System for verifying and updating basic information of customers of financial institutions
The system addresses the high costs and customer burden associated with updating customer information by automating the verification and update process using an authentication module and consent-based information storage.
Patent Information
- Application Number
- JP2024029292
- Authority / Receiving Office
- JP · JP
- Patent Type
- Applications
- Current Assignee / Owner
- Filing Date
- 2024-02-29
- Publication Date
- 2025-09-10
AI Technical Summary
Financial institutions face high costs and effort in verifying and updating customer basic information, while customers are burdened with filling out forms and notifications.
A system that automates the process of verifying and updating customer basic information by obtaining consent, using an authentication module to read information from an Individual Number card, and storing consent information and basic information in a management information storage unit.
The system reduces the burden on both financial institutions and customers by automating the verification and update process, ensuring smooth confirmation and registration of customer information.
Smart Images

Figure 2025132000000001_ABST
Abstract
Description
[Technical Field]
[0001] The present invention relates to a system for supporting the process of verifying and updating basic information on customers of financial institutions. [Background technology]
[0002] To prevent money laundering and other crimes, financial institutions are required to continuously manage their customers. To meet this requirement, financial institutions are required to periodically check and update basic customer information. Conventionally, financial institutions send postcards to customers every year or every few years to inquire about basic information such as address, name, date of birth, and gender, and to confirm whether there have been any changes. Various related technologies have been introduced in this regard (Patent Documents 1 to 5). [Prior art documents] [Patent documents]
[0003] [Patent Document 1] Patent No. 7305907 [Patent Document 2] Patent No. 6586267 [Patent Document 3] Japanese Patent Application Laid-Open No. 2003-85263 [Patent Document 4] Japanese Patent Application Laid-Open No. 2008-59242 [Patent Document 5] Patent No. 5483297 Summary of the Invention [Problem to be solved by the invention]
[0004] These operations place a heavy burden on financial institutions in terms of costs and effort. Customers also have to fill out postcards and other forms with the necessary information each time they make an inquiry, which is a burden. While methods for submitting address change notifications using automated teller machines have been developed, as mentioned above, the recent increase in payments using online banking means that increased use of automated teller machines is unlikely. The present invention was made to solve these conventional problems. [Means for solving the problem]
[0005] The following configurations are means for solving the above problems.
[0006] <Configuration 1> A process for verifying basic information of financial institution customers is carried out, a management service initiation processing unit that acquires basic information, including the name, address, and date of birth, of a customer who holds a deposit account at the financial institution, and executes a process to obtain consent for the initiation of the service in order to update and register the acquired basic information with the financial institution; a management information generation processing unit that generates management information including consent information indicating that consent has been obtained from the relevant customer and stores the management information in a management information storage unit; a basic information acquisition control unit that, upon receiving a request from a financial institution, executes a process for acquiring basic information of the relevant customer if the consent information is valid; The basic information confirmation processing system for customers of financial institutions is characterized by having a basic information registration control unit that registers the acquired basic information as is with the financial institution the first time the above service is started, and if there are no changes to the basic information acquired the first time, notifies the financial institution that there are no changes to the basic information, and if there are changes to the basic information, asks the customer for consent to notify the relevant financial institution of the changes, and if consent is obtained, generates the above consent information anew and executes a process to register the changed basic information with the financial institution.
