Cross-Channel Biometric Authentication via Mobile Intermediary
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Large organizations face challenges in providing convenient and secure customer authentication methods across various channels, including mobile devices, automated transaction devices, and agent terminals, while ensuring seamless and efficient interaction with customers.
Innovation Solution
A customer authentication computing platform that uses biometric authentication and location validation to generate a validation code, allowing customers to authenticate on one device and access accounts on another, using QR codes or OTPs, ensuring secure and convenient access.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If traditional authentication methods are used across multiple channels, then security can be maintained, but customer convenience and ease of operation deteriorate
Solution Approach 1:
The patent implements a universal authentication system where biometric data collected on a mobile device can be used across multiple channels including automated transaction devices and agent terminals. The biometric template stored on the mobile device serves as a universal key that works across different interaction channels, eliminating the need for channel-specific authentication methods and thereby improving ease of operation while maintaining security through consistent biometric verification.
Solution Approach 2:
The mobile device acts as an intermediary that bridges the gap between secure authentication and convenient access. It stores biometric templates locally and uses them to authenticate customers across different channels without requiring the customer to physically present identification documents or remember multiple passwords. The mobile device mediates the authentication process by validating biometric data locally and facilitating seamless access to organizational services.
2Reliability
If biometric authentication is implemented across all devices, then authentication security improves, but device complexity and implementation cost worsen
Solution Approach 1:
The patent segments the authentication system into distinct functional components: the mobile device handles biometric template storage and initial authentication, automated transaction devices handle transaction-specific verification, and agent terminals handle complex customer service interactions. This segmentation allows biometric authentication to be implemented selectively across different device types without requiring complete system overhaul, thereby reducing implementation complexity while maintaining security.
Solution Approach 2:
The system performs preliminary biometric authentication on the mobile device before the customer interacts with organizational devices. The biometric template is collected and stored in advance on the customer's mobile device, so that when the customer approaches an automated transaction device or agent terminal, the authentication has already been performed or can be quickly verified. This preliminary action reduces the complexity of implementing biometric authentication across all devices by concentrating the complex biometric processing on the mobile device.
3Ease of operation
If authentication status is carried over between devices, then customer convenience improves, but potential security risks from device location validation worsen
Solution Approach 1:
The system implements feedback mechanisms where the mobile device's location is continuously validated against the organizational system. When the customer approaches an automated transaction device or agent terminal, the system verifies that the mobile device is at the expected location through GPS or other location services. This feedback loop ensures that authentication status can be carried over between devices only when location validation confirms the customer is at the appropriate physical location, thereby maintaining security while enabling seamless authentication.
Data Source
AI summary
Methods, systems, and computer-readable media for authenticating customers of an organization and managing authenticated sessions of various customers are presented. Some aspects of the disclosure provide ways for a customer of an organization to authenticate using a mobile computing device, such as the customer's personal mobile device, when interacting with the organization in various contexts, such as when accessing an automated transaction device or when interacting with an agent of the organization during an in-person session or during a teleconference session. In some arrangements, the customer's authentication status, which may be established on the mobile computing device and which, in some instances, may be verified based on the location of the mobile computing device, may be carried over from the mobile computing device to another computing device or system, such as an automated transaction device or a teller terminal device, which may be used by an agent of the organization.


