|
 |
  |
|
|
Co-organizers
.gif) |
CROATIAN CHAMBER OF ECONOMY |
.gif)
|
MINISTRY OF SCIENCE, EDUCATION AND SPORTS |
|
 |
|
 |
|

| |
|
Sunday, 26. September 2010.
|
|
Day zero
|
| |
Other
|
|
16:00 - 18:00
|
Exhibition Organisation
Exhibition area
|
|
18:00 - 20:00
|
Participant registration
Conference reception
|
| |
|
Monday, 27. September 2010.
|
|
New Cards Technologies&Trends
|
| |
Lecture / Presentation
|
|
09:00 - 09:05
|
Opening speech
Croatian Chamber of Economy, Mirjana Kovačić, Banking and Finance Department, Managing Director
Mirjana Kovačić, B.Sc. (Econ.), is currently Managing Director of the Banking and Finance Department of the Croatian Chamber of Economy. The Department covers the field of financial intermediation, its principal purpose being to represent and promote the interests of the members (banks, building societies, insurance companies, pension fund management companies, pension insurance companies, investment fund management companies, brokerage companies, leasing companies and other financial institutions).
She is representative of the CCE on the National Committee for Payment System and one of ICC Croatia’s representatives on the Commission for Banking Technique and Practice of the International Chamber of Commerce.
Mrs. Kovačić graduated from the Department of Foreign Trade in Zagreb. She began her professional career in foreign trade and later she worked in government administration. At the Ministry of Finance, she held the positions of Senior Advisor at the Department for Foreign Exchange System (1991-1995), Head of Division for Foreign Exchange System of the Department for Financial System (1995-2001), and from 2001 her responsibilities expanded to cover also the insurance system. As Head of Division, she conducted complex professional activities, including the adoption of laws, secondary legislation and other regulations that govern the financial sector.
Conference hall
|
|
09:05 - 09:20
|
Card Business in Croatia 2000-2010
In cooperation with banks and credit card companies, the Banking and Finance Department of the Croatian Chamber of Economy has been collecting and processing data on the number of cards, ATMs and EFT POS terminals for eleven years now.
By using tables and charts, the presentation will portray individual segments (cards, ATMs, EFT POS terminals) and provide insight into research results in the period between the year 2000 and the end of the first half of 2010. Special emphasis will be placed on trends.
Croatian Chamber of Economy, Vanja Dominović
Vanja Dominović was born in Šibenik, in 1970. She graduated from the Faculty of Economics in Zagreb, Foreign Trade Section. She won her master’s degree in business administration in Zagreb (MBA) in 1997 (master’s thesis: Investment Funds and Their Possible Role in the Croatian Financial Market).
She started to work as professional assistant at the Banking and Finance Department of the Croatian Chamber of Economy in January 1994, and then as counsellor. Since April 2003, she has been Assistant to Managing Director. She is business secretary of the Banks Association and Investment Fund Management Companies Association at the Croatian Chamber of Economy and one of the representatives of ICC Croatia on the Commission for Banking Technique and Practice of the International Chamber of Commerce in Paris. Her main field of activity is the financial sector, especially banking and payment cards transactions.
Conference hall
|
|
09:20 - 09:50
|
Austria Card - new solutions for the Region
Austria Card – an introduction
Products and Services
Operational Range
Contactless products
Our Clients
Card Features
New Technologies
Austria Card, Robert Kajić
HIGHLIGHTS OF QUALIFICATIONS
- 15 years of management experience
- 11 years experience with card business
- Complete working experience from bottom to the top of the company
- Negotiation skills
- Number oriented and result covered experience
EXPERIENCE
2002- Austria Card
- International Business Development (Responsible for seven countries within East and Central Europe)
1998-2002 Company involved in card business
- Chief executive officer
- Commercial and Financial manager
- Personally started project in production of smart cards, chip cards, ID cards and scratch cards.
- Involved in negotiation with Deutche telekom, Bosnian Telecom , Slovenian telecom ,Rumanian telecom, ,Turkish telecom(indirectly) Nill telecom (Egypt),British telecom, Portugal telecom ,Macedonian telecom, Swiss telecom (indirectly)….
1997-1997 Brokerage company WSM
- Human resource director
- Sales director
- Trading with options mainly and with stocks.
- From set up of business to the daily running operations
1997-1998 Director of foreign trade representation
- Financial director
- Sales director
- Human resource director
- Complete function of the rep.office in Zagreb
1993-1996 Agrokor d.d.
- Logistic department officer
- Trader for soft commodities
- With Coopers and Lybrand take over process of “Unikonzum” d.d.
- Responsible completely for the trading from purchase up to the logistics department and sales
Conference hall
|
|
09:50 - 10:20
|
Developments in the card markets in SE Europe
Printec Group, Panagiotis Halkias
Panos Halkias has been working in the card industry for 13 years, mainly in the region of SE Europe. He has worked in various commercial and business development roles as well as in product marketing and management, having been engaged in a wide range of projects around electronic payments and transaction automation. He has led the expansion of Printec Group in 15 countries in SE Europe, which established Printec as one of the major suppliers of turn-key solutions for Transaction Automation in the region. Today he is an executive advisor to the CEO of Printec Group, in charge of strategic development for Printec.
Conference hall
|
|
10:20 - 10:40
|
Coffee break
around Congress hall
|
|
10:40 - 11:10
|
Diners – the plastics that thinks for you
„Diners – the plastic that thinks for you“ – Overview of 40 years of development and innovation in card business in Croatia through the success story of Erste Card Club and the Diners Club card, and 60 years of Diners Club International as a global brand.
Erste Card Club, Marija Radonić
Marija Radonić has dedicated her entire career to credit card business.
Since 1986 she has gained diverse experience working in different departments, from accounting, new products development and membership to executive functions. From 1995-1997 she served as Head of the New Products Department, and from 1997-1999 as Head of the Membership and Development Division. The first executive function she performed was that of Executive Director from 1999–2003. In 2003 she became Deputy President of the Management Board and has continued in that post to the present.
Mrs. Radonić has attended various international conferences, seminars and workshops, thus acquiring knowledge of various areas of credit card business.
Conference hall
|
|
11:10 - 11:30
|
UHF RIFID contactless parking Cards
Technology
Second generation contactless chip with UHF RFID technology, is most commonly used for a method of passive identification, i.e. communication between a chip with an antenna and a reader.
The advantage of such a technology is a high frequency communication that makes it possible to communicate on a longer distances by using a small antenna and electric power. Precisely due to the low currency in antenna and a chip it is not necessary to have a generator that produces electrical power. Namely, power produced by induction of radio waves attracted by the antenna is sufficient. At the moment, there is no unique frequency for UHF RRID chips. Frequency range of such transponders is between 868 MHz and 928 MHz. Recently 2 frequency areas have become standard: 865 MHz - 868 Mhz for Europe and 902 MHz - 928 MHz for America. ISO/IEC 18000 "Information technology RFID for item management" is a set of standards that regulate structure and application of UHF RFID technology, more precisely Part 6, "Parameters for air interface communications at 860 MHz to 960 MHz"
Use
Increasing number of vehicles on city streets presents a parking problem. UHF RFID is a suitable platform for contactless pre-paid parking tickets that simplify record keeping and payment of parking tickets within open and closed parking systems. Due to its simplicity of implementation UHF RFID contactless parking cards are planned as an upgrade of the parking billing system. Implementation of contactless UHF RFID cards within a parking system integrated successful business solutions developed within "Smart warehouse project" where incoming, stored and dispatched goods are tracked by contactless tags controlled by a central information system. Vehicles are tagged by contactless parking ticket that is implemented inside the windshield and they are read by a contactless hand held readers or stand alone swing gates installed at the entrances and exits of city garages.
AKD recognized a potential of 2nd generation UHF RFID technology and developed a test prototype parking ticket in ID 1 standard form for Zagrebparking, a company with whom AKD has a long and successful business collaboration.
