Just-in-time encryption
US-10628597-B2 · Apr 21, 2020 · US
US11899802B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-11899802-B2 |
| Application number | US-202318096507-A |
| Country | US |
| Kind code | B2 |
| Filing date | Jan 12, 2023 |
| Priority date | Jun 3, 2020 |
| Publication date | Feb 13, 2024 |
| Grant date | Feb 13, 2024 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
A system for monitoring networked computing devices with integrated electronic data encryption and decryption mechanism is provided. In particular, the system may comprise one or more host applications which may interact with an API layer to transmit encrypted host-related data through a secure data rails to a consolidated data repository. One or more downstream monitoring applications may retrieve and decrypt the host-related data from the consolidated data repository for analysis. In this way, the system may provide a secure, scalable way to monitor host computing systems and flow of sensitive electronic data.
Opening claim text (preview).
What is claimed is: 1. A system for monitoring networked computing devices with integrated electronic data encryption and decryption mechanism, the system comprising: a memory device with computer-readable program code stored thereon; a communication device; and one or more processing device operatively coupled to the memory device and the communication device, wherein the computer-readable program code is configured, such that when said code is executed by said one or more processing devices, said codes causes the one or more processing devices to: receive, from a host computing system via an application programming interface (“API”) layer, host data and metadata; encrypt, using an encryption module, the host data and metadata; transmit the host data and metadata to a consolidated data sink, wherein the consolidated data sink is a relational database comprising a table, the table comprising entries for an identity of a user associated with the host computing system, types of data processed by the host computing system, and processes executed by the host computing system; receive a request from a monitoring computing system to decrypt the host data and metadata; decrypt, using a decryption module, the host data and metadata; generate a decrypted copy of the host data and metadata using a symmetric cryptographic key, wherein the decrypted copy of the host data is stored on a web server; and present the decrypted copy of the host data on a graphical interface of a display of the monitoring computing system via a web browser application. 2. The system according to claim 1 , wherein the computer-readable program code further causes the processing device to: detect that the monitoring computing system has stopped viewing the decrypted copy of the host data; and automatically delete the decrypted copy of the host data. 3. The system according to claim 1 , wherein decrypting the host data and metadata comprises performing a batch decryption of encrypted data within the consolidated data sink. 4. The system according to claim 1 , wherein receiving the host data and metadata comprises establishing a Hypertext Transfer Protocol Secure (“HTTPS”) connection with the host computing system. 5. A computer program product for monitoring networked computing devices with integrated electronic data encryption and decryption mechanism, the computer program product comprising at least one non-transitory computer readable medium having computer-readable program code portions embodied therein, the computer-readable program code portions comprising executable code portions for: receiving, from a host computing system via an application programming interface (“API”) layer, host data and metadata; encrypting, using an encryption module, the host data and metadata; transmitting the host data and metadata to a consolidated data sink, wherein the consolidated data sink is a relational database comprising a table, the table comprising entries for an identity of a user associated with the host computing system, types of data processed by the host computing system, and processes executed by the host computing system; receiving a request from a monitoring computing system to decrypt the host data and metadata; decrypting, using a decryption module, the host data and metadata; generating a decrypted copy of the host data and metadata using a symmetric cryptographic key, wherein the decrypted copy of the host data is stored on a web server; and presenting the decrypted copy of the host data on a graphical interface of a display of the monitoring computing system via a web browser application. 6. The computer program product according to claim 5 , wherein the computer-readable program code portions further comprise executable code portions for: detecting that the monitoring computing system has stopped viewing the decrypted copy of the host data; and automatically deleting the decrypted copy of the host data. 7. The computer program product according to claim 5 , wherein decrypting the host data and metadata comprises performing a batch decryption of encrypted data within the consolidated data sink. 8. A computer-implemented method for monitoring networked computing devices with integrated electronic data encryption and decryption mechanism, wherein the computer-implemented method comprises: receiving, from a host computing system via an application programming interface (“API”) layer, host data and metadata; encrypting, using an encryption module, the host data and metadata; transmitting the host data and metadata to a consolidated data sink, wherein the consolidated data sink is a relational database comprising a table, the table comprising entries for an identity of a user associated with the host computing system, types of data processed by the host computing system, and processes executed by the host computing system; receiving a request from a monitoring computing system to decrypt the host data and metadata; decrypting, using a decryption module, the host data and metadata; generating a decrypted copy of the host data and metadata using a symmetric cryptographic key, wherein the decrypted copy of the host data is stored on a web server; and presenting the decrypted copy of the host data on a graphical interface of a display of the monitoring computing system via a web browser application. 9. The computer-implemented method according to claim 8 , wherein the method further comprises: detecting that the monitoring computing system has stopped viewing the decrypted copy of the host data; and automatically deleting the decrypted copy of the host data. 10. The computer-implemented method according to claim 8 , wherein decrypting the host data and metadata comprises performing a batch decryption of encrypted data within the consolidated data sink. 11. The computer-implemented method according to claim 8 , wherein receiving the host data and metadata comprises establishing a Hypertext Transfer Protocol Secure (“HTTPS”) connection with the host computing system.
Providing cryptographic facilities or services · CPC title
Remote procedure calls [RPC]; Web services · CPC title
where the computing system is distributed, e.g. networked systems, clusters, multiprocessor systems (multiprogramming arrangements G06F9/46; allocation of resources G06F9/50) · CPC title
Tablespace storage structures; Management thereof · CPC title
based on web technology, e.g. hypertext transfer protocol [HTTP] · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.