[0007] <Configuration 2> An authentication module is provided in the basic information acquisition server, which holds an electronic certificate obtained by reading a customer's Individual Number card and performs authentication processing and processing to read basic information from the electronic certificate or from a database of an administrative institution, and the management information includes the above-mentioned consent information, the customer's account number, and an access code to start the above-mentioned authentication module; When the consent information is valid, the basic information acquisition control unit transmits the access code to the basic information acquisition server and starts the authentication module. A basic information verification processing system for financial institution customers as described in claim 1, characterized in that when basic information is obtained, the basic information is stored in a basic information storage unit, and when the authentication process fails, it is determined that a change has occurred in the basic information. <Configuration 3> When a financial institution requests the continual collection of basic information, including the customer's name, address, and date of birth, a step of a management service start processing unit sending a management service start notification to the client terminal; a step in which a management information generation processing unit generates, when the customer's consent is obtained, management information including consent information indicating that consent has been obtained, the customer's account number, and a means for executing an automatic acquisition process of basic information; a step in which a basic information acquisition control unit executes a customer authentication process and an automatic acquisition process of basic information when the consent information is valid; a step of notifying the financial institution that there is no change when the basic information registration unit determines that there is no change in the management information acquired previously in the management information acquisition process; If the management information cannot be acquired or has been changed, the management service initiation processing unit obtains the customer's consent again, and then the management information generation processing unit generates consent information, the basic information acquisition control unit executes the customer authentication process and the automatic acquisition process of basic information, and the basic information registration control unit executes the process of registering the acquired management information with the financial institution. How to obtain, update and register basic information about financial institution customers. [Effects of the Invention]
[0008] While carefully handling the personal information of customers who hold accounts at financial institutions, this system eliminates the need for customers to go through the trouble of doing so and enables smooth confirmation and updating of basic information about bank account holders, etc., in accordance with requests from financial institutions. [Brief explanation of the drawings]
[0009] [Figure 1] A functional block diagram showing the system configuration of the present invention. [Figure 2] Network connection state diagram [Figure 3] Flowchart of initial basic information registration process [Figure 4] Management service startup process flowchart [Figure 5] Flowchart of management information generation process [Figure 6] Flowchart of basic information acquisition process [Figure 7] Basic information registration process flowchart for the second and subsequent times [Figure 8] Example of registering basic information for multiple banks at once [Figure 9] Explanation of a modified method for registering basic information with a bank DETAILED DESCRIPTION OF THE INVENTION
[0010] Hereinafter, embodiments of the present invention will be described in detail for each example. [Example]
[0011] (System configuration) The configuration of the system of the present invention will be described with reference to Figure 1. The system configured as shown in Figure 1 supports the process of verifying basic information of customers of financial institution 12. The basic information of the customer is the name, address, date of birth, etc. of the depositor linked to the account number of the deposit account at financial institution 12. Financial institution 12 is required by regulation to periodically verify whether this basic information has changed. This system executes a service of obtaining the basic information of the financial institution's customers via a network with the customer's consent and providing it to the financial institution.
[0012] In order to realize the above services, this system is provided with a management service server 32. The management service server 32 is connected to the customer terminal 14 via a network.
[0013] The customer terminal 14 is, for example, a smartphone. It may also be a tablet terminal or a personal computer. In order to execute this service, the management service server 32 is provided with a service application 34 that is operated by the customer terminal 14 via the cloud. The service application 34 is launched upon request from the financial institution 12, and executes a series of processes using a computer that includes a management service start processing unit 36, a management information generation processing unit 46, a card reading control unit 38, an identity verification processing unit 40, a basic information acquisition control unit 44, and a basic information registration control unit 50.
[0014] Although some functions of the service application 34 may be executed by installing a program on the customer terminal 14, this embodiment will be described as an example in which all functions run on the cloud. Furthermore, the term "information" used below refers to digital data of any structure that can be processed by a computer.
[0015] To provide this service to a financial institution, it is necessary to obtain the customer's consent. The management service initiation processing unit 36 has the function of executing the process of obtaining the customer's consent in order to start this service. That is, in accordance with this consent, the service periodically or as needed acquires the customer's basic information 24 stored in the basic information database 22 of the administrative agency 20, and updates and registers the basic information 24 with the financial institution where the customer's deposit account is held. The overall processing flow will be explained later with reference to Figure 3.
[0016] When obtaining the customer's consent, the financial institution from which the service is being requested is indicated to the customer. That is, a service start request screen is displayed on the customer terminal 14, showing the name of the financial institution, the customer's account number, etc.
