Thales helps Austrian Trust Authority provide fast, simple eIDAS digital signature security

nShield HSMs help A-Trust meet European and Austrian compliance requirements

Thales, a leader in critical information systems, cybersecurity and data security, announces A-Trust, an Austrian qualified trusted service responsible for issuing digital certificates for the country’s citizens and economy to use in electronic transactions, is deploying Thales nShield hardware security modules (HSMs) to protect its certificates and meet compliance regulations.

As of April 2017, a regulation known as RKSV (Registrierkassensicherheitsverordnung, or Cash Registers Security Regulation) went into effect in Austria. The regulation requires that receipts originating from businesses in the retail, hospitality and service sectors be digitally signed and stored using a unique private key assigned to each business owner. A-Trust saw an opportunity to support businesses in their efforts to become RKSV compliant by creating cost-effective solutions capable of automatically fulfilling these mandates. Additionally, the digital signing role of A-Trust’s solutions also subjected it to the European Union’s Electronic Identification and Trust Services (eIDAS) regulation, developed to help establish a single European market for secure electronic commerce.

With security top of mind, A-Trust turned to Thales to support it with fast, simple digital signature security. Thales nShield is a hardened, tamper-resistant, FIPS-compliant platform that supports encryption and digital signing along with key generation and protection. It is also certified to Common Criteria (CC) EAL4+, which recognizes nShield HSMs as Secure Signature Creation Devices (SSCDs). This means that nShield can provide the digital signatures, time stamps and other transactional data necessary to enable A-Trust to comply with RKSV and the cross-border standards mandated by eIDAS.

Thales nShield has helped A-Trust meet a number of business needs, including:

  • Easing the burden on merchants by offering them a device (nShield HSM) to support certified digital signatures
  • Creating a cost-effective, simple-to-use solution
  • Enabling scalability to facilitate A-Trust’s ambitious growth plans

Michael Butz, CEO at A-Trust

“The Thales nShield HSM enables us to offer a simple-to-use-solution based on full electronic end-to-end compliance with all applicable regulations. The ease of deployment facilitates our growing visibility across Europe which has created a huge demand for our products. Trust, integrity and security are the foundations of our company, and Thales helps us to achieve those goals.”

Kai Zobel, Regional Sales Director D-A-CH for Thales eSecurity says:

“Companies on the hook for meeting compliance regulations – such as eIDAS – have to take the utmost diligence and care in ensuring their solutions are trustworthy. Thales HSMs serve as the root of trust, creating high assurance credentials that ensure the integrity of a transaction or application, which is vital in underpinning the digital transformation of industry and enterprises.”

Find out more about how Thales is helping A-Trust by reading the case study.