• No results found

Digital Signatures for Document Management

N/A
N/A
Protected

Academic year: 2021

Share "Digital Signatures for Document Management"

Copied!
55
0
0

Loading.... (view fulltext now)

Full text

(1)

Digital Signatures for Document

Management

This presentation will begin at 2:00 PM EDT 1 PM Central, 12 PM Mountain, 11 AM Pacific

Please check that the volume on your computer is at the highest setting since we stream our presentation in Voice over IP

(2)

AIIM Presents:

Digital Signatures for Document

Management

Bryant Duhon – Editor, AIIM E-DOC Magazine Jim Minihan – Partner, imerge Consulting

(3)

About AIIM

AIIM is the international industry association connecting users and suppliers of enterprise content management (ECM)

technologies - the tools and methods used to capture, manage, store, preserve, and deliver content in support of business

processes. For more than 60 years, AIIM has been a neutral and unbiased source for education and industry information,

standards, advocacy, and community. Learn more about AIIM at www.aiim.org.

(4)
(5)

Presented by:

Ramel Levin

Director of Marketing

ARX

Part I

Part I

-

-

Digital Signatures

Digital Signatures

Seeing is Believing

(6)

Digital Signatures

(7)

Digital Signatures

(8)

Digital Signatures

Digital Signatures

-

-

Seeing is Believing

Seeing is Believing

(9)

Digital Signatures

(10)

Digital Signatures

(11)

Digital Signatures

(12)

Digital Signatures

(13)

Digital Signatures

(14)

Digital Signatures

The Keys To

The Digital Future

Jim Minihan Partner 540 364 7640

(15)

The Keystone Component For

Document Management

(16)

Why Is This Important To ECM?

This completes the ECM infrastructure

Without digital signature you can’t achieve

the future

No other alternative has the ability to scale

as well

No other alternative provides the same

security and integrity

(17)

What A Signature Accomplishes

• Evidence: A signature authenticates a writing by identifying the signer with the signed document. When the signer makes a mark in a

distinctive manner, the writing becomes attributable to the signer.

• Ceremony: The act of signing a document calls to the signer's attention the legal significance of the signer's act, and thereby helps prevent

"inconsiderate engagements”.

• Approval: In certain contexts defined by law or custom, a signature expresses the signer's approval or authorization of the writing, or the signer's intention that it have legal effect.

• Efficiency and logistics: A signature on a written document often imparts a sense of clarity and finality to the transaction and may lessen the

subsequent need to inquire beyond the face of a document. • Deterrence: To discourage transactions of doubtful utility

(18)

Foundation of Signature Law

Historic

English Common Law

Uniform Commercial Code

Modern

Electronic Signatures in Global & National Commerce Act (ESIGN)

Uniform Electronic Transactions Act (UETA)

Electronic Signature

Electronic Signature laws among the States are more

consistent with each other than Paper and Ink Signature laws

Remarkable similarity among electronic signature laws of the

same type

(19)

What These Laws Achieve

• Guidance of when and how courts enforce

electronic/online agreements

• Establish the duties of the parties that would likely be

involved in a dispute

• Reduce evidentiary questions that must be resolved

by the courts

• By providing a stable legal infrastructure, encourage

adoption and development of electronic commerce

• Provide consumer protection and reduce fraud

• Allow for electronic records to remain electronic

(20)

What You Want To Achieve

• Security – The signer is the only one who could have

signed

• Authenticity – The signature will be accepted as real

• Integrity – What was signed has not been altered

between point A and B

• Non Repudiation – Connects a signer in a way that

prevents denying the agreement

• Authenticity – the signature can be authorized by a

secure process

• Enforceability – the signatures must be verifiable by

relying parties

(21)

Some Myths

The law is not clear on electronic signature

Benefits of electronic signature don’t justify

the effort to implement

The technology is too complex

The signatures will not be accepted

(22)

Electronic Signature

“Any electronic sound, symbol, or process, attached to or logically associated with a contract or other record and executed or

adopted by a person with the intent to signify adherence"

Digital

Signature

(23)

Flavors Of Signature

Electronic signature could be nothing more than

your name on an email

An image of your traditional signature

A biometric signature

Application based digital signature

PKI based digital signature

(24)

Keep In Mind

Any signature is based on a level of trust in the

signors identity and the process by which it is

invoked

Trust is not inherent in any technology

Technology must be used in a trustworthy

manner in order to establish trusted systems

Even a system that is being used in a

trustworthy manner is ineffective if we cannot

prove its reliability

(25)

Trust Need Drives Deployment

Trust models vary

Intra enterprise - we trust ourselves

Inter enterprise - we trust our agreements

Open – I have one signature universally accepted

Closed – I need a signature for every community I

do business in

Open But Bounded – Many Certificate Authority’s

with agreement between them as in the federal

model

(26)

Which Fits Your Need

Who is the relying party?

Internal users only

Limited related outside users

• EDI model

Outside users defined by narrow industry

• VAN model

Extensive unrelated users

(27)

Questions To Resolve

• Is it truly an electronic “transaction”?

– In a legal sense

• Does it require a signature?