[0017] When the service start request screen is displayed on the customer terminal 14, the customer performs an operation to indicate whether or not they agree to the request. When the customer's consent is obtained, the management information generation processing unit 46 generates management information including consent information 62 and stores it in the management information storage unit 60. The account number 66 may be included in the consent information 62. The additional information 68 will be explained later.
[0018] (Management information) The consent information 62 is data including, for example, a consent statement received from the customer and a validity period. The access code 64 is a tool that, in combination with the authentication module 27, starts the basic information acquisition process at any time from the second time onwards without obtaining the customer's consent. The authentication module 27 is a program module that stores authentication data obtained by reading the customer's Individual Number card, and automatically executes authentication processing with the authentication authority 18 and processing to read basic information from the administrative agency 20 database, and is unique to each customer.
[0019] The access code 64 is code data that activates the authentication module 27 on the basic information acquisition server 26, and is also an identification code unique to each customer. For example, security can be enhanced by storing the access code 64 on the management service server 32 side and the authentication module 27 on the basic information acquisition server 26 side, and managing the authentication module 27 so that it cannot be activated without the access code 64. Furthermore, when the access code 64 is used, it is even better to provide the authentication module 27 with a function that prohibits the acquisition of personal information other than the required basic information 24.
[0020] By storing the consent information 62 and the access code 64 in the management information storage unit 60, the basic information can be quickly obtained at any time in response to a request from the financial institution 12. If there is a change in the basic information, the authentication data becomes invalid, which can be immediately confirmed from the status of the authentication module 27. Therefore, whenever a request is made by a financial institution, the necessary information can be quickly obtained and notified to the financial institution.
[0021] Furthermore, when there is a change in basic information, for example, it is possible to obtain the customer's consent again before reporting to the financial institution, and then go through the same procedure as the first time before updating the registered information with the financial institution. This ensures the protection of the customer's personal information. The authentication module 27 still stores the digital certificate used when the customer's consent was first obtained. Therefore, if the customer's address or other details have changed since then, the authentication process will fail. It is possible to know changes to basic information using only the authentication module 27, without having to check the My Number card or read the basic information.
[0022] (Basic information acquisition function) When the process of obtaining basic information 24 from the administrative agency 20 is started, the card reading control unit 38 is activated. The card reading control unit 38 has a function of operating the customer terminal 14 to control the reading of the electronic certificate recorded on the My Number card 16.
[0023] Here, identity verification processing is performed to determine whether the operator of the customer terminal 14 is the owner of the My Number card 16. The identity verification processing unit 40 has a function to perform this processing. Here, for example, processing such as known two-factor authentication is performed.
[0024] The basic information acquisition control unit 44 has a function of requesting the basic information acquisition server 26 to acquire the basic information 24. That is, the access code 64 is sent to the basic information acquisition server 26, and the authentication module 27 is activated. When the authentication module 27 is activated, the authentication processing unit 28 first communicates with the certification authority 18 to verify the validity of the electronic certificate read from the My Number card 16. The basic information 24 can be acquired from a database of an administrative agency, but the name, address, and date of birth can also be read from the electronic certificate. The basic information 24 may be acquired by any method.
[0025] If the validity is confirmed, the basic information acquisition unit 30 communicates with the administrative agency 20 to acquire the basic information 24. The basic information acquisition control unit 44 of the service application 34 has the function of receiving this basic information 24 and storing it in the basic information storage unit 48. If the electronic certificate is invalid, the authentication process fails. The result is returned to the basic information acquisition control unit 44, which then processes to notify the financial institution of the result. For example, the result is displayed on the on-site terminal 58, and an operator is requested to operate the registration destination terminal 54.
