US 12,445,448 B2
Computer-based systems and/or computing devices programmed for role-based authentication during customer service sessions; and methods of use thereof
Kevin Osborn, Newton Highlands, MA (US); Francis Ogbennah, Arlington, VA (US); and Anita Eradla, Ashburn, VA (US)
Assigned to Capital One Services, LLC, McLean, VA (US)
Filed by Capital One Services, LLC, McLean, VA (US)
Filed on Jun. 22, 2023, as Appl. No. 18/339,898.
Prior Publication US 2024/0430263 A1, Dec. 26, 2024
Int. Cl. G06F 21/00 (2013.01); H04L 9/40 (2022.01)
CPC H04L 63/102 (2013.01) [H04L 63/0853 (2013.01); H04L 63/105 (2013.01); H04L 63/1483 (2013.01)] 18 Claims
OG exemplary drawing
 
1. A computer-implemented method comprising:
detecting, by one or more processors, a communication session established between a first computing device of a first user and a second computing device of a second user, the communication session initiated by the first user,
wherein the second user is associated with an entity;
generating, by the one or more processors, session identification information for the communication session, the session identification information including at least a session identifier (ID);
detecting, by the one or more processors, a triggering condition during the communication session to verify an identity of the first user;
assessing, by the one or more processors, a risk metric associated with the triggering condition to determine a level of authentication for verifying the identity of the first user;
associating, by the one or more processors, the level of authentication with the session information;
causing, by the one or more processors, the second computing device to instruct the first user to interact a smart card with the first computing device such that a one-time data item is transmitted from the smart card to an application executing on the first computing device, the one-time data item dynamically generated by the smart card, wherein the first user is authenticated via the application based at least in part on the level of authentication and the one-time data item;
receiving, by the one or more processors, an indication when the first user is successfully authenticated;
generating, by the one or more processors, a verification token for the communication session, the verification token stored in association with the session information; and
transmitting, by the one or more processors, the verification token to both the first computing device and the second computing device;
wherein the session identification information comprises at least one session interaction protocol certificate.