A detailed application of UHF RFID technology in parking systems is described in the presentation UHF RFID contactless parking tickets.
AKD, Krešimir Pišćak
In Agencija za komerciojalnu djelatnost I've been working since 2002 in Research and Development department, in the beginning as a Project Manager, and last three years as an Associate expert for research and defelopment of security printing technologies. During this years I've been working on many projects of national interest and projects related to application of new security technologies.
Conference hall
|
|
11:30 - 12:00
|
NFC payment solutions: How to bridge the gap in lack of NFC enabled mobile phones
Main obstacle in deployment NFC payment services and solutions is lack of NFC enabled mobile phones. Mobile phone manufactures didn't recognize NFC as competitive advantage, so in mobile phone market there is still smal percentage of NFC enabled mobile phones. In order to bridge this gap, there are several solutions which can upgrade mobile phone to NFC enabled. Such solutions could initiate banks and mobile operators for developing new payment and non payment services based on NFC technology.
NFC payment solutions can mobilize millions EUR of small amount electronic transactions which has been blocked in cash payments, primary in fare collection systems, tickets, mobile payment etc. Additionally NFC can integrate non-payment functionalities together with payment applications and to add values to existing products and services, acquiring new market segments and clients.
Etranet Grupa, Dubravko Kovačić
Dubravko Kovačić was born 29.5.1974 in Zagreb. After finishing Faculty of Electrical Engineering and Computing in Zagreb in 1998, he reached the Bachelor degree and he started working at the Faculty at the Department of Electronic Systems and Information Processing. In 2001 he reached Master degree in electronics at the same Faculty. In a same year he started working in MBU as a Project Manager. He was managing numerous EMV migration projects and EMV certification projects. In a mean time, in 2008 he reached Master degree in Economics by finishing MBA study at the Faculty of Economy in Zagreb. Since March 2008 he is working in Etranet Group as a Product Manager in electronic card payment systems and solutions.
Conference hall
|
|
12:00 - 12:20
|
Coffee break
around Congress hall
|
|
12:20 - 12:50
|
E-Banking & E-Commerce - Best-practices from leading banks’ online authentication experiences
Trust is the basic currency of eBanking and eCommerce. Without it, people would not transact on the internet. This session will present how banks in Europe have deployed trust-building solutions to secure both online banking and remote transactions, many of them leveraging existing EMV investments. We will also take a look at what kinds of fraud new online services bring and what banks should focus on when choosing an authentication solution.
Gemalto (Todos), Andreas Eliasson
Mr. Andreas Eliasson, Security Architect Manager EMEA of Gemalto, holds a Master of Science degree in Software Engineering from Chalmers University of Technology in Göteborg, Sweden. Chalmers is one of the world’s most well-renowned universities when it comes to Computer Science and Mr. Eliasson’s pinnacle expertise is found within the IT Security area.
Mr. Eliasson has extensive experience of developing and designing IT-security solutions. His broad competence has lead to a proven track record of successful implementations, as well as high-level conceptual system architecture and project management. He has worked closely and on-site with several leading European banks on their eBanking security projects and also holds hands-on experience from pioneering eCommerce security projects.
Conference hall
|
|
12:50 - 13:10
|
The New technologies from Visa
Expansion of Visa card acceptance network and development of acquiring is currently among key priorities of Visa Inc. in CEMEA region. The presentation will describe how Visa will help its Client Banks to develop their acquiring business in traditional card-present channels (POS and ATM) as well as new, emerging channels. The approach combines the sharing of acquiring best practices, help in improvement of acceptance service quality and benchmarking against peers; marketing and promotional efforts; activisation of card usage. Significant new business opportunities in domestic and cross-boarder transfers can be addressed with Visa Money Transfer via ATM, Internet and Mobile channels. Low value cash payments at merchants and in transit can be replaced by fast and convenient contactless Visa payWave technology, combined with Small Ticket rules. Large volumes of mobile top-up payments can be channelled to cards with remote mobile payments. eCommerce quickly converts into a fast-growing "business as usual" and becomes more secure due to "Verified by Visa" and mobile authentication mechanisms.
Visa International, Graham Bond
Graham Bond is a 20+ year veteran of Visa, having joined the company in 1988 as a project manager for VAP implementation and support. In 1996 he became a technical project manager for the development and implementation of the then new e-Commerce solutions based upon the SET standard.
Two years later Graham joined Visa CEMEA where he was responsible for the development and implementation of e-Commerce solutions throughout the region. During this period, he also provided technical support in the validation of 3D-Secure, which is the technology behind Verified By Visa.
In 2001 Graham took on the newly created role of Technical Architect for Visa CEMEA’s Emerging Payments team. As part of this role, Graham was responsible for the functional design of Visa CEMEA’s first mobile phone top-up solution.
In 2003, Graham moved to the Chip Payment Solutions team, where he was responsible for chip migration in the Balkans and South-East Europe, and providing Visa CEMEA’s input into the development of Visa’s Contactless Payment Specification.
Since 2007 Graham’s focus has been on supporting clients in the implementation of chip payment solutions, and resolving interoperability issues, where he is the primary technical lead.
Prior to joining Visa, Graham spent five years in the vendor community working in application development for bill payment processing, ATMs and telecommunications.
Conference hall
|
|
13:10 - 13:40
|
Colis e-Ticketing: RTA Dubai case study
Collis acts as the independent test authority for RTA (Roads & Transport Authority) in Dubai. This presentation will give an overview of the Dubai transport infrastructure, the implementation of an e-ticketing system and describes Collis’ role in ensuring the system across Dubai was delivered on time and according to specification.
Collis, Steve Hudson
Over 20 years experience within the card industry working with NBS Technologies Inc and now Collis. Having joined NBS in 1987 as a field service engineer worked through the technical division to the position of Technical support manager. In 1994 took up the position of European Sales Manager and, continued to work in a sales role within NBS, the, primary focus being international sales. Having established a wide network of loyal dealers across the EMEA region, enjoyed tremendous success within the region developing relationships and establishing new opportunities for overseas companies wishing to offer card based products.
In September 2008, joined Collis as Business Development Manager, primarily focused on the UK, Ireland and Balkan markets.
Collis recognised that, with respect to cultural and market knowledge issues, it is important that Collis have a UK national managing the UK market. In addition Collis identified the long experience (over 20 years) that Steve Hudson has within the card industry and working with UK clients.
Conference hall
|
|
13:40 - 14:00
|
G&D`s innovative approach for the trends in the payment market
Introduction of G&D`s innovative approach
Innovative EMV cards (Convego Factors)
Contactless solutions
Mobile Payment - NFC
Instant Issuance
Secure Financial Services
Discussion
Optimal sistemi, Damir Gojmerac
Damir Gojmerac has over 20 years experience in developing services and products for the financial industry. He began his career as a developer of business applications, and for one year, he worked as assistant to professor at University of Zagreb.
In 1986. he joined to Financial Agency (FINA), the state owned company. As the head of IT support, he was involved in a series of significant projects. He introduced the first ID card and the first on-line information service for FINA customers.
After Croatia’s independence, he managed application support for 11 branches of FINA, while in same period in those branches was introduced a model of the exchange of payment transactions without sending a documents (known as model TK-1).
Since 1995. he was head of project of the National Clearing System (NCS). Afterwards he becomes a director of NCS. During the project of payment system reform in Croatia, he was the team leader for the subproject of an interactive database queries in the payment system.
Acting as a FINA Board member since 2001., he was responsible for business development so he participated in the reorganization and transformation from FINA as monopolistic state owned company in the market-oriented and competitive company. During this period, he was the sponsor of the PKI project (FINA RDC) and project director of FINA’s segment of the project of second pillow of pension reform (REGOS) initiated by World Bank.
He was the main coordinator of the project of establishing the Croatian Credit Bureau (HROK).
