Mobile device security system

US9723487B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-9723487-B2
Application numberUS-201313970112-A
CountryUS
Kind codeB2
Filing dateAug 19, 2013
Priority dateAug 19, 2013
Publication dateAug 1, 2017
Grant dateAug 1, 2017

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A location based mobile device security enforcement system includes: (a) a mobile device management (MDM) server, (b) a security control module, (c) an entry point security system, and (d) a mobile device security application, when installed and executed on a mobile device, configured to register the mobile device and its user to create a mobile device user profile for the mobile device user, when the mobile device and its user enter a secure area, authenticate the mobile device user, maintain constant contact with security control module, and make security adjustments to the mobile device if contact between mobile device and security control module is lost, mobile device security application becomes non-operational, current time is beyond the mobile device user authorized access time period, and current mobile device location is outside of mobile device user authorized access area or crosses borders between one area security level to another area security level.

First claim

Opening claim text (preview).

What is claimed is: 1. A location based mobile device security enforcement system, comprising: a mobile device; and a management system comprising: one or more non-transitory storage-devices storing computer executable instructions; and a processor configured to execute the computer executable instructions to: monitor the mobile device located in a secure area by receiving a report from the mobile device security application on the mobile device, wherein the secure area comprises at least one authorized accessible area for the mobile device; interact with the mobile device located in the secure area to register a mobile device user of the mobile device; in response to registering the mobile device user, create a mobile device user profile and a security policy for the mobile device based on the registration, and store the mobile device user profile and the security policy in a mobile device management (MDM) server, wherein the security policy comprises a user designation level of the mobile device selected from a plurality of user designation levels, information of the at least one authorized accessible area for the mobile device, and information of authorized period of time for the mobile device; and transmit the security policy to the mobile device; a security control module separate from the mobile device and configured to maintain a constant contact with the mobile device; one or more first computers at the secure area, separate from the mobile device, and each configured to, allow a user to install the mobile device security application on the mobile device through a connection established between the first computer and the mobile device; register, with the management system, the mobile device user and create the mobile device user profile based on the registration; assign the user designation level to the mobile device; assign the at least one authorized accessible area for the mobile device; and assign the authorized period of time for the mobile device; wherein the mobile device security application installed on the mobile device, when executed by a processor of the mobile device, is configured to: monitor a current location of the mobile device and a current time; and when the mobile device is located within the secure area, communicate wirelessly with the management system; interact with the management system to register the mobile device user; receive and store the security policy from the management system; determine whether the mobile device requires a security change to one or more functions on the mobile device by comparing the current location of the mobile device and the current time with the user designation level of the mobile device, the information of the at least one authorized accessible area for the mobile device and the information of the authorized period of time for the mobile device of the security policy; and in response to determining that the mobile device requires the security change to the one or more functions on the mobile device, perform the security change to each of the one or more functions on the mobile device, and disable or enable a respective driver of at least one of a camera device, a microphone device, and a telephone device of the mobile device; wherein the secure area comprises a plurality of sub-areas, and each of the sub-areas is designated to have one of a plurality of area designation security levels; wherein the at least one authorized accessible area for the mobile device comprises a plurality of the sub-areas; and wherein for at least one of the sub-areas, each of the plurality of user designation levels corresponds to different security changes in the area designation security level of the sub-area, and at least one user designation level corresponds to different security changes in different sub-areas having different area designation security levels; wherein the mobile device security application installed on the mobile device, when executed by the processor of the mobile device, is further configured to maintain the constant contact with the security control module; make security changes to the camera device, the microphone device, and the telephone device when the constant contact is lost; retrieve an evacuation destination from emergency messages broadcast by the security control module; generate an evacuation route according to the current location of the mobile device and the evacuation destination; and display the evacuation route on the mobile device. 2. The location based mobile device security enforcement system of claim 1 , wherein the mobile device user profile comprises information corresponding to at least one of: a name of the mobile device user, a title of the mobile device user, a company name of the mobile device user; a type of the mobile device, a media access control (MAC) address of the mobile device, or a mobile phone number of the mobile device. 3. The location based mobile device security enforcement system of claim 1 , wherein the computer executable instructions of the management system comprise: first module configured to: monitor the mobile device located in the secure area; and interact with the mobile device located in the secure area to register the mobile device user of the mobile device; and a security control module configured to: in response to receiving the registration data, create the mobile device user profile and the security policy for the mobile device based on the registration data, and store the mobile device user profile and the security policy in the MDM server; and transmit the security policy to the mobile device. 4. The location based mobile device security enforcement system of claim 3 , wherein the first module is further configured to: deregister the mobile device when the mobile device leaves the secure area. 5. The location based mobile device security enforcement system of claim 3 , wherein the security control module is further configured to: in response to a manual operation to edit the mobile device user profile and the security policy for the mobile device, update the mobile device user profile and the security policy in the MDM server; and transmit the updated security policy to the mobile device. 6. The location based mobile device security enforcement system of claim 3 , wherein the security control module is further configured to: broadcast emergency messages when an emergency occurs. 7. The location based mobile device security enforcement system of claim 6 , wherein the mobile device security application is further configured to: receive the emergency messages from the security control module of the system; and display the emergency messages on the mobile device. 8. The location based mobile device security enforcement system of claim 3 , wherein the mobile device security application comprises: a user interface module configured to interact with the management system to register the mobile device user; a device monitoring module configured to: monitor the current location of the mobile device and the current time; communicate wirelessly with the management system; and when the mobile device is located within the secure area, determine whether the mobile device requires the security change to the one or more functions on the mobile device by comparing the current location of the mobile device and the current time with the user designation level of the mobile device, the information of the at least one authorized accessible area for the mobile device and the information of the authorized period of time for the mobile device of the security policy; and a mobile device security software configured to, when the mobile device is located within the

Assignees

Inventors

Classifications

  • to restrict the functionality of the device · CPC title

  • Access control lists [ACL] · CPC title

  • Electricity · mapped topic

  • wherein the security policies are location-dependent, e.g. entities privileges depend on current location or allowing specific operations only from locally connected terminals · CPC title

  • Electricity · mapped topic

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US9723487B2 cover?
A location based mobile device security enforcement system includes: (a) a mobile device management (MDM) server, (b) a security control module, (c) an entry point security system, and (d) a mobile device security application, when installed and executed on a mobile device, configured to register the mobile device and its user to create a mobile device user profile for the mobile device user, w…
Who is the assignee on this patent?
American Megatrends Inc
What technology area does this patent fall under?
Primary CPC classification H04W12/08. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Aug 01 2017 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).