Biometric Authentication via Mobile Push Notifications

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Large organizations face challenges in ensuring the security of customer account information while providing convenient and efficient access channels, particularly in telephone-based customer assistance systems, where traditional authentication methods may compromise security and convenience.

Innovation Solution

Implementing a biometric authentication system that uses push notifications on mobile devices to verify customers through fingerprint or other biometric inputs, eliminating the need for additional authentication credentials and enhancing security by requiring valid biometric validation for account access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional authentication methods (username and passcode) are used in telephone-based customer assistance systems, then customers can access account information, but security is compromised and convenience is reduced

Engineering Contradiction:
ImprovesecurityVSAvoidconvenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent replaces traditional mechanical authentication (username and passcode entry) with biometric authentication using fingerprints. The system captures fingerprint data from the mobile device, compares it with stored biometric templates, and grants access based on biometric matching, thereby enhancing security while maintaining ease of use

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Solution Approach 2:

The system enables self-service authentication by automatically capturing and validating biometric data without requiring manual intervention for credential entry. The mobile device automatically provides fingerprint data and the system autonomously compares it with stored templates, eliminating the need for customers to manually enter usernames or passcodes

Inventive Principle:
Principle #25Self-service

2Reliability

If biometric authentication is implemented using push notifications and fingerprint validation, then security is enhanced, but device complexity increases

Engineering Contradiction:
ImprovesecurityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent leverages the existing multi-functional capabilities of mobile devices (fingerprint sensors, notification systems, communication interfaces) to perform authentication functions. Rather than adding dedicated authentication hardware, the system utilizes universal mobile device features already present in customer smartphones, thereby avoiding increased device complexity

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The system introduces a server-based intermediary that coordinates between the mobile device and the authentication system. The server manages the authentication workflow by sending push notifications, receiving fingerprint data, comparing biometric templates, and validating results, thereby centralizing complexity in a manageable server architecture rather than embedding it in the mobile device

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS9635554B2Authenticating customers using biometrics
Publication Date: 2017.04.25 BANK OF AMERICA CORP
  • US9635554B2 patent drawing
  • US9635554B2 patent drawing
  • US9635554B2 patent drawing

AI summary

Methods, systems, and computer-readable media for authenticating customers using biometrics are presented. In some embodiments, a computing platform may receive, from an interactive voice response server, an inbound call notification associated with a telephone call received from a mobile device. Subsequently, the computing platform may determine a device identifier of the mobile device and a customer identifier corresponding to a user of the mobile device. The computing platform then may load a customer authentication profile. Subsequently, the computing platform may generate a biometric authentication prompt for authenticating the user of the mobile device and may cause the biometric authentication prompt to be sent to the mobile device. Thereafter, the computing platform may receive, from the mobile device, a validation message. In response to receiving the validation message, the computing platform may generate an authentication message. Subsequently, the computing platform may send the authentication message to the interactive voice response server.