FB pixel

HID backs India’s move to stronger MFA for its giant volume of digital payments

HID backs India’s move to stronger MFA for its giant volume of digital payments
 

HID has signalled its preparedness to help Indian banks and payment providers comply with the Reserve Bank of India’s sweeping new authentication rules.

The new requirements take effect next year and push the country’s digital payments ecosystem past SMS one‑time passwords (OTPs). “The RBI’s updated directions are a landmark step for India’s digital payments security,” said Edwardcher Monreal, principle solutions architect at HID.

“By moving beyond SMS OTPs and embracing standards-based authentication, India is aligning with global best practices. HID’s FIDO-based solutions give banks and payment providers a clear, proven path to compliance — one that not only meets the April 2026 deadline but also strengthens defenses against the evolving threat landscape.”

The RBI’s Authentication Mechanisms for Digital Payment Transactions came into force on 1 April. The new framework mandates stronger multi‑factor authentication (MFA) and aims for a decisive break from legacy password‑plus‑OTP models that have long underpinned India’s digital payments boom.

India’s payments landscape, driven by UPI and its processing of many billions of transactions each month, has become a global model for scale and speed. But the rise of phishing, SIM‑swap fraud and social engineering attacks has exposed the security weaknesses of SMS‑based OTPs.

In response, the RBI invoked its powers under the Payment and Settlement Systems Act, 2007, to require banks, non‑bank payment entities and fintech platforms to adopt more robust, dynamic and interoperable authentication mechanisms.

The new rules mandate that every digital payment must use at least two independent authentication factors, with one being dynamic. The RBI also encourages the use of advanced methods such as device‑bound credentials and biometric verification, and introduces a risk‑based model that allows issuers to apply stronger checks for higher risk transactions.

HID says its authentication platform, which is built on FIDO standards, directly addresses these requirements. By replacing shared secrets like passwords and OTPs with device‑bound passkeys secured through public key cryptography, HID’s system verifies users through a combination of device possession and biometrics or a PIN.

The key benefits include phishing‑resistant authentication tied to the user’s device, interoperability across platforms through open standards, support for adaptive and risk‑based security models and a faster, more intuitive customer experience. India’s transition mirrors trends seen elsewhere with regulators in the EU, Middle East, Singapore and Australia moving to steer away from shared‑secret authentication models.

Related Posts

Article Topics

 |   |   |   |   |   |   | 

Latest Biometrics News

 

UK to launch spending, delivery inquiry into national digital identity scheme

The UK’s Public Accounts Committee (PAC) has announced an inquiry into digital ID in Britain. A government release says the…

 

Togo issues 6M unique numbers as MOSIP-based digital ID project progresses

Figures from the Togolese government indicate that at least six million people have already been issued a Unique Identification Number…

 

Norway, Turkiye, Malaysia pursue social media age restriction

Norway plans to introduce age restrictions for social media platforms before the end of 2026. A release from the Norwegian…

 

AI regulation set to become US midterm battleground

The fight over AI regulation in Congress is becoming less a conventional technology policy debate than a struggle over who…

 

World ID makes case for enterprise-scale authentication, but some aren’t buying it

Despite being banned or under regulatory enforcement in jurisdictions including Spain, Germany, Brazil, Hong Kong, Portugal, Kenya and South Korea,…

 

UK wrestles with age threshold, age assurance for social media sites

Will the UK put age restrictions on social media? A new research briefing looks at the various arguments and developments…

Comments

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Biometric Market Analysis and Buyer's Guides

Most Viewed This Week

Featured Company

Biometrics Insight, Opinion

Digital ID In-Depth

Biometrics White Papers

Biometrics Events