IP Library Granted Patent US 12688300
Granted Patent B2
US 12688300 · App. 18/516,873 · Granted Jul 21, 2026

Systems and methods for data security model based anomaly determinations

Inventors: John Howard Kling (Cincinnati, OH); Charles Edward Dudley (Concord, NC); Jason T. Yeung (Forest Hills, NY)
Assignee: BANK OF AMERICA CORPORATION
G06F21/577G06F21/64
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12688300
App. No.
18/516,873
Granted
Jul 21, 2026
Kind
B2
Abstract

Systems, methods, and computer program products are provided herein for data security model based anomaly determinations. An example method includes receiving a product evaluation request that is associated with a first product dataset including product data entries and accessing a data security model. The data security model includes a plurality of data objects including one or more data entries where each data object defines an associated model level indicative of the hierarchical position of the data object within the data security model and one or more links between the data objects that define data object interdependency parameters. The example method includes determining data objects of the data security model applicable to the first product dataset and determining one or more anomalies associated with the first product dataset based on a comparison between the one or more product data entries and the applicable data objects of the data security model.

Claims (55)

1 . A system for data security model based anomaly determinations, the system comprising:

at least one non-transitory storage device; and

at least one processor coupled to the at least one non-transitory storage device, wherein the at least one processor is configured to:

receive a product evaluation request, wherein the product evaluation request is associated with at least a first product dataset comprising one or more product data entries that define one or more functionalities;

access a data security model, wherein the data security model comprises:

a plurality of data objects comprising one or more data entries, wherein each data object defines an associated model level indicative of the hierarchical position of the data object within the data security model; and

one or more links between the data objects associated with data object interdependency parameters defining the order and structure of the data objects in the data security model;

determine one or more data objects of the data security model applicable to the first product dataset that are associated with the one or more functionalities defined by the one or more product data entries;

determine one or more data objects linked to the data objects that are applicable to the first product dataset;

determine one or more controls defined by the one or more linked data objects, wherein the one or more controls comprise one or more access permissions required to access to the one or more functionalities; and

determine one or more anomalies associated with the first product dataset in an instance in which the first product dataset fails to include one or more product data entries associated with the one or more determined controls.

2 . The system of claim 1 , wherein the processor is further configured to modify one or more product data entries in response to the one or more determined anomalies associated with the first product dataset.

3 . The system of claim 1 , wherein the processor is further configured to generate a user notification comprising the one or more determined anomalies associated with the first product dataset.

4 . The system of claim 1 , wherein the one or more determined data objects of the data security model are associated with the one or more functionalities defined by the one or more product data entries.

5 . The system of claim 1 , wherein the processor is further configured to modify one or more product data entries in response to the one or more determined anomalies associated with the first product dataset to include product data entries associated with the determined controls.

6 . The system of claim 1 , wherein the processor is further configured to:

determine a first data format associated with the first product dataset;

determine a second data format associated with the data security model that is different than the first data format; and

translate the first data format to the second data format for anomaly determination.

7 . A computer program product for data security model based anomaly determinations, the computer program product comprising a non-transitory computer-readable medium comprising code that, when executed, causes an apparatus to:

receive a product evaluation request, wherein the product evaluation request is associated with at least a first product dataset comprising one or more product data entries that define one or more functionalities;

access a data security model, wherein the data security model comprises:

a plurality of data objects comprising one or more data entries, wherein each data object defines an associated model level indicative of the hierarchical position of the data object within the data security model; and

one or more links between the data objects associated with data object interdependency parameters defining the order and structure of the data objects in the data security model;

determine one or more data objects of the data security model applicable to the first product dataset that are associated with the one or more functionalities defined by the one or more product data entries;

determine one or more data objects linked to the data objects that are applicable to the first product dataset;

determine one or more controls defined by the one or more linked data objects, wherein the one or more controls comprise one or more access permissions required to access to the one or more functionalities; and

determine one or more anomalies associated with the first product dataset in an instance in which the first product dataset fails to include one or more product data entries associated with the one or more determined controls.

8 . The computer program product of claim 7 , wherein the apparatus is further configured to modify one or more product data entries in response to the one or more determined anomalies associated with the first product dataset.

9 . The computer program product of claim 7 , wherein the apparatus is further configured to generate a user notification comprising the one or more determined anomalies associated with the first product dataset.

10 . The computer program product of claim 7 , wherein the one or more determined data objects of the data security model are associated with the one or more functionalities defined by the one or more product data entries.

11 . The computer program product of claim 7 , wherein the apparatus is further configured to modify one or more product data entries in response to the one or more determined anomalies associated with the first product dataset to include product data entries associated with the determined controls.

12 . The computer program product of claim 7 , wherein the apparatus is further configured to:

determine a first data format associated with the first product dataset;

determine a second data format associated with the data security model that is different than the first data format; and

translate the first data format to the second data format for anomaly determination.

13 . A method for data security model based anomaly determinations, the method comprising:

receiving a product evaluation request, wherein the product evaluation request is associated with at least a first product dataset comprising one or more product data entries that define one or more functionalities;

accessing a data security model, wherein the data security model comprises:

a plurality of data objects comprising one or more data entries, wherein each data object defines an associated model level indicative of the hierarchical position of the data object within the data security model; and

one or more links between the data objects associated with data object interdependency parameters defining the order and structure of the data objects in the data security model;

determining one or more data objects of the data security model applicable to the first product dataset that are associated with the one or more functionalities defined by the one or more product data entries;

determining one or more data objects linked to the data objects that are applicable to the first product dataset;

determining one or more controls defined by the one or more linked data objects, wherein the one or more controls comprise one or more access permissions required to access to the one or more functionalities; and

determining one or more anomalies associated with the first product dataset in an instance in which the first product dataset fails to include one or more product data entries associated with the one or more determined controls.

14 . The method of claim 13 , further comprising modifying one or more product data entries in response to the one or more determined anomalies associated with the first product dataset.

15 . The method of claim 13 , further comprising generating a user notification comprising the one or more determined anomalies associated with the first product dataset.

16 . The method of claim 13 , wherein the one or more determined data objects of the data security model are associated with the one or more functionalities defined by the one or more product data entries.

17 . The method of claim 16 , further comprising modifying one or more product data entries in response to the one or more determined anomalies associated with the first product dataset to include product data entries associated with the determined controls.

18 . The system of claim 1 , wherein the one or more linked data objects of the data security model are associated with the one or more functionalities defined by the one or more product data entries.

19 . The system of claim 18 , wherein the one or more determined data objects of the data security model are not associated with the one or more functionalities defined by the one or more product data entries.

20 . The method of claim 13 , further comprising:

determining a first data format associated with the first product dataset;

determining a second data format associated with the data security model that is different than the first data format; and

translating the first data format to the second data format for anomaly determination.