IP Library Granted Patent US 12,217,205
Granted Patent B1
US 12,217,205 · App. 16/710,289 · Granted Feb 4, 2025

Computer systems for analyzing and presenting alert-based information

Inventors: Daniel Jeffery Johnson (Milwaukee, WI); Rachel Nemecek (Charlotte, NC); Ramon Joseph Permato Esteves (Bulacan, PH); Rommel B. Limon (Quezon, PH); Kettyl Amoakon (Harrisburg, NC)
Assignee: Wells Fargo Bank, N.A.
G06Q10/0635G08B3/10G08B29/10
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,217,205
App. No.
16/710,289
Granted
Feb 4, 2025
Kind
B1
Abstract

Techniques are described for analyzing and presenting alert-based information for an enterprise business. In particular, a central device in a computer system receives alerts from other devices associated with different office branches of the enterprise business, and analyzes the alerts on a periodic schedule. For example, every month, the central device may calculate a weighted alert volume by district based on the risk scores calculated for the office branches within the district, calculate an average weighted alert volume across the entire enterprise, and calculate the standard deviation of the average weighted alert volume to determine the alert risk rating for the district. The central device may also analyze the dispositions of the alerts on the period schedule. For example, the central device may determine coaching rates and/or disposition rates by district. The central device may further output the alert and/or disposition information to users in a simple format.

Claims (79)

1. A method comprising:

generating, by one or more branch terminals associated with different office branches of an enterprise business, a plurality of alerts corresponding to a plurality of districts within the enterprise business, wherein each alert of the plurality of alerts indicates a type of abnormal behavior arising from a transaction associated with a corresponding district of the plurality of districts and performed by or on behalf of a customer of the enterprise business;

receiving, by a first network interface of a central computing device within a computing system of the enterprise business from the one or more branch terminals, alert information for the plurality of alerts;

calculating, by the central computing device and based on the alert information, an alert volume for each district of the plurality of districts during a period of time;

receiving, by the first network interface of the central computing device, dispositions for each alert of the plurality of alerts resolved during the period of time, wherein one or more of the dispositions indicate alert resolution with coaching;

determining, by the central computing device, disposition information including a coaching rate for each district of the plurality of districts based on a number of the dispositions that indicate alert resolution with coaching and the alert volume for each district of the plurality of districts;

clustering, by the central computing device, the plurality of districts into two or more groups based on the coaching rate for each district, wherein clustering the plurality of districts into two or more groups includes performing one of k-means clustering, mean-shift clustering, or hierarchical clustering on the plurality of districts based on the coaching rate for each district;

receiving, by a second network interface of the central computing device, a request for the disposition information for a first district of the plurality of districts from a supervisory device associated with the first district;

based on the request for the disposition information, transmitting, by the second network interface of the central computing device to the supervisory device, data representative of both a first user interface and a second user interface;

displaying, by the supervisory device using the data representative of the first user interface, the first user interface including a graphical icon indicating a relative coaching rate corresponding to a first group of the two or more groups, the first group including the first district of the plurality of districts and one or more other districts of the plurality of districts, wherein the graphical icon for the first group comprises a selectable graphical icon;

and

based on a selection of the graphical icon for the first group included in the first user interface by a user of the supervisory device, displaying, by the supervisory device using the data representative of the second user interface, the second user interface including a first coaching rate for the first district and the coaching rates for the one or more other districts included in the first group without sending another request from the supervisory device to the central computing device for additional data representative of the second user interface in response to the selection of the graphical icon for the first group included in the first user interface.

2. The method of claim 1 , wherein clustering the plurality of districts into two or more groups based on the coaching rate for each district includes:

determining a first number of districts of the plurality of districts with coaching rates that fall within a group associated with a high relative coaching rate,

determining a second number of districts of the plurality of districts with coaching rates that fall within a group associated with a moderate relative coaching rate, and

determining a third number of districts of the plurality of districts with coaching rates that fall within a group associated with a low relative coaching rate.

