VoiceOver users please use the tab key when navigating expanded menus

ONLINE SECURITY


How ANZ protects you online

ANZ takes security very seriously. Our online security solution encompasses both security software as well as best practice business process controls. We want to give you peace of mind when conducting your business in an online environment. Some of the security measures that ANZ employs are described below.

Network and Session Controls

Firewall

A firewall mechanism is used to protect the integrity of your connection to all ANZ websites.

Data Encryption

  • 128-bit Secure Sockets Layer (SSL) encryption technology is used to protect your session when you connect to an ANZ online platform.
  • When authenticating to an ANZ online platform your token user credentials are protected using End-to-end encryption (E2EE) technology.

Session time-outs

After you have been successfully authenticated to an ANZ online platform you will have an active security session. If you forget to log off from the platform or after a period of inactivity our systems will automatically log you off.

 

Identity and access management controls

Identity and access management is the way we help you control access to your online account information. Individuals who require access on behalf of your organisation are issued security credentials with a Password or PIN. The security credential is used to uniquely identify an individual when they log on to an ANZ online platform.

The type of credential that you will be issued with will depend on the platform that you are using, the regulatory requirements of your country and the access level that you have been assigned within your online account (for example, view only access or transaction approver etc.).

ANZ has a number of different security credential types which are described below.

 

Common security features of ANZ credential types

  • Credentials are issued in an inactive state. You will not be able to use the credential until you have been successfully verified and provided with a temporary Password or PIN.
  • The credential will be automatically disabled after a number of incorrect log on attempts.
  • For security reasons credentials that have not been activated or have been inactive for a defined period of time will be automatically disabled.

 

User ID / Password

  • Password strength controls (such as rules about password length, special characters, case etc.) have been implemented to reduce the risk of someone guessing or stealing the Password.

Smartcards

ANZ uses cryptographic smartcard technology. 

  • Smartcards use a digital signature to verify the users identity and create a secure a log on session.
  • Information on the smartcard is protected by a user chosen PIN.
  • Smartcards are considered a ‘strong authentication method’ also known as two-factor authentication (something you have and something you know).
  • Come in two form factors: SIM card size used for USB readers and standard credit card size.
  • Smartcards are the preferred regulatory authentication technology for some countries.
  • ANZ’s smartcard solution can be used for Transaction signing.
  • For your ANZ Smartcard Security Device to work you will need to install the ANZ Security Device Software on your computer. 

Tokens

ANZ uses PIN-pad protected authentication token devices.

  • Tokens are considered a ‘strong authentication method’ also known as two-factor authentication (something you have and something you know).
  • Tokens are PIN protected by a user chosen PIN.
  • Uses One-time-passwords (OTP) for authentication. Tokens generate a OTP password which can be used once and are only valid for a limited period of time.
  • ANZ’s token solution can be used for Transaction signing.

This content is published by Australia and New Zealand Banking Group Limited ABN 11 005 357 522 (“ANZBGL”) in Australia on its Institutional website and is subject to the Website Terms of Use. It is not published with the intention of providing any direct or indirect recommendations relating to any financial product, asset class or trading strategy. The information on this website is not intended to influence any person to make a decision in relation to a financial product or class of financial products. It is general in nature and does not take account of the circumstances of any individual or class of individuals. Some products or services mentioned on this website may not be suitable for you and may not be available in all jurisdictions. Before acting on any information, you should read the disclosure documents for your selected product or service including the terms and conditions or product disclosure statement and consider whether that product or service is appropriate for you having regard to your particular objectives, financial situation and needs. You should seek independent advice. Nothing on this website constitutes a recommendation, solicitation or offer by ANZBGL or its branches or subsidiaries (collectively “ANZ”) to you to acquire a product or service, or an offer by ANZ to provide you with other products or services. All content is based on information available at the time of publication. While this content has been prepared in good faith, no representation, warranty, assurance or undertaking is or will be made, and no responsibility or liability is or will be accepted by ANZ in relation to the accuracy or completeness of this content. ANZ does not provide any financial, investment, legal or taxation advice in connection with the content on this website.