User Experience Demonstration
Accessing the User Experience Demo
The TickStream.KeyID User Experience site is a web-based demonstration that can be accessed from any modern desktop browser (such as Microsoft Internet Explorer or Edge, Google Chrome, or Mozilla Firefox), on any common operating system. It is designed to be used from desktop computers, rather than mobile devices. To begin, open a browser and navigate to:
Creating a New Profile Model
To create a new TickStream.KeyID Profile, begin by clicking the enroll
link at the top right of the page.
To enroll a login, begin by entering an email address. Please use a real email address that the system can use to send you limited, automated messages, as may be required (this will not be used for any marketing purposes). Then, click the Register Email
button. Modifying a previously registered email address will be covered later.
Next, enter your name and cell phone number (this is very important, since it will be used to send you SMS text messages as part of the demonstration process), and then select the appropriate carrier from the dropdown box. Click the Register User
button to complete the registration.
Now, enter a password. This should be a couple of words or a short phrase that you can type easily and reliably. You should not use an actual password, since we do keep the text for the demonstration (the password is never captured in the actual product, though). Usually, it's best to include a combination of uppercase letters, lowercase letters, and numbers, along with at least one "special" character, such as an exclamation point. However, it should still be easy for you to type, and it doesn't need to be particularly complicated. Please note that very simple passwords, such as "password", or "12345" will be rejected. Why? Well, the more varied physical movement on the keyboard, the more specific your behavior becomes to you. However, please remember this is a demonstration, so the purpose is to show how the product works, not test every iteration you can imagine. Please read the instructions display on the screen for more detail. Click the Save
button when complete.
After you enter the password for the first time, you will see a console appear with summary information about the status of this Profile model. If your selected password doesn't pass the rules, an error message will be displayed, giving you the opportunity to enter a different password.
Continue entering your password and click the Save
button after each entry. As you submit additional entries, the values shown will fluctuate, both up and down, as it learns about you. As you build the Profile model, several additional details are available from the summary statistics panel. If you click the Cohesion
link, it will open a new browser tab, and display a graph that describes the current efforts.
Another set of details about the Profile model is shown by clicking on the Password Analysis
link. This will open a dialog window with explanations relating to Errors, Information, and Warnings.
Once you have entered at least 15 qualified entries, several of the indicators will turn yellow or green. These show the overall quality of the Profile model that has been created. When you have a model that meets these criteria, it is ready for our machine learning engine to analyze and optimize the profile. Please note that while some indicators may remain yellow, as long as you have those 15 or more qualified entries, you are ready to proceed. At the same time, you are welcome to add as many entries as you like, since more is always better.
Currently, this machine learning process is performed under guidance. Once you have finished building the Profile model, please contact us at support@intensityanalytics.com for assistance.
Demonstrating a Profile (Simple)
Once your Profile has been created and processed, it's ready for demonstration. Click the simple
link at the top of the page to access a streamlined, simple login page, similar to what you might find on many websites.
Enter the email address you used when creating the Profile, along with the password you chose. You may click the Login
button, or press the Enter
key to perform the evaluation. Since this demonstration is not running on a production system, it may take a few seconds to access the server the first time. If you receive a message that your Profile has not been optimized, please contact us at support@intensityanalytics.com for assistance.
If you match the behavior stored in the Profile, you will see a message that you have passed the threshold set for this demonstration application. The TickStream.KeyID product has many configurable settings for adjusting the analysis process, to match different security requirements.
If you do not match the behavior stored in the Profile, you will see a message that you have been "blocked". While you had the right credentials, the system has determined that you aren't behaving like the person that created the Profile. This shows how TickStream.KeyID stops the most common data breaches, where credentials are lost or stolen, and the "bad guys" try to access the system.
Unlocking a Profile
If you fail to match the behavior after three attempts, the account will be locked. Click the unlock procedure
link to begin the process.
This will display a QR code, along with instructions, that you must scan with your phone or tablet device. It will direct you to a web page that will display the TickStream logo. Wait for the logo to appear on your device before closing the QR reader application. Shortly, you will receive a SMS message on the phone you registered when you created your Profile.
Click the Ok
button to close the dialog box. Next, check the box labeled I have a code!
, and enter the code that appears in the SMS message in the box that appears. Then, re-enter your password, and click the Login
button, or press the Enter
key to perform the evaluation. The code can only be used once, but you can request another code if you fail the evaluation again.
Using a One-Time Biometric
Another feature shown, is the One-Time Biometric. This provides an alternative if you have trouble producing the required behavior, due to faulty hardware, injury, or some other reason, or you want to give a third-party one-time access to your account (this might also generate additional alerts in a production environment). To begin, click the One-Time Biometric
button.
This will display a QR code, along with instructions. Scan this with your mobile device or tablet, and wait for the TickStream logo to appear on your device. You will receive a code on the phone you registered when you created your Profile within a few minutes, that contains the one-time code.
Click the Ok
button to close the dialog box. Next, check the box labeled I have a code!
, and enter the code that appears in the SMS message in the box that appears. Then, re-enter your password, and click the Login
button, or press the Enter
key to perform the evaluation. However, this will bypass the behavior analysis, and it only verifies the credentials are correct, along with the code provided. So, with the authorization code, anyone can type the password for that single time. The One-Time Biometric code can only be used once, but additional codes can be requested.