Financial Transaction Example
All financial transaction across inherently insecure transmission pathways remains at risk. Stock and commodities trades, bank account transfers and more can be compromised, often starting with the malicious theft and exploitation of one's personal account information.
The TriStrata solution can provide security for all information being transferred from company to company and from person to person. In the following example, the complex flow of information during a stock trade can be seen:
1. Via Internet-based communication methods, the customer keys in an order to buy a share of stock. His broker sees the order appear on the broker's system and approves it for transfer to the stock exchange.
2. The order is sent from the brokerage firm to the stock exchange.
3. Notification is sent from the stock exchange to the brokerage when the trade is made.
4a. The transaction information is sent from the stock exchange to the settlement agency.
4b. Cash is sent from the buyer's bank account to the settlement agency.
5. Settlement confirmation is sent from the settlement agency to the brokerage.
The TriStrata Security Implementation
Each arrow in the process flow represents an encryption/decryption event, with security policy being managed by the TriStrata system. At each arrow, all of the information being transmitted can be completely secure – not just the data but text, voice, graphics and even video.
A comprehensive TriStrata TESS security server is utilized by the broker for their respective customers – a single system able to handle thousands of simultaneous “secure event” transactions and customers such as posed in our example.
Enrollment on the brokerage's TESS authorizes their customers to perform encryption and decryption of transactions, access the brokerage's secure web site, and review their personal portfolios. At time of first enrollment the broker’s trusted security agent specifies the necessary clearance and access levels for each customer. The system creates a unique Electronic Access Signature that identifies each partner to TESS for complete security and accountability, enabling specifically authorized transactions while denying access to unauthorized data.
With TriStrata deployed, all client stock trades (each an independent security event) – including the communication pathways, encryption/decryption and account access requests – are kept private and tracked in a detailed audit trail that can ultimately prove the information remained secure.
Any organization in this example can operate and manage their TESS security system, able to enroll any individual or partner organization whose identity they need to verify – privacy they need to maintain. TriStrata provides advanced methods of cross enrollment and identification to protect all users of every organization in this complex example.