The team had one stubborn problem.
Nine months, three applications merged into one platform, and 837 client service users later: authentication success rose 88%, and secure-method usage rose 357%. Live in production since 2023.
The goal in one line: raise authentication success. Users were not failing because of risk rules. They were failing because the application made authenticating hard.
Measured: authentication metrics before launch, compared against the same metrics one year after launch, tracked on the performance dashboard we shipped as part of the platform.
This was never just a UX project for the bank. Every authentication that moves to Voice ID is fraud risk reduced, a compliance posture strengthened, and a client who was not interrogated. That is why it was funded, and why the dashboard reports the numbers to leadership.
Advisors juggled separate applications while a client waited, and authentication was the step everyone dreaded. The insight that ended up steering everything came later: security behavior follows interface behavior. People do not pick the safe method. They pick the near one.
Three separate applications for one phone call. Advisors authenticated clients with the slowest, least secure methods because those were the ones at hand.
Design, product, and tech set the sequence together: build the client information view first, inside the case app, and bring the phone and authentication in last. Prove the space is useful before merging the riskiest piece into it.
User interviews on one question: what do you actually need on screen during a call? Personas, data analysis, priority against effort, and low-fi testing killed weak directions before they got expensive. The population turned out to be six coverage types across six US locations, and a tenured-versus-new learning gap. One-size-fits-all was off the table.
Stakeholders pushed back on authentication sitting at the top of the client view. I believed the call starts with trust, so the trust step belongs where the eye lands first.
User testing settled it: authentication stayed on top. And the design went further: after the first method succeeds, the view changes state, with a button to add another method, and we tested exactly how advisors would layer a second authentication after the first.
Design iteration with QA and pilot testing. The counter-clockwise pattern around the merged screen survived because it matched the real order of a call, tested as intuitive, and built muscle memory fast for both tenured and new advisors.
Launch was designed like a product too: a user learning program, onsite training, a town hall, and a performance dashboard so the impact numbers above had a source from day one.
International Private Bank rollout is planned for 2027, carrying the scalability work below.
The sequence: a survey across the 837-person client service population on how calls actually go and where they break, interviews built on the survey analysis, a 12-person brainstorm with product, engineering, and executive directors, impact-versus-effort prioritization into a two-phase roadmap, a low-fi prototype to make the project concrete, user testing at every phase, and a pilot before launch. Six coverage types, six US locations, tenured and new advisors.
Merge everything at once, or lead with the flashiest piece, the phone. We chose neither. The sequence was strategized jointly by design, product, and tech.
Advisors had to find the client information space useful on its own before the riskiest step moved into it.
With limited time and tech capacity, v1 had to cut: the after-call view of call and email history, authenticating additional callers, and editing client information and system preferences all waited for v2.
By the time the phone merged in, the space around it had already earned trust, and advisors said so unprompted.
The top position was my call, and stakeholders pushed back on it. There was real risk in holding the line: if testing had gone the other way, I had spent my credibility on a layout. I brought the test instead of a better argument, and the test decided it.
After the first successful method, the panel changes state and offers a button to add another. We tested exactly how advisors layer a second authentication on top of the first.
"I love how the authentication option changes depending on the client's preferences." Trust became the first thing on screen, and the numbers followed.
The counter-clockwise pattern was mine, and it won for three reasons, in order of weight: it matches the real order of a call (phone rings, identify, authenticate, act), users tested it as intuitive, and it builds muscle memory fast, which mattered with a tenured-versus-new learning gap. Teams designing later screens now inherit the pattern instead of inventing one.
One flow that six coverage types could share without six trainings.
Recent-match filters make the likely client appear the moment the call comes in, and the client's preferred method sits on the call panel with an audit line for who changed what. Personalization at zero clicks.
"I mostly use the recent matches."
The last two matter most. The clients were never in the room during design, and they noticed anyway.
That question would not leave me alone. It became my own project: an AI operating model where the human keeps control at two gates.
Read SPOT OM, the AI operating system case study →
If you are designing systems people have to trust with their money or their name, that is the work I want to do.
Ask me about any decision in this platform. I can walk you through the why in twenty minutes.
Ashley Kim · ashleykim1229@gmail.com