Risk level for modifying security safeguards
Abstract
A system, method, and computer-readable medium for securing a mobile financial transaction are provided. A table matches each one of a plurality of transaction risk levels to a corresponding one of a plurality of required user trust scores, correspondingly. A financial transaction risk level associated with a financial transaction is computed. A user trust score associated with the user is computed based on user identification data associated with the user. The financial transaction risk level is matched to a corresponding one of the plurality of transaction risk levels stored in the table. The one of the plurality of required trust scores that corresponds to the corresponding one of the plurality of transaction risk levels stored in the table is identified. If the user trust score is greater than or equal to the identified one of the plurality of required trust scores, then the financial transaction is authorized.
Claims
exact text as granted — not AI-modifiedWhat is claimed is:
1 . A method comprising:
receiving, by a processor and from a mobile device, a request for a transaction from a user; retrieving, by the processor and from a trust mediator, security-related sensor data including at least one of changes or signatures in a security characteristic of a network component; computing, by the processor, a risk level associated with the transaction, the risk level being based on the transaction and the security-related sensor data; transmitting, by the processor and to the trust mediator, the risk level for modifying security safeguards in the network component to maintain a security level for the transaction; and authorizing, by the processor, the transaction based on a determination that a user trust score associated with the user is greater than or equal to the risk level.
2 . The method of claim 1 , wherein the transaction is a financial transaction and computing the risk level comprises computing the risk level based on a value of the financial transaction.
3 . The method of claim 1 , wherein the computing the risk level further comprises computing, by the processor and based on the security-related sensor data, a probability that the transaction will be compromised.
4 . The method of claim 1 , wherein the transaction is a financial transaction and wherein the computing the risk level further comprises:
computing, by the processor and based on the security-related sensor data, a probability that the financial transaction will be compromised; and computing, by the processor, a product of a value of the financial transaction and the probability that the financial transaction will be compromised.
5 . The method of claim 1 wherein the security-related sensor data comprises information relating to protection mechanisms implemented for the transaction.
6 . The method of claim 1 , further comprising receiving, by the processor, user identification data associated with the user from at least one of the mobile device, an electronic communication device of a third party, or a database.
7 . The method of claim 1 , further comprising validating, by the processor, user identification data associated with the user by comparing the user identification data to data retrieved from at least one of a database of a known party, an electronic communication device of a third party, or a database of a third party.
8 . The method of claim 1 , further comprising computing, by the processor, the user trust score by:
retrieving, by the processor, individual trust scores corresponding to portions of user identification data, respectively; and computing, by the processor, the user trust score based on the individual trust scores.
9 . The method of claim 1 , further comprising receiving, by the processor and from the mobile device, user identification data of the user.
10 . The method of claim 1 , further comprising receiving, by the processor and from the mobile device, user identification data of the user, wherein the user identification data comprises decoded information.
11 . The method of claim 1 , wherein the mobile device obtains decoded information by capturing hidden coded information imprinted on a transaction instrument of the user.
12 . The method of claim 1 , wherein the mobile device obtains decoded information by capturing, using a camera, hidden coded information imprinted on a transaction instrument of the user.
13 . The method of claim 1 , wherein the mobile device obtains decoded information by capturing hidden coded information imprinted on a transaction instrument of the user, and decoding, using pattern recognition software, the hidden coded information.
14 . The method of claim 1 , wherein the mobile device obtains decoded information by capturing hidden coded information imprinted on a transaction instrument of the user, and wherein the hidden coded information comprises a variation in a controllable parameter.
15 . The method of claim 1 , wherein the mobile device obtains decoded information by capturing hidden coded information imprinted on a transaction instrument of the user, and wherein the hidden coded information comprises a variation in a controllable parameter comprising at least one of a color, a text positioning offset, or a text shape.
16 . The method of claim 1 , further comprising computing, by the processor, the user trust score based on user identification data.
17 . The method of claim 1 , further comprising matching, by the processor, the risk level to a corresponding one of a plurality of risk levels.
18 . The method of claim 1 , further comprising identifying, by the processor, one of a plurality of user trust scores that corresponds to the risk level.
19 . A system comprising:
a processor; and a tangible, non-transitory memory configured to communicate with the processor, the tangible, non-transitory memory having instructions stored thereon that, in response to execution by the processor, cause the processor to perform operations comprising: receiving, by the processor and from a mobile device, a request for a transaction from a user; retrieving, by the processor and from a trust mediator, security-related sensor data including at least one of changes or signatures in a security characteristic of a network component; computing, by the processor, a risk level associated with the transaction, the risk level being based on the transaction and the security-related sensor data; transmitting, by the processor and to the trust mediator, the risk level for modifying security safeguards in the network component to maintain a security level for the transaction; and authorizing, by the processor, the transaction based on a determination that a user trust score associated with the user is greater than or equal to the risk level.
20 . An article of manufacture including a non-transitory, tangible computer readable medium having instructions stored thereon that, in response to execution by a processor, cause the processor to perform operations comprising:
receiving, by the processor and from a mobile device, a request for a transaction from a user; retrieving, by the processor and from a trust mediator, security-related sensor data including at least one of changes or signatures in a security characteristic of a network component; computing, by the processor, a risk level associated with the transaction, the risk level being based on the transaction and the security-related sensor data; transmitting, by the processor and to the trust mediator, the risk level for modifying security safeguards in the network component to maintain a security level for the transaction; and authorizing, by the processor, the transaction based on a determination that a user trust score associated with the user is greater than or equal to the risk level.Join the waitlist — get patent alerts
Track US2019340618A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.