BetaTrust and Identity squad

AI zero trust for every session and payment

Nova Sentinel, Lead AI Zero Trust Security Architect, an AI agent by FluxForceNova Sentinel — Lead AI Zero Trust Security Architect

Nova Sentinel is an AI agent that gives every login, session and payment request a trust score before the transaction is decided. She checks device, location, impossible travel and reused credentials against what's normal for that customer. Low-trust sessions go to your fraud team, or to step-up authentication if you've set that rule.

Nova Sentinel
Nova Sentinel, Lead AI Zero Trust Security Architect, an AI agent by FluxForce
Session #77104 scored
IllustrativeFlagged for review
Trust score 0.22 · low
Flag explained
“New device, impossible travel since last login, password found in breach data.”
NIST SP 800-207PSD2 SCA
REPORTS TO
Your Head of Fraud or CISO
Shadow mode first
How Nova works with your team
Shadow mode
first: nothing acts until you say so
3 bands
of autonomy you configure
Every decision
has a replayable record
1 per agent
kill switch
SaaS · on-prem · hybrid
deployment
Product controls, not performance claims. Performance is measured on your data, in shadow mode.
The problem

The account takeover problem your fraud team inherits

Most fraud controls look at the payment. By then the attacker is already inside a valid session, with the right password and a one-time code talked out of the customer. Your login checks and your fraud checks rarely share what they know.

SESSION GAP
One login

is all an attacker needs

Trust is checked once, then assumed.

Valid credentials

The password was right

Reused passwords from old breaches let attackers log in as the customer. A login that passes every check can still be the wrong person.

Siloed signals

Login and payment don't talk

The identity team sees a new device. The fraud team sees a new payee. Neither sees both, so the transfer looks routine to each.

Audit gap

No record of why a session was trusted

After a takeover, the examiner and the customer both ask what the bank knew at login. Most teams can't show the signals they had at that moment.

Job description

What Nova Sentinel does Job description

Nova Sentinel is a Lead AI Zero Trust Security Architect. She sits between your authentication layer and your payment flow, scores the trust of each session and request, and passes that score to your fraud checks before money moves.

AI AGENT · TRUST AND IDENTITY SQUADBeta
Nova Sentinel, Lead AI Zero Trust Security Architect, an AI agent by FluxForce
NOVA SENTINEL
Lead AI Zero Trust Security Architect
REPORTS TO
Your Head of Fraud or CISO
WORKS WITH
Your identity provider, mobile and web apps, and payment systems
DEPLOYED
Shadow mode first, then the autonomy you set
KEY RESPONSIBILITIES
01Score the trust of every login, session and sensitive request against device, location, network and the customer's history
02Detect impossible travel, new devices and credentials found in known breach data
03Re-score the session when something changes, such as a new payee or a changed phone number
04Pass the trust score and its reasons to fraud scoring before a payment is decided
05Recommend step-up authentication or send the session to an analyst, by the rules you set
AUTONOMY MODEL
Low risk
Can let the session continue, if you allow it
LOW
Medium risk
Goes to an analyst by default
MEDIUM
High risk
Always goes to an analyst
HIGH
You set the threshold per rule.
Kill switch: Turn Nova off at any time
Shadow mode

What to measure in shadow mode on your own data

We don't publish detection numbers from our own tests. Run Nova Sentinel beside your current controls and measure what she sees on your sessions before she acts on anything.

01
Takeovers seen at login
Confirmed account takeover cases where Nova's session score was already low.
02
Missed-takeover review
Every confirmed takeover Nova scored as trusted. Read this number first.
03
Step-up rate
How often good customers would be asked to re-authenticate under your proposed rules.
04
Analyst agreement
How often your analyst's decision matches Nova's recommendation, by risk band.
05
Signal coverage
Share of sessions with device, location and network data available to score.
06
Re-score triggers
Which mid-session changes, such as a new payee, moved the score most.
07
Scoring latency
Time to score a session at your volumes, on your infrastructure.
08
Decisions with evidence
Share of decisions with a replayable record. The target is all of them.
Shadow mode results belong to you. We agree the metrics, the time window and who reviews the closures before the trial starts.
How it works

How AI zero trust scoring works with Nova Sentinel

Nova Sentinel connects to your identity and payment systems through APIs. Your login flow stays where it is.

01

Collect

Login events, device data, IP address, location and session activity arrive from your apps and identity provider. Breached credential checks and network reputation add outside context.

02

Score

Nova scores each session and sensitive request against the customer's own history and the deterministic rules you set, such as impossible travel between two logins.

03

Route

Your autonomy settings decide what happens next. High-trust sessions can continue on their own if you allow it. Medium risk goes to step-up authentication or an analyst, as you configure. High risk always goes to an analyst.

04

Share and record

The trust score and its reasons pass to Aiden Flux and your fraud checks before a payment is decided. Every score, its inputs and any human decision go into tamper-evident evidence storage.

Want to see this on your data?

Run Nova Sentinel in shadow mode beside your current login and fraud controls. She scores every session and records why, and nothing is stopped or challenged. Compare her calls with your confirmed takeover cases before you switch anything on.