[0026] (Operator operation) While it would be sufficient if the basic information 24 stored in the basic information storage unit 48 could be transferred directly to the financial institution 12, it is common for the core systems of the financial institution 12 to avoid direct connection to external networks. Furthermore, there may be cases where the character code used to display the acquired basic information 24 differs in part from the character code used in the core system 56 of the financial institution 12 to which the information is to be registered. Therefore, in this embodiment, the basic information registration control unit 50 displays the basic information 24 on the on-site terminal 58. This is the process for registering the management information with the financial institution. The operator inputs the basic information 24 using the registration terminal 54 of the financial institution 12. Therefore, in this embodiment, the on-site terminal 58 and the registration terminal 54 are provided within the management service server 32.
[0027] For example, financial institutions may use their own external characters for part of a customer's name or address. The basic information acquired from the administrative agency 20 uses substitute characters and does not use any character codes other than those specified to standardize the character data handled by the administrative agency. In such cases, the basic information registration control 50 displays on the on-site terminal 58 that substitute characters are used in part of the basic information acquired from the administrative agency 20, making it easy to compare the substitute characters with the external characters displayed on the registration destination terminal 54 of the financial institution 12. This allows the operator to easily and accurately register the basic information.
[0028] (network) The above system is realized by a network as shown in Figure 2. Network 15 may be any of a variety of networks, such as the Internet, telephone lines, or a closed network. The client terminal 14, management service server 32, and basic information acquisition server 26 communicate with each other via this network 15, and execute the processing described in Figure 1. The basic information acquisition server 26 also communicates with a certification authority 18 and an administrative agency 20 via the network 15 to acquire basic information 24.
[0029] The management service server 32 is provided with a site terminal 58 that displays the basic information 24 stored in the basic information storage unit 48 (FIG. 1). The registration destination backbone system 56 is separated from the network 15, and an operator 57 operates the registration destination terminal 54 to input the basic information 24. The operator 57 operates the registration destination terminal 54 while viewing the screen of the site terminal 58. The specific operations of each unit that operates in the service application of the system of the present invention will be explained below using flowcharts.
[0030] (First time registration process) Figure 3 shows the initial procedure when this service is provided to a customer for the first time. First, in step S11, management service server 32 receives a management request from financial institution 12. In step S12, management service start processing unit 36 sends a service start notification to customer terminal 14. At the same time, in step S13, the customer is asked to confirm whether or not they agree to the provision of the service. Details of this process will be explained in Figure 4.
[0031] In step S14, the management service initiation processing unit 36 determines whether consent has been obtained from the customer based on the response from the customer terminal 14. If the result of this determination is yes, the process proceeds to step S15, and if no, post-processing is performed. That is, the financial institution 12 is notified that consent has not been obtained, and the process ends.
[0032] In step S15, management information is generated and stored. Details of this process will be explained using FIG. 5. In step S16, acquisition of basic information 24 is controlled. Details of this process will be explained using FIG. 6. In step S17, registration of the acquired basic information 24 is controlled. That is, as already explained, the basic information 24 is stored in the basic information storage unit 48, and the operator operates the registration destination terminal 54 to register the basic information 24 in the registration destination core system 56 of the financial institution 12. In step S18, the registration result is reported to the customer terminal 14.
[0033] FIG. 4 shows the details of the management service initiation process. When the management service initiation processing unit 36 receives a management request from the financial institution 12 in step S21, it reads the request contents and performs the following process. In step S22, the customer's account number 66 is recorded. In step S23, the customer's email address is recorded. In step S24, an email is sent to the customer using that email address. In step S25, the customer is notified of the name of the financial institution 12 and the account number. Thereafter, in step S26, the customer is requested to consent. Of course, these notifications may be displayed simultaneously on one screen. Alternatively, the notification may be displayed by a pop-up message via an app in the customer terminal 14.
[0034] (Generation of management information) 5 shows the details of the management information generation process after consent has been obtained from the customer. In step S31, management information generation processing unit 46 generates consent information 62. As already explained, the contents of this consent information 62 include data indicating that consent has been obtained from the customer, a validity period, etc. In step S32, consent information 62 is stored in management information storage unit 60.
