Join our Newsletter — 33% off our NHI Course

What are the signs that a bank’s 5G strategy is creating friction instead of better service?

Common warning signs include slower customer journeys, dropped video sessions, inconsistent experiences across devices, and repeated authentication steps that interrupt high-frequency interactions. If customers shift to competitors or avoid advanced channels because access feels cumbersome, the 5G strategy is not delivering its intended value. The issue is usually not connectivity alone, but whether identity flows were redesigned for real-time use cases.

Where 5G Strategy Starts to Hurt Customer Experience

In a banking context, 5G is only valuable if it reduces delay, preserves trust, and keeps high-frequency journeys smooth. When a strategy adds steps, breaks continuity between channels, or forces customers to reauthenticate too often, the service promise collapses into friction. That matters because banking customers judge the whole interaction, not the network layer, and they are quick to abandon flows that feel unstable or overly cautious. The control question is whether the architecture supports the journey, not whether the network is faster in isolation.

Security and governance teams should also notice that friction is often a sign of poor alignment between channel design, risk controls, and identity assurance. When those pieces are bolted together late, the result is usually duplicated checks, inconsistent device handling, or policies that block legitimate use cases while failing to distinguish real risk. For a banking audience, that is an experience failure first and a control failure soon after. In practice, many banks discover this only after adoption stalls and frontline teams begin compensating for awkward customer journeys.

A useful external benchmark for control design discipline is the NIST SP 800-53 Rev 5 Security and Privacy Controls, which helps teams separate intended safeguards from accidental complexity.

How the Friction Shows Up in Real Banking Journeys

The practical signs are usually visible in interaction patterns rather than in network telemetry alone. Customers may complete the first step of a process quickly, then stall when a second factor appears without clear reason. Video or advisory sessions may degrade because the channel cannot preserve state cleanly across handoffs. Mobile app users may see one path, desktop users another, and branch-assisted users a third, which creates inconsistent expectations and increases support demand. These are not just usability issues. They indicate that the 5G-enabled service model has not been translated into stable operational design.

Friction also appears when risk logic is too blunt for the speed of the channel. If every sensitive action triggers repeated authentication, the bank may be signalling uncertainty in its trust model rather than a deliberate step-up policy. If customers can move quickly for low-risk activities but hit repeated challenges for routine high-frequency tasks, the experience suggests that controls were layered onto the journey rather than designed into it. The same is true when performance is good but trust is poor: the network may be capable, yet the service still feels unreliable because session continuity, device recognition, and step-up decisions are not aligned.

  • Look for repeated logins, OTP fatigue, and abrupt session resets during short customer tasks.
  • Watch for support contacts that describe “it works sometimes” rather than a clear outage.
  • Compare journey completion rates across devices and channels, not just overall usage.
  • Check whether exceptions are being handled manually because the default path is too rigid.

Where this guidance breaks down is when the problem is not design friction but a genuine trust or fraud signal that correctly requires a harder step-up path.

When the Strategy Needs Rework, Not Just Tuning

Tighter access controls often improve trust, but they also add latency and decision overhead, so banks have to balance assurance against interruption. The key distinction is whether the friction is intentional and proportionate, or whether it is a by-product of fragmented design. Industry guidance is not fully unified on the exact threshold for “too much” friction because it depends on product risk, customer segment, and channel sensitivity, but there is broad agreement that a good banking journey should feel coherent across channels and predictable at each step.

The edge cases are important. A high-value payment flow may justifiably require stronger checks than a balance enquiry, so not every extra prompt is a defect. Likewise, some device diversity is expected in banking, especially when customers move between personal phones, shared tablets, and branch-supported experiences. The problem begins when the bank treats every context as the same, or when 5G is used as a headline capability without redesigning the identity, session, and recovery model that sits around it. At that point, the network may be faster, but the service is less usable.

Another common misunderstanding is to treat customer complaints as purely a UX issue. In reality, persistent friction usually means the bank has not decided what should be trusted, what should be rechecked, and what should continue seamlessly. That is a service design decision as much as a security one. If the organisation cannot explain why a customer is being challenged, the challenge is probably too broad.

Practitioners should therefore treat recurring friction as evidence that the 5G programme is leaking complexity into the customer journey. The right response is to simplify the decision points, not to hide them.

Standards & Framework Alignment

This section maps relevant standards and security frameworks to the operational risks and controls described in this guidance.

NIST CSF 2.0 and CIS Controls v8 set the technical controls, while PCI DSS v4.0 define the regulatory obligations.

Framework Control / Reference Relevance
NIST CSF 2.0 PR.AC — Identity Management, Authentication and Access Control Friction often comes from poorly tuned access decisions in banking journeys.
DE.CM — Security Continuous Monitoring Customer friction can reveal misaligned controls and inconsistent channel behaviour.
ID.AM — Asset Management A 5G banking strategy depends on understanding which channels and devices are in scope.
Recommendation — Align step-up checks to risk so access remains proportionate and predictable. Monitor journey failures and challenge rates to spot control-induced service degradation. Maintain an accurate view of customer channels and device contexts before changing service flows.
CIS Controls v8 6 — Access Control Management Repeated authentication and awkward access paths are access-control design issues.
Recommendation — Reduce unnecessary prompts by standardising least-privilege access paths and reauthentication rules.
PCI DSS v4.0 8 — Identify Users and Authenticate Access Banking journeys often intersect with strong authentication requirements that can create friction.
Recommendation — Tune authentication so compliance checks do not create avoidable customer drop-off.

Practitioner Guidance

What to prioritise: Start with the journeys where speed and continuity matter most, such as payments, onboarding, authenticated service requests, and live support handoffs. If those paths feel fragmented, the strategy is failing where customers notice it first.

What to verify: Confirm that each added check has a clear trigger, a clear purpose, and a measurable reduction in risk or abuse. If the team cannot explain why a customer is re-challenged, the control is likely compensating for a weak design rather than a real threat signal.

Common mistake: Teams often assume that a faster network will automatically improve service. In practice, the opposite can happen when session handling, identity decisions, and channel consistency are not redesigned at the same time.

Practitioner takeaway: A bank’s 5G strategy is working only when the customer experiences fewer interruptions, not more technology in the path.