undergone multiple shifts since its inception. What began as a leap of faith into the unknown has become a core enabler for businesses that want to experiment, innovate and grow. So much so that Read more »

Free Newsletter Sign-up
+44 (0) 208 819 32 53 +44 (0) 173 261 71 47
Download Our Mobile App
Financial It Youtube channel