PCP GmbH – Security Solutions for Banks, Financial Service Providers, and Regulated Environments
FIDO2 Security Keys for Banks & Financial Service Providers
PSD2-compliant, DORA-ready, Phishing-Resistant, and suitable for highly regulated authentication and signature scenarios.
From secure employee access up to specialized solutions for financial contracts that support digital signatures: PCP GmbH offers FIDO2 hardware for internal and external financial applications.
Strong Authentication for Financial Systems
Secure Access for Employees, Systems, and Sensitive Financial Processes
Banks & Financial Service Providers are subject to particularly strict regulatory requirements. PSD2 requires strong customer authentication, DORA addresses digital operational resilience, and BaFin-related requirements set high standards for critical access. FIDO2 Security Keys are the technically sound solution for this: Phishing-Resistant, Passwordless, auditable, and suitable for highly secure employee and customer access.
Regulatory Framework & FIDO2
| PSD2 & SCA | FIDO2 hardware supports strong two-factor customer authentication and is suitable for secure logins and transaction approvals. |
| DORA | Robust, Phishing-Resistant MFA enhances authentication security and supports resilient financial IT. |
| BaFin & MaRisk | Hardware Tokens are a recognized method for accessing privileged or particularly critical systems. |
| eIDAS / QSCD | Specialized, certified hardware solutions are available for legally binding electronic signatures in financial processes. |
Recommended Products for Financial Service Providers
Security Keys for Compliance, Signatures, and Rollouts
PCP offers solutions for employees with signature authority, general secure employee access, and large-scale Rollouts in branch and financial networks.
These are some of our best-selling products in this industry. Our Navigator will help you find the Security Key that best suits your requirements—in just a few steps, you’ll make the right choice.
Signature Classes E, EU – QES Required
For employees with signing rights (contract execution, certificates) │ CC EAL6+ │ eIDAS QSCD │ PSD2-compliant │ Made in Europe
| Product | NEOWAVE Winkeo2J-A FIDO2+QSCD (USB-A) |
| Application Name | EBICS / agree21 / agree BAP / SAP Banking / S/4HANA Financial Services |
| Use / Purpose | For employees with signing authority (contract execution, certificates) |
| Connector / Form Factor | USB-A |
| Logs / Functions | eIDAS QSCD |
| Certification / Security | CC EAL6+ │ eIDAS QSCD │ PSD2-compliant |

Biometric key with PIV function—supports up to 32 individual Fingerprints
Biometric key with PIV functionality │ On-chip Fingerprint │ FIDO2 + U2F + PIV │ FIPS 140-2 │ USB-C │ Recommendation for retail locations with shared workstations (cashiers, service counters) or highly sensitive access areas where entering a PIN is impractical
| Product | Feitian BioPass K26+ (USB-C + PIV) |
| Application Name | Microsoft Azure/Microsoft Entra ID / M365 (Bank) – Banking Cloud, Phishing-Resistant MFA (BAIT) / Avaloq Banking Suite |
| Use / Purpose | Biometric key without PIN entry, with PIV function (up to 32 people) |
| Connector / Form Factor | USB-C + PIV |
| Logs / Functions | FIDO2 + U2F + PIV |
| Certification / Security | FIPS 140-2 |

Contact and Contactless Smart Card with FIDO2 and TOTP/HOTP
Contact and Contactless Smart Card with FIDO2 and TOTP/HOTP │ CC EAL6+ │ FIDO L1 │ Made in Europe │ For systems that require both FIDO2 and OTP authentication
| Product | NEOWAVE Badgeo Dual FIDO2+OTP (Smart Card) |
| Application Name | Agree21 / agree BAP / Avaloq Banking Suite / Microsoft Azure/Microsoft Entra ID / SAP Banking / S/4HANA Financial Services |
| Use / Purpose | Contact and Contactless Smart Card with FIDO2 and TOTP |
| Connector / Form Factor | Smart Card |
| Logs / Functions | For banks that run legacy OTP systems and FIDO2 in parallel |
| Certification / Security | CC EAL6+ |

Biometric - Personalized Security for Up to 16 Employees
Biometric │ On-chip Fingerprint │ FIDO2 + U2F + PIV │ USB-C │ Suitable for branch offices or teller stations with shared workstations and USB-C ports, where faster user switching via Fingerprint is preferred over PIN entry
| Product | Feitian BioPass K49 Pro (USB-C) |
| Application Name | Microsoft Azure/Microsoft Entra ID / M365 (Bank) – Banking Cloud, Phishing-Resistant MFA (BAIT) / Avaloq Banking Suite |
| Use / Purpose | Biometric - individual access for up to 16 employees using a Security Key |
| Connector / Form Factor | USB-C │ Suitable for retail locations or teller stations with shared workstations and USB-C ports, where faster user switching via Fingerprint is preferred over PIN entry |
| Logs / Functions | FIDO2, FIDO U2F, TOTP/HOTP, PIV, WBF |
| Compatibility / Systems | Compatible with Windows Hello, Azure AD |

Frequently Asked Questions
| Does FIDO2 fully meet the PSD2 SCA requirements? | Yes. FIDO2 is suitable for strong two-factor customer authentication and is relevant for secure authentication scenarios in the financial sector. |
| What is the audit capability like? | FIDO2 authentications can be logged in common IAM systems. This makes it easy to generate audit trails for Compliance and auditing purposes. |
| Can customers also use FIDO2 keys? | Yes. In addition to employee scenarios, other potential applications include high-security online banking and corporate customer portals. |
Compatibility with IAM and financial systems
FIDO2 Security Keys can be integrated into modern identity and access management environments, making them suitable for banks, financial platforms, and critical internal systems.
| Microsoft | Microsoft Entra ID, Microsoft 365, Windows Hello for Business |
| IAM platforms | OKTA and similar identity systems |
| Financial Use Cases | New employee onboarding, privileged access, customer portals, signature processes |
| Compliance | Auditable Authentication and Strong MFA for Regulated Environments |
PCP GmbH – Your Partner for Financial Authentication
PCP GmbH assists Banks & Financial Service Providers in selecting appropriate Hardware Tokens for employees, branch networks, privileged access, and use cases involving digital signatures.
| What PCP Offers | Details |
|---|---|
| Compliance Consultation | Support in selecting appropriate solutions for PSD2, DORA, and regulatory security requirements |
| Certificate Documents | Documents on eIDAS, FIPS, CC EAL, and other relevant security features |
| Product Recommendation | Appropriate selection for employees, privileged access, and end-customer scenarios |
| Bulk Purchase Offers | Support for Rollouts in retail chains and distributed organizations |
| Technical Consultation | Integration with IAM, MFA, and existing financial IT systems |
| Delivery & Support | Fast deployment and German-language support |
Request a consultation for Banks & Financial Service Providers now
Compliance Check: Which FIDO2 or signature solution meets your regulatory requirements?
Request Certificates: Information on eIDAS, FIPS, CC EAL, and other security features.
Volume Pricing: Contact PCP directly for Rollouts for branch networks, employee access, and high-security applications.
PCP GmbH | www.pcp-europe.com | info@pcp-europe.com