Authentication and interaction tracking system and method

US9734501B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-9734501-B2
Application numberUS-201514967496-A
CountryUS
Kind codeB2
Filing dateDec 14, 2015
Priority dateMar 3, 2008
Publication dateAug 15, 2017
Grant dateAug 15, 2017

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Aspects of the invention relate to a central authentication and interaction tracking system for authenticating an entity making a request related to a financial account. The system facilitates authentication of an entity engaging in an interaction with a financial institution, the authentication based on a record of interactions initiated by the entity. The system includes an application interface receiving interaction requests over a network, the interaction requests originating from multiple entities and including a plurality of authentication factors. The system further includes a computer processor and computer memory capable of building, from each interaction request, an entity print record for each of the multiple entities, wherein each entity print record includes indicators of the authentication factors from each initiated transaction request. The system further facilitates deriving, from the entity print record, an entity print and storing the entity print in at least one computer memory, comparing received authentication factors for a requested interaction with the entity print, and making an authentication determination based on the comparison.

First claim

Opening claim text (preview).

The invention claimed is: 1. A method for facilitating authentication of entities engaging in transactions, the authentication based on a record of interactions initiated by the entities, the method comprising: receiving interaction requests from a requesting entity over a network at a central authentication and interaction tracking system including at least one computer memory and at least one computer processor, the interaction requests originating from the entities using multiple diverse applications and including a plurality of authentication factors; executing instructions stored in the computer memory using the computer processor to perform steps including: deriving, from each interaction request, an entity print for each requesting entity; building, from each interaction request, an interaction signature; classifying each interaction signature as at least one of a valid interaction signature or a fraudulent interaction signature; processing the interaction signature with previously classified interaction signatures; comparing the derived entity print with a pre-existing historical entity; generating, based at least on said steps of processing and comparing, a confidence level that a requesting entity is authentic and a risk level associated with authenticity of the interaction request; determining the risk level and confidence level meet requirements for authentication according to at least one policy; providing positive feedback to an authentication engine when the risk level and confidence level meet requirements for authentication and opening an authentication dialog with the authentication engine when the risk level and confidence level do not meet the requirements; executing policy rule sets at the authentication engine during the authentication dialogue to reach an authentication conclusion, the conclusion including one of a requirement for more information, a positive authentication decision, and a negative authentication decision. 2. The method of claim 1 , wherein the multiple diverse applications include origination applications, transaction applications, and servicing applications. 3. The method of claim 1 , further comprising modifying the historical entity print after each interaction for each of the multiple entities, such that the historical entity print is representative of all recorded interactions over time with each of the multiple entities. 4. The method of claim 1 , further comprising building from each interaction request, an interaction signature for each interaction and classifying each interaction signature as a valid interaction signature or a fraudulent interaction signature. 5. The method of claim 1 , wherein the device identifiers include an IP address. 6. The method of claim 1 , wherein the personal identifier includes at least one of an RSID and a biometric indicator. 7. The method of claim 1 , wherein the geographical transaction features are determined by geolocation. 8. The method of claim 1 , wherein the authentication methods utilized include at least one of passwords, security questions, and biometric authentication factors. 9. The method of claim 1 , wherein the authentication engine receives input from multiple interconnected systems including an entity print system, an interaction signature system, and a policy and risk assessment system in order to make an authentication determination. 10. A method for facilitating authentication of entities engaging in transactions, the authentication based on a record of interactions initiated by the entities, the method comprising: receiving interaction requests from a requesting entity over a network at a central authentication and interaction tracking system including at least one computer memory and at least one computer processor, the interaction requests originating from the entities using multiple diverse applications and including a plurality of authentication factors; executing instructions stored in the computer memory using the computer processor to perform steps including: deriving, from each interaction request, an entity print for each requesting entity, wherein each entity print incorporates the authentication factors from each initiated interaction request, the authentication factors including multiple factors selected from the group including temporal transaction features, geographical transactions features, parties to transaction, identity of accounts, access method, device identifiers, personal identifiers, and authentication method utilized; comparing the derived entity print with a pre-existing historical entity print to produce an identity confidence level for the requesting entity and a risk level for the requesting entity; building from each interaction request, an interaction signature for each interaction and classifying each interaction signature as a valid interaction signature or a fraudulent interaction signature; comparing the received authentication factors for a requested interaction with the entity print and comparing the interaction signature for a received interaction request with the classified interaction signatures, wherein the comparisons yield a level of risk for each transaction; determining the risk level and confidence level meet requirements for authentication according to at least one policy; providing positive feedback to an authentication engine when the risk level and confidence level meet requirements for authentication and opening an authentication dialog with the authentication engine when the risk level and confidence level do not meet the requirements; executing policy rule sets at the authentication engine during the authentication dialogue to reach an authentication conclusion, the conclusion including one of a requirement for more information, a positive authentication decision, and a negative authentication decision; passing the conclusion from the authentication engine to an application utilized to initiate the interaction request, the application selected from the multiple diverse applications. 11. A central authentication and interaction tracking system for facilitating authentication of entities engaging in transactions, the authentication based on a record of interactions initiated by the entities, the method comprising: an application interface receiving interaction requests from a requesting entity over a network, the interaction requests originating from the entities using multiple diverse applications and including a plurality of authentication factors; at least one computer memory storing information from the interaction requests and instructions for processing the information; and at least one computer processor accessing the computer memory and executing the stored instructions in the computer memory to perform steps including: deriving, from each interaction request, an entity print for each requesting entity; building, from each interaction request, an interaction signature; classifying each interaction signature as at least one of a valid interaction signature or a fraudulent interaction signature; processing the interaction signature with previously classified interaction signatures; comparing the derived entity print with a pre-existing historical entity print; generating, based at least on said steps of processing and comparing, a confidence level that a requesting entity is authentic and a risk level associated with authenticity of the interaction request; determining the risk level and confidence level meet requirements for authentication according to at least one policy; providing positive feedback to an authentication engine when the risk level and confidence level meet requirements for authentication an

Assignees

Inventors

Classifications

  • Identity check for transactions · CPC title

  • Protecting personal data, e.g. for financial or medical purposes · CPC title

  • for authentication of entities (cryptographic mechanisms or cryptographic arrangements for entity authentication H04L9/32) · CPC title

  • involving fraud or risk level assessment in transaction processing · CPC title

  • Electricity · mapped topic

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US9734501B2 cover?
Aspects of the invention relate to a central authentication and interaction tracking system for authenticating an entity making a request related to a financial account. The system facilitates authentication of an entity engaging in an interaction with a financial institution, the authentication based on a record of interactions initiated by the entity. The system includes an application interf…
Who is the assignee on this patent?
Jpmorgan Chase Bank Na
What technology area does this patent fall under?
Primary CPC classification G06Q20/4016. Mapped technology areas include Physics.
When was this patent published?
Publication date Tue Aug 15 2017 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).