[0035] After that, when the identity verification process and the like are completed, in step S33, the authentication module 27 already described is generated and registered in the basic information acquisition server 26. At the same time, in step S34, an access code 64 for activating this module is stored in the management information storage unit 60. In step S35, an account number 66 is added to the management information. In step S36, additional information 68 containing various contents may be added to the management information thus generated. This will be explained later.
[0036] 6 shows the procedure for controlling the acquisition of basic information 24. In step S41, basic information acquisition control unit 44 determines that the consent information is valid, and then in step S42 transmits access code 64 to basic information acquisition server 26. As a result, in step S43, authentication module 27 receives the automatically acquired basic information 24. Note that, at this point, if it is not the first time, a report may be received that the authentication process has failed.
[0037] (Processing after the second time) This system is designed to minimize the amount of hassle for customers. Therefore, in this embodiment, the first time the service is started, the customer is asked to operate a smartphone or other device to read the information on their My Number card, as described above. However, after receiving the customer's consent, the basic information can be automatically obtained, even if it becomes necessary to confirm the content of the basic information every year. For example, if the consent information 62 is displayed with a validity period of three years, the basic information can be freely referenced at any time for three years.
[0038] In FIG. 7, in step S51, a second transition management request is received from the financial institution 12. In step S52, the management information is referenced to determine whether the consent information is valid. If it is valid, the process proceeds to step S53; if it is not valid, the process proceeds to another process. In the other process, a process for requesting initial consent is carried out again. Next, in step S53, the acquisition of basic information 24 is controlled in the manner described above. In step S54, the report described in step S43 of FIG. 6 is received, and in step S55, it is determined whether there are any changes to the basic information. If the result of this determination is yes, the process proceeds to step S56; if no, the process proceeds to step S57.
[0039] In step S56, a report of "no changes" is sent to the financial institution 12. In other words, it is sufficient to report "no changes" to the financial institution 12. This process is performed in many cases. Since the system receives a request from the financial institution, automatically obtains the result of "no changes" without requiring any effort from the customer, and reports this to the financial institution, the burden on the operator can also be reduced. In this case, the process can be fully automated by receiving a request by email and replying by email.
[0040] On the other hand, if the basic information 24 has been changed, the same processing as the first time is carried out. First, in step S57, the customer is requested to consent to the update. In step S58, it is determined whether consent has been given. If the result of this determination is yes, the processing proceeds to step S59, and if no, the processing is terminated and post-processing is carried out, such as reporting this to the financial institution 12. In step S59, the same basic information registration processing as the first time is carried out.
[0041] As mentioned above, if basic information has changed, such as a change of address, the change is registered with the financial institution after the process of requesting consent is carried out in the same way as the first time. This allows for careful handling of customer personal information while eliminating the need for bothersome steps on the part of the customer, and enables financial institutions to smoothly confirm and update basic information.
[0042] (Bulk registration of basic information) FIG. 8 shows, for example, a case in which terminals 54 of three banks 1 to 3 are installed within management service server 32. This system can provide a service for registering basic customer information in response to requests from each bank. Furthermore, by using this system as is, if a customer who holds accounts at all three banks requests a change to their basic information due to a change in address, for example, the basic information registration control unit 50 can simultaneously register the change in basic information at all three banks. This process can be achieved by executing the processes shown in FIGS. 5 and 6, using the same procedure as described above.
[0043] (How to report to the bank) Figure 9 shows variations of the method of inputting information into each financial institution's core system. This figure shows an example in which the basic information registration control unit 50 registers basic information for each bank, including various information such as the customer's assets, income, and source of professional funds. For Bank A, data can be sent directly to the core system from the site terminal 58 via data linkage. For the next bank, Bank B, data can be input via a relay server. For the next bank, Bank C, data can be automatically input via CSV data. In any of the above cases, automation can be achieved by, for example, having a computer learn the operator's operations using the above system and developing a unique character code conversion program for each financial institution.
