Authorization Rule Rotation for Accuracy Optimization

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing authorization rules may become obsolete or inaccurate over time, leading to false positives and rejecting valid authorization requests, and there is a need to determine which rules have higher accuracy compared to others.

Innovation Solution

Implement a method where authorization rules are rotated between a prevention mode and a surveillance mode over a time interval, with the surveillance mode evaluating the accuracy of the rules through an independent process, allowing for the determination of their accuracy rate and modification of conditions to improve performance.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If authorization rules are used to reject fraudulent requests, then security is improved, but valid requests may be incorrectly rejected (false positives)

Engineering Contradiction:
Improveauthorization accuracyVSAvoidfalse positives
Core Design Contradiction:
ReliabilityVSObject-generated harmful factors

Solution Approach 1:

The patent applies dynamics by rotating authorization rules between two operational modes: a first mode where rules actively reject requests and a second mode where rules are evaluated for accuracy. This dynamic switching allows the system to periodically assess rule performance and adjust conditions, thereby reducing false positives while maintaining security through continuous optimization of authorization accuracy

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The patent implements feedback by establishing an independent process that evaluates the accuracy of authorization rules in the second mode. The system uses this feedback to determine accuracy rates and modify rule conditions accordingly. This closed-loop feedback mechanism enables continuous improvement of authorization accuracy, reducing false positives while maintaining effective fraud detection

Inventive Principle:
Principle #23Feedback

2Reliability

If authorization rules are continuously used for rejection, then security response is maintained, but rule obsolescence and inaccuracy occur over time

Engineering Contradiction:
Improvesecurity responseVSAvoidrule accuracy
Core Design Contradiction:
ReliabilityVSStability of the object's composition

Solution Approach 1:

The patent applies periodic action by rotating authorization rules between the first mode (active rejection) and the second mode (accuracy evaluation) over time intervals. This periodic switching allows the system to maintain security response through continuous operation in the first mode while periodically assessing rule accuracy in the second mode, preventing rule obsolescence through systematic review and optimization

Inventive Principle:
Principle #19Periodic action

Solution Approach 2:

The patent uses dynamics by implementing a flexible mode-rotation framework that adapts authorization rule operation over time. The system dynamically transitions rules between active rejection mode and evaluation mode, enabling continuous security maintenance while periodically refreshing rule accuracy through independent verification processes

Inventive Principle:
Principle #15Dynamics

Data Source

PatentEP3446249B1Rotation of authorization rules in memory of authorization system
Publication Date: 2021.08.18 VISA INTERNATIONAL SERVICE ASSOCIATION
  • EP3446249B1 patent drawingFigure 1
  • EP3446249B1 patent drawingFigure 2
  • EP3446249B1 patent drawingFigure 3

AI summary

Embodiments of the invention generally relate to methods and systems for operating authorization rules. An authorization rule has conditions that may be satisfied by an authorization request. A rule is rotated between the first mode and the second mode over a time interval wherein a first set of authorization requests are received. A first subset of the first set of authorization requests may not be rejected. After the first time interval, the authorization requests that were not rejected may be validated through an independent process. An accuracy rate for the rule is determined based on the portion of authorization requests that are valid and satisfied the conditions of the rule.