3. The method of claim 2 , wherein:

the high relative coaching rate corresponds to the group of districts with a top-third coaching rate relative to coaching rates across the enterprise business;

the low relative coaching rate corresponds to the group of districts with a bottom-third coaching rate relative to coaching rates across the enterprise business; and

the moderate relative coaching rate corresponds to the group of districts with middle-third coaching rate relative to coaching rates across the enterprise business.

4. The method of claim 1 , further comprising:

determining the first coaching rate for the plurality of alerts per respective monitoring category corresponding to the first district of the plurality of districts;

determining a first on-time disposition rate for the plurality alerts per respective monitoring category corresponding to the first district;

determining an average coaching rate for the plurality of alerts per respective monitoring category across the enterprise business; and

determining an average on-time disposition rate per respective monitoring category across the enterprise business;

transmitting, by the second network interface of the central computing device to the supervisory device, data representative of a third user interface including:

first indications of the first coaching rate for the plurality alerts per respective monitoring category corresponding to the first district;

second indications of the first on-time disposition rate for the plurality alerts per respective monitoring category corresponding to the first district;

third indications of the average coaching rate for each respective monitoring category; and

fourth indications of the average on-time disposition rate for each respective monitoring category.

5. The method of claim 4 , wherein the first and second indications comprise bars of a bar graph.

6. The method of claim 4 , wherein the third and fourth indications inform the user of the supervisory device how the first coaching rate and the first on-time disposition rate corresponding to the first district compare to the average coaching rate and the average on-time disposition rate, respectively, across the enterprise business by monitoring category for the period of time.

7. The method of claim 1 , wherein the alert volume includes alerts resolved within the period of time.

8. A computing system comprising:

one or more branch terminals associated with different office branches of an enterprise network, the one or more branch terminals configured to generate a plurality of alerts corresponding to a plurality of districts within the enterprise business, wherein each alert of the plurality of alerts indicates a type of abnormal behavior arising from a transaction associated with a corresponding district of the plurality of districts and performed by or on behalf of a customer of the enterprise business;

a central computing device comprising a processor implemented in circuitry, a first network interface, and a second network interface, wherein the processor of the central computing device is configured to:

receive, by the first network interface, alert information for the plurality of alerts from the one or more branch terminals;

calculate, based on the alert information, an alert volume for each district of the plurality of districts during a period of time;

receive, by the first network interface, dispositions for each alert of the plurality of alerts resolved during the period of time, wherein one or more of the dispositions indicate alert resolution with coaching;

determine disposition information, including a coaching rate for each district of the plurality of districts based on a number of the dispositions that indicate alert resolution with coaching and the alert volume for each district of the plurality of districts;

cluster the plurality of districts into two or more groups based on the coaching rate for each district, wherein to cluster the plurality of districts into two or more groups, the processor of the central computing device is configured to perform one of k-means clustering, mean-shift clustering, or hierarchical clustering on the plurality of districts based on the coaching rate for each district;

receive, by the second network interface, a request for the disposition information for a first district of the plurality of districts from a supervisory device associated with the first district;

based on the request for the disposition information, transmit, by the second network interface to the supervisory device, data representative of both a first user interface and a second user interface; and

the supervisory device configured to:

display, using the data representative of the first user interface, the first user interface including a graphical icon indicating a relative coaching rate corresponding to a first group of the two or more groups, the first group including the first district of the plurality of districts and one or more other districts of the plurality of districts, wherein the graphical icon for the first group comprises a selectable graphical icon; and

based on a selection of the graphical icon for the first group included in the first user interface by a user of the supervisory device, display, using the data representative of the second user interface, the second user interface including a first coaching rate for the first district and the coaching rates for the one or more other districts included in the first group without sending another request from the supervisory device to the central computing device for additional data representative of the second user interface in response to the selection of the graphical icon for the first group included in the first user interface.

