IP Library Granted Patent US 8,850,530
Granted Patent B2
US 8,850,530 · App. 13/630,830 · Granted Sep 30, 2014

Enterprise-wide security system for computer devices

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,850,530
App. No.
13/630,830
Granted
Sep 30, 2014
Kind
B2
Abstract

A system and method for securing data in mobile devices ( 104 ) includes a computing mode ( 102 ) and a plurality of mobile devices ( 104 ). A node security program ( 202 ) executed in the computing node ( 102 ) interfaces with a device security program ( 204 ) executed at a mobile device ( 104 ). The computing node ( 102 ) is responsible for managing the security based on a node security profile ( 208 ) interpreted by a node security program ( 202 ) executed in the computing node ( 102 ). A device discovery method and arrangement ( 106 ) also detects and locates various information ( 120 ) about the mobile devices ( 104 ) based on a scan profile ( 206 ).

Claims (46)

1. A method, comprising:

establishing a connection to a mobile device from a computing node;

determining whether the computing node is authorized to transfer a device security profile to the mobile device;

sending a device security application to the mobile device when the computing node is determined to be not authorized to transfer the device security profile to the mobile device, wherein the device security application is configured to execute at the mobile device to disable the mobile device from usage; and

sending the device security profile to the mobile device if the computing node is determined to be authorized to transfer the device security profile to the mobile device,

wherein a device security program on the mobile device is configured to interpret the device security profile to set one or more security parameters for the mobile device, wherein a node security profile of the computing node is used to determine whether the computing node is authorized to transfer the device security profile to the mobile device.

2. The method of claim 1 , wherein the device security application to be executed by the mobile device is further configured to perform at least one of erasing data on the mobile device and sending an alert to an administrator.

3. The method of claim 1 , wherein the computing node is a mobile device.

4. The method of claim 1 , further comprising:

sending one or more other device security profiles to the mobile device if the computing node is determined to be authorized to transfer the device security profile to the mobile device,

wherein a single one of the device security profiles is activated on the mobile device.

5. The method of claim 4 , wherein the single one of the device security profiles is activated based on at least one of time, day, date, location, and mobile device sensing equipment.

6. The method of claim 4 , further comprising:

sending signals to the mobile device to activate a different one of the device security profiles when the mobile device is moved to a secure location.

7. The method of claim 1 , further comprising:

creating the device security profile dynamically for the mobile device based on a time or a location of the mobile device.

8. The method of claim 7 , wherein the device security profile includes a validation life span indicating a time frame that the device security profile can be used.

9. At least one non-transitory computer readable medium that includes code for execution and when executed by a processor:

establishes a connection to a mobile device from a computing node;

determines whether the computing node is authorized to transfer a device security profile to the mobile device;

sends a device security application to the mobile device when the computing node is determined to be not authorized to transfer the device security profile to the mobile device, wherein the device security application is configured to execute at the mobile device to disable the mobile device from usage; and

sends the device security profile to the mobile device if the computing node is determined to be authorized to transfer the device security profile to the mobile device,

wherein a device security program on the mobile device is configured to interpret the device security profile to set one or more security parameters for the mobile device, wherein a node security profile of the computing node is used to determine whether the computing node is authorized to transfer the device security profile to the mobile device.

10. The at least one non-transitory computer readable medium of claim 9 , wherein the device security application to be executed by the mobile device is further configured to perform at least one of erasing data on the mobile device and sending an alert to an administrator.

11. The at least one non-transitory computer readable medium of claim 9 that includes further code for execution and when executed by a processor:

sends one or more other device security profiles to the mobile device if the computing node is determined to be authorized to transfer the device security profile to the mobile device,

wherein a single one of the device security profiles is activated on the mobile device.

12. The at least one non-transitory computer readable medium of claim 11 , wherein the single one of the device security profiles is activated based on at least one of time, day, date, location, and mobile device sensing equipment.

13. The at least one non-transitory computer readable medium of claim 11 , that includes further code for execution and when executed by a processor:

sends signals to the mobile device to activate a different one of the device security profiles when the mobile device is moved to a secure location.

14. The at least one non-transitory computer readable medium of claim 9 that includes further code for execution and when executed by a processor:

creates the device security profile dynamically for the mobile device based on a time or a location of the mobile device.

