Authentication Scoring System for Banking Access Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Banking institutions face challenges in ensuring secure and convenient access to banking systems and services, as existing methods lack effective identification, verification, and authentication processes to prevent unauthorized access.

Innovation Solution

A system and method that utilize an identification, verification, and authentication scoring system to generate an overall score based on identification, verification, and authentication scores, determining whether to grant access to banking services by evaluating communication information, identification tokens, and authentication data through engines and rules-based decision-making.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional authentication methods are used, then ease of operation is improved, but reliability deteriorates due to insufficient security

Engineering Contradiction:
ImprovesecurityVSAvoidconvenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The authentication process is segmented into three distinct scoring components: identification score (verifying claimed identity), verification score (confirming communication source), and authentication score (validating individual identity). Each component addresses a specific security dimension, allowing the system to maintain high reliability while preserving user convenience through automated multi-factor evaluation.

Inventive Principle:
Principle #1Segmentation

2Reliability

If multiple scoring engines are deployed, then reliability is improved, but device complexity increases

Engineering Contradiction:
Improveauthentication accuracyVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

Three separate scoring engines (identification scoring engine, verification scoring engine, authentication scoring engine) are merged into a unified authentication framework. The scoring aggregator combines these engines' outputs into an overall authentication score, allowing the system to achieve high reliability through multiple evaluation dimensions while managing complexity through integrated architecture and standardized interfaces.

Inventive Principle:
Principle #5Merging (Combining)

3Reliability

If comprehensive verification is performed, then reliability is improved, but loss of time increases

Engineering Contradiction:
Improveaccess control accuracyVSAvoidauthentication time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The system performs partial verification actions by evaluating only the most critical authentication factors needed for each specific access request. The scoring aggregator can weight different score components differently based on the service being accessed, performing excessive verification only when necessary and reducing verification depth for low-risk scenarios, thereby maintaining reliability while minimizing authentication time.

Inventive Principle:
Principle #16Partial or excessive action

Data Source

PatentUS9380041B2Identification, verification, and authentication scoring
Publication Date: 2016.06.28 BANK OF AMERICA CORP
  • US9380041B2 patent drawing
  • US9380041B2 patent drawing
  • US9380041B2 patent drawing

AI summary

Systems and methods are provided for responding to a communication received from an individual. An identification score may be obtained for the communication that indicates the likelihood that a claimed identity of the individual is the actual identity of the individual. A verification score for the communication may also be obtained that indicates the likelihood a purported source of the communication is the actual source of the communication. An authentication score for the communication may additionally be obtained that indicates the likelihood the individual has been authenticated. An overall score for the communication may be generated and based on the identification score, verification score, and authentication score. A response to the communication may thus be determined based on the overall score. The response may be a grant or denial of access to one or more services requested by the individual through the communication.