Misys taps social media location information for bank-to-customer payment authorisation

Misys taps social media location information for bank-to-customer payment authorisation

UK fintech vendor Misys has launched a service that enables bank customers to use location-based social media applications such as Foursquare to confirm their whereabouts to authorise transactions.

Confirming a customer's location abroad, and the process of reimbursing them for any fraudulent withdrawals, is a significant cost for banks, claims Misys.

The firm's location aggregation service, GeoGuard, collates geographic information from the likes of Facebook Places, foursquare, Gowalla and TripIt, which customers can allow their banks to request.

The service is built and delivered on a social enterprise platform for custom app development from salesforce.com and can be implemented on a bank's existing infrastructure without installing any on-premise software or hardware.

Misys stresses that GeoGuard does not provide banks with tracking information, but instead allows customers choose their preferred method and frequency for confirming their location. Misys acts as a third party - never allowing the bank to be in possession of the customer location.

By using existing social networks, users do not have to access specific bank services to update their information. However, customers who prefer not to use social networks can still let their bank know their location by integrating with existing channels, such as online and mobile banking.

Tim Tyler, solution manager, Misys, says: "By mashing up banking and location-based services, customers will be able to improve control of their funds automatically with a little help from their existing location-based social networks' interactions. Misys GeoGuard allows the bank to benefit from these social networks in a highly secure way that gives the customer total control and confidence."

Comments: (5)

Rik Coeckelbergs
Rik Coeckelbergs - The Banking Scene - Brussels 14 September, 2011, 10:26Be the first to give this comment the thumbs up 0 likes

Doesn't sound too secure to me, with the ease of hacking social media tools for example. I might be a bit too sceptical, but still...

Pat Carroll
Pat Carroll - ValidSoft - London 14 September, 2011, 12:27Be the first to give this comment the thumbs up 0 likes

Adding current location as a factor in authenticating payment transactions is a great idea, but the key factors to consider are security and privacy. How secure are these social media, and how secure is the mash-up? Is customers’ privacy being compromised? We need to be careful that we don’t just make it easier for fraudsters while also failing to respect people’s civil rights and creating a false impression of enhanced security.

Tim Tyler
Tim Tyler - Misys - London 15 September, 2011, 06:51Be the first to give this comment the thumbs up 0 likes

Both security and privacy have been taken in to account when designing Misys GeoGuard. A customer's check-in is not taken on its own, and is used to supplement existing fraud-prevention measures. Rules and analytics are built in to determine the validity of a check-in, and how "trustworthy" it is. On the privacy front, a customer would share with the bank or other FI, via Misys GeoGuard, only information that they are already posting - they don't need to change their behaviour whilst the banks are able to make use of this "personal data feed" to deliver better customer experience. For those customers that either don't wish to share their social data with their bank (and we only reference location data on an opt-in basis, and per check-in, and don't store reams of historical check-ins that could be used to "route" a customer), or don't wish to use social media at all, banks are able to offer a private check-in service directly via their own channels: for example they could allow a customer to check-in by using the bank's mobile banking app.

Leveraging services such as Facebook, foursquare or TripIt however, would mean that a customer carries on as usual. When travelling, they wouldn't have to individually notify each bank or credit card company they had cards with. One check-in is all that it takes.

A Finextra member
A Finextra member 15 September, 2011, 09:37Be the first to give this comment the thumbs up 0 likes

I can't see that the target market for using this is going to be big enough.  I mean I don't personally have any issues with my bank when travelling, perhaps since it happens regularly and over the years they know that or I have previously told them (I don't ever remember telling my bank(s) I was travelling). 

Second, I don't update my whereabouts on any of those social sites (boring).  There's a good chance that neither do others and then when they need a transaction to be social location auth'd it fails anyway.

I think this is just a solution looking for a problem and it'll not be implemented and if it is it will not be adopted by many at all.  Just stick a flag in the online banking self care where you can say if you are travelling and maybe even name the country.

Ketharaman Swaminathan
Ketharaman Swaminathan - GTM360 Marketing Solutions - Pune 15 September, 2011, 16:44Be the first to give this comment the thumbs up 0 likes

Certainly a "cool app", one that will help banks put one more tick in their 'social media strategy' box. However, by adding fuzzy check-in data sourced from social networks to already fuzzy fraud detection algorithms, won't the "false positive" rate shoot up? Realtime 2-way SMS alerts at the point of sale might mitigate this risk more reliably.    

Trending