Algeria: Conference on Certification (eID)

Written by

When I tweeted last week that I am on my way to Algeria, I got quite some reactions and questions that I should report how it was. So, let me try to briefly summarise my impressions.

I was invited to speak at a conference on certification in Algiers. Well, initially I pushed back as I did not understand how you can have a good conference for two days on certifications like Common Criteria etc – and it is not my core competence . After discussions with our country manager, however, I realised that we were talking about certificates and eID – which made me change my mind.

The government of Algeria decided to invest in eID technology to help them to move one step towards a digital economy. So, there is definitely a lot of great intention, motivation and energy behind this idea and this project. To help them to learn from the breadth of industry experts and from other countries, the government decided, together with ITU, to organise this conference. The importance of the initiative can be seen by the presence of the senior government elite as well: Out of 35 Algerian ministers, three were present to open the conference – this showed commitment. And all of them stressed the importance of such an initiative.

Looking at the different presentations I have seen (I was not present during the whole conference, so this might not completely reflect everything), there were two main streams: Speakers (mainly vendors and consultants) explaining the technology and how good it is and that you can link an identity “securely” to a person. Others (and all the Microsoft speakers were in this category) laid out that it is at least as important to understand what you are going to do with the eID to make it successful.

So, the applications which consume the identity are very important to make an eID-project successful – this is pretty obvious but often forgotten in these projects. We have seen very good examples from developed countries being successful as the government as a whole moved to eGovernment and – in certain areas– only to eGovernment. This is probably the most common denominator amongst the speakers who did not “just push technology”.

So, there was this warning but then there were presentations, like the one from Kim Cameron (one of our identity gurus) as well, actually showing how you can make this happen.

Overall, this was a very good conference. To close here, I would like to give you an anecdote which happened to me: After my presentation I left the podium and then one of the organisers from the government approached me and said “you scared us”. I answered: “Well, this was not my intention but I thought that the threats are important to understand as well”. She looked at me and then said “no, I did not mean the threats but you raised so many valid questions we do not have an answer to yet. This scared us.”

This means to me that I probably accomplished my goal. Not to scare the Algerian government but to make them ask the right questions and start to look for an answer to them. To help there – I am looking forward to going back to Algeria (hoping that the Visa process and immigration is faster next time ;-) )

Roger

What’s hot on Infosecurity Magazine?