In 2005. he leaved FINA as he accepted position of Director of IT in the Croatian Bank for Reconstruction and Development (HBOR).
From September 2010. he joined the company Optimal Systems d.o.o., where he is in charge of information security projects and business development.
Conference hall
|
| |
Lunch
|
|
14:00 - 15:00
|
Lunch
Restaurant "Adriatic"
|
| |
Round-table discussion
|
|
15:00 - 16:30
|
New regulations, Law for payments and outsourcing problem – what we can expect and how to solve this
Platni promet
- mehanizmi potpisivanja XML poruka i implementacija e-potpisa u poruke
- implementacija OIB-a i prisilna naplata
- mogući kanali razmjene podataka i usuglašenost sa vremenskim kriterijima za razmjenu poruka
- rokovi implementacije rješenja, mogućnosti IT-a da podrži tražene rokove te terminski planovi
Eksternalizacija
- zajednička strategija kod pristupa izrade eksternalizacije za zajedničke dobavljače
- strategije reinsourcinga i zadovoljavajući standardi
- proces usuglašavanja ugovora sa dobavljačima sa odlukom o eksternalizaciji
Croatian Chamber of Economy, Comity for standards & Informatics of CCE banking department – moderator:Marko Čičin-Šain (president of comity and BKS bank)
hall Camelia II
|
| |
Coffee break
|
|
16:30 - 16:45
|
Coffee break
around Congress hall
|
| |
Seminar
|
|
16:45 - 19:45
|
Dynamic Currency Conversion
In a competitive industry, financial institutions are constantly looking for ways to acquire new customers as well as to retain and extend their existing customer base. Dynamic Currency Conversion (DCC) allows you to increase your portfolio through a new revenue stream derived from foreign exchange profits.
Dynamic Currency Conversion made simple (DCC) instantly converts the sale price from the
merchant’s home currency to the card holder’s home currency at the exchange rate at the time of purchase. The customer is given the choice of paying in their home currency or the merchant’s local currency. This simplifies the purchase because the customer knows immediately how much the item will cost them in a familiar currency. The amount they sign for is the exact amount that will appear on their credit card statement.
Together with acquiring bank, merchants using this service earn revenue from the foreign exchange conversions together usually earned by VISA/MC and issuing bank. This service is perfect for businesses with a high number of international customers that pay by credit card. These are generally merchants operating in the travel market.
Etranet group, Dubravko Kovačić, Pure commerce, Jan Doskar
Dubravko Kovačić was born 29.5.1974 in Zagreb. After finishing Faculty of Electrical Engineering and Computing in Zagreb in 1998, he reached the Bachelor degree and he started working at the Faculty at the Department of Electronic Systems and Information Processing. In 2001 he reached Master degree in electronics at the same Faculty. In a same year he started working in MBU as a Project Manager. He was managing numerous EMV migration projects and EMV certification projects. In a mean time, in 2008 he reached Master degree in Economics by finishing MBA study at the Faculty of Economy in Zagreb. Since March 2008 he is working in Etranet Group as a Product Manager in electronic card payment systems and solutions.
hall Camelia I
|
| |
Coffee break
|
|
19:45 - 20:00
|
Coffee break
around Congress hall
|
| |
Entertainment
|
|
20:00 - 23:00
|
Cocktail
Sponsor Asseco SEE
around Congress hall
|
| |
|
Tuesday, 28. September 2010.
|
|
Standards&Directives
|
| |
Lecture / Presentation
|
|
09:00 - 09:20
|
Technology and Security: Constraints and Opportunities for Card Payments
Combating fraud has been a key driver behind the EMV migration that is largely complete in most, but still not all, European markets and in the more recent adaptation of PCI standards including PCI PTS for payment terminals.
The presentation will focus on how new security requirements are changing the way payment terminals are designed and built, highlighting some of the challenges and opportunities behind these developments. It will also look at how new technologies are being implemented to make payments not only safer, but also faster while reducing transaction costs.
Atos Worldline-Banksys William White
Mr. White is a native of San Francisco, California. He has lived and worked in Belgium since 1985, working in the electronic article surveillance industry before joining Banksys in 1999 to take responsibility for a new international group. He is a graduate of the University of California at Berkeley, is married and has three children.
Conference hall
|
|
09:20 - 09:40
|
New Business Opportunities
E-commerce has proven to be a very resilient business and has continued to develop quickly even during the peak of the economic downturn. However, in order to make the most of this exciting business the customers have to be confident that using the card on the web is as secure as using their card in an ATM or POS. The presentation will explore the technologies that help issuers and acquirers to accomplish this.
MasterCard, Gabriel Ghita
Gabriel Ghita – Business Development Manager CEE
MasterCard Europe
Experienced in payment systems and card processing services, Gabriel has joined MasterCard Europe 3 years ago as Business Development Manager in the CEE region. Being responsible for new and innovative products and services, Gabriel covers domains like contactless payments, prepaid products, money transfer, mobile convergence etc. Working for MasterCard Europe in Bucharest office Gabriel’s area of coverage include countries like Romania, Bulgaria and Serbia, while the cooperation with MasterCard Europe’s Budapest office extend the area of responsibilities in Croatia, Hungary and Slovenia.
Conference hall
|
|
09:40 - 10:00
|
Advanced authentication and mobile banking solutions
Presentation will bring overview of solutions of company Asseco SEE – MASS BU (Mobile and Security Solutions Business Unit), which is, thanks to rich experience and numerous references, recognized as a leader in this segment of solutions for financial industry. Special emphasis will be on ASEBA SxS – single point of strong authentication solution which offers support for different channels and methods (including hardware tokens of different suppliers, EMV CAP/DPA authentication, ASEBA mToken authentication and SMS based authentication), and on mobile banking solution ASEBA JiMBa (works successfully on more that 1000 mobile phones: J2ME mobile phones, Blackberry, Windows Mobile, Android, iPhone and iPad).
Asseco SEE, Igor Gržalja
Igor Gržalja is Business Development Manager with over than 7 years experience in different IT fields from software development, architecture design to sales and business development. Currently he is employed in Asseco SEE as responsible for business development of new cross and vertical opportunities and sales in the Central and Easter Europe region, focusing on authentication, contact centre and mobile banking solutions.
Before joining Asseco, he was Solution architect and Project manager within Hewlett-Packard Croatia where he extended his professional skills in ITSM, Project Management and Solution architecture fields.
He has strong knowledge of Software development and IT security solutions from first hand experience in software development, software design and consultancy areas on various projects for banking, public sector and manufacturing.
He holds Bachelor degree from Zagreb University as Electrical engineer and ITIL Manager Certificate.
Conference hall
|
|
10:00 - 10:30
|
How to utilize existing ATM and POS terminals network up to its maximum?
Based on longtime experience in the area of card business, and installed and maintained base of 100.000 POS terminals and 4.000 ATMs, Asseco SEE will present card business related solutions oriented to maximal efficiency of existing ATM and POS infrastructure, and suggest new functionalities which can increase profit. In collaboration with companies Wincor Nixdorf in the area of ATMs and Hypercom in the area of POS terminals, Asseco SEE offers solutions which, besides standard functionalities of ATM and POS devices, enable currency exchange transaction, Top Up, Bill Payment, Loyalty, Company Cards, Lottery, Ticketing... Through implementation of these services, banks or other institutions which own ATMs and POS terminals networks can increase their profits and offer additional services to end users. Success story which will be presented will be focused on the first installation of “ATM Exchange office“ and project called “Super ATM“
Asseco SEE, Ivan Bušić
Ivan Bušić, born in Zagreb on July 22nd, 1979, graduated at Faculty of economics, direction finances. He is employed in BDS since 2004, currently at the position of Sales manager for self-service devices.
