IP Library Granted Patent US 8,572,760
Granted Patent B2
US 8,572,760 · App. 12/943,765 · Granted Oct 29, 2013

Systems and methods for secure agent information

Inventors: Amit Jain (Hyderabad, IN); Theodore C. Tanner, Jr. (Hollywood, SC)
Assignee: Benefitfocus.com, Inc.
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,572,760
App. No.
12/943,765
Granted
Oct 29, 2013
Kind
B2
Abstract

Semantic information may be secured by an agent using one or more semantic security labels (e.g., security predicates). The agent may be configured to allow other agents to access the semantic information according to a set of semantically expressed policies, strategies, and/or rules. A request to receive information may be mapped to a negotiation policy of the agent. The agent may evaluate the request against a semantic information sharing policy. If the information is accessible under the information sharing policy, the information may be provided. If not, the agent may negotiate information sharing terms using the negotiation ontology, strategy, and rules. Similarly, the agent may request information from other entities. Terms of the information requests may be negotiated using the negotiation ontology, strategy, and rules.

Claims (62)

1. A method for sharing semantic information performed by a system including a processor and a memory communicatively coupled to the processor, the memory storing instructions executable by the processor to cause the system to perform the method, the method comprising:

automatically applying semantic security labels to unstructured data by,

mapping the unstructured data to an ontology to generate semantic data,

accessing a security policy comprising a plurality of security label statements,

matching concepts of the mapped semantic data to semantic security patterns of the accessed semantic security statements, and

automatically applying semantic security labels to the mapped semantic data corresponding to the matching semantic security patterns;

receiving a request from a requester to access a portion of the semantic data;

mapping a requested data access level of the request to a semantic context within a negotiation ontology of an information sharing policy;

determining whether the requested access to the portion of the semantic data is to be granted to the requester based on a) the ontological mapping of the requested data access level to the negotiation ontology of the information sharing policy, b) the semantic security label automatically applied to the mapped semantic data of the request, and c) the information sharing policy;

providing access to the portion of the semantic data based on the determination; and

responding to the request with a counteroffer if the information sharing policy disallows access to the requester.

2. The method of claim 1 , wherein the method further includes receiving the information sharing policy, the information sharing policy being associated with the requester.

3. The method of claim 1 , wherein the request to access a portion of the semantic data is expressed semantically.

4. The method of claim 1 , wherein the request to access a portion of the semantic data is expressed in an unstructured format.

5. The method of claim 1 , wherein the request to access a portion of the semantic data includes information identifying the portion of the semantic data and information related to the nature of the request.

6. The method of claim 5 , wherein the information related to the nature of the request includes information related to the identity of the requester.

7. The method of claim 5 , wherein the information related to the nature of the request is expressed semantically.

8. The method of claim 5 , wherein the information related to the nature of the request is expressed in an unstructured format.

9. The method of claim 5 , wherein the method further includes mapping the information related to the nature of the request to a negotiation ontology.

10. The method of claim 9 , wherein determining whether the portion of the semantic data can be accessed by the requester is further based on the mapping of the information related to the nature of the request to a negotiation ontology.

11. A system for sharing semantic information, the system comprising:

a processor; and

a memory communicatively coupled to the processor storing instructions that when executed by the processor cause the processor to perform a method comprising:

automatically applying semantic security labels to unstructured data by,

mapping the unstructured data to an ontology to generate semantic data,

accessing a security policy comprising a plurality of security label statements,

matching concepts of the mapped semantic data to semantic security patterns of the accessed semantic security statements, and

automatically applying semantic security labels to the mapped semantic data corresponding to the matching semantic security patterns;

receiving a request from a requester to access a portion of the semantic data;

mapping a requested data access level of the request to a semantic context within a negotiation ontology of an information sharing policy;

determining whether the requested access to the portion of the semantic data is to be granted to the requester based on a) the ontological mapping of the requested data access level to the negotiation ontology of the information sharing policy, b) the semantic security label automatically applied to the mapped semantic data of the request, and c) the information sharing policy;

providing access to the portion of the semantic data based on the determination; and

responding to the request with a counteroffer if the information sharing policy disallows access to the requester.

12. The system of claim 11 , wherein the method further includes receiving the information sharing policy, the information sharing policy being associated with the requester.

13. The system of claim 11 , wherein the request to access a portion of the semantic data is expressed semantically.

14. The system of claim 11 , wherein the request to access a portion of the semantic data is expressed in an unstructured format.

15. The system of claim 11 , wherein the request to access a portion of the semantic data includes information identifying the portion of the semantic data and information related to the nature of the request.

16. The system of claim 15 , wherein the information related to the nature of the request includes information related to the identity of the requester.

17. The system of claim 15 , wherein the information related to the nature of the request is expressed semantically.

18. The system of claim 15 , wherein the information related to the nature of the request is expressed in an unstructured format.

19. The system of claim 15 , wherein the method further includes mapping the information related to the nature of the request to a negotiation ontology.

20. The system of claim 19 , wherein determining whether the portion of the semantic data can be accessed by the requester is further based on the mapping of the information related to the nature of the request to a negotiation ontology.

