
The typical implementation process for OneSpan Identity Verification software involves the following steps:
Assessment and Planning: Evaluate business requirements and define objectives for implementation. This stage includes stakeholder alignment and project planning.
Solution Design: Customize the software to meet business needs, such as integrating workflows, branding, and compliance requirements.
Integration and Configuration: Integrate the software with existing systems (e.g., CRM, ERP) and configure identity verification features to align with the organization's use cases.
Testing: Conduct functional and security tests to ensure smooth performance and compliance with industry standards.
User Training: Train end-users and administrators on utilizing the platform effectively.
Deployment: Deploy the software in a live environment, enabling identity verification processes.
OneSpan Identity Verification can be customized to fit specific business needs:
Workflow Customization: Tailor verification steps and automate processes.
Integration: Seamlessly integrates with CRMs, ERPs, and custom systems via APIs.
Branding: Custom UI with logos, colors, and design to align with your brand.
Compliance: Configurable for GDPR, CCPA, HIPAA, or region-specific regulations.
Authentication: Offers options like biometrics, document scans, and multi-factor authentication.
Scalability: Adjustable for user volume and performance needs.
Localization: Multi-language and regional support for global users.
OneSpan Identity Verification offers comprehensive training and support for new users:
Training:
Onboarding Programs: Detailed training during the initial setup phase.
Workshops and Webinars: Live and recorded sessions to help users understand platform features.
Documentation: User manuals, setup guides, and API references for technical users.
Support:
24/7 Technical Support: Available via phone, email, or online ticketing system.
Dedicated Account Managers: Personalized assistance for enterprise customers.
Knowledge Base: Self-service resources, including FAQs, articles, and troubleshooting tips.
Additional Services:
Custom training for specific business use cases.
OneSpan Identity Verification implements robust security measures to protect data:
Encryption:
End-to-end encryption of data in transit and at rest.
Use of advanced cryptographic protocols (e.g., AES-256) for secure communications.
Data Privacy:
Compliance with GDPR, CCPA, and other privacy regulations.
Data anonymization and limited retention policies to minimize exposure.
Authentication:
Multi-factor authentication (MFA) for access control.
Biometric and document-based verification methods to prevent fraud.
Infrastructure Security:
Regular security audits and penetration testing.
Hosted on secure, ISO-certified cloud infrastructure.
Access Control:
Role-based access permissions to restrict unauthorized access.
Detailed activity logs for monitoring and auditing.
Fraud Detection:
AI-powered tools to detect suspicious patterns and mitigate risks.
OneSpan Identity Verification releases updates regularly, with the following approach:
Update Frequency:
Minor updates: Monthly or as needed for bug fixes and performance enhancements.
Major updates: Quarterly or biannually, introducing new features and improvements.
Management:
Automatic Updates: For cloud-based deployments, updates are pushed automatically with minimal disruption.
Scheduled Rollouts: Updates are communicated in advance, allowing businesses to plan.
Release Notes: Detailed notes accompany each update, outlining changes, fixes, and new features.
OneSpan Identity Verification policy on data ownership and portability includes the following key points:
Data Ownership:
Customers retain full ownership of their data, including user information and verification records.
OneSpan acts as a data processor, handling data only for the purpose of providing services.
Data Portability:
Supports exporting data in standard formats for easy migration or compliance purposes.
Provides APIs to facilitate seamless data transfer to other systems.
Compliance:
Adheres to data privacy regulations like GDPR and CCPA, ensuring customer control over data access and portability.
Retention and Deletion:
Offers configurable data retention policies based on customer requirements.
The terms and conditions for contract renewal and cancellation for OneSpan Identity Verification typically include the following points:
Automatic Renewal:
Contracts often renew automatically unless cancellation notice is provided.
Renewal terms e.g., duration and fees are specified in the agreement.
Notice Period:
A defined notice period e.g., 30-90 days is required before the contract's expiration for non-renewal.
Written notice may be mandatory for terminating auto-renewal.
Negotiation Option:
Clients can renegotiate terms, including pricing and service levels, before renewal.
Price Adjustments:
Renewals may include price revisions, typically communicated in advance.
Early Termination:
Permitted under specific conditions, such as non-performance or breach of contract by either party.
Early termination fees may apply if canceled before the agreed contract term.
Termination Notice:
Cancellation typically requires a written notice within a specified timeframe e.g., 30-60 days
Refunds and Fees:
Pro-rata refunds may be available for prepaid fees, depending on the agreement.
Setup or implementation fees are usually non-refundable.
Data Handling:
Customers are responsible for exporting their data before termination.
OneSpan ensures secure deletion of data post-termination as per its data retention policy.
Cause-based Termination:
Either party may terminate immediately in cases of regulatory non-compliance, breach of contract, or insolvency.
Transition Support:
OneSpan Identity Verification software meets a variety of industry compliance standards to ensure data security and privacy. These include:
GDPR General Data Protection Regulation: Compliance with GDPR for handling personal data of EU residents, ensuring data privacy, security, and user rights.
CCPA California Consumer Privacy Act: Adheres to CCPA regulations for protecting the privacy and rights of California residents, including data access and deletion requests.
SOC 2 Type II: Complies with SOC 2 standards, ensuring security, availability, confidentiality, and privacy of customer data.
ISO 27001: Meets the global standard for information security management systems (ISMS), ensuring the protection of sensitive business information.
PCI DSS Payment Card Industry Data Security Standard: Adheres to PCI DSS for securely processing, storing, and transmitting credit card information.
HIPAA Health Insurance Portability and Accountability Act: Meets HIPAA standards for the protection of healthcare data, particularly in the healthcare sector.
eIDAS electronic IDentification, Authentication, and trust Services: Complies with EU regulations for electronic identification and trust services, essential for digital signatures and secure electronic transactions.

OneSpan Identity Verification
By OneSpan Inc