Conference hall
|
|
10:30 - 10:50
|
Coffee break
around Congress hall
|
|
10:50 - 11:20
|
Fraud Real-Time Alerting Enterprise System
Card payment related fraudulent activities are more dynamic and widespread than ever and require faster and more flexible approaches to effectively reduce the fraud levels. Modern fraud prevention solutions shouldn't just provide methods, algorithms and high performance, but one of the critical components is to integrate the knowledge and experience of people that performs such tasks into the fraud prevention workflow. FRAMES and its interfaces is oriented to allow simple yet effective way of including fraud prevention expertise into the common tasks with technological basis that can be expanded to other areas like Internet banking.
ZMS Info, Marko Špehar
For more than 10 years has been working on development and project management in different areas of information technology in the ZMS Info. During these years he gained considerable experience developing payment cards industry systems.
Conference hall
|
|
11:20 - 11:40
|
C-TAP International in Perspective
- Background on SEPA and the standardisation initiative from the European Payments Council for cards
- The EMV migration in Belgium (BE), Netherlands (NL) and Luxembourg (LU) lead to the development of a the development and adoption of terminal specifications based on the Banksys "C-TAP" developments
- C-TAP was put in practice on a country-by-country basis and now serves the purpose of EMV acquiring, domestic scheme acquiring in NL, private cards, luncheon e-vouchers, global brand and specific magstripe acquiring, contacless, etc) - almost to 100%
- C-TAP covers a wide range of transactions in both an on-line and off-line environment.
- C-TAP is available on most terminals and most acquiring host systems. If not a convertor can translate C-TAP to other standards
- C-TAP users (acquirers, acquiring processors) decided to consolidate the management of these specifications
- A new entity is in progress of being created - called Acquiris built on the EPCI's C-TAP and the Dutch C-TAP Authority activities
- The principal geographical scope is an extended SEPA
- The open governance model will manage the evolution of these specification
- In addition, certification services will be provided as well as manegement services for common data
- C-TAP is based on the "Tag, Lenght, Value" or TLV data representation. The principles of TLV are similar to these of XML. An alignment with the EPAS represenation will be considered.
EPCI, Francis Ceuterick
Professional experience
Since April 1999 – Managing Director of the Electronic Payment Certification Institute, in short EPCI. EPCI is the certification institute for payment terminals providing services to debit card, credit card and e-purse acquirers operating in Belgium. In parallel, consulting assignments in the domains of payment terminal standardisation such as the role of secretary to the European Payment Council’s Cards Working Group in 2007, Public Key Infrastructures and Electronic Bill Presentment.
From 1996 to 1999 – Managing Consultant – Finance with CAP GEMINI Belgium with assignments for mobile phone operators (billing and customer care programme management), cash management systems and treasury services for major European banks, S.W.I.F.T.-BOLERO and feasibility studies for card and credit service associations.
From 1996 to 1999 - Product Quality Manager with S.W.I.F.T. for SWIFT terminals and participating to non-certification related corporate projects.
From 1982 to 1992 - BANKSYS (previously BANCONTACT) in various engineering and marketing functions, with a focus on the international business development throughout Europe and product management.
Before that working with a communication equipment provider TELINDUS and researcher at the KU LEUVEN (University of Leuven) in Biophysics.
Conference hall
|
|
11:40 - 12:10
|
Vestigo Card Management System for Diners Italy – Integration project (DINIT)
Founded in 2008 by Diners Club Italia with the mission to create a center of excellence in card processing for Diners Club franchises, Dinit was responsible for implementing a major migration project in the region, when Diners Club Italia changed hands in 2008.
“Challenge ahead of Dinit was to choose solutions that can be implemented within the deadlines, within the budget and which will provide strong base for the future growth.” explains Primož Patru presenter, CEO of Dinit and Operations Director in Diners Club Italia.
Presentation will describe implementation of Vestigo CMS at DINIT Card Services.
Vestigo, Maja Lisjak, Dinit, Primož Patru
Maja Lisjak has graduated Faculty of Science (physics).
She has fourteen years of experience in building Card Management software for the banks and financial institutions.
In 1996 she started to work in Zagrebačka bank where she worked for ten years starting in IT Division as Analyst and Designer working through to Head of project team in IT Division, specializing development of Card Management Systems. During that period she was team member or coordinator on several projects (Issuing of bank’s ATM Card Cirrus/Maestro on a massive scale, Lunching EFT POS , VISA issuing and acquiring, coordinator of Y2K in area of Card Management, Private Brand Children's Card, Development of 3rd Party processing, takeover of the card management operations of Mostarska banka, Universal banka Sarajevo, Pomorska Banka, Croatia Bank etc).
In 2001 she took a position of Project Manager in new established Change Management Division being a member of initial team establishing project organisation. During that period was leading Bank's strategic project of development and implementation of New Zaba's Card Management system called Zaba-Card where Vestigo was main vendor. Project was successfully implemented in few phases.
She joined Vestigo in 2005., and since then she's mostly managing Card Management projects for Vestigo
She also lead few internal projects like ISO 9001:2000 certification, establishing standards and procedures for planning and project tracking within Vestigo, etc.
During project of Development and Implementation of New Card Management System into Diners Italy she was Project manager for Vestigo side.
Primož Patru, 35 years old, is Operations director of Diners Club Italia and CEO of Dinit. He has a strong card sector experience working on different functional areas from Processing, to Issuing and Acquiring side for most on the international card schemes including MasterCard, Visa, Dinersclub and also Slovenian domestic payment scheme Activa and Private labeled scheme Mercator Pika. He graduated in Banking and Finance at the University of Maribor, and is currently working on his master thesis on the topic of Innovation Management at the same University.
Proud father of 3 years old twin girls and in free time occasional sports athlete.
Conference hall
|
|
12:10 - 12:30
|
Smartcard multifunctional solutions
Global market marks ever growing use of different systems using broad spectra of smartcards or other cards which technologies are not fully compatible. Many users of such systems would prefer solution which would provide all of the technologies embedded into a single smartcard for simplicity and ease of use.
This presentation encompasses advanced technologies, production capabilities and personalization of different smartcard solutions while addressing system specific interfaces, usage scenarios and loading of different applets and data to the cards.
AKD, Gordana Mrković, Romana Cetineo-Schiesl
Gordana Mrković
Current activities and responsibilities: Active follow up of Electronical Documents and Card Payment Industry development trends on World level; Researching and Quality management;
Education: B.Sc. and M.Sc. Degree at Faculty of Electrical Engineering and Computing University of Zagreb, Croatia
Working Experience
2010 - Director of Development Sector, AKD, Croatia
2008 – 2010 Head of Research & Quality Improvement Department, MBU, Croatia
2002 – 2008 Head of Development Division, MBU, Croatia
1995 – 2002 Product & Service Architect, Development Division, MBU, Croatia
1987 – 1995 Research & Professor Assistant, Department of Telecommunication, Faculty of Electrical Engineering and Computing, University of Zagreb, Croatia
Significant Projects in MBU Company
- EMV migration
- Establishing and up growth of MBU Development Division
- Internet Payment Gateway
In 2002 Romana Cetineo Schiesl graduated from the Faculty of Graphical Engineering, specialized in printing technology. In 2004 she enrolled in postgraduate study of the Faculty of Graphical Engineering.
Since 2002 she has been employed with the AKD as an expert associate for devolvement of brand protection, and later on, as an expert associate for development of smartcard technology within Research and Development Department. She also worked on a number of projects as a technical coordinator or a project manager of development of brand protection program and development of new solutions in high-security printing program.
In 2006 she was a member of a project team who designed and implemented smartcard production line and in the same year she worked on a project of implementing Information Security Management System ISO 27001. She has been involved in all projects dealing with the improvement of production processes.
Conference hall
|
|
12:30 - 12:50
|
Coffee break
around Congress hall
|
|
12:50 - 13:20
|
PA DSS - overview
PCI DSS se polako „udomaćio“ u Hrvatkoj kroz većinu banaka koje su ili obavile certifikaciju ili su krenule prema usklađenju.