9. The computing system of claim 8 , wherein to cluster the plurality of districts into two or more groups based on the coaching rate for each district, the processor of the central computing device is configured to:

determine a first number of districts of the plurality of districts with coaching rates that fall within a group associated with a high relative coaching rate,

determine a second number of districts of the plurality of districts with coaching rates that fall within a group associated with a moderate relative coaching rate, and

determine a third number of districts of the plurality of districts with coaching rates that fall within a group associated with a low relative coaching rate.

10. The computing system of claim 9 , wherein:

the high relative coaching rate corresponds to the group of districts with a top-third coaching rate relative to coaching rates across the enterprise business;

the low relative coaching rate corresponds to the group of districts with a bottom-third coaching rate relative to coaching rates across the enterprise business; and

the moderate relative coaching rate corresponds to the group of districts with middle-third coaching rate relative to coaching rates across the enterprise business.

11. The computing system of claim 8 , wherein the processor of the central computing device is further configured to:

determine the first coaching rate for the plurality of alerts per respective monitoring category corresponding to the first district of the plurality of districts;

determine a first on-time disposition rate for the plurality of alerts per respective monitoring category corresponding to the first district;

determine an average coaching rate for the plurality alerts per respective monitoring category across the enterprise business;

determine an average on-time disposition rate per respective monitoring category across the enterprise business; and

transmit, by the second network interface to the supervisory device, data representative of a third user interface including:

first indications of the first coaching rate for the plurality alerts per respective monitoring category corresponding to the first district;

second indications of the first on-time disposition rate for the plurality alerts per respective monitoring category corresponding to the first district;

third indications of the average coaching rate for each respective monitoring category; and

fourth indications of the average on-time disposition rate for each respective monitoring category.

12. The computing system of claim 11 , wherein the first and second indications comprise bars of a bar graph.

13. The computing system of claim 11 , wherein the third and fourth indications inform the user of the supervisory device how the first coaching rate and the first on-time disposition rate corresponding to the first district compare to the average coaching rate and average on-time disposition rate, respectively, across the enterprise business by monitoring category for the period of time.

14. The computing system of claim 8 , wherein the alert volume includes alerts resolved within the period of time.

15. A non-transitory computer-readable storage medium storing instructions that, when executed, cause one or more programmable processors to:

generate, at one or more branch terminals associated with different office branches of an enterprise business, a plurality of alerts corresponding to a plurality of districts within the enterprise business, wherein each alert of the plurality of alerts indicates a type of abnormal behavior arising from a transaction associated with a corresponding district of the plurality of districts and performed by or on behalf of a customer of the enterprise business;

receive, via a first network interface of a central computing device within a computing system of the enterprise business from the one or more branch terminals, alert information for the plurality of alerts;

calculate, at the central computing device and based on the alert information, an alert volume for each district of the plurality of districts during a period of time;

receive, via the first network interface of the central computing device, dispositions for each alert of the plurality of alerts resolved during the period of time, wherein one or more of the dispositions indicate alert resolution with coaching;

determine, at the central computing device, disposition information including a coaching rate for each district of the plurality of districts based on a number of the dispositions that indicate alert resolution with coaching and the alert volume for each district of the plurality of districts;

cluster, at the central computing device, the plurality of districts into two or more groups based on the coaching rate for each district, wherein to cluster the plurality of districts into two or more groups, the instructions cause the one or more programmable processors to perform one of k-means clustering, mean-shift clustering, or hierarchical clustering on the plurality of districts based on the coaching rate for each district;

receive, via a second network interface of the central computing device, a request for the disposition information for a first district of the plurality of districts from a supervisory device associated with the first district;

based on the request for the disposition information, transmit, via the second network interface of the central computing device to the supervisory device, data representative of both a first user interface and a second user interface;

display, by the supervisory device using the data representative of the first user interface, the first user interface including a graphical icon indicating a relative coaching rate corresponding to a first group of the two or more groups, the first group including the first district of the plurality of districts and one or more other districts of the plurality of districts, wherein the graphical icon for the first group comprises a selectable graphical icon;

and

based on a selection of the graphical icon for the first group included in the first user interface by a user of the supervisory device, display, by the supervisory device using the data representative of the second user interface, the second user interface including a first coaching rate for the first district and the coaching rates for the one or more other districts included in the first group without sending another request from the supervisory device to the central computing device for additional data representative of the second user interface in response to the selection of the graphical icon for the first group included in the first user interface.

