TEE + HCE – The ideal solution for mobile payments?

Andy Ramsden, Product Marketing director
at Trustonic

The world of mobile payments is not unlike the political systems we see in many countries around the world. Three or more groups arguing; sometimes working together and at other times pulling in totally different directions.

Multiple players, differing priorities

Consumers typically have strong relationships with their bank, their carrier and possibly also their smartphone vendor, all of whom are vying to push their own brand of mobile wallet. However, consumers usually wish to pay with their preferred card, from their preferred bank and don’t necessarily want multiple wallets cluttering their phone’s home screen.

Banks wish to reach the widest possible audience, irrespective of which phone is being used on which network. Quite understandably, they view their brand as being of the utmost importance and want consumers to use a single, bank-owned wallet, says Andy Ramsden, Product Marketing director at Trustonic.

The smartphone vendors are offering banks and consumers a secure payments environment and a global presence, but dressed up inside their own vendor-branded wallet (e.g, Apple Pay, Samsung Pay).

Some banks see this as a dilution of their brand and consumers are faced with yet another app (distinct from their mobile banking app) and potential issues when switching between phones. This is not an ideal situation, for consumers or banks.

The cloud…

While using the cloud via Host Card Emulation (HCE) appears to offer a solution that is ideal for service providers, as it is carrier- and OEM-independent (except for iPhone which is a closed solution), there remains a perception that HCE might not be secure enough. That concern might be one of the reasons why we haven’t seen mass adoption of HCE.

…the silver lining

This is where trusted execution environment (TEE) technology comes into its own. The TEE has reached a significant level of maturity, offering GlobalPlatform compliance and delivering scale across the Android base, but importantly it delivers hardware-level protection to secure HCE.

This increased level of security opens up opportunities to deliver simpler (yet more secure) authentication. On top of this, the TEE’s Trusted User Interface can securely deliver value-added services such as high value payments, secure messaging and other transaction-based services.

Many banks are seeing the combination of HCE and TEE as the technologies to enable mobile payment integration with existing bank apps, satisfying the needs of the service provider and the consumer. We may now have a mobile payments solution that can finally reach scale! Watch this space…

The author of this blog is Andy Ramsden, Product Marketing director at Trustonic

Comment on this article below or via Twitter: @ VanillaPlus OR @jcvplus

RECENT ARTICLES

Samsung and O2 Telefónica introduce vRAN and Open RAN network in Germany

Posted on: May 3, 2024

Samsung Electronics and O2 Telefónica announced on Thursday that the companies launched their first virtualised RAN (vRAN) and Open RAN commercial site in Germany. It is the first time that

Read more

Telxius expands submarine cable route from Dominican Republic to Puerto Rico

Posted on: May 2, 2024

Global connectivity provider Telxius is opening its latest submarine cable route with the extension of SAm-1 between Punta Cana in the Dominican Republic to Puerto Rico. The route is in

Read more