Sličan je trend i među procesorima, a i pojedini trgovci razmišljaju o pokretanju projekta. Istovremeno, PA DSS je nešto o čemu se zna vrlo malo.
Kako je nastao jedan od tri standarda pod okriljem PCI SSC-a, koji su zahtjevi standarda, na koga se on odnosi, koje su uloge i odgovornosti te koji su rokovi i obveze - to možete saznati na ovom predavanju. Sve ovo biti će potkrijepljeno i nekim primjerima iz prakse, kao i savjetima odakle početi i na koji način pristupiti ovoj problematici.
ECS, Siniša Lukač
Sinisa Lukac was born in Zagreb 1973. where he completed a formal education. He graduated on the Faculty of Electrical Engineering and Computer Science. Currently undertaking postgraduate studies in Information Management at the Faculty of Economics. He was employed at former PBZ American Express, today PBZ Card as a system administrator responsible primarily for the Microsoft platform and network His career in PBZ Card ended on position as CSO. Working in PBZ Card he was involved in complex projects, primarily from the domain of internet acquiring and credit card security, especially in the field of PCI DSS. In early 2009. He comes to ECS in to the position of Technical Director where he is responsible for managing all IT operations of businesses as well as in the design of new products and services.
Conference hall
|
|
13:20 - 13:50
|
NFC ecosystem based on the interoperable solution
Ranking as a trusted supplier to more than 5,000 banks, mobile operators and transport authorities, benefiting of production of SIM cards, 10 years of experience in remote administration platforms and a leading position in integrated and secured personalization, Oberthur Technologies has a true expertise and experience to answer the needs of the NFC ecosystem.
Participating actively in the development of specifications that could lay the basis of a global standard, we are among the first in the industry to offer a complete NFC services suite. Our offer bridges technical gaps and simplifies business relationships among a growing number of new business partners.
Oberthur Technologies’ offer includes NFC-enabled SIM cards, a set of ready-to-use NFC applications, NFC service administration platforms as well as an Oberthur Technologies’ fully managed NFC service.
Oberthur Technologies, Hrvoje Vinceković
Hrvoje Vinceković graduated from Faculty of Economics & Business at the University of Zagreb. From 2003 to 2006 he is an employee of Erste & Steiermarkische bank d.d., responsible for card issuing and acquiring activities in Card business department. For the following 2 years he was positioned in MBU d.o.o. as the project manager leading the projects of the migration of processing of Erste bank a.d. Novi Sad and Erste bank Ukraine to MBU's processing platform. Since January 2008 he is positioned in Oberthur Technologies as the Sales Manager responsible for the markets of Czech Republic, Slovakia, Bosnia and Herzegovina, Albania, Kosovo and Croatia.
Conference hall
|
|
13:50 - 14:10
|
Webteh e-wallet service: e-Business Solution
Izdavanje i upravljanje virtulanim i fizičkim prepaid debitnim karticama.
Mogućnosti Webteh e-Wallet servisa.
Online transfer novaca u realnom vremenu između dva korisnika e-Wallet servisa.
Webteh, Igor Grčman
Conference hall
|
|
14:10 - 14:30
|
Issuing process automatisation and supplement of PrePaid Debit Card on the self service kiosks
The basic purpose of IPR PDC (Prepaid Debit Card) Kiosk is the automation of the process:
- Issuing Gift Prepaid Debit Card with defined amount without the possibility of reloading,
- Issuing Prepaid Debit Card with options for reloading via paying with the banknotes on a kiosk or via Internet banking.
- Paying your bills with 2D barcode labels with Prepaid Debit cards on kiosk.
The advantage of using Prepaid Card is a risk control when using the card for payment via the Internet, EFT POS's, or for cash withdrawals at ATMs. In fact, everyday we're seeing different card abuse, so the basic idea is to use Prepaid Debit Card and a gift voucher cards (Gift Card) to reduce the risk of abuse in a way to allow the user to control the resources on account. In cases of abuse, risk is reduced only to the amount currently on the card!
IPR, Zlatan Karabegović
Born in Banja Luka, 25.08.1957, where he finished elementary school and high mechanical school. During high school he played basketball in KK Borac Banja Luka.
Faculty of Mechanical Engineering in Belgrade he has signed in 1976 and graduated in 1980 on the direction of Aerocosmotechnology - airplane construction, jet and rocket engines, as one of the best in a generation. His graduate work was "Computer designing body of supersonic aircraft - Fortran IV programming language“.
During the period of 1981 – 1985 he worked as an assistant at the Technical Military Academy, University of Zagreb, at the place of assistant at the department of Engineering Mechanics and holding practice in technical drawing,
descriptive geometry, elements of machines and designing by computer CAD / CAM (solid modeler and designing by the final element method – he passed training in company Control Data, USA)
He has published several works on subject of designing by computer and participated in introducing the first IBM XT personal computers in the teaching process.
In private company „Elmeh Pipic“ he works from 1985-1987 on designing and production of personal computers.
At the end of 1987 open private „IPR Hardware & Software“ which was later turned into a private company „IPR Zagreb d.o.o.“
Conference hall
|
| |
Lunch
|
|
14:30 - 15:30
|
Lunch
Restaurant "Adriatic"
|
| |
Workshops
|
|
15:30 - 16:45
|
NFC in real world
The emerging market of NFC services is taking a turn. Pilots conducted worldwide during the last five years showed the great interest of end-users, but also demonstrated the limits of a one-to-one approach between a specific mobile operator and a single bank or transport authority. The challenge is now to develop an interoperable and standard solution that end-users can use whatever is their mobile operator, bank, transport authority or preferred shops.
Workshop “NFC in real world” provides an overview of the solution which provides interoperability between the members of the NFC ecosystem, presents various ways of usage of NFC services and gives the possibility to actively discuss development of NFC services in the region.
Oberthur Technologies, Hrvoje Vinceković
Hrvoje Vinceković graduated from Faculty of Economics & Business at the University of Zagreb. From 2003 to 2006 he is an employee of Erste & Steiermarkische bank d.d., responsible for card issuing and acquiring activities in Card business department. For the following 2 years he was positioned in MBU d.o.o. as the project manager leading the projects of the migration of processing of Erste bank a.d. Novi Sad and Erste bank Ukraine to MBU's processing platform. Since January 2008 he is positioned in Oberthur Technologies as the Sales Manager responsible for the markets of Czech Republic, Slovakia, Bosnia and Herzegovina, Albania, Kosovo and Croatia.
hall Bellavista
|
|
15:30 - 16:45
|
Making sophisticated fraud monitoring a reality with Splunk
Internet and real life fraud exploded in last couple of years due to hard economic situation as well as increased sophistication of various attack tools that became available to potential fraudsters. At the same time, usage of electronic payment systems is exponentially rising, impacting the same amount of log data (authorizations, transactions, internet banking logons etc.).
Legacy fraud monitoring systems are having trouble keeping with sheer volume of data and logs, as well as new patterns in these emerging digital attacks.
This presentation will show how Splunk, the next generation IT search tool, can be used to automatically detect fraud attempts on various payment systems: credit card, Internet banking, core banking through processing transaction logs, correlating information about different vendors and using country codes or even geo-location awareness about IP address location used by customers through their online activities.
The presentation will also show how Splunk can overcome problems with correlating different data sources and how it can adjust to any system type, which makes it perfect for standard off-the-shelf as well as home-grown, custom applications, providing single point for fraud monitoring in todays heterogonous environments typical for financial industry.
Infigo IS, Bojan Ždrnja
Bojan Zdrnja works as a senior information security consultant in INFIGO IS, Croatia. His main area of interest is incident handling and attack analysis.
In 2005 he became one of the handlers of SANS Internet Storm Center (ISC), a voluntary organization with a goal to detect security problems, analyze risks and distribute technical information. ISC is the most often quoted source of security information in the world today.
