35
Digital Signature: Mightier than the Pen Katie Burke Government Program Strategist, Laserfiche Mauricio Pinto Market Manger for State and Local Government, ARX

Enterprise Content Management and Digital Signiatures

Embed Size (px)

Citation preview

Page 1: Enterprise Content Management and Digital Signiatures

Digital Signature: Mightier than the Pen

Katie Burke

Government Program Strategist, Laserfiche

Mauricio Pinto

Market Manger for State and Local Government, ARX

Page 2: Enterprise Content Management and Digital Signiatures

Agenda

‣ Introduction & defining digital signatures‣ Digital signatures and business processes‣ Foundations of digital signatures‣ Demonstration‣ Use case: County of Hawaii Corporation

Counsel

Page 3: Enterprise Content Management and Digital Signiatures

Introduction: State of the market

DIGITAL SIGNATURE

#digitalsignature

Source: http://www.govtech.com/e-government/212218211.html

Page 4: Enterprise Content Management and Digital Signiatures

Introduction: State of the market

48% Growth in Digital Signature Adoption

Drivers:‣ Evolution of

consumer technology‣ The need to reduce

transaction costs‣ Mobile accessibility‣ Customer experience

expectations

Page 5: Enterprise Content Management and Digital Signiatures

What is a Digital Signature?

A way of representing ourselves digitally

Page 6: Enterprise Content Management and Digital Signiatures

What is a Digital Signature?

A way of representing ourselves digitally

Page 7: Enterprise Content Management and Digital Signiatures

How Digital Signatures Fit in Business Processes

‣ Performance Review Process

Cats

Create review document

Digital signature: boss and employee Digital Signature: HR

Shortcut in employee folder

Routed to record series, retention

applied

Workflow

Page 8: Enterprise Content Management and Digital Signiatures

Why Digital Signatures?

‣ You need to transform to paperless‣ You need to provide better service with fewer resources‣ You need transparency, auditability, compliance &

accountability‣ You need a technology that is:

• Non-proprietary• Enduring• Cross-departmental• Validate-able outside the organization

Page 9: Enterprise Content Management and Digital Signiatures

Electronic Signature Legislation

‣ Uniform Electronic Transactions Act (“UETA”) – 1999‣ Electronic Signatures In Global and National

Commerce Act (ESIGN) – 2000

These Acts give legal force and effect to electronic signatures

Page 10: Enterprise Content Management and Digital Signiatures

Electronic Signature Legislation

‣ Uniform Electronic Transactions Act (“UETA”) – 1999

‣ Electronic Signatures In Global and National Commerce Act

(ESIGN) – 2000

These Acts give legal force and effect to electronic signatures

Electronic Signature defined as “an electronic symbol, sound or process”

Page 11: Enterprise Content Management and Digital Signiatures

Electronic Signature Spectrum

Least Secure*

Most Secure*

Image PKI

*Secure = three “I’s”:• Identity: Guarantees identity of signer• Intent: Non-repudiation• Integrity: Changes invalidate the signature

Page 12: Enterprise Content Management and Digital Signiatures

Electronic Signature Spectrum

Least Secure*

Most Secure*

Image PKI

*Secure = three “I’s”:• Identity: Guarantees identity of signer• Intent: Non-repudiation• Integrity: Changes invalidate the signature

“I Agree”

ePad

Page 13: Enterprise Content Management and Digital Signiatures

Electronic Signature Spectrum

Least Secure*

Most Secure*

Image PKI

*Secure = three “I’s”:• Identity: Guarantees identity of signer• Intent: Non-repudiation• Integrity: Changes invalidate the signature

“I Agree”

ePad Application-Specific(ExM)

Page 14: Enterprise Content Management and Digital Signiatures

Electronic Signature Spectrum

Least Secure*

Most Secure*

Image PKI

*Secure = three “I’s”:• Identity: Guarantees identity of signer• Intent: Non-repudiation• Integrity: Changes invalidate the signature

“I Agree”

ePad Application-Specific(ExM)

eSig Services

Page 15: Enterprise Content Management and Digital Signiatures

Electronic Signature Spectrum

Most Secure

Portability

Image

ePad

eSig Services

Application-Specific(ExM)

PKI

“I Agree”

Page 16: Enterprise Content Management and Digital Signiatures

Digital Signature (PKI) Technology

The only technology that can guarantee Identity, Intent, & Integrity in a portable and easily verifiable format

