Security with BBVA: This is how we protect your data and your account

Whether it's face recognition, discreet mode, or two-factor authentication, BBVA protects your account where it counts.
At BBVA, security is our top priority, especially when it comes to your online banking and personal data. In this article we will show you which technologies, procedures and recommendations BBVA uses to protect your account and how you can contribute to security yourself.

Online banking: Access and protection

Access to online banking

You can access your online banking through the App or via the browser at bbva.de, and you can also complete certain transactions via the BBVA Hotline.*

 

BBVA uses the following procedures to verify identity:

  • Browser: Login with a username, full password and a one-time code (OTP) sent via SMS
  • App: Access via password or biometric procedures such as face recognition and scanning a fingerprint
  • Telephone service: You will be asked for part of your password (never the full password).

 

Now in the BBVA App: Discreet mode

In discreet mode, the front camera detects the glances of strangers and automatically hides data such as account balances. Alternatively, you can permanently hide your data – or leave it visible as usual. Ideal for public places.

 

Display of the last login

BBVA shows you the date and time of your last login – in online banking or in the App under “Security & Data Protection.”

Tip: Never share your login credentials and contact BBVA if your last login seems suspicious.

 

Automatic logout

If you are inactive for a long period of time, your session will automatically end to protect your data. You will be informed about this in advance.

 

Login credentials and password protection

BBVA stores your passwords encrypted. When you log in, your input is encrypted and compared with the stored value.

Recommendations

  • Change your password regularly, especially in cases of suspected misuse.
  • Use secure passwords with numbers, upper and lower case letters.
  • Forgot your password?

- In the browser go to"Login" > Have you forgotten your login credentials? > "I forgot my password" > "Continue"

- In the app, click on “Forgot your password?” and follow the instructions.

You'll need your BBVA username, your mobile phone for the SMS code, and your debit card PIN to confirm the transaction.

 


PSD2: What does it mean for your security with BBVA?

The European Payment Services Directive PSD2 ensures that your banking transactions are even better protected. BBVA consistently implements these guidelines: Every 90 days, or if you want to access older account information, you will be asked for additional verification.
This is done via the so-called two-factor authentication, such as with an SMS code. This way, BBVA ensures that only you have access to your sensitive financial data, and that your online banking remains completely secure.

 

Authentication and transaction approval

BBVA uses three security factors:

  • Knowledge: e.g. password
  • Possession: e.g. your smartphone is sent SMS codes
  • Biometrics: e.g. Fingerprint or face recognition
    → At least two of these factors are applied for every authentication or transaction approval.

 

Account blocking

Your access may be blocked if you repeatedly enter incorrect passwords, or if unusual behavior is detected.

Pay securely with the BBVA debit card

Your BBVA debit card comes with strong security features: dynamic CVV, biometric recognition, and no printed card number. If your card's security is compromised, you can easily deactivate it through the App.

Pay securely with a dynamic CVV

An innovative payment method: The BBVA debit card features no printed number and a dynamic CVV, offering maximum security for your online transactions.

Further security measures

Data protection and data integrity

  • Passwords are stored irreversibly encrypted.
  • Communication: SSL encryption for online banking and internal networks.
  • Data storage: Access only for authorized employees. BBVA strictly adheres to data protection laws and protects all customer communications.

Data protection control for the user

  • In the app under "Security and Data Protection," you can view, manage and download your data, and see which app permissions (e.g. camera, microphone) are active

Data centers

BBVA operates highly secure data centers with:

  • Tier IV Gold Certification
  • Access control, video surveillance, fire protection, power failure protection
  • Two fully functional data recovery sites

Fraud prevention

A specialized team monitors potential fraud attempts around the clock. You can also report suspected fraud directly via the App.

Security tips

In the App and on the website you will find current information and recommendations regarding cybersecurity.

Recommendations for users

Protecting your login credentials

  • Use complex passwords with numbers and letters.
  • Never share your password and change it regularly.
  • Do not write it down on paper and do not save it in unsecure files.
  • Do not use public devices or networks for sensitive data.
  • Do not enter any data via links in emails – only use the official access.
  • Disable the “Save password” feature in browsers on shared devices.
  • BBVA never asks for your login credentials via email, SMS or messenger. If you suspect anything, contact BBVA.

Protecting your devices

  • Keep your operating system, browser and apps current.
  • Only use official sources for software.
  • Use secure DNS servers (e.g. 8.8.8.8 or 1.1.1.1).
  • Protect your router with a secure password.
  • Install and update antivirus software.
  • Check external files with a virus scanner.
  • Regularly create backups.
  • Do not connect any unknown USB devices.
  • Activate screen locks and biometric access.

Safe surfing on the internet

  • Avoid sensitive websites on public devices.
  • Check the URL for authenticity (https://).
  • Pay attention to browser warnings for unsafe sites.
  • Be careful with unusual data queries.
  • Find out more about current cyberattacks and protective measures at bbva.de.

Summary

Whether through modern authentication procedures, encrypted communication, or the discreet mode in the App, BBVA is committed to making your online banking secure. With a few simple measures, you too can actively contribute to the security of your data. Together we ensure that your digital banking is fully protected.

Request a free physical or digital BBVA debit card with a dynamic CVV.

Others also found interesting

*With the BBVA Hotline you can:

  • Access your account balance and account transactions
  • Review your debit card transactions and report possible cases of fraud
  • Reset or recover passwords
  • Transfer amounts between BBVA accounts in your name

For regulatory reasons, transfers to third parties are not possible via the BBVA hotline.

Call us on +49 69 58 996 454, 24 hours a day. in Germany and from abroad. The cost of the call depends on your rate plan.