He is a member of leading international organizations in the area of information security: ISC2 and SANS. He is a certified information security specialist (CISSP), RedHat certified engineer (RHCE), GCIA (GIAC Certified Intrusion Analyst) and GCIH (GIAC Certified Incident Handler). Bojan is also a member of the SANS Advisory Board and a GIAC Gold Advisor.
In 2007 Bojan was a co-author for the book “AVIEN Malware Defense Guide for the Enterprise” where he wrote a chapter on malware analysis. He is also one of the authors of the SANS’ 610 course: “Reverse-Engineering Malware: Malware Analysis Tools and Techniques”.
dvorana Camelia I
|
|
15:30 - 16:45
|
Additional functionalities for ATM and POS
Asseco SEE, Ivan Bušić, Edin Poprženović
hall Camelia II
|
| |
Seminar
|
|
16:45 - 19:45
|
New concept of Instant issuing and filling a Prepaid Debit Card – reduction of costs and risk control of internet payments
The basic purpose of IPR Selfservice PDC (Prepaid Debit Card) Kiosk is the automation of the process:
- Issuing Gift Prepaid Debit Card with defined amount without the possibility of reloading,
- Issuing Prepaid Debit Card with options for reloading via paying with the banknotes on a kiosk or via Internet banking.
- Paying your bills with 2D barcode labels with Prepaid Debit cards on kiosk.
The advantage of using Prepaid Card is a risk control when using the card for payment via the Internet, EFT POS's, or for cash withdrawals at ATMs. In fact, everyday we're seeing different card abuse, so the basic idea is to use Prepaid Debit Card and a gift voucher cards (Gift Card) to reduce
the risk of abuse in a way to allow the user to control the resources on account. In cases of abuse, risk is reduced only to the amount currently on the card!
Implementation and demonstration of production e-Wallet service for issuing vouchers, virtual and physical cards in Atlasmont Bank AD Podgorica, Montenegro. Application to pilot customers. The integration of other payment systems and service provider Webteh e-wallet service.
IPR, Zlatan Karabegović, Webteh, Igor Grčman
Zlatan Karabegović
Born in Banja Luka, 25.08.1957, where he finished elementary school and high mechanical school. During high school he played basketball in KK Borac Banja Luka.
Faculty of Mechanical Engineering in Belgrade he has signed in 1976 and graduated in 1980 on the direction of Aerocosmotechnology - airplane construction, jet and rocket engines, as one of the best in a generation. His graduate work was "Computer designing body of supersonic aircraft - Fortran IV programming language“.
During the period of 1981 – 1985 he worked as an assistant at the Technical Military Academy, University of Zagreb, at the place of assistant at the department of Engineering Mechanics and holding practice in technical drawing,
descriptive geometry, elements of machines and designing by computer CAD / CAM (solid modeler and designing by the final element method – he passed training in company Control Data, USA)
He has published several works on subject of designing by computer and participated in introducing the first IBM XT personal computers in the teaching process.
In private company „Elmeh Pipic“ he works from 1985-1987 on designing and production of personal computers.
At the end of 1987 open private „IPR Hardware & Software“ which was later turned into a private company „IPR Zagreb d.o.o.“
hall Camelia II
|
|
16:45 - 19:45
|
Risk Management and regulatory requirements
Efficient information security management system assumes existence of risk management process. Therefore regulatory requirements covering information system and security management (e.g. PCI DSS, Croatian National Bank’s Decision on Adequate Information System Management, Law on information security, e.g.) insist on systematic risk management approach.
This seminar describes the processes of risk assessment and managing information security risks with emphasis on compliance with various regulatory requirements. The seminar consists of theoretical and practical part.
Through practical part of this seminar the attendees will get acquainted with new commercial tool for risk assessment. Using that tool, attendees will conduct the risk assessment and risk management on a given business process and assets necessary to run that process.
Attendees will be introduced with detailed risk assessment and management process aligned with different regulations. Also, attendees will be given opportunity to undergo the process themselves and learn about the possible problems and difficulties.
Infigo IS, Hrvoje Šegudović
Hrvoje graduated in 1999 at the Faculty of Electrical Engineering and Computing, University of Zagreb. After graduation he started working at the same faculty as an associate on information security projects.
At the Faculty of Electrical Engineering and Computing, he managed and actively participated in numerous projects related to planning, testing and assessment of information systems security. In 2005, he co-founded INFIGO IS, a company specialized for information security related services.
In the last few years, he dedicated his career development to security management systems (ISMS) and Business Continuity Management (BCM). He is the author of numerous articles and papers related to information security published in popular magazines, security portals and professional conferences.
He is a member of leading international information systems and information security audit organizations: ISACA and ISC2. Hrvoje is a certified information systems auditor (CISA), and also as a certified information security specialist (CISSP), with special concentrations for security architecture (CISSP-ISSAP) and security management (CISSP-ISSMP).
Hrvoje has 8 years of experience in as an information security expert/consultant.
hall Camelia I
|
| |
Coffee break
|
|
19:45 - 20:00
|
Coffee break
around Congress hall
|
| |
Entertainment
|
|
20:00 - 23:55
|
GO-CART RACE – „NEED FOR SPEED“
Just outside Poreč, on the Istrian westcoast there is a big modern Go-Cart centre. The track is 600 m long and 7 m wide and it is totally illuminated and therefore suitable for night events!!! The track is provided with computers which measures the speed and help organize a race. Right next to the track there is terrace and observation platform so the spectators have a nice view of the track and race. In connection to the race track and spectators tribune there is a nice barbecue made in Istrian style where dinner is made and served.
RACE DESCRIPTION
The group of 130 persons is divided into 13 groups, and everybody gets to drive for 10 minutes at least. From each group the 3 fastest drivers are deducted and they are organised in three groups. From those 3 groups the three best drivers are in the Final. Tournament is quite time consuming (take warm clothes), minimum 3 hours, that dinner is served standing – in two groups - so that the guests can circulate. Those guests wanting to sit down at tables are welcome to do so.
MENU
The dinner is cooked on a fireplace – mixed meat (pork, čevapčići, chicken, home made sausage), grilled vegetables, potatoes istrian style, mixed salad, bread, ajvar. Desert: Fritule and crostule – istrian cakes. The food is not limited – you can eat as much as you like!!! Drinks: wine & water
http://istra-kart.arta.hr/en-karting.htm
Sponsor AUSTRIACARD
Poreč
|
| |
|
Wednesday, 29. September 2010.
|
|
Applications&Security
|
| |
Lecture / Presentation
|
|
09:00 - 09:30
|
Vasco’s multiple platform for authentication
The convergence of end user security and their convenience is a challenge that occupies the most critical application providers in the market today. However, for those application providers that find the right balance, an opportunity emerges to extend client and employee authentication to other Web-based applications. Employers can increase the security of additional systems and critical data. And for application providers that secure customer access, the opportunity to share access to third party applications is a benefit to consumers and represents additional revenue opportunities for the online provider. In this presentation, VASCO will define the business requirements and steps necessary to move to federation. In particular, we will outline the DIGIPASS as a Service platform as the first step to support the growing mobile and online channels looking to share secure credentials across multiple platforms. The presentation will focus on the business drivers and challenges to implement the first steps towards federation, or “token sharing”, as well as some of the reasons for past failures in this area.
VASCO Data Security, Giovanni Verhaeghe
Giovanni Verhaeghe is Director Product & Project Management at VASCO Data Security.
Eight years after Mr. Verhaeghe joined VASCO, the company has become the absolute reference in the authentication sector.
With over 850 banks and approximately 5300 other corporations as customers in over 100 countries, VASCO is the number one authentication vendor.
VASCO owns 80% of the world’s largest authentication deployments.
Together with the quality and the flexibility of the “Full Option, All-Terrain” business model, the unparalleled experience and know-how earned in the field, is a great business asset for VASCO.
