Multi-module Authentication Platform via Intermediary Service

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Financial institutions face increasing challenges in authenticating users due to sophisticated fraud methods, making it difficult to integrate and maintain multiple preventative measures within their systems to prevent identity theft and fraud.

Innovation Solution

An authentication platform that interacts with multiple authentication modules, using various methods such as keyboard dynamics, one-time passwords, out-of-wallet questions, and voice prints, to provide a robust authentication process, allowing entities to customize authentication procedures and rules without needing to integrate these modules directly into their systems.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If multiple authentication modules are integrated into the financial institution's system, then authentication security is improved, but system complexity and maintenance difficulty increase

Engineering Contradiction:
Improveauthentication securityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent introduces an intermediary authentication service that hosts multiple authentication modules independently of the financial institution's core system. This service acts as a mediator between the financial institution and various authentication methods (password, biometric, device fingerprinting), allowing the institution to benefit from enhanced security without directly integrating the complexity of multiple authentication systems. The intermediary manages module deployment, updates, and coordination, isolating complexity from the financial institution's infrastructure.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The authentication service is designed as a universal platform that can host multiple different authentication modules simultaneously. This multi-functional system can adapt to various authentication methods (password-based, biometric, behavioral analysis) without requiring separate integration processes for each module. The service provides a unified interface and management mechanism that handles diverse authentication approaches through a single system architecture.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Reliability

If multiple authentication modules are deployed, then fraud prevention capability is improved, but ease of maintenance deteriorates

Engineering Contradiction:
Improvefraud prevention capabilityVSAvoidease of maintenance
Core Design Contradiction:
ReliabilityVSEase of repair

Solution Approach 1:

The patent segments authentication modules into independent, modular units that can be deployed, updated, and maintained separately. Each authentication module (password verification, biometric processing, device fingerprinting) operates as an independent component within the authentication service. This segmentation allows maintenance personnel to update or repair specific modules without affecting the entire authentication system or requiring coordinated updates across multiple integrated systems.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The intermediary authentication service simplifies maintenance by providing a centralized management interface for all authentication modules. Maintenance personnel can manage module updates, configure parameters, and monitor performance through a single point of control rather than accessing multiple integrated systems. The service abstracts the complexity of maintaining multiple authentication methods behind a unified management layer.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS7930264B2Multi-module authentication platform
Publication Date: 2011.04.19 FIRST DATA CORP
  • US7930264B2 patent drawing
  • US7930264B2 patent drawing
  • US7930264B2 patent drawing

AI summary

Embodiments of the disclosure generally relate to systems and methods for authenticating users of an entity system. In embodiments, an authentication platform receives a request for authentication. The authentication platform interacts with one of several authentication modules to authenticate the user. Each authentication module may use different information or procedures to authenticate the user. If authenticated, the user is allowed access to the system. Having access to two or more authentication modules allows the authentication platform to provide automatically a more robust authentication and alleviates the entity system from needing to integrate the several authentication modules.