# How Strong Customer Authentication can Prevent Cart Abandonment
Author:  Pal Sinha, Barnali 
Author URL: https://financedigest.com/author/pal-sinha-barnali
Published: 2022-07-06
Category: BUSINESS
Category URL: https://financedigest.com/category/business
Meta Title: PSD2 Strong Customer Authentication (SCA) Requirements:
Meta Description: Discover how the new Strong Customer Authentication (SCA) requirements under PSD2 are changing the online shopping experience in the UK, with increased security
URL: https://financedigest.com/how-strong-customer-authentication-can-prevent-cart-abandonmenthtml

![undefined](https://prod.superblogcdn.com/site_cuid_cm5qst7v3003gwirgwqtxn8i8/images/istock-1296750024-1736815600079-compressed.jpg)

_![](https://prod.superblogcdn.com/site_cuid_cm5qst7v3003gwirgwqtxn8i8/images/210-1736815600097-compressed.jpg)_

_By **Sham Careem,** Telecom Solutions Consultant, Infobip_

In 2020-21, [UK residents and businesses lost over £2.5bn to fraud and cyber-crime](https://brc.org.uk/media/677737/brc-crime-survey-2021.pdf). While the cumulative figure is startling, the impact on individuals can also be devastating. Beyond the financial loss, the mental toll that impacts victims cannot be ignored. It is therefore welcome news that security measures for [payments have tightened this year](https://www.financedigest.com/2019-year-customers-take-control-payments.html "2019: The year customers take control of payments").

The launch of PSD2 Strong Customer Authentication (SCA) requirements in March signal the most significant change to [payments since chip and pin was introduced over 15 years](https://www.financedigest.com/2022-the-year-future-payment-trends-become-reality.html "2022 – the year ‘future payment trends’ become reality?") ago. The new standard requires businesses to choose from two of three factors to identify [customers where purchases](https://www.financedigest.com/britains-nationwide-curbs-cryptocurrency-purchases-by-customers.html "Britain’s Nationwide curbs cryptocurrency purchases by customers") are over €30. This includes something you know (for example, a PIN), something you are (biometrics, such as fingerprints) and something you have (such as a [mobile phone](https://www.financedigest.com/mobile-phone-insurance-brand-loveitcoverit-launches-in-ireland.html "Mobile phone insurance brand, loveitcoverit, launches in Ireland"), card reader or other device evidenced by a one-time passcode).

In the UK, the Financial Conduct Authority (FCA) governs the SCA requirements, and failure to comply is subject to full [FCA supervisory and enforcement action](https://www.financedigest.com/the-fca-is-taking-immediate-action-on-customer-vulnerability-but-how-does-this-impact-advisers.html "The FCA is taking immediate action on customer vulnerability; but how does this impact advisers?"). The new measures have fundamentally [changed the way](https://www.financedigest.com/the-future-of-retail-and-the-ways-that-retail-has-changed-for-consumers-during-the-pandemic.html "The future of retail and the ways that retail has changed for consumers during the pandemic") we shop, with an increase in the use of One Time Passwords (OTPs) and other two-factor authentication methods (2FA) sent to customers.

But what does this mean for the [online shopping](https://www.financedigest.com/the-high-street-is-dead-long-live-online-shopping.html "The high street is dead – long live online shopping! ") experience?

**Avoiding abandoned baskets**

For consumers, the new SCA regulations have resulted in an additional hurdle in the payment journey when using [debit or credit cards](https://www.financedigest.com/visa-has-terminated-global-debit-card-agreements-with-ftx.html "Visa has terminated global debit card agreements with FTX"). Naturally, if these fail, it could lead to declines and cart abandonment at checkout. [Barclaycard data, for example,](https://www.infosecurity-magazine.com/news/sca-rules-force-ecommerce/) has shown that, following the implementation of SCA, 14% of shoppers experienced an increase in declined online payments, while three in 10 abandoned baskets due to increased friction at the checkout.

As global consultancy [KPMG](https://advisory.kpmg.us/blog/2020/authentication-impacting-customer-experience.html) highlights, payments security gives rise to two key challenges; “consumers are largely unhappy with current authentication procedures, and authentication in most companies is a mess, generating operational complexity and making it very difficult to provide good customer experiences.”

Yet if we examine things from a security perspective, [recent figures from Nationwide Building Society](https://www.finextra.com/newsarticle/40210/nationwide-stops-2000-more-frauds-a-month-with-sca-rules) have shown that SCA has stopped 2,000 cases of online card fraud a month, with two-thirds of customers happy to wait a little longer in exchange for extra security.