Request a shadow mode trial
Compliance and regulatory mapping

Regulatory frameworks Nova Sentinel supports

Nova doesn't make you compliant. She produces the session evidence these frameworks expect you to keep.

NIST SP 800-207
Zero trust architecture treats no session as trusted by default. Nova applies that idea to each customer session and request.
PSD2 strong customer authentication
EU payment service providers apply SCA under RTS 2018/389. Nova's record shows when your rules called for step-up and why.
UK PSR APP scam reimbursement
Reimbursement rules have applied since 7 October 2024, up to £85,000 per claim. Session evidence shows what the bank knew before the payment.
AFASA (RA 12010)
The Philippines' Anti-Financial Account Scamming Act (2024) covers scams on financial accounts. Nova's session record supports your investigation of each case.
NYDFS Part 500
New York's cybersecurity regulation applies to covered financial firms. Nova adds session-level evidence to your access controls review.
DORA
EU financial entities manage ICT risk and report major ICT incidents. Nova's session log shows what was trusted, and when, during an incident.
Analyst view

What your fraud team sees

Session trust on every case, with the reasons in plain English.

BEFORE NOVA SENTINEL
A login check that runs once, then trusts the session
Identity and fraud signals in separate tools
Takeovers found when the customer calls
Breached passwords discovered after the fact
No record of what was known at login
AFTER NOVA SENTINEL
A trust score that updates through the session
Session trust attached to every payment score
Low-trust sessions sent to an analyst before money moves
Credentials checked against known breach data at login
Every session decision replayable for an examiner
Options

How the options compare

CRITERIA Static MFA rulesStandalone device fingerprinting Nova Sentinel, Lead AI Zero Trust Security Architect, an AI agent by FluxForceNova Sentinel
Time to first results Already in placeIntegration and tuning Shadow mode on your live sessions
Who decides Fixed rule at loginVendor score, then your rule Analyst, inside trust bands you set
Why a session was trusted Passed MFA onceDevice risk score Plain-English reason with the signals behind it
Checks after login NoSometimes Re-scores on new payees and profile changes
Shares with fraud scoring NoThrough custom integration Yes, before a payment is decided
Where it's weaker Social engineering gets past a one-time codeSees the device, not the customer's history Needs good device and location data, and a shadow period to tune step-up rates
Trust Builders

Built for Regulated Financial Institutions

01

Configurable autonomy

Low risk can run on its own if you allow it. Medium risk goes to a person by default. High risk always goes to a person. You set the bands per rule, channel and transaction type.

02

Kill switch

Turn Nova off without touching the other agents or your core systems. The switch, and who used it, is stamped on the record.

03

Shadow mode

Run Nova on live data with nothing blocked or closed. Compare the calls with your team's before anything changes.

04

Explainability

Every decision answers why, in plain English, with the signals and the rule or policy behind it.

05

Audit trail

Each decision is stored with its inputs, its reasoning and the person who approved it, in tamper-evident evidence storage.

06

No migration

Agents connect beside your systems through APIs. Your core banking, screening and case tools stay where they are.

Questions? We Have Answers

Frequently Asked Questions

FluxForce

Still have questions?

Talk to the people who build the agents. We'll answer per capability, yes or no.

It stops a bank from trusting a session just because the login passed. Nova Sentinel scores each session and sensitive request against device, location, impossible travel and reused credentials, then passes that score to fraud checks before a payment is decided. Your team sets what happens at each trust level.

Nova scores and recommends. Your rules decide whether a medium-risk session goes to step-up authentication or an analyst, and high-risk sessions always reach a person. A kill switch turns Nova off without touching your login flow.

MFA checks the customer once at login. Nova keeps scoring through the session, so a new payee or a changed phone number after login still counts. MFA stays in place, and Nova's score can tell you when to ask for it again.

Nova scores your live sessions and records her reasons, but nothing is challenged or stopped. Your current controls keep working, and you compare Nova's scores with your confirmed takeover cases. You decide whether, and where, to switch on any autonomy afterwards.

Login and session events with timestamps, customer identifiers, device data, IP address and location. Payee changes and profile updates help her re-score mid-session. Confirmed takeover cases help tune the trust bands.

No. Nova reads events from your identity provider and apps and adds a trust score. Your authentication, MFA and login flow stay as they are.

FluxForce runs as SaaS, on-premise or hybrid, built on Microsoft Azure. We agree data residency and which components run inside your environment during deployment design, before any data moves.

Shadow mode trial

See Nova on your data before anything changes

Run Nova Sentinel beside your current process. She works on your live data and records every call, and nothing is blocked, closed or sent until you decide.

  • Runs in shadow mode on your own data, next to your team
  • You agree the metrics, the time window and who reviews the results
  • Kill switch and a replayable record of every decision from day one
  • SaaS, on-premise or hybrid, with data residency agreed up front

Shadow mode results belong to you.

Take the first step

AI agents that prepare the case. Your team makes the call.

Start with one workflow in shadow mode, then decide how much each agent does on its own.

How we start
Discovery and scoping
Integration beside your systems
Shadow mode
Controlled autonomy
Govern and improve