Cross-Channel Biometric Authentication via Mobile Intermediary

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Large organizations face challenges in providing convenient and secure customer authentication methods across various channels, including mobile devices, automated transaction devices, and agent terminals, while ensuring seamless and efficient interaction with customers.

Innovation Solution

A customer authentication computing platform that uses biometric authentication and location validation to generate a validation code, allowing customers to authenticate on one device and access accounts on another, using QR codes or OTPs, ensuring secure and convenient access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If traditional authentication methods are used across multiple channels, then security can be maintained, but customer convenience and ease of operation deteriorate

Engineering Contradiction:
Improvecustomer authentication convenienceVSAvoidauthentication security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent implements a universal authentication system where biometric data collected on a mobile device can be used across multiple channels including automated transaction devices and agent terminals. The biometric template stored on the mobile device serves as a universal key that works across different interaction channels, eliminating the need for channel-specific authentication methods and thereby improving ease of operation while maintaining security through consistent biometric verification.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The mobile device acts as an intermediary that bridges the gap between secure authentication and convenient access. It stores biometric templates locally and uses them to authenticate customers across different channels without requiring the customer to physically present identification documents or remember multiple passwords. The mobile device mediates the authentication process by validating biometric data locally and facilitating seamless access to organizational services.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If biometric authentication is implemented across all devices, then authentication security improves, but device complexity and implementation cost worsen

Engineering Contradiction:
Improveauthentication securityVSAvoidsystem implementation complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent segments the authentication system into distinct functional components: the mobile device handles biometric template storage and initial authentication, automated transaction devices handle transaction-specific verification, and agent terminals handle complex customer service interactions. This segmentation allows biometric authentication to be implemented selectively across different device types without requiring complete system overhaul, thereby reducing implementation complexity while maintaining security.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The system performs preliminary biometric authentication on the mobile device before the customer interacts with organizational devices. The biometric template is collected and stored in advance on the customer's mobile device, so that when the customer approaches an automated transaction device or agent terminal, the authentication has already been performed or can be quickly verified. This preliminary action reduces the complexity of implementing biometric authentication across all devices by concentrating the complex biometric processing on the mobile device.

Inventive Principle:
Principle #10Preliminary action

3Ease of operation

If authentication status is carried over between devices, then customer convenience improves, but potential security risks from device location validation worsen

Engineering Contradiction:
Improveseamless authentication experienceVSAvoidlocation validation security risks
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The system implements feedback mechanisms where the mobile device's location is continuously validated against the organizational system. When the customer approaches an automated transaction device or agent terminal, the system verifies that the mobile device is at the expected location through GPS or other location services. This feedback loop ensures that authentication status can be carried over between devices only when location validation confirms the customer is at the appropriate physical location, thereby maintaining security while enabling seamless authentication.

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS9491170B2Authenticating customers and managing authenticated sessions
Publication Date: 2016.11.08 BANK OF AMERICA CORP
  • US9491170B2 patent drawing
  • US9491170B2 patent drawing
  • US9491170B2 patent drawing

AI summary

Methods, systems, and computer-readable media for authenticating customers of an organization and managing authenticated sessions of various customers are presented. Some aspects of the disclosure provide ways for a customer of an organization to authenticate using a mobile computing device, such as the customer's personal mobile device, when interacting with the organization in various contexts, such as when accessing an automated transaction device or when interacting with an agent of the organization during an in-person session or during a teleconference session. In some arrangements, the customer's authentication status, which may be established on the mobile computing device and which, in some instances, may be verified based on the location of the mobile computing device, may be carried over from the mobile computing device to another computing device or system, such as an automated transaction device or a teller terminal device, which may be used by an agent of the organization.