Wednesday, May 24, 2017

Login process for Corporate Pass should be simplified

I waited 6 years for IDA (now IDMA) to introduce the Corporate Pass. They now wants to make it compulsory for organisations to use the Corporate Pass, rather than the individual's Sing Pass.

The login for Corporate Pass is quite complicated for users. They require the user to provide the organization's UEN code and the user's personal code. This is a bad approach.

After that, they still have to go through a 2FA authentication. And search a complicated website for the transaction that they wish to provide.

This is sad. Singapore will still have to face a big challenge in introducing online transactions. This login system will discourage users.

What is a better login system? They should just follow Google or Facebook to allow people to login with their email address. THey can even allow the user to login with the Facebook or Google profile.

After logging in this easy way, they can present to the user the organization that they are authorised to access. In most cases, it will be a single organization. But some users may access a few organizations. This can be selected from a drop down list.

If a higher level of authorization is required, they can ask for the 2FA for this person. This should be made optional for first level access. It can be made compulsory for submitting transactions.

