
Case Study: Card Payments Processor - Modernising API Security and Onboarding
Replaced brittle VPN integrations with a secure, FAPI-compliant mTLS and OAuth onboarding architecture, accelerating partner integration and reducing operational risk.
Real projects, measurable outcomes - delivered by Opendata Consult. In every case study, Craig Greenhouse acted as the principal architect, working alongside client teams and other engineers to ensure successful delivery. Some projects were contracted directly with Opendata Consult; in others we were subcontracted by systems integrators such as Raidiam. In all cases, Craig Greenhouse was responsible for the architecture and hands-on delivery described.
Replaced brittle VPN integrations with a secure, FAPI-compliant mTLS and OAuth onboarding architecture, accelerating partner integration and reducing operational risk.
Production-ready Open Banking pilot: DCR with SSAs and certificates, externalised consent with existing auth, and token-secured FDX APIs across Dev to Prod.
Implemented UK-OB style Dynamic Client Registration and RFC7592 in PingFederate, with certificate-bound access tokens to harden Santander UK's API security posture.
Launched OBIE-conformant APIs in 12 weeks, integrated PingFederate's multi-brand capability, and embedded FAPI profiles to harden Banco Santander's security posture.
👋 Enjoyed the article?
Book a Call with Us