-
公开(公告)号:US20200021597A1
公开(公告)日:2020-01-16
申请号:US16581087
申请日:2019-09-24
发明人: Rexall E. Thexton , Gaurav Tandon , Sanjeev Shukla , Anthony McCoy , Sidath Mudiyanselage , Andrew Poole , Hannah Craddock , Qurrat Ul Ain , Colleen Connolly , Farbod Kamiab
摘要: A method for controlling access to one or more of a plurality of target systems includes receiving profile data that defines one or more features associated with a plurality of individuals with one or more entitlements of those individuals. Each entitlement is indicative of target system access. The method further includes generating a model that relates the one or more features and the one or more entitlements of the plurality of individuals. Profile data that defines one or more features associated with a target individual is received from a first user management system. A listing that includes one or more entitlements associated with the target individual, and confidence values associated with the one or more entitlements is generated based on the profile data and the model. Each confidence value is indicative of whether the target individual should be granted a corresponding entitlement. For each entitlement having a corresponding confidence value higher than a predetermined threshold, an instruction is communicated to a target system associated with the entitlement to allow the target individual access to the target system.
-
公开(公告)号:US11128635B2
公开(公告)日:2021-09-21
申请号:US16906953
申请日:2020-06-19
发明人: Rexall E. Thexton , Gaurav Tandon , Sanjeev Shukla , Anthony McCoy , Sidath Mudiyanselage , Andrew Poole , Hannah Craddock , Qurrat Ul Ain , Colleen Connolly , Farbod Kamiab
摘要: A method for controlling access to one or more of a plurality of target systems includes receiving profile data that defines one or more features associated with a plurality of individuals with one or more entitlements of those individuals. Each entitlement is indicative of target system access. The method further includes generating a model that relates the one or more features and the one or more entitlements of the plurality of individuals. Profile data that defines one or more features associated with a target individual is received from a first user management system. A listing that includes one or more entitlements associated with the target individual, and confidence values associated with the one or more entitlements is generated based on the profile data and the model. Each confidence value is indicative of whether the target individual should be granted a corresponding entitlement. For each entitlement having a corresponding confidence value higher than a predetermined threshold, an instruction is communicated to a target system associated with the entitlement to allow the target individual access to the target system.
-
公开(公告)号:US10521582B2
公开(公告)日:2019-12-31
申请号:US15788470
申请日:2017-10-19
发明人: Sanjeev Shukla , Gaurav Tandon , Rexall E. Thexton , Neha Joshi , David Michael Parker , Avinash Ramesh , Krishna M. Dasari , Parvathy Ramakrishnan
摘要: An access management robot facilitation system facilitates a robot to execute access management tasks on a target system.
-
公开(公告)号:US10708274B2
公开(公告)日:2020-07-07
申请号:US15900475
申请日:2018-02-20
发明人: Rexall E. Thexton , Gaurav Tandon , Sanjeev Shukla , Anthony McCoy , Sidath Mudiyanselage , Andrew Poole , Hannah Craddock , Qurrat Ul Ain , Colleen Connolly , Farbod Kamiab
摘要: A method for controlling access to one or more of a plurality of target systems includes receiving profile data that defines one or more features associated with a plurality of individuals with one or more entitlements of those individuals. Each entitlement is indicative of target system access. The method further includes generating a model that relates the one or more features and the one or more entitlements of the plurality of individuals. Profile data that defines one or more features associated with a target individual is received from a first user management system. A listing that includes one or more entitlements associated with the target individual, and confidence values associated with the one or more entitlements is generated based on the profile data and the model. Each confidence value is indicative of whether the target individual should be granted a corresponding entitlement. For each entitlement having a corresponding confidence value higher than a predetermined threshold, an instruction is communicated to a target system associated with the entitlement to allow the target individual access to the target system.
-
公开(公告)号:US09817967B1
公开(公告)日:2017-11-14
申请号:US15406559
申请日:2017-01-13
发明人: Sanjeev Shukla , Gaurav Tandon , Rexall E. Thexton , Neha Joshi , David Michael Parker , Avinash Ramesh , Krishna M. Dasari , Parvathy Ramakrishnan
IPC分类号: H04L29/06 , G06F17/50 , G06F21/52 , G06F21/45 , G05B19/042
CPC分类号: G06F21/52 , B25J9/1674 , G05B19/042 , G05B2219/24158 , G05B2219/39371 , G06F17/50 , G06F21/45 , G06F2221/031 , G06F2221/2117 , H04L63/10
摘要: An access management robot facilitation system facilitates a robot to execute access management tasks on a target system.
-
公开(公告)号:US11368377B2
公开(公告)日:2022-06-21
申请号:US17124034
申请日:2020-12-16
发明人: Sanjeev Shukla , Gaurav Tandon , Chetan Kulshrestha , Alok Panda , Sayon Roy Choudhury , Anil Vilas Renuse , Catherine Marie-Luise Ploehn
IPC分类号: G06F15/173 , H04L41/5074 , G06F16/783 , G06V20/40 , G06V30/10
摘要: In some examples, closed loop monitoring based privileged access control may include identifying a ticket that includes a specification of an incident that is to be remedied and determining an intent of the ticket. A privileged access command library may be analyzed to determine a plurality of privileged access steps that can be performed to remedy the incident. A source file associated with procedures that were performed to remedy the incident may be analyzed. A plurality of events may be identified using the source file and filtered based on the plurality of privileged access steps that can be performed to remedy the incident. At least one event that includes at least one other privileged access step that is not one of the plurality of privileged access steps that can be performed to remedy the incident may be identified, and instructions may be generated to remedy the identified event.
