14 ms·
It's just a specific set of procedures that we follow which are skipped by traditional carrier Are you able to go into detail about this without giving up prop
by dvtrn 4y ago
It's just a specific set of procedures that we follow which are skipped by traditional carrier
Are you able to go into detail about this without giving up proprietary/secret sauce? Asking as a former pbx engineer at a couple of CLECs who is intimately familiar with the LNP process.
- ahaseeb 4y agoSure absolutely. So about Sim Swap, if some one request we've an internal process to verify - For external ports, a carrier can reject a port out . Just having the right info doesn't qualifies for automatic port out. Most of the companies do it due to FCC requirement of 4 hours. We've the resources to identify, reject and approve requests
- e-clinton 4y agoMaybe you’re new to HN, but this response should’ve been numerous paragraphs long going into excruciating detail about what how exactly the guarantee works. Additionally, there are basic English typos in your response.. as CEO of a phone company, you want to come off more polished and “on the ball”, else you will have a difficult time building trust.
- ahaseeb 4y agoEnglish is my 4th language, but this isn't an excuse for typos, so I'll be more careful. So to answer the original question on how we can guarantee while other carriers are not. There are two common attacks to compromise your account. Sim Swap & Port out In Sim Swap, any employee person can replace the SIM Card without permission by changing the number on the dashboard. Every primary carrier SIM card is available online, so criminals buy 100s of them and then rent logins to change this information. These logins are available for as little as 10k from the dark web. The port-out attack is when criminal changes your carrier, which requires your account #, Zip Code & PIN in a few cases. Other information can be fake, so it isn't required. Port out must be completed within hours, and carriers have automated the process. So how does Efani guarantee against it? I've been a victim of SIM Swap and have dealt with hundreds of incidents. No one is perfect, but we're just better at dealing with such attacks. We authenticate clients using multiple ways and treat every request as fraud. It isn't an automated process & even within the company, it's taken very seriously and has to be approved by multiple resources. Our authentication methods include notary public and video authentication, and clients can also request a unique authentication process. We employ US Citizens who're security cleared and don't outsource support or operations. A lot of our staff isn't public due to security reasons. They are well paid compared to regular CS staff and are well-trained against these attacks. Our SIM cards are not publicly available, eliminating the risk of anyone obtaining them. Information on the account is pseudonymized, so if a client has compromised himself, we're able to stop the impersonation. Cool-off period - In case of high risk, we put a 14-day cool-off period to any request to ensure the client isn't compromised We follow a few other methods in addition to the above and constantly. We've been able to stop all the attacks so far and are confident in our ability to deliver on the promise; Efani Secure Mobile is also securing clients with $5M Insurance. If you ever get compromised, you'll receive an apology, so we went beyond to ensure peace of mind. Please let me know if further clarification is required.