CPC H04L 63/0815 (2013.01) [H04L 63/0807 (2013.01); H04W 4/029 (2018.02); H04W 4/14 (2013.01)] | 9 Claims |
1. A method for secure authentication of a user entity identity comprising:
a primary identity provider allows a user entity through a client device to enable a single sign on to a plurality of services; the primary identity provider collects the contextual and behavioral information of the user entity and the client device for access to at least one service of the plurality of services; delegates login and authentication process including a risk based multi-factor authentication to a third party Identity provider; the primary identity provider sends the contextual and behavioral information including at least one service identifier, a user identification, the client device, client device browser health, location, time, network, client device and client device browser fingerprint, network and other attributes to the third party identity provider so the third party identity provider with its discrete risk engine; and conducts policy orchestration upon detection of anomaly of the at least one service and takes a predetermined action per policy and risk such as terminate the specific service and session or step up authorization using a new discrete multi-factor authorization.
|