-
公开(公告)号:US10686795B2
公开(公告)日:2020-06-16
申请号:US16016154
申请日:2018-06-22
发明人: Rexall E. Thexton , Gaurav Tandon , Sanjeev Shukla , Anthony McCoy , Sidath Mudiyanselage , Andrew Poole , Hannah Craddock , Qurrat Ul Ain , Colleen Connolly , Farbod Kamiab
IPC分类号: H04L29/06
摘要: A method for controlling access to one or more of a plurality of target systems includes receiving profile data that defines one or more features associated with a plurality of individuals with one or more entitlements of those individuals. Each entitlement is indicative of target system access. The method further includes generating a model that includes one or more sets of rules where each set of rules is associated with an entitlement of the profile data. Each entitlement is indicative of target system/application access. Each rule within a set relates a combination of one or more features of the profile data with a confidence value. Profile data that defines one or more features associated with a target individual is received from a first user management system. A listing that includes one or more entitlements associated with the target individual, and confidence values associated with the one or more entitlements is generated based on the profile data and the rules. Each confidence value is indicative of whether the target individual should be granted a corresponding entitlement. For each entitlement having a corresponding confidence value higher than a predetermined threshold, an instruction is communicated to a target system associated with the entitlement to allow the target individual access to the target system.
-
公开(公告)号:US10681055B2
公开(公告)日:2020-06-09
申请号:US16581087
申请日:2019-09-24
发明人: Rexall E. Thexton , Gaurav Tandon , Sanjeev Shukla , Anthony McCoy , Sidath Mudiyanselage , Andrew Poole , Hannah Craddock , Qurrat Ul Ain , Colleen Connolly , Farbod Kamiab
摘要: A method for controlling access to one or more of a plurality of target systems includes receiving profile data that defines one or more features associated with a plurality of individuals with one or more entitlements of those individuals. Each entitlement is indicative of target system access. The method further includes generating a model that relates the one or more features and the one or more entitlements of the plurality of individuals. Profile data that defines one or more features associated with a target individual is received from a first user management system. A listing that includes one or more entitlements associated with the target individual, and confidence values associated with the one or more entitlements is generated based on the profile data and the model. Each confidence value is indicative of whether the target individual should be granted a corresponding entitlement. For each entitlement having a corresponding confidence value higher than a predetermined threshold, an instruction is communicated to a target system associated with the entitlement to allow the target individual access to the target system.
-
公开(公告)号:US20190260752A1
公开(公告)日:2019-08-22
申请号:US15900475
申请日:2018-02-20
发明人: Rexall E. Thexton , Gaurav Tandon , Sanjeev Shukla , Anthony McCoy , Sidath Mudiyanselage , Andrew Poole , Hannah Craddock , Qurrat Ul Ain , Colleen Connolly , Farbod Kamiab
摘要: A method for controlling access to one or more of a plurality of target systems includes receiving profile data that defines one or more features associated with a plurality of individuals with one or more entitlements of those individuals. Each entitlement is indicative of target system access. The method further includes generating a model that relates the one or more features and the one or more entitlements of the plurality of individuals. Profile data that defines one or more features associated with a target individual is received from a first user management system. A listing that includes one or more entitlements associated with the target individual, and confidence values associated with the one or more entitlements is generated based on the profile data and the model. Each confidence value is indicative of whether the target individual should be granted a corresponding entitlement. For each entitlement having a corresponding confidence value higher than a predetermined threshold, an instruction is communicated to a target system associated with the entitlement to allow the target individual access to the target system.
-
公开(公告)号:US20200322345A1
公开(公告)日:2020-10-08
申请号:US16906953
申请日:2020-06-19
发明人: Rexall E. Thexton , Gaurav Tandon , Sanjeev Shukla , Anthony McCoy , Sidath Mudiyanselage , Andrew Poole , Hannah Craddock , Qurrat Ul Ain , Colleen Connolly , Farbod Kamiab
摘要: A method for controlling access to one or more of a plurality of target systems includes receiving profile data that defines one or more features associated with a plurality of individuals with one or more entitlements of those individuals. Each entitlement is indicative of target system access. The method further includes generating a model that relates the one or more features and the one or more entitlements of the plurality of individuals. Profile data that defines one or more features associated with a target individual is received from a first user management system. A listing that includes one or more entitlements associated with the target individual, and confidence values associated with the one or more entitlements is generated based on the profile data and the model. Each confidence value is indicative of whether the target individual should be granted a corresponding entitlement. For each entitlement having a corresponding confidence value higher than a predetermined threshold, an instruction is communicated to a target system associated with the entitlement to allow the target individual access to the target system.
-
-
-
-
-
-
-
-
-