ISO 20022, Pain001 and payment of your salary
At Pentagrid, we occasionally review our clients' internal processes to identify IT security risks. When we discovered that large sums of money are transferred with just a few clicks and no transaction verification, we helped securing the process. At the same time, we developed a tool to support this improvement.
The following blog post outlines the complexity of pain.001 files, the risk of transfering payment files via insecure channels and the problem of reviewing payment details when the pain.001 file is uploaded into an e-banking interface. Pentagrid's tool follows a diff-like approach to detect changes among monthly payments. The "riskless pain" tool is available on Github.