Secure digital identity solutions for financial institutions under eIDAS 2.0

Ubiqu’s Remote Secure Element runs signing logic and access policies as code inside certified HSMs, rather than relying on external policy servers. A secure channel connects to the HSM, where keys never leave the protected environment and can only be used when all required conditions are met. By enforcing policies inside the HSM itself, the attack surface is reduced and trust services scale by adding HSM capacity, not infrastructure complexity.

QTSP certification is expensive and technically demanding

QTSP certification is essential for providing the highest level of trust services under eIDAS 2.0, but it’s not easy.

  • High implementation costs often reaching millions of euros.
  • Technical complexity requiring specialized expertise most organizations lack.
  • Stringent security requirements that are difficult to meet with conventional solutions.
  • Ongoing compliance maintenance creating recurring costs and complexity.

‘’One Wallet for everything.’’

“Adding genuine simplicity and added value. That requires, in our cooperation with Ubiqu, that we continuously mix innovations. Don’t fight against deadlines, but develop valuable use cases from needs of citizens and implement them quickly. The digital revolution is in our own hands.”

Stefan van Ingen

– Product Manager Identity & Access Management,
the municipality of Rotterdam

Operationalising the Remote Secure Element

The Remote Secure Element is designed to be used across multiple identity and trust products, not as a standalone component. It acts as a shared security foundation that can be applied where high-assurance identity, access, or trust services are required, while allowing each product to evolve independently.

We provide the backend technology needed to build and run an EUDI wallet. It handles secure identity usage, authentication, and credential operations in line with the EUDI architecture, without depending on specific devices or phone capabilities.

The organisational identity wallet enables secure access to applications, systems, and physical environments using a single digital identity. It supports authentication and authorisation based on roles and verified attributes, while keeping the user experience simple and consistent.

Our trust-service components enable organisations to issue and operate services such as signatures, seals, timestamps, and attestations. They are designed to integrate into existing architectures without forcing adoption of a full platform. Trust enforcement and scalability are handled by a common security backbone.

We enable organisations to build or evolve towards qualified trust services at their own pace. Instead of adopting a monolithic QTSP platform, organisations can assemble the required components and retain control over their architecture. Certified security components provide the foundation when qualification is required.

How KPN issues digital identity attributes with Ubiqu technology

As a leading Qualified Trust Service Provider in the Netherlands, KPN issues trusted digital credentials through their partnership with Ubiqu. Their collaborative platform enables KPN to issue verified attributes like identity confirmations and account credentials, while Ubiqu’s modular technology ensures these attributes can be securely stored and presented through a user-friendly digital wallet that works across healthcare, housing, and beyond.

The Ubiqu difference

Our Remote Secure Element (RSE) technology delivers high-level security without relying on phones or SIM cards. Users can securely access their digital identity from any device, making it more convenient and accessible than traditional hardware-dependent solutions.

Our cloud-based platform enables seamless integration across services while eliminating dependencies on specific devices or telecom providers. This device-agnostic approach ensures maximum scalability and flexibility for both providers and users.

Our technology enables selective disclosure, allowing users to verify specific attributes (like age) without revealing unnecessary personal information. This privacy-by-design approach ensures compliance with eIDAS 2.0 and data protection regulations.

Choose the integration level that matches your needs – from implementing our wallet technology to becoming a complete identity service provider. Our modular approach allows you to start small and expand your services as your needs change.

Start building your own wallet with our trusted expertise and technology

Get in touch

This field is for validation purposes and should be left unchanged.