The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
May. 19, 2020

Filed:

Feb. 13, 2018
Applicant:

Bank of America Corporation, Charlotte, NC (US);

Inventors:

John Howard Kling, Cincinnati, OH (US);

Brandon Sloane, Santa Barbara, CA (US);

Regina Yee Cadavid, San Gabriel, CA (US);

Rachel Yun Kim Bierner, Los Angeles, CA (US);

Ronald James Kuhlmeier, Simi Valley, CA (US);

Assignee:

Bank of America Corporation, Charlotte, NC (US);

Attorneys:
Primary Examiner:
Int. Cl.
CPC ...
H04L 29/06 (2006.01); G06F 3/06 (2006.01); G06F 21/60 (2013.01); G06F 21/55 (2013.01); G06F 21/62 (2013.01);
U.S. Cl.
CPC ...
H04L 63/102 (2013.01); G06F 3/0622 (2013.01); G06F 21/552 (2013.01); G06F 21/604 (2013.01); G06F 21/6218 (2013.01); H04L 63/101 (2013.01); H04L 63/104 (2013.01); G06F 2221/2141 (2013.01);
Abstract

A vertically integrated access control system may store in a database data records corresponding to the interfaces, access control rules, and computing resources of an information system, as well as data records for entity capabilities. Data records for related interfaces, access control rules, computing resources, and entity capabilities may be linked. Using the database, the system may determine the entity capabilities that can be performed based on an existing user entitlement. If the entity capabilities include a flagged combination of entity capabilities, the system may perform an information security action to remediate the flagged combination. The system may use the database to form vertically integrated access units. The vertically integrated access units may be used to form user entitlements. The system may continuously monitor whether any proposed configurations would create a flagged combination of entity capabilities, and if so take an action to prevent such flagged combination.


Find Patent Forward Citations

Loading…