The [regulations are clearly effective](https://www.financedigest.com/technology-preventing-minor-regulation-causing-major-problems-the-butterfly-effect.html "Technology Preventing Minor Regulation Causing Major Problems: The Butterfly effect") when it comes to consumer protection, but extra authentication shouldn’t be seen as a nuisance that puts shoppers off. It should also provide a seamless process for the merchant, where they can incorporate verification into the [customer journey](https://www.financedigest.com/how-to-navigate-a-seamless-journey-from-cio-to-chief-customer-officer.html "How to navigate a seamless journey from CIO to Chief Customer Officer").

**Ensuring** [security is synonymous with experience](https://www.financedigest.com/the-security-experience-tug-of-war-2.html "The security experience tug-of-war")

According to the [Baymard Institute](https://baymard.com/lists/cart-abandonment-rate), 26% of consumers cited checkout processes being too long as a key reason for cart abandonment. Merchants [need to simplify the payment](https://www.financedigest.com/stay-ahead-of-the-curve-and-meet-your-customers-payments-needs.html "STAY AHEAD OF THE CURVE AND MEET YOUR CUSTOMERS PAYMENTS NEEDS") process and make it easier, especially with SCA requirements at play.

Identification through our mobile phones has become ubiquitous. Nearly every day, most of us use our mobile phone to verify our identity – whether through email, SMS, or a [push notification](https://www.financedigest.com/why-push-notifications-improve-customer-experiences.html "Why push notifications improve customer experiences"). This requires us to stop what we are doing and [spend time](https://www.financedigest.com/office-workers-waste-more-time-on-slow-tech-than-they-spend-on-holiday.html "Office Workers Waste More Time on Slow Tech Than They Spend on Holiday") verifying ourselves.

Instead of sending an SMS with a one time password (OTP) to prove the ‘Something you have’ element of SCA, [Silent Mobile Verification](https://www.infobip.com/mobile-identity) enables businesses to instantly verify a customer via their SIM, without any input required by the customer It does this by verifying that the phone number of the mobile device being used by the customer is the same as that registered with the vendor.

Silent Mobile Verification requires no additional effort or [time from customers](https://www.financedigest.com/how-real-time-data-innovation-is-driving-up-customer-experience-in-fintech.html "How real-time data innovation is driving up customer experience in fintech") (aside from their one-time consent). The check happens silently in the background, via checks with the customer’s mobile network operator, representing a new, streamlined way to achieve the two-factor authentication required by SCA without breaking the [customer experience](https://www.financedigest.com/is-your-customer-experience-exceptional.html "IS YOUR CUSTOMER EXPERIENCE EXCEPTIONAL?").

**Combatting rising cybercrime**

As we become an increasingly digital society, fraud is becoming more and more sophisticated with cybercriminals doing all they can to try and [gain someone’s trust and trick people into sharing](https://www.financedigest.com/bayer-shares-gain-on-prospect-of-second-activist-pushing-for-change.html "Bayer shares gain on prospect of second activist pushing for change") sensitive data, click malicious links or open malicious files. This is called ‘social engineering’, where those with malicious intent capitalise on people’s emotional responses, good nature and desire to help, for example by sending a text or email that [needs an immediate or urgent](https://www.financedigest.com/ftx-collapse-shows-urgent-need-to-finalise-eu-crypto-rules-says-european-commission.html "FTX collapse shows urgent need to finalise EU crypto rules, says European Commission") response, coercing people into making a mistake. According to Verizon’s latest [cybersecurity threat](https://www.financedigest.com/hackers-for-hire-are-biggest-cybersecurity-threat-eu-agency.html "Hackers-for-hire are biggest cybersecurity threat -EU agency") figures, 25% of total breaches in its 2022 report were the result of social engineering attacks.

This [type of fraud](https://www.financedigest.com/types-of-fraud-in-e-commerce.html "TYPES OF FRAUD IN E-COMMERCE") is impacting OTPs too, where victims are tricked into reading out the OTPs they are sent, allowing fraudsters to access their accounts. Silent Mobile Verification completely eliminates this [vector of fraud](https://www.financedigest.com/mail-services-an-emerging-vector-for-financial-fraud.html "Mail Services an Emerging Vector for Financial Fraud"). This translates into secure verification that eliminates friction and [prevents SIM swap fraud](https://www.financedigest.com/payroll-fraud-and-how-to-prevent-it.html "Payroll fraud and how to prevent it") via social engineering before it can ever take place.

**Final words**

While compliance with PSD2 proves the competence of a [business to act on regulation](https://www.financedigest.com/2018-is-a-year-of-regulation-is-your-business-ready.html "2018 is a year of regulation – is your business ready?"), understanding the directive and how to navigate it for the benefit of merchants and consumers is key. Silent [Mobile Verification should be a consideration](https://www.financedigest.com/managing-mobility-in-the-enterprise-must-have-consideration.html "Managing mobility in the enterprise must have consideration") for all organisations concerned with combatting the rise in cybercrime while delivering seamless online experiences.


---
This blog is powered by Superblog. Visit https://superblog.ai to know more.
---

