Fraud Case Management
Last updated: August 17, 2026
A Transaction Fraud Case centralises all triggered alerts for a specific entity (either a customer or a counterparty) into a single, context-rich environment. This allows analysts to assess specific triggered alerts within the wider context of detected risks for a specific customer or counterparty.
Case Structure
Cases are designed to give you a complete picture of an entity's potentially risky activity. The hierarchy is as follows:
Case: The top-level container, focused on a single customer or counterparty.
Alert: A case can contain multiple alerts. Each alert represents a specific scenario that was triggered.
Transaction: An alert can contain one or more transactions that meet the scenario's criteria.
How to Investigate a Case
Navigate the Alerts
Use the Alerts side panel to select and review each individual alert contained within the case.Review Alert Details
For each selected alert, you will see the alert priority, alert segment, scenario observations, scenario parameters, the alerting transaction and the contextual transactions and customer transaction history (inbound and outbound). The system shows you the scenario's required parameters alongside the actual values from the transaction, explaining exactly why the alert was created.Set the Status for Each Alert
After reviewing an alert, assign it a status:
True Positive, False Positive, In Progress, or Not Started. Repeat this for all alerts in the case.Make an Overall Case Decision
Once all alerts have been reviewed and assigned a status, make a final decision on the case as a whole- Flaggeded or Accepted.Document Your Findings
Use the Case Notes section and the notes on your final decision to record your reasoning and share information with your team. This provides a clear audit trail for your decision-making process.