ID Challenge

ReasonCode

Document to sign Digital

Signature

Signed Document

+ +

Content Hash

UniqueSigning

Key

Digital IDCertificate

=+

Result• Digitally signed and secure electronic record

• Fully trusted and easily verifiable

Page 17: Enterprise Content Management and Digital Signiatures

Certificate Options

‣ Self-Signed‣ 3rd Party Certificate Authority‣ Self-Issued Organizational CA

Page 18: Enterprise Content Management and Digital Signiatures

Certificate Options

‣ Self-Signed‣ 3rd Party Certificate Authority‣ Self-Issued Organizational CA

Page 19: Enterprise Content Management and Digital Signiatures

Why CoSign?‣ Turn-key, Plug ‘n Play, Network Appliance‣ Choice of User Directory Integration or Built-in Directory ‣ Independently Verifiable Signature ‣ Signing Flexibility

Trusted By: • Employees• Citizens• Auditors• Partners• Suppliers

Page 20: Enterprise Content Management and Digital Signiatures

What Can You Sign with CoSign?

‣ MS (Word, Excel, Outlook,

InfoPath)

‣ PDF, PDF-A

‣ Any printable output

‣ CAPI-compliant applications

‣ Web forms (with SAPI)

‣ Laserfiche Docs

PowerPoint

Tiff ImagesLotus Forms

PDF & PDF/AOutlookExcel

Word

AutoCADWordPerfect

InfoPath

Web Forms

Application-Compatible Signature

Mechanism

Virtual Signing

Page 21: Enterprise Content Management and Digital Signiatures

Demonstration

Page 22: Enterprise Content Management and Digital Signiatures

Laserfiche Integration

Page 23: Enterprise Content Management and Digital Signiatures

Laserfiche Integration

Page 24: Enterprise Content Management and Digital Signiatures

Laserfiche Integration

Page 25: Enterprise Content Management and Digital Signiatures

Laserfiche Integration

Page 26: Enterprise Content Management and Digital Signiatures

Laserfiche Integration

Page 27: Enterprise Content Management and Digital Signiatures

ARX Customer Use Cases

‣ Engineering: Drawings, Change Orders

‣ Courts: Filings, Judicial Orders, Complaints

‣ Legal & Contracts: Contracts, Agreements, Memos, Correspondence

‣ Archived Records: Integrity of ALL records

‣ Procurement: Requisitions, P.O.s, Invoices

‣ Human Resources: Onboarding, Benefits, Evaluations

‣ Administration: SOPs, Correspondence, Meeting Agendas, Memos

‣ Point of Service: Permits, licenses, patient forms, defendant paperwork

Page 28: Enterprise Content Management and Digital Signiatures

Use Case: County of Hawaii

Source: www.hawaiicounty.gov

Page 29: Enterprise Content Management and Digital Signiatures

Use Case: County of Hawaii

‣ Old leave of absence process

Fill out document

Print Wait for boss Boss’s sign off File

Page 30: Enterprise Content Management and Digital Signiatures

Use Case: County of Hawaii

‣ New leave of absence process

Fill out document

Digital signature: boss

Filed in employee folder, subfolder

for year

!Boss notified

Page 31: Enterprise Content Management and Digital Signiatures

Wrapping Things Up

Page 32: Enterprise Content Management and Digital Signiatures

Questions?

Katie Burke

Government Program Strategist

[email protected]

562-988-1688 x 223

www.laserfiche.com

Mauricio Pinto

Market Manager

[email protected]

360-588-1062

www.arx.com

Page 33: Enterprise Content Management and Digital Signiatures

CoSign Deployment Arcitecture

Page 34: Enterprise Content Management and Digital Signiatures

Why CoSign?‣ Compliance:

• Meets international standards & U.S. regulations• Guarantees transparency, auditability & accountability

‣ Control & Security:• Provides centralized security & management over certificates & keys• Provides centralized management over users• Uses your existing authentication infrastructure

‣ Choice:• Sign Anything• Leverages your existing investment in EDM, ECM, & Workflow• Adapts to YOUR procedures

‣ Cost-Effectiveness:• Scales from a few users to thousands• Reduces costs immediately• Delivers ROI in 3-6 months

Page 35: Enterprise Content Management and Digital Signiatures

ARX (www.arx.com)

‣ ARX Inc. - PKI-centric data for security minded organizations

‣ Developed the ‘standard digital signature’ for highly regulated industries worldwide

‣ 5 Million+ active signers and growing!!!

‣ Focus: Government, Life sciences, Healthcare, Engineering Utilities, Energy, Legal…

“ARX has the most advanced digital signature

capability in the field… it easily integrates with internal

security and credential management along with a

strong central administration”

The Forrester Wave™:

E-Signatures, Q2 2013