Conference hall
|
|
09:30 - 09:50
|
Fraud monitoring and BI reporting
Banking and payment card industry is depends heavily on information technology. Due to its nature, banking and payment card business is exposed to different threats and frauds. Because of business necessity as well as numerous regulations (HNB requirements, PCI DSS, Visa and MasterCard operating rules and procedures), these industries are continuously investing into various security mechanisms, as well as monitoring their systems in order to promptly detect and prevent different misuse and fraud attempts.
Aside from the security aspect, systems that handle vast numbers of transactions require sound business reporting capabilities such as meeting set targets, timely identification of problems and lowered income etc.
This presentation will show a fraud monitoring and BI reporting tool based on Splunk and developed by INFIGO IS. The demonstration will cover fraud monitoring capabilities for credit card industry as well as banking systems such as Internet banking.
Finally, examples of business reporting capabilities (transactions, turnovers, trends) will be shown on a case of a credit card acquiring business.
Infigo IS, Hrvoje Šegudović
Hrvoje graduated in 1999 at the Faculty of Electrical Engineering and Computing, University of Zagreb. After graduation he started working at the same faculty as an associate on information security projects.
At the Faculty of Electrical Engineering and Computing, he managed and actively participated in numerous projects related to planning, testing and assessment of information systems security. In 2005, he co-founded INFIGO IS, a company specialized for information security related services.
In the last few years, he dedicated his career development to security management systems (ISMS) and Business Continuity Management (BCM). He is the author of numerous articles and papers related to information security published in popular magazines, security portals and professional conferences.
He is a member of leading international information systems and information security audit organizations: ISACA and ISC2. Hrvoje is a certified information systems auditor (CISA), and also as a certified information security specialist (CISSP), with special concentrations for security architecture (CISSP-ISSAP) and security management (CISSP-ISSMP).
Hrvoje has 8 years of experience in as an information security expert/consultant.
Conference hall
|
|
09:50 - 10:10
|
Next generation Internet banking attacks
Firewalls, DMZ's, Intrusion Prevention Systems, Vulnerability Scans. Companies have been relying on these traditional methods of protection for almost a decade. PCI DSS mandates implementation of all of these, however, the number of security incidents that happened in last couple of years is higher than ever. Each of the mentioned systems has its role in the overall security but one "interface" has to remain open to the end client: web applications. A lot of companies today rely on automated vulnerability scans to assure security of their applications. However, due to increased complexity of such applications and their dependency on Web 2.0, reliability of such scans is rapidly decreasing.
This presentation will show results and statistics about various vulnerabilities identified during penetration tests conducted by INFIGO IS.
Dependency of such penetration tests on manual tests by experienced engineers will be emphasized through a demonstration attacks on Internet banking. Demonstrated attacks are very difficult, or in some cases impossible to detect by automated scanners and can be extremely dangerous since they can, depending on the implementation, circumvent even strong two factor authentication mechanisms, such as those used by Croatian banks.
Infigo IS, Bojan Ždrnja
Bojan Zdrnja works as a senior information security consultant in INFIGO IS, Croatia. His main area of interest is incident handling and attack analysis.
In 2005 he became one of the handlers of SANS Internet Storm Center (ISC), a voluntary organization with a goal to detect security problems, analyze risks and distribute technical information. ISC is the most often quoted source of security information in the world today.
He is a member of leading international organizations in the area of information security: ISC2 and SANS. He is a certified information security specialist (CISSP), RedHat certified engineer (RHCE), GCIA (GIAC Certified Intrusion Analyst) and GCIH (GIAC Certified Incident Handler). Bojan is also a member of the SANS Advisory Board and a GIAC Gold Advisor.
In 2007 Bojan was a co-author for the book “AVIEN Malware Defense Guide for the Enterprise” where he wrote a chapter on malware analysis. He is also one of the authors of the SANS’ 610 course: “Reverse-Engineering Malware: Malware Analysis Tools and Techniques”.
Conference hall
|
|
10:10 - 10:40
|
Security tools: Aladin SafeNet
Identity theft, internal security threats, web and phishing attacks have almost become a daily routine in today's digital business. The answer to this kind of security threats are authentication solutions such as USB tokens or smart cards that can ensure the identity of users and guarantee their safety.
Mack IT gives you an insight into the Safenet / Aladdin authentication portfolio, and how it can protect users from today's security threats.
Safenet is a leading vendor of security solutions that are based on data encryption, and with the acquisition of Aladdin Knowledge Systems in 2009, Safenet took over one of the leading roles in the authentication solutions market.
Aladdin’s success in relation to competing security solutions is primarily based on the quality and the additional value they offer with their solutions. Aladdin authentication tokens for instance offer more than just standard PKI functionality, offering a wide range of additional features such as encrypted flash memory, integrated OTP generator or "Plug and Play" authentication to online services without the need for prior installation of client software.
Mack IT, Neven Barbalić
Neven Barbalić, rođen je u Rijeci 1988 godine, gdje i danas živi. Na području informatičke sigurnosti prisutan je od 2006 godine kao član odjela tehničke podrške Mack IT-a. 2008 godine postaje Product manager za neke od svjetski vodećih proizvođača sigurnosnih rješenja zastupljenih u ponudi Mack IT-a, kao što su: Safenet , Websense, IBM ISS i Landesk.
Polja od posebnog profesionalnog interesa su mu sustavi za zaštitu povjerljivih podataka enkripcijom i rješenja za zaštitu i kontrolu korisničkog Web prometa.
Conference hall
|
|
10:40 - 11:00
|
Coffee break
around Congress hall
|
|
11:00 - 11:30
|
Thales-nCipher – securing the World
Thales is one of the world leaders in providing protection of information and communication systems and security solutions for government, defense and other critical infrastructure companies and financial industry.
In this case, the focus will be on the recent expansion of the solutions in Thales portfolio in the direction of software and hardware to support for the PKI system, systems for the encryption of data in archives enviroment, and solutions for time stamping to ensure undeniable signature, confirmations of transactions, etc.
Thales – nCipher, Mark Burke
Thales e-Security South East Region Sales Manager.
Member of Thales Corporation since 1997, becoming Regional Sales Manager for Croatia and Adriatic region in 1999.
Established local partners in the Adriatic Region, selecting Alfatec as qualified partner, initially for the Racal payment security solutions, renamed Thales in 2000, and then continuing with them for the newly acquired ncipher solutions in 2008 thus creating a widely respected partner capable of handling both payment and general purpose HSM business, as well as line encryption.
Wide knowledge of all the Thales product portfolio, including both Payment Card business as well as PKI structure demands. Mark Burke continues to assist Thales Channels to be the most efficient in their presenting various IT security solutions to the Industry. He speaks at various events in the Region and has attended the Smart Card Forum over the last several years.
Conference hall
|
|
11:30 - 12:00
|
GreenIT with KIXOperator: Solutions, integration
The 1.8 million ATMs worldwide consume thousands of gigawatt-hours of electricity 24/7 year after year. However, it is neither wise nor necessary to keep them in service round-the-clock in all locations. FIDUCIA IT AG plays a leading role in innovations pertaining to energy-saving solutions – a lot of energy can be saved by means of an intelligent integration of remotely controlled power sockets that could be switched on and off by the KIXOperator via network. The energy-saving solution pays off within the first year of operation.
SBS Software, Andreas Jeckel
Ing. Mag. Andreas Jeckel
more than 18 years at SBS Software
- about 6 years software developer
- about 5 years project management (overlapping with development)
- about 5 years sales
Sales Director for EMEA since 2009
Conference hall
|
|
12:00 - 12:30
|
Optimising an information security management system to reduce risk and meet multiple regulatory requirements
· Locking down payment security: what are the lessons learned from segregating payments and IT infrastructure and how can your PCI DSS security initiative go beyond compliance to create business value for the bottom line?
· Beyond payments systems: how should your approach to implementing security controls be structured to meet the challenge of complying with multiple requirements which differ from country to country and impact more than just your payments infrastructure?
