A financial services client asks how FIDO addresses regulatory requirements for strong customer authentication (SCA). What is the best response?
-
A
FIDO satisfies SCA by requiring two separate passwords
-
B
FIDO satisfies SCA by combining possession of the authenticator device with user verification such as a PIN or biometric
-
C
FIDO satisfies SCA only when combined with an SMS OTP
-
D
FIDO satisfies SCA through server-side certificate pinning