Assignments (2)
REQUEST FOR ADDRESS CHANGE Recorded Dec 5, 2025
From: WELLS FARGO BANK, N.A.
To: WELLS FARGO BANK, N.A.
Reel/Frame 073894/0935 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 27, 2020
From: JOHNSON, DANIEL JEFFREY; NEMECEK, RACHEL; ESTEVES, RAMON JOSEPH PERMATO; LIMON, ROMMEL B.; AMOAKON, KETTYL
To: WELLS FARGO BANK, N.A.
Reel/Frame 051631/0417 →
References Cited (72)
US 8078486B1 · McLean et al. · 2011 [cited by applicant]
US 8527317B2 · Haddad · 2013 [cited by applicant]
US 8538799B2 · Haller et al. · 2013 [cited by applicant]
US 8706537B1 · Young · 2014 [cited by examiner]
US 9733916B2 · Wang et al. · 2017 [cited by applicant]
US 9779386B2 · Swierz, III et al. · 2017 [cited by applicant]
US 9824323B1 · Weiss et al. · 2017 [cited by applicant]
US 9898767B2 · Psota et al. · 2018 [cited by applicant]
US 9946840B1 · Kemp · 2018 [cited by examiner]
US 10089120B2 · Baumecker et al. · 2018 [cited by applicant]
US 10194028B2 · Vymenets et al. · 2019 [cited by applicant]
US 10331302B1 · Leyden · 2019 [cited by examiner]
US 10509555B2 · Noel et al. · 2019 [cited by applicant]
US 20020099580A1 · Eicher, Jr. et al. · 2002 [cited by applicant]
US 20020138338A1 · Trauth et al. · 2002 [cited by applicant]
US 20040177053A1 · Donoho et al. · 2004 [cited by applicant]
US 20050055275A1 · Newman et al. · 2005 [cited by applicant]
US 20060031110A1 · Benbassat et al. · 2006 [cited by applicant]
US 20070112607A1 · Tien et al. · 2007 [cited by applicant]
US 20070127693A1 · D'Ambrosio et al. · 2007 [cited by applicant]
US 20070174214A1 · Walsh et al. · 2007 [cited by applicant]
US 20080091621A1 · Breeden · 2008 [cited by examiner]
US 20080195428A1 · O'Sullivan · 2008 [cited by applicant]
US 20090048884A1 · Olives et al. · 2009 [cited by applicant]
US 20100121776A1 · Stenger · 2010 [cited by applicant]
US 20110261049A1 · Cardno et al. · 2011 [cited by applicant]
US 20120032961A1 · Smith et al. · 2012 [cited by applicant]
US 20130085799A1 · Zhang et al. · 2013 [cited by applicant]
US 20130132275A1 · Enzaldo · 2013 [cited by examiner]
US 20140012623A1 · Paulmann · 2014 [cited by applicant]
US 20140047096A1 · Kupershmidt · 2014 [cited by examiner]
US 20140210827A1 · Alsbury · 2014 [cited by examiner]
US 20140258032A1 · Psota et al. · 2014 [cited by applicant]
US 20150086003A1 · Khalil · 2015 [cited by examiner]
US 20150149233A1 · Chaudhary et al. · 2015 [cited by applicant]
US 20150178825A1 · Huerta · 2015 [cited by examiner]
US 20150329912A1 · Moreno · 2015 [cited by examiner]
US 20150332201A1 · Bernaudin et al. · 2015 [cited by applicant]
US 20150332419A9 · Budlong · 2015 [cited by applicant]
US 20160088099A1 · Crudele et al. · 2016 [cited by applicant]
US 20170068963A1 · Saxena · 2017 [cited by examiner]
US 20170111381A1 · Jones et al. · 2017 [cited by applicant]
US 20170345057A1 · Baker, III · 2017 [cited by applicant]
US 20180004948A1 · Martin et al. · 2018 [cited by applicant]
US 20180121874A1 · Chen et al. · 2018 [cited by applicant]
US 20180165775A1 · Bhattacharjee et al. · 2018 [cited by applicant]
