Continuous risk assessment for electronic protected health information

    公开(公告)号:US12174969B2

    公开(公告)日:2024-12-24

    申请号:US18089646

    申请日:2022-12-28

    Abstract: Methods and systems for continuously and quantitatively assessing the risk to data confidentiality, integrity, and availability on identified on endpoints, servers, medical devices, and “Internet of things” devices in a networked healthcare environment monitor resource requests by user applications running on the various device. A map of resource usage by each application may be generated. Based on the map and a risk model (e.g., the contents of a risk database), application events associated with risks are detected and resources vulnerable to the risk may be identified.

    QUORUM-BASED SECURE AUTHENTICATION
    5.
    发明申请

    公开(公告)号:US20170142579A1

    公开(公告)日:2017-05-18

    申请号:US15392337

    申请日:2016-12-28

    Abstract: Representative embodiments of secure authentication to a resource in accordance with a predefined, electronically stored quorum-based authentication policy include causing electronic interaction among multiple devices that constitute a quorum in accordance with the policy, computationally determining whether the interaction satisfies the policy, and if so, electronically according access to the resource to one or more individuals associated with the interacting device(s).

    Device-agnostic user authentication
    6.
    发明授权
    Device-agnostic user authentication 有权
    设备无关的用户认证

    公开(公告)号:US09246902B1

    公开(公告)日:2016-01-26

    申请号:US14321321

    申请日:2014-07-01

    Abstract: A user of a client device that executes a remote application is authenticated by first receiving an HTTP or HTTPS request to authenticate the user from the remote application. The user is prompted for authentication information, and authentication information is obtained by communicating with a hardware device in electronic communication with the client device. The user's authorization to use the remote application is then verified using a computer processor and using the authentication information.

    Abstract translation: 执行远程应用程序的客户端设备的用户通过首先从远程应用程序接收到用于验证用户的HTTP或HTTPS请求进行认证。 提示用户认证信息,并通过与客户端设备的电子通信与硬件设备进行通信来获得认证信息。 然后使用计算机处理器并使用认证信息来验证用户使用远程应用程序的授权。

    Systems and methods for multi-factor authentication
    7.
    发明授权
    Systems and methods for multi-factor authentication 有权
    用于多因素认证的系统和方法

    公开(公告)号:US09118656B2

    公开(公告)日:2015-08-25

    申请号:US11698271

    申请日:2007-01-25

    Abstract: Requests to gain access to secure resources are adjudicated according to authentication policies that include rules based on user-states derived from multiple heterogeneous access-control systems. Comprehensive user authentication and access control based on rules and policies that encompass a user's status in multiple access-control systems, including both logical access (e.g., Active Directory, RADIUS, Virtual Private Network, etc.) as well as physical access (e.g., card-based) control systems, may be realized.

    Abstract translation: 根据包含基于从多个异构访问控制系统导出的用户状态的规则的认证策略来裁定获取安全资源的请求。 基于涵盖多个访问控制系统中的用户状态(包括逻辑访问(例如,Active Directory,RADIUS,虚拟专用网络等))以及物理访问(例如, 基于卡的)控制系统,可以实现。

    Data-handling and display system capable of supporting multiple
application programs and output devices
    8.
    发明授权
    Data-handling and display system capable of supporting multiple application programs and output devices 失效
    支持多种应用程序和输出设备的数据处理和显示系统

    公开(公告)号:US5212770A

    公开(公告)日:1993-05-18

    申请号:US446975

    申请日:1989-12-06

    CPC classification number: G06T11/60

    Abstract: An interface system that facilitates user interaction with a plurality of document-management programs, each of which may require different data formats, and convenient output of data generated by such programs to recording or display devices. The invention includes a "front end", which accepts user commands and channels them to a designated application program; and a "back end", which converts output data into a form compatible with a selected output device or display, and which can simultaneously drive display of data from a plurality of application programs. The system operates using a common set of raster-image instructions; output and display data from an application program are converted into this common set of instructions before being provided to a selected output or display device. The system can store multiple display lists in segregated memory partitions, and then combine the lists according to a user-defined "mapping" procedure to produce a single, integrated display.

    Abstract translation: 一种接口系统,其便于与多个文档管理程序的用户交互,每个文档管理程序可能需要不同的数据格式,以及将这些程序生成的数据方便地输出到记录或显示设备。 本发明包括一个“前端”,它接受用户的命令并把它们传给指定的应用程序; 和“后端”,其将输出数据转换成与所选择的输出设备或显示兼容的形式,并且可以同时驱动来自多个应用程序的数据的显示。 系统使用一组共同的光栅图像指令进行操作; 来自应用程序的输出和显示数据在被提供给所选择的输出或显示设备之前被转换成该通用指令集。 系统可以将多个显示列表存储在隔离的内存分区中,然后根据用户定义的“映射”过程组合列表,以生成单个集成显示。

Patent Agency Ranking