If your company employs biometrics to identify people rather than to monitor their health readings, then you don’t care about the Orlando where visitors wear hats with mouse ears.
For our purposes, the big difference between IAL2 and IAL3 is that IAL2 allows “either remote or physically-present identity proofing,” while IAL3 requires “[p]hysical presence” for identity proofing. However, the proofing agent may “attend the identity proofing session via a CSP-controlled kiosk or device.” In other words, supervised enrollment.
“IAL3 is reserved for high-risk environments such as sensitive government services.”
How are solutions approved for a particular Identity Assurance Level?
Now I could get on my product marketing soapbox and loudly proclaim that my service is IAL2 compliant, or IAL3 compliant, or IAL4 compliant. (“What? You don’t know about IAL4? Obviously you’re not authorized to know about it.”)
“Available to Credential Service Providers offering Full or Component Credential Management Services. Modeled on best practice (drawing from, among other sources, ISO/IEC 27001, ISO/IEC 29115), this Class of Approval ensures the provider organization’s good standing and management / operational practices and assesses criteria which are derived strictly from NIST SP 800-63 rev.3 requirements, ensuring a conformant technical provision of the provider organization’s service.
You see that the Kantara Initiative doesn’t even offer an approval for IAL1, just for IAL2 and IAL3.
It also offers approvals for AAL2 and AAL3. I’ve previously discussed Authenticator Assurance Levels (AALs) in this post. Briefly, IALs focus on the initial identity proofing, while AALs focus on the authentication of a proven identity.
Component Services IAL2 approvals…and an IAL3 approval
Now if you go to the Kantara Initiative’s Trust Status List and focus on the Component Services, you’ll see a number of companies and their component services which are approved for NIST 800-63 rev.3 and offer an assurance level of IAL2.
With one exception.
“NextgenID Trusted Services Solution provides Supervised Remote Identity Proofing identity stations to collect, review, validate, proof, and package IAL-3 identity evidence and enrollment data for CSPs operating at IAL-3. The NextGenID TSS Identity Stations enable remote operators to remotely supervise NIST SP 800-63A compliant Supervised Remote Identity Proofing (SRIP) sessions for credentialing.”
So if remote identity assurance is not good enough for you, there’s a solution. I’ve already discussed NextgenID’s SUPERVISED remote identity proofing in this post. And there’s a video.
But clearly biometric product marketers are paying attention to the identity assurance levels…at least the real ones (not IAL4). But are they communicating benefit-oriented messages to their prospects?
Biometric product marketing has to be targeted to the right people, with the right message. And the biometric product marketing expert at Bredemarket can help a company’s marketing organization create effective content. Talk to Bredemarket.
Check this article from cyberdaily.au regarding a reported third-party breach. This one is from Danish jewelry brand Pandora.
“The company said that impacted data includes names, birthdates and email addresses, but that financial information, government identifiers and passwords were not accessed by the threat actors.”
“While Pandora has not shared the name of the third-party platform, BleepingComputer has learned that the data was stolen from the company’s Salesforce database.”
Not that it’s necessarily Salesforce’s fault. Access could have been granted by a Pandora employee as part of a social engineering attack.
I’ve scheduled a post for Monday regarding Identity Assurance Level 3 (IAL3). I note that IAL2 is not enough for some government agencies, who have requirements that are…um…harder better faster stronger.
Monday’s post will include the “hands” video version of the Daft Punk song.
Health marketing leaders know that pharmacy product marketing can be complex because of the many stakeholders involved. Depending upon the product or service, your hungry people (target audience) may consist of multiple parties.
Pharmaceutical companies.
Pharmacists.
Medical professionals.
Insurance companies.
Partners who assist the companies above.
Consumers.
And the pharmacy product marketer has to create positioning and messaging for all these parties, for a myriad of use cases: fulfillment, approval, another approval, yet another approval. All the messaging can become a complex matrix. (I know. I’ve maintained a similar messaging matrix for an ABM marketing campaign for the financial services industry.)
To achieve your goals, health marketing leaders require a mix of strategy and tactics. And that’s where my extensive experience can help with your pharmacy product marketing program.
I seem to be on a kick on writing about case studies.
If you want your happy customers to say nice things about you, but don’t know where to begin to assemble your own case studies, maybe Bredemarket can help. Talk to me.
Six recent Bredemarket posts on case studies
In the meantime, read on to see where I’ve gotten my kicks lately.
1: Make your prospects stop and eat
Cool service. Have your happy customers tell prospects about it.
“Let Bredemarket help you take the blindfolds off. We can work together to fill your content black hole with blogs, articles, case studies, white papers, and other written words that make your prospects stop and eat.”
“Rather than arrange our case studies into four parts, my client and I agreed on a three-part outline that effectively combined “S” and “T.” Our outline? Problem, Solution, and Result. The STAR people were horrified, but we didn’t care. The client was a maverick anyway.”
You Have the Interview Transcript for a Case Study. Now What? – Bredemarket
5: Solutions that are specific
“Bredemarket is targeting tech CMOs with the specific problem of needing help, or a push, to create the marketing content their firms require. Before your competitors steal your prospects from you. You know what you need: perhaps awareness (who you are), perhaps consideration (why your competitors suck). And you will get it through through case studies, or blog posts, or white papers, or LinkedIn articles, or proposals, or something else.”
Pardon me while I leave my usual B2B and B2G comfort zone and enter the B2C world.
We think of buying in bulk—hauling the van (I almost said “station wagon”) to Costco or Sam’s Club—as a modern invention.
But it’s only new to those of us who are NOT incredibly wealthy.
As Ellen Hawley reminds us, rich people such as Samuel Pepys had goods problems during the Great Fire of London in 1666. The fire was leaving the City and approaching their homes—what to do? According to Pepys’ words, this is part of what he did:
“Sir W. Batten not knowing how to remove his wine, did dig a pit in the garden, and laid it in there; and I took the opportunity of laying all the papers of my office that I could not otherwise dispose of. And in the evening Sir W. Pen and I did dig another, and put our wine in it; and I my Parmazan cheese, as well as my wine and some other things.”
The “Parmazan” cheese is never mentioned again. As Hawley observes:
“Pepys’ house did not burn and in a later entry he writes about unearthing his wine but doesn’t mention the cheese. Since he didn’t complain about losing it, we can probably assume the fire didn’t turn it into a giant grilled cheese sandwich, minus the bread.”
Although a Parmesan cheese sandwich sounds foreign to me.
So why am I writing about 17th century fires and foods in the Bredemarket blog?