– Often this is tradition rather than requirement

– Look to statute and need rather than history

• How much do you care about who is at the other end of the

transaction?

– Totally…gimme that DNA

– Some…as long as the bill is paid

– Not at all…we give this to everyone

(28)

Why Do It Now?

This is the last mile to the fully digital

environment

Finally…you can stop converting to paper

Sign transactions that cannot be reduced to

paper

Increased efficiency and reduced costs

– In specific applications can reduce cycle time by 50%

– Eliminate express delivery charges

(29)

Some Applications

• DMV electronic titles • Securing messages in emails • E Notary • Apostils • Recording of Deeds • Court filings • Higher Education • FDA Gateway • USPTO filings • NRC filings • Bid submissions • Bond Issuance • Expense Reports • Travel Requests • HR Transactions

(30)

Where To Use It?

For received documents that have not

been otherwise locked or authenticated

In workflow transactions where event

based approval is not enough

To finalize important business records

Non document E commerce transactions

Sign official documents

(31)

How To Get Started

Educate your lawyers – this technology is legitimate

and it can displace paper

Start with internal deployment where you define what

is signed for internal consumption;

– Workflow, service level agreements, HR, expense reports

Continue to internal documents maintained for

compliance reasons;

– Financial statements, HR, tax records

(32)

How To Get Started

Take advantage of government commitment by filing

regulatory and compliance documents;

– EPA, OSHA, Labor, State functions

Move to working with outside parties for external

acceptance of the signature;

– Selected trading partners for business transactions, contracts, approvals

– Industry groups

– Your customers

(33)

On The Horizon

• Beyond ECM and ERM signature adoption becomes

even more important

• Investment in vetting identity can be leveraged to more

purposes

– System access

– Facility access

• Your ability to sign electronically will expand as the rest

of the world adopts

• Your identity credential can be federated when needed

(34)

Multi-Factor Token Very High High Medium Low Employee Screening for a High Risk Job Obtaining Govt. Benefits Applying for a Loan Online Access to Protected Website PIN/User ID Knowledge Based One-Time Password

PKI/ Digital Signature

HSPD-12 PIV Card

Increased Need for Identity Assurance

Biometrics

Increased Strength

(35)

Presented by:

Ramel Levin

Director of Marketing

ARX

Part III

Part III

-

-

Digital Signatures

Digital Signatures

What to Look For?

(36)

How to Choose a Solution?

(37)

Founded in 1987

Founded in 1987

Specialty: Digital Signature Solutions

Specialty: Digital Signature Solutions

Large Client Base (2,400+

Large Client Base (2,400+

customers)

customers)

About ARX

About ARX

Q

Q

(38)

Seals Documents

(39)

Seals Documents

(40)

Simple to Use

(41)

Simple to Use

(42)

Graphical Signatures

(43)

Graphical Signatures

Graphical Signatures

Graphical signatures = Less Psychological impact

(44)

Multiple Signatures

(45)

Multiple Signatures

Multiple Signatures

Make sure subsequent signings do not invalidate prior signings

(46)

Application Support

(47)

Application Support

Application Support

Make sure the current & future documents types you intend to sign are supported by the solution you choose

Make sure the current & future documents types you intend to sign are supported by the solution you choose

(48)

Compliance

(49)

Compliance

Compliance

Review the regulations of your industry

(50)

Transportability

(51)

Transportability

Transportability

A portable signature format can be verified anytime, anywhere

(52)

Q&A

Q&A

Ramel Levin [email protected] www.arx.com Ramel Levin Ramel Levin [email protected] [email protected] www.arx.com www.arx.com

(53)

Questions?

Jim Minihan

[email protected]

(54)

Questions?

On the bottom left hand side of your screen, type your question in the white box and hit

(55)

Upcoming Webinars

July 23rd – Automated Document Classification for

Supercharged Workflows

August 6th – Should you Outsource your Email Archiving

August 13th – Bring Business Process Efficiencies to eDiscovery

August 20th – A Strategy for Content-driven Transactions

References

Related documents

• Non-predefined Oracle server errors: Each of these errors has a standard Oracle error number (ORA-nnnnn) and error message, but not a predefined name.. You declare your own

26.02.13 Copyright Hahne Consulting GmbH 2013 22.. All rights reserved. BW). Central access for scheduling and monitoring

The value of the advergame lies in its integrated delivery of a captivating advertising message such that consumers are more likely to form a favorable attitude toward the

FREE ROBUX, which has one of the top-grossing apps on Apple and Google devices, makes money by allowing its millions of users to buy virtual currency called FREE ROBUX that can be

This page contains various configuration settings for launching the dialer and establishing single-user or shared access to the PC. To access it, click the Configuration link on the

Prior to deploying the Linksys PAP2 device to your customer, it must be configured to point to Net2Phone’s provisioning server where it downloads its account information..

Press the back button (circular arrow soft key) three times to return to the main Settings Menu.. Scroll up to 3 Time and Date Settings and press the

In the Enter Phone Number field, enter the phone number by clicking the numbers on the WebPhone keypad, and then click the DIAL button or press the Enter key on the