· Enabling 'compliance by design': what are the challenges and benefits of developing a close partnership with a security vendor to increase the effectiveness of your security architecture?
· Forget the audit results: when compliance does not equal security, how do you create a framework that integrates compliance requirements with your response to the threat landscape to reduces risk and be cost-effective?
CISO bWin, Oliver Eckel
As Head of Corporate Security at bwin, Oliver is responsible for designing and implementing the enterprise risk and security management system in Europe’s largest provider of online sports betting, poker, casino and games.
He has established bwin’s corporate security department, (comprised of the security management, security operations and the security audit team), which includes a 24x7 security monitoring and incident response capability. He has also developed the Information Security Management System, which is based on internal, legislative and regulatory security requirements, as well as the risk apetite of the business. Within bwin, Oliver is tasked with ensuring COBIT 4.1, ISO 27001, EGBA, ECOGRA, and PCI DSS compliance.
His specialities include developing information security, governance, risk and compliance management functions that align corporate security objectives to business objectives.
Conference hall
|
|
12:30 - 12:50
|
Portal TrustKeeper
Trustwave Overview
PCI DSS Rules and Validation Requirements
State of Data Security
Trustwave PCI Program – TrustKeeper Tools
- Merchant experience
- Program Management
Supporting PCI Programs
Trustwave, Peter Lupšić
Peter Lupsic is the Regional Sales Executive Manager covering Austria and Eastern Europe for Trustwave Ltd. Peter is responsible for developing strategic relationships with enterprise clients, the acquiring banking community and payment service providers across his region. His career spans over ten years in Business Development, Sales Management, and Project Management in both the Austrian and Eastern European regions. Peter’s previous role was a Senior Security Sales Specialist at VerizonBusiness. While at VerizonBusiness, Peter managed the day-to-day operations and revenue growth of several key enterprise accounts, and was tasked with developing new strategic solutions for the business. Prior to VerizonBusiness, Peter was the Regional Sales Manager for ´Network Associates (McAfee), the AntiVirus Specialist based in Vienna, Austria where he was charged with growing the Austrian market for their suite of products.
Conference hall
|
|
12:50 - 13:10
|
Coffee break
around Congress hall
|
|
13:10 - 13:30
|
eInvoice – one of the key factors in further development of e-business or …
eInvoice service is primarily intended for business entities (B2B segment) – large and medium corporations and medium entrepreneurs, but important role on future market will also have state administration authorities.
The usage of eInvoice contributes to create simpler and more efficient business surroundings, results with direct and indirect financial effects, increases the usage of new technologies for business purposes, and leads to higher competitiveness level, incorporates the usage of Internet banking, B2G services and eInvoice service – eInvoice should be of exceptional interest for both, business entities and public sector.
Although the appliance of eInvoice is of especial importance in pursuit of national fiscal policy legal barrier is only partly removed.
Zagrebačka banka, Slavenka Došen
Mrs Slavenka Došen began her professional career at Udružena banka Hrvatske and since 1990. she is working in Zagrebačka banka dd.
Mrs Došen worked on development and implementation of new products and services – card business, phone and internet banking, electronic services provided by state and / or public administration, mobile banking for corporate clients and security solutions (tokens and smart cards), including integration of supporting legacy and database systems:
- responsible for card business development,
- co-ordinator and team member of Call Centre - ZABA 24 project,
- responsible for ZABA SMS implementation,
- co-ordinator and team member on the project of deployment tokens in direct distribution channels (phone and internet banking for retail clients),
- leader of sub-project e – zaba internet banking for corporate clients within Domestyc Payment System Project,
- responsible for deployment of B2G services and its entegration with e-zaba internet banking for corporate clients,
- responsible for deployment of m-zaba mobile banking service for corporate clients,
- invited lecturer on numerous international and domestic conferences in the area of internet business and e – security,
- permanent member of Europay International Task Force (1994 – 2000),
- permanenet lecturer in Croatian Institute for Banking and Insurance (1999 – 2002),
- one of the founders of Call Centre conference held within International Fair of Information technologies – INFO.
Conference hall
|
|
13:30 - 14:00
|
Autentication solutions
Tracing all diferent modes of authentication, and the very applications that needs user authentication, for this opportunity to Alfatec Group offers centralized modular system for user authentication.
The presentation will provide an overview of solution, its usefulness, and show the integration of the solution in the bank enviroment, allowing the bank to use various methods of authentication for various custom web applications with goal to make their services and usage of it mora available to the general population in a safe and accessible way.
Alfatec, Tomislav Musić
Graduated in the year 2006th at the Faculty of Electrical Engineering and Computing in Zagreb.
Currently employed at the company Alfatec Group d.o.o. the position of sales consultant in the sector for e-Security and cryptography equipment and solutions
Main activities are in development of business cases and new projects for card industry and related services. Contract negotiations and partnership development and management of current partners and customers.
In his short career he also worked in the following companies: Siemens, CARNet (Croatian Academic and Research Network)
Conference hall
|
|
14:00 - 14:30
|
Merchand Acquiring ERP for Card industry
Introduction in Merchant Acquiring representing applicatively complete ERP solution for the successful management of card bank relationships with merchants.
Presentation of the significant benefits that the bank obtained using the Merchant Acquiring Solutions.
A short module describes the structure of MA Solutions: Accounting, POS management, incoming & Data Entry, Risk Management, Call Centre, Booking, outgoing, Profitability & Merchant Activity Reporting. Connectivity with other systems and to meet PCI-DSS standards.
Emphasis and more detailed presentation of reporting system for reporting to management in order to manage profitability, costs and activities directed to merchants.
In conclusion, explain why the thes is is the introduction of Merchant Acquiring Project and not the product.
IT Sistemi – Nove Tehnologije, Zoran Bjelovuk
Zoran Bjelovuk is in IT Sistemi since 2006. He became Member of the Board for the operation in 2009, with responsibilities for the company’s successful operations in accordance with legal and ethical principles and the company’s output and quality of service to clients. He participates in the presentation, sales and promotional activities of the company.
He was born in Zagreb, in 1964.
Conference hall
|
|
14:30 - 15:00
|
Data Security (PCI DSS) with crypting using Luna SA HSM
SQL server 2008 je donio podršku za TDE (Transparent Data Encryption) i EKM (Extensible Key Management) tehnologije koje se u praksi mogu iskoristiti za zadovoljavanje PCI DSS standarda. Ukoliko imate aplikaciju koja koristi SQL Server 2008 kao bazu podataka i podliježe strogim pravilima PCI DSS standarda, ove dvije tehnologije uz korištenje HSM (Hardware Security Modules) uređaja mogu zadovoljiti te potrebe bez promjena same aplikacije. Također ukoliko imate potrebe za enkripcijom vaših baza ovo je tehnologija koja vam pomaže u tome. Osim osvrta na TDE i EKM, kao i iskoristivost SQL auditing-a, bit će i prikazan demo u kojem će se prezentirati iskustva iz projekta implementacije PCI DSS standarda na SQL 2008 serveru. U ovu svrhu je korišten LUNA SA HSM uređaj vodeće kompanije na području sigurnosnih rješenja, Safenet-a, koji je prvi donio podršku za navedene tehnologije.
IT Sistemi – Nove Tehnologije, Jakša Čepo
Jakša Čepo Works graduated in 2005 at the Faculty of Electrical Engineering, Mechanical Engineering and Naval Architecture, University of Split. He works as system engineer for last 8 years and currently is head of system integration at IT Sistemi - Nove Tehnologije d.o.o. He was project leader of various projects like PCI DSS, disaster recovery, virtualization and encryption.
Conference hall
|
| |
Lunch
|
|
15:00 - 16:00
|
Lunch and giving of presents
Restaurant "Adriatic"
|
Show details
|
|
 |
|
|
copyright © 2012 Case - informatički inženjering |
 |
|
|
|
|