Harland User Authenticated E-mail

User authenticated E-mail provides an additional layer of security to e-mail communications. The program crates a unique E-mail Personal Identification Number (EPIN) for each individual e-mail address and includes it in every e-mail deployed. The EPIN serves as an element to verify the legitimacy of the e-mail by the reader.  If the EPIN is not included or is not accurate, the e-mail may be fraudulent and should alert the reader to investigate the e-mail further or treat it as a scam.

User authenticated E-mail uses a number of additional features to educate and provide for more secure e-mails:

An Authentication Statement:
This statement is placed on the Financial Institution's website, which is linked from e-mails or placed in the body of e-mails. This statement explains the concept of EPINs, explains how the reply address is formatted as a point of verification, and references the Financial Institution's published telephone number and website URL. A sample authentication statement is included in this document.

Integrate with Financial Institution Website:
Placing the Authentication Statement on the Financial Institution's website helps educate accountholders who do not receive e-mails.  Harland E-mail and Epsilon Interactive can be included as “trusted partners” on the website to educate interested accountholders about the platform used by the Financial Institution.

Communication of EPINs:
EPINs should be communicated to those accountholders who receive e-mails. E-mail, direct mail, or a monthly statement can be used to advise accountholders of their EPIN. The front-line staff can also help educate accountholders that provide new e-mail addresses that the e-mails they will receive will be “User Authenticated” and contain an EPIN.

Notification of front-line staff when e-mails are deployed:
It is encouraged that front line staff be included in all e-mail deployments. They will then know when an e-mail was sent and can answer questions that are raised by accountholders who received a specific e-mail.

EPIN Information Provided:
Periodically, Unser authenticated E-mail generates a file of EPINs and a corresponding e-mail address and forwardeds it to each client Financial Institution to provide a reference source in order to answer any accountholder inquiries that may be received about E-mail Personal Identification Numbers.

Harland User Authenticated E-mail is a premium feature of Harland E-mail. Clients that commit to contracts of twelve months or more are eligible to participate in Harland Authenticated E-mail. The cost of the HAE is dependant on the specific needs of a client.  The cost is determined by a number of factors, and Harland E-mail will be happy to discuss your situation and explain what is involved and how easily this solution can work for you.

Phishing is the act of sending e-mails falsely claiming to be a legitimate enterprise in an attempt to scam the recipient into surrendering private information that will be used for identity theft. Scammers use the information they gather to commit fraud.  Financial institutions are the most “phished” type of business. 

Once recipients are educated to the purpose of the EPIN and use it to verify the authenticity of the e-mails they receive, they are much less likely to be phished. Scammers must first find an EPIN for each e-mail address they plan on scamming before they could send an e-mail trying to obtain other personal information. They will look elsewhere for easier prey.

AUTHENTICATION STATEMENT

Is this e-mail legitimate or is this phishing? This is a good question that should always be asked if an e-mail looks suspicious. With your help we can guard against malicious attempts to steal your personal information. This e-mail has been sent by <FINANCIAL INSTITUTION> and this is how you can identify that this is a legitimate e-mail:

We will provide an E-mail Personal Identification Number on every e-mail we send you. This number is unique to your e-mail address and has been e-mailed to you. Only you will have this number. Please look for your E-mail Personal Identification Number (EPIN) in all our e-mails.

This AUTHENTICATION statement will be included in all of our e-mails to you and is posted on our website at <www.FinancialInstitution.com/authenticstmt>.

We will never ask for personal or account information or ask for verification of personal or account information in any e-mail. 

The reply address on our e-mails will look like this: W2TH054FA4261A5CD3734329709520@harland.bfi0.com. The first letter will always be a “T” or “W.” The “@harland.bfiO.com” will always be located at the end of the reply address and will be an additional way to determine that the e-mail did come from <FINANCIAL INSTITUTION>.  

If you have any questions about the legitimacy of our e-mails, please call us at <(XXX)-XXX-XXXX> and ask if we sent this e-mail.

If you are concerned about any links to our website contained in our e-mails to you, please access our website in the manner that you typically use, and you can access the same page(s) on our site. A copy of this No Phishing statement is on our website. Our website is <www.FinancialInstitution.com>. 

Continue: CAN Spam Act