US 20180300453A1 · Arnaout et al. · 2018 [cited by applicant]
US 20190188616A1 · Urban · 2019 [cited by examiner]
US 20200065151A1 · Ghosh · 2020 [cited by examiner]
US 20200267181A1 · Pandey et al. · 2020 [cited by applicant]
JP 2004178080A · 2004 [cited by applicant]
WO 2002027571A2 · 2002 [cited by applicant]
WO 2021036277A1 · 2021 [cited by applicant]
E. Grigoroudis et al. A survey of customer satisfaction barometers: Some results from the transportation-communications sector. European Journal of Operational Research. vol. 152, Issue 2, Jan. 16, 2004, pp. 334-353 (Ye… [cited by examiner]
Aung, “Operational Risk Management Framework for Service Outsourcing: Consideration of Risk Dimensions and Their Application Into the Framework,” International Journal of Electronic Business Management, vol. 6, No. 3, 2… [cited by applicant]
Rahim, “Perceived Operational Risk Management and Customer Complaints in Malaysian Conventional Banking Industry” Advanced Science Letters, vol. 21, No. 4, Apr. 2015, 6 pp. [cited by applicant]
U.S. Appl. No. 16/710,244, filed Dec. 11, 2019, naming inventors Johnson et al. [cited by applicant]
U.S. Appl. No. 16/710,244, filed Jun. 20, 2019, naming inventors Johnson et al. [cited by applicant]
“Building a customer service alert system that works”, Customer Thermometer. Retrieved from https://www.customerthermometer.com/customerfeedback/customer-service-alert-system/. May 2019, 5 pages. [cited by applicant]
Grigoroudis et al. “A survey of customer satisfaction barometers: Some results from the transportation-communications sector”, European Journal of Operational Research, vol. 152, Issue 2, Jan. 16, 2004, pp. 334-353. [cited by applicant]
U.S. Appl. No. 17/099,674, filed Nov. 16, 2020, naming inventors Bowers et al. [cited by applicant]
U.S. Appl. No. 17/456,107, filed Nov. 22, 2021, naming inventors Johnson et al. [cited by applicant]
U.S. Appl. No. 16/447,567, filed Jun. 20, 2019, naming inventors Johnson et al. [cited by applicant]
Crosman, “AI as new tool in banks' crime-fighting bag?”, American Banker, Mar. 2018, 8 pp. [cited by applicant]
Yusof et al., “Intrusion alert correlation technique analysis for heterogeneous log”, IJCSNS International Journal of Computer Science and Network Security, vol. 8, No. 9, Sep. 2008, pp. 132-138. [cited by applicant]
Business Wire, “Americas Software is Helping World's Banks Track Money Laundering”, Mar. 2000, p. 1377. [cited by applicant]
Advisory Action from U.S. Appl. No. 18/060,666 dated Aug. 7, 2024, 2 pp. [cited by applicant]
Final Office Action from U.S. Appl. No. 18/060,666 dated Apr. 29, 2024, 12 pp. [cited by applicant]
Response to Office Action dated Jan. 18, 2024 from U.S. Appl. No. 18/060,666, filed Apr. 18, 2024, 17 pp. [cited by applicant]
Response to Office Action dated Apr. 29, 2024 from U.S. Appl. No. 18/060,666, filed Jul. 29, 2024, 16 pp. [cited by applicant]
Office Action from U.S. Appl. No. 18/060,666 dated Jan. 18, 2024, 9 pp. [cited by applicant]
Notice of Allowance from U.S. Appl. No. 18/060,666 dated Nov. 15, 2024, 10 pp. [cited by applicant]