21. A non-transitory computer-readable storage medium comprising instructions that when executed by a processor cause a computer system to perform a method for sharing semantic information, the method comprising:

automatically applying semantic security labels to unstructured data by,

mapping the unstructured data to an ontology to generate semantic data,

accessing a security policy comprising a plurality of security label statements,

matching concepts of the mapped semantic data to semantic security patterns of the accessed semantic security statements, and

automatically applying semantic security labels to the mapped semantic data corresponding to the matching semantic security patterns;

receiving a request from a requester to access a portion of the semantic data;

mapping a requested data access level of the request to a semantic context within a negotiation ontology of an information sharing policy;

determining whether the requested access to the portion of the semantic data is to be granted to the requester based on a) the ontological mapping of the requested data access level to the negotiation ontology of the information sharing policy, b) the semantic security label automatically applied to the mapped semantic data of the request, and c) the information sharing policy;

providing access to the portion of the semantic data based on the determination; and

responding to the request with a counteroffer if the information sharing policy disallows access to the requester.

22. The non-transitory computer-readable storage medium of claim 21 , wherein the method further includes receiving the information sharing policy, the information sharing policy being associated with the requester.

23. The non-transitory computer-readable storage medium of claim 21 , wherein the request to access a portion of the semantic data is expressed semantically.

24. The non-transitory computer-readable storage medium of claim 21 , wherein the request to access a portion of the semantic data is expressed in an unstructured format.

25. The non-transitory computer-readable storage medium of claim 21 , wherein the request to access a portion of the semantic data includes information identifying the portion of the semantic data and information related to the nature of the request.

26. The non-transitory computer-readable storage medium of claim 25 , wherein the information related to the nature of the request includes information related to the identity of the requester.

27. The non-transitory computer-readable storage medium of claim 25 , wherein the information related to the nature of the request is expressed semantically.

28. The non-transitory computer-readable storage medium of claim 25 , wherein the information related to the nature of the request is expressed in an unstructured format.

29. The non-transitory computer-readable storage medium of claim 25 , wherein the method further includes mapping the information related to the nature of the request to a negotiation ontology.

30. The non-transitory computer-readable storage medium of claim 29 , wherein determining whether the portion of the semantic data can be accessed by the requester is further based on the mapping of the information related to the nature of the request to a negotiation ontology.

Assignments (9)
RELEASE OF SECURITY INTEREST Recorded Jan 27, 2023
From: JPMORGAN CHASE BANK, N.A.
To: BENEFITFOCUS.COM, INC.
Reel/Frame 062515/0502 →
RELEASE OF SECURITY INTEREST Recorded Aug 23, 2022
From: SILICON VALLEY BANK
To: BENEFITFOCUS, INC.; BENEFITFOCUS.COM, INC.; BENEFITSTORE, LLC
Reel/Frame 060864/0269 →
RELEASE OF SECURITY INTEREST Recorded Aug 23, 2022
From: SILICON VALLEY BANK
To: BENEFITFOCUS, INC.; BENEFITFOCUS.COM, INC.; BENEFITSTORE, LLC
Reel/Frame 060864/0290 →
SECURITY INTEREST Recorded Aug 18, 2022
From: BENEFITFOCUS.COM, INC.
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 060839/0333 →
SECURITY INTEREST Recorded Mar 3, 2020
From: BENEFITFOCUS, INC.; BENEFITFOCUS.COM, INC.; BENEFITSTORE, INC.
To: SILICON VALLEY BANK, AS ADMINISTRATIVE AGENT AND COLLATERAL AGENT
Reel/Frame 051997/0685 →
SECURITY AGREEMENT Recorded Feb 24, 2015
From: BENEFITFOCUS, INC.; BENEFITFOCUS.COM, INC.; BENEFIT INFORMATICS, INC.; BENEFITSTORE, INC.
To: SILICON VALLEY BANK
Reel/Frame 035091/0540 →
CORRECTIVE ASSIGNMENT TO CORRECT THE APPLICATION NUMBER PREVIOUSLY RECORDED ON REEL 032622 FRAME 0966. ASSIGNOR(S) HEREBY CONFIRMS THE CORRECT APPLICATION NUMBER IS 12/943,765. Recorded Apr 9, 2014
From: JAIN, AMIT; TANNER, THEODORE C., JR.
To: BENEFITFOCUS.COM, INC.
Reel/Frame 032643/0617 →
CORRECTIVE ASSIGNMENT TO CORRECT THE ASSIGNEE NAME PREVIOUSLY RECORDED ON REEL 025344 FRAME 0080. ASSIGNOR(S) HEREBY CONFIRMS THE CORRECT ASSIGNEE NAME IS BENIFITFOCUS.COM, INC. Recorded Apr 7, 2014
From: JAIN, AMIT; TANNER, THEODORE C., JR.
To: BENIFITFOCUS.COM, INC.
Reel/Frame 032622/0966 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 10, 2010
From: JAIN, AMIT; TANNER, THEODORE C., JR.
To: BENEFITFOCUS.COM
Reel/Frame 025344/0080 →
Continuity (2)
Provisional Application 61372293 · Aug 10, 2010
Related Publication 20120042395A1 · Feb 16, 2012