[0044] However, due to the reasons already explained, it will take a considerable amount of development time to realize such an automatic processing system. Therefore, for the development, we first automated the acquisition of basic information as shown in the above example, and adopted a method in which operators 57 input data into the core system by operating terminals 54. At the same time, we realized a system that can be operated with minimal burden on both customers and operators. [Explanation of symbols]
[0045] 12 Financial institutions 14 Customer terminal 15 Network 16 My Number Card 18 Certification Authorities 20. Government Agencies 22 Basic Information Database 24 Basic information 26 Basic information acquisition server 27 Authentication Module 28 Authentication processing section 30 Basic information acquisition department 32 Management Service Server 34 Service Apps 36 Management service initiation processing unit 38 Card reading control unit 40 Identity verification processing section 44 Basic information acquisition control section 46 Management information generation processing unit 48 Basic information storage section 50 Basic information registration control section 54 Registration destination terminal 56 Registered core system 57 Operator 58 Site terminal 60 Management information storage unit 62 Consent information 64 Access Code 66 Account Number 68 Additional Information
Claims
1. A process for verifying basic information of financial institution customers is carried out, a management service initiation processing unit that acquires basic information, including the name, address, and date of birth, of a customer who holds a deposit account at the financial institution, and executes a process to obtain consent for the initiation of the service in order to update and register the acquired basic information with the financial institution; a management information generation processing unit that generates management information including consent information indicating that consent has been obtained from the relevant customer and stores the management information in a management information storage unit; a basic information acquisition control unit that, upon receiving a request from a financial institution, executes a process for acquiring basic information of the relevant customer if the consent information is valid; The basic information confirmation processing system for customers of financial institutions is characterized by having a basic information registration control unit that registers the acquired basic information as is with the financial institution the first time the above service is started, and if there are no changes to the basic information acquired the first time, notifies the financial institution that there are no changes to the basic information, and if there are changes to the basic information, asks the customer for consent to notify the relevant financial institution of the changes, and if consent is obtained, generates the above consent information anew and executes a process to register the changed basic information with the financial institution.
2. An authentication module is provided in the basic information acquisition server, which holds an electronic certificate obtained by reading a customer's Individual Number card and performs authentication processing and processing to read basic information from the electronic certificate or from a database of an administrative institution, and the management information includes the above-mentioned consent information, the customer's account number, and an access code to start the above-mentioned authentication module; When the consent information is valid, the basic information acquisition control unit transmits the access code to the basic information acquisition server and starts the authentication module. A basic information verification processing system for customers of a financial institution as described in claim 1, characterized in that when basic information is obtained, the basic information is stored in a basic information storage unit, and when the authentication process fails, it is determined that a change has occurred in the basic information.
3. When a financial institution requests the continual collection of basic information, including the customer's name, address, and date of birth, a step of a management service start processing unit sending a management service start notification to the client terminal; a step in which a management information generation processing unit generates, when the customer's consent is obtained, management information including consent information indicating that consent has been obtained, the customer's account number, and a means for executing an automatic acquisition process of basic information; a step in which a basic information acquisition control unit executes a customer authentication process and an automatic acquisition process of basic information when the consent information is valid; a step of notifying the financial institution that there is no change when the basic information registration unit determines that there is no change in the management information acquired previously in the management information acquisition process; If the management information cannot be acquired or has been changed, the management service initiation processing unit obtains the customer's consent again, and then the management information generation processing unit generates consent information, the basic information acquisition control unit executes the customer authentication process and the automatic acquisition process of basic information, and the basic information registration control unit executes the process of registering the acquired management information with the financial institution. How to obtain, update and register basic information about financial institution customers.
Citation Information
Patent Citations
Information management server, information cooperation system, information management method and program
JP2023074857A
Winggflapping manual flying machine
JP1979083297A
Procedure acting method and system
JP2003085263A
Address change processing method and system
JP2008059242A
Notification item change system
JP6586267B2