Peer-based policy definitions

US11522914B1 · US · B1

Patent metadata
FieldValue
Publication numberUS-11522914-B1
Application numberUS-201916597288-A
CountryUS
Kind codeB1
Filing dateOct 9, 2019
Priority dateOct 9, 2019
Publication dateDec 6, 2022
Grant dateDec 6, 2022

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Described is a system for a Policy Derivation Engine (PDE) that, when accessed by one or more organizations, assists such organizations in updating and managing data protection policies based on external policy updates from one or more other organizations that share the same organizational peer group. The system receives a policy request from a first computing system associated with a first organization. The system computes a list of peer organizations of the first organization. The system builds policy update data based on respective policy data received from one or more peer organizations and transmits at least a portion of policy update data to the first computing system associated with the first organization.

First claim

Opening claim text (preview).

What is claimed is: 1. A system comprising: one or more processors; and a non-transitory computer readable medium storing a plurality of instructions, which when executed, cause the one or more processors to: receive policy data from a plurality of organizations; receive a policy request from a first computing system associated with a first organization, the policy request including an industry classification code selected by the first organization; compute a list of peer organizations of the first organization from the plurality of organizations, one or more of the peer organizations having provided updated policy data after the receiving the policy data, wherein the list of peer organizations of the first organization includes an identification of one or more organizations associated with an industry classification code that is similar to the received industry classification code selected by the first organization; build policy update data based on the updated policy data in response to receiving the policy request; and transmit at least a portion of policy update data to the first computing system associated with the first organization. 2. The system of claim 1 , wherein the plurality of instructions, when executed, further cause the one or more processors to: transmit, to the first computing system associated with the first organization, an update to at least an anonymized portion of a data protection policy deployed at least one of the peer organizations, wherein each peer organization is associated with an industry code similar to an industry code received in the policy request, wherein the industry code received in the policy request maps to an industry sector that is different than an actual industry sector of the first organization. 3. The system of claim 1 , wherein the plurality of instructions, when executed, further cause the one or more processors to: anonymize and aggregate the respective policy data received from the peer organizations. 4. The system of claim 1 , wherein the plurality of instructions, when executed, further cause the one or more processors to: truncate the received industry classification code selected by the first organization; and identify one or more organizations that are associated with the truncated industry classification code. 5. The system of claim 1 , wherein the plurality of instructions, when executed, further cause the one or more processors to: verify that a number of peer organizations meets a required threshold minimum number of organizations. 6. A method comprising: receiving policy data from a plurality of organizations; receiving a policy request from a first computing system associated with a first organization, the policy request including an industry classification code selected by the first organization; computing a list of peer organizations of the first organization from the plurality of organizations, one or more of the peer organizations having provided updated policy data after the receiving the policy data, wherein the list of peer organizations of the first organization includes an identification of one or more organizations associated with an industry classification code that is similar to the received industry classification code selected by the first organization; building policy update data based on the updated policy data in response to receiving the policy request; and transmitting at least a portion of policy update data to the first computing system associated with the first organization. 7. The method as in claim 6 , wherein transmitting at least a portion of policy update data to the first computing system associated with the first organization includes: transmitting, to the first computing system associated with the first organization, an update to at least an anonymized portion of a data protection policy deployed at least one of the peer organizations, wherein each peer organization is associated with an industry code similar to an industry code received in the policy request, wherein the industry code received in the policy request maps to an industry sector that is different than an actual industry sector of the first organization. 8. The method as in claim 6 , wherein building policy update data based on respective policy data received from one or more peer organizations comprises: anonymizing and aggregating the respective policy data received from the peer organizations. 9. The method as in claim 6 , wherein identifying one or more organizations that are associated with an industry classification code that is similar to the received industry classification code selected by the first organization: truncating the received industry classification code selected by the first organization; and identifying one or more organizations that are associated with the truncated industry classification code. 10. The method as in claim 6 , wherein computing a list of peer organizations of the first organization: verifying that a number of peer organizations meets a required threshold minimum number of organizations. 11. A computer program product comprising a non-transitory computer-readable medium having a computer-readable program code embodied therein to be executed by one or more processors, the program code including instructions to: receive policy data from a plurality of organizations; receive a policy request from a first computing system associated with a first organization, the policy request including an industry classification code selected by the first organization; compute a list of peer organizations of the first organization from the plurality of organizations, one or more of the peer organizations having provided updated policy data after the receiving the policy data, wherein the list of peer organizations of the first organization includes an identification of one or more organizations associated with an industry classification code that is similar to the received industry classification code selected by the first organization; build policy update data based on the updated policy data in response to receiving the policy request; and transmit at least a portion of policy update data to the first computing system associated with the first organization. 12. The computer program product as in claim 11 , wherein the program code to transmit at least a portion of policy update data to the first computing system associated with the first organization further includes program code to: transmit, to the first computing system associated with the first organization, an update to at least an anonymized portion of a data protection policy deployed at least one of the peer organizations, wherein each peer organization is associated with an industry code similar to an industry code received in the policy request, wherein the industry code received in the policy request maps to an industry sector that is different than an actual industry sector of the first organization. 13. The computer program product as in claim 11 , wherein the program code includes further instructions to: anonymize and aggregate the respective policy data received from the peer organizations. 14. The computer program product as in claim 11 , wherein the program code to identify one or more organizations that are associated with an industry classification code that is similar to the received industry classification code selected by the first organization further includes program code to: truncate the received industry classification code selected by the first organization; identify one or more organizations that are associated with the truncated industry clas

Assignees

Inventors

Classifications

  • H04L63/20Primary

    for managing network security; network security policies in general (filtering policies H04L63/0227) · CPC title

  • when the policy decisions are valid for a limited amount of time · CPC title

  • Entity profiles · CPC title

  • for providing a confidential data exchange among entities communicating through data packet networks · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US11522914B1 cover?
Described is a system for a Policy Derivation Engine (PDE) that, when accessed by one or more organizations, assists such organizations in updating and managing data protection policies based on external policy updates from one or more other organizations that share the same organizational peer group. The system receives a policy request from a first computing system associated with a first org…
Who is the assignee on this patent?
Emc Ip Holding Co Llc
What technology area does this patent fall under?
Primary CPC classification H04L63/20. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Dec 06 2022 00:00:00 GMT+0000 (Coordinated Universal Time) (B1). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 2 related publications on this page (citations in our corpus or others sharing the same primary CPC).