15. An apparatus, comprising:

a computing node that includes a node security program configured to interpret a node security profile, the computing node being configured to:

establish a connection to a mobile device;

determine whether the computing node is authorized to transfer a device security profile to the mobile device;

send a device security application to the mobile device when the computing node is determined to be not authorized to transfer the device security profile to the mobile device, wherein the device security application is configured to execute at the mobile device to disable the mobile device from usage; and

send the device security profile to the mobile device if the computing node is determined to be authorized to transfer the device security profile to the mobile device,

wherein a device security program on the mobile device is configured to interpret the device security profile to set one or more security parameters for the mobile device, wherein a node security profile of the computing node is used to determine whether the computing node is authorized to transfer the device security profile to the mobile device.

16. The apparatus of claim 15 , wherein the device security application to be executed by the mobile device is further configured to perform at least one of erasing data on the mobile device and sending an alert to an administrator.

17. The apparatus of claim 15 , wherein the computing node is further configured to:

send one or more other device security profiles to the mobile device if the computing node is determined to be authorized to transfer the device security profile to the mobile device,

wherein a single one of the device security profiles is activated on the mobile device.

18. The apparatus of claim 17 , wherein the single one of the device security profiles is activated based on at least one of time, day, date, location, and mobile device sensing equipment.

19. The apparatus of claim 17 , wherein the computing node is further configured to:

send signals to the mobile device to activate a different one of the device security profiles when the mobile device is moved to a secure location.

Assignments (13)
TERMINATION AND RELEASE OF FIRST LIEN SECURITY INTEREST IN CERTAIN PATENTS RECORDED AT REEL 057453, FRAME 0053 Recorded Aug 15, 2024
From: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
To: MUSARUBRA US LLC
Reel/Frame 068655/0413 →
TERMINATION AND RELEASE OF SECOND LIEN SECURITY INTEREST IN CERTAIN PATENTS RECORDED AT REEL 056990, FRAME 0960 Recorded Aug 15, 2024
From: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
To: MUSARUBRA US LLC
Reel/Frame 068655/0430 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 29, 2022
From: MCAFEE, LLC
To: MUSARUBRA US LLC
Reel/Frame 061007/0124 →
CORRECTIVE ASSIGNMENT TO CORRECT THE PROPERTY NUMBERS PREVIOUSLY RECORDED AT REEL: 057315 FRAME: 0001. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Apr 11, 2022
From: MCAFEE, LLC
To: MUSARUBRA US LLC
Reel/Frame 060878/0126 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Jul 27, 2021
From: MUSARUBRA US LLC; SKYHIGH NETWORKS, LLC
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 056990/0960 →
FIRST LIEN PATENT SECURITY AGREEMENT Recorded Jul 27, 2021
From: MUSARUBRA US LLC; SKYHIGH NETWORKS, LLC
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 057453/0053 →
RELEASE OF SECURITY INTEREST Recorded Jul 26, 2021
From: MORGAN STANLEY SENIOR FUNDING, INC.
To: MCAFEE, LLC; SKYHIGH NETWORKS, LLC
Reel/Frame 057620/0102 →
RELEASE OF INTELLECTUAL PROPERTY COLLATERAL - REEL/FRAME 045055/0786 Recorded Oct 26, 2020
From: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
To: MCAFEE, LLC
Reel/Frame 054238/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE PATENT 6336186 PREVIOUSLY RECORDED ON REEL 045056 FRAME 0676. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY INTEREST. Recorded Oct 22, 2020
From: MCAFEE, LLC
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 054206/0593 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE PATENT 6336186 PREVIOUSLY RECORDED ON REEL 045055 FRAME 786. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY INTEREST. Recorded Oct 22, 2020
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 055854/0047 →
SECURITY INTEREST Recorded Jan 12, 2018
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 045055/0786 →
SECURITY INTEREST Recorded Jan 12, 2018
From: MCAFEE, LLC
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 045056/0676 →
CHANGE OF NAME AND ENTITY CONVERSION Recorded Aug 24, 2017
From: MCAFEE, INC.
To: MCAFEE, LLC
Reel/Frame 043665/0918 →