Our Advantage

The 1Kosmos Customer Advantage

1Kosmos Customer is built with specific capabilities for the onboarding, verification and authentication of customers. The CIAM approach was intended to eliminate barriers to user engagement and improve the user experience. Unfortunately, this opened the door to fraudulent activities as identities are not fully verified. 1Kosmos Customer eliminates this gap. We deliver a quick and convenient way for customers to self-verify their identity using physical documents such as a driver’s license and passport. We can also leverage the nonphysical, such as a telco ID account and banking credentials to further improve identity assurance.

Combined with 1Kosmos Verify, 1Kosmos Customer digitally transforms the standard onboarding process for customers, delivering the highest degree of end-user assurance. This transformation securely automates the entire onboarding process for new and existing customers.

Our approach binds the device not only to an identity but to a verified and validated identity. This creates identity-based biometric authentication and a strong passwordless experience. Customers will utilize their trusted device for daily authentication and step-up authentication
for account access and high-risk transactions. As a result, each access event is validated against a real, verified identity that meets the KYC (Know Your Customer) guidelines. This provides users with a frictionless experience and organizations with a flexible level of assurance for the identity on the other side of the digital engagement.

By binding customers to their proofed identity, 1Kosmos Customer creates an identity-based biometric authentication and a passwordless experience.

1Kosmos QR Code

New Customer Onboarding

1Kosmos Customer and Verify bind the user’s mobile device to a verified and validated identity. 1Kosmos Customer and 1Kosmos Verify bind the user’s mobile device to a verified and validated identity. Our solution provides organizations with the ability to complete a mobile-first onboarding journey for customers. Once a customer begins their account setup, a process starts to verify the new identity remotely. First, the new user will download your custom app integrated with the 1Kosmos mobile SDK or, the 1Kosmos app.

Then, depending on the level of assurance required, the user will be guided to enroll their identity. For those instances where high identity proofing assurance is required, the user must enroll one or more forms of government-issued ID. The captured data is encrypted with the user’s private key and goes through another level of encryption before being stored in the 1Kosmos private and permissioned blockchain.

Once the identity is validated and verified, the customer account is generated and enrolled in a passwordless experience. 1Kosmos Customer provides the option of using a much stronger identity-based MFA during this flow. The user will never need (or know) their credentials (username and password) and can now access their account or service through an identity-based biometric and a strong passwordless experience.

Existing Customer and Citizen Onboarding

Onboarding existing customers into the 1Kosmos Customer identity-based biometric passwordless experience is simple and takes less than a minute to complete. Moving customers to a passwordless experience can be achieved in one of three ways:

  • An invitation sent to the user through the 1Kosmos administration portal.
  • An invite to join is added to the standard login page
  • Or within your organization’s custom app (our mobile app can be white labelled or embedded into your own via our API / SDK.
  • Users choose to accept the invitation and onboard themselves to start their passwordless journey

First, the enrollment begins by prompting the user to enroll their identity, either in an existing app or via an existing webpage. The user is then guided to use their mobile phone to complete the onboarding process. Depending on the business need, the customer may enroll in an optional biometric to increase their access assurance level. If the organization requires a higher identity assurance level, the customer may enroll up to two forms of government-issued ID. The user’s LiveID is validated against the picture extracted from the provided documents. The data is encrypted with the user’s private key and stored in the 1Kosmos private and permissioned blockchain. The customer will now use their enrolled identity or identity-based biometric to complete a transaction or to authenticate into their account without a username and password.

new hire onboarding image

1Kosmos QR Code

Appless Access From the Desktop

If a mobile device is not needed or available, 1Kosmos Customer can still deliver a strong passwordless experience from the desktop. To do this, we leverage the platform authenticators available on the desktop, like a fingerprint reader, or through a security key. To enroll in the passwordless experience, the customer would log in as normal. Then, the customer will be asked to provide their biometric or supply their security key to enroll in a passwordless experience. This process binds the device or security key to the user, and from then on, the user will have a passwordless access experience.

Employee and Contractor Identity Based-Authentication

1Kosmos Customer authentication methods are built into the 1Kosmos app and customers can authenticate via any of our identification methods. By implementing 1Kosmos Customer, you will consolidate, or now deliver, several types of methods into one experience. We offer native support for:
QR code icon
QR Code Scan
Push notification icon
Push Notification +Acknowledgment
time-based otp icon
Time-based OTP icon
Real Biometrics (LiveID) icon
Real Biometrics
(LiveID)
thumbprint icon
TouchID/FaceID
open email icon
Legacy Email/SMS Codes

We also support industry authentication standards such as OAuth, OIDC, SAML and FIDO.