Security Aspects of Digital Identity
摘要
Information protection is an integral part of the communication in a modern society. Sharing sensitive data on social networks, easy to use services, increasingly sophisticated threats and vulnerabilities, increasing number of digital identities in e-commerce and digital banking and unmanaged global digitization during pandemics require active approach to data protection and research new options to minimize the impact of security incidents. The article describes security aspects in communication between the consumer and service provider during authentication and proposes procedures that can describe these factors, categorize, measure and evaluate their impact on authentication. The output of the article is a description of the functionality of the web application, which, based on the user's inputs, will recommend optimal authentication mechanisms sorted by risk score. The following input data is required from the user: Data classification rate; Number of application architecture layers; Type of authentication mechanism or authentication framework; Description of the network location of the consumer and the provider; Required number of authentication factors, The required form of ensuring data integrity control, The required form of securing the secrecy of transmitted data (encryption) and Description of user application role permissions. All options for input data are predefined and therefore the application is also suitable for a user who does not have a deeper awareness of the risks associated with authentication mechanisms or system integration.