IP Library Patent Application 16255707
Patent Application
App. No. 16/255,707

STORAGE LAYER DATA SECURITY

Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US None
App. No.
16/255,707
Abstract

Storage layer data security, including: receiving, at a computer system from a client computing device among one or more client computing devices, a dataset; deconstructing the dataset to identify portions of the dataset corresponding to metadata and portions of the dataset corresponding to storage data; determining that the metadata or the storage data are not in compliance with a security policy.

Claims (34)

1 . A method for storage layer data security, the method comprising:

receiving, at a computer system from a client computing device among one or more client computing devices, a dataset;

deconstructing the dataset to identify portions of the dataset corresponding to metadata and portions of the dataset corresponding to storage data; and

determining that the metadata or the storage data are not in compliance with a security policy.

2 . The method of claim 1 , wherein the client computing device is among multiple client computing devices, wherein compliance with the security policy is dependent upon the metadata or storage data not including malware, and wherein the method further comprises:

generating, in response to either the metadata or the storage data not being in compliance with the security policy, a modified dataset that is a version of the dataset that is in compliance with the security policy.

3 . The method of claim 1 , wherein the modified dataset is modified to remove malware from the dataset.

4 . The method of claim 2 , wherein the metadata includes trace information to identify a user or an event that compromised security of the dataset, and wherein the trace information identifies one or more client computing devices among the multiple client computing devices.

5 . The method of claim 1 , wherein the metadata indicates a source for the dataset, one or more users that modified the dataset, or one or more actions that were performed on the dataset.

6 . The method of claim 5 , wherein the dataset is a backup, and wherein the method further comprises:

determining not to perform a requested data restore operation for the backup based at least upon the trace information indicating one or more activities corresponding to a security breach.

7 . The method of claim 1 , wherein the security policy specifies one or more portions of the dataset to modify in compliance with one or more privacy specifications.

8 . An apparatus for storage layer data security comprising:

one or more hardware processors;

one or more data storage resources; and

a data security analysis module configured to:

receive, at a computer system from a client computing device among one or more client computing devices, a dataset;

deconstruct the dataset to identify portions of the dataset corresponding to metadata and portions of the dataset corresponding to storage data;

determine that the metadata or the storage data are not in compliance with a security policy.

9 . The apparatus of claim 8 , wherein compliance with the security policy is dependent upon the metadata or storage data not including malware.

10 . The apparatus of claim 8 , wherein the modified dataset is modified to remove malware from the dataset.

11 . The apparatus of claim 8 , wherein the metadata includes trace information to identify a user or an event that compromised security of the dataset.

12 . The apparatus of claim 8 , wherein the metadata indicates a source for the dataset, one or more users that modified the dataset, or one or more actions that were performed on the dataset.

13 . The apparatus of claim 8 , wherein the modified dataset includes portions of the dataset that are encrypted with a security key accessible only to authorized users.

14 . The apparatus of claim 8 , wherein the security policy specifies one or more portions of the dataset to modify in compliance with one or more privacy specifications.

15 . A computer program product for storage layer data security, the computer program product disposed upon a computer readable medium, the computer program product comprising computer program instructions that, when executed, cause a computer to carry out the steps of:

receiving, at a computer system from a client computing device among one or more client computing devices, a dataset;

deconstructing the dataset to identify portions of the dataset corresponding to metadata and portions of the dataset corresponding to storage data;

determining that the metadata or the storage data are not in compliance with a security policy.

16 . The computer program product of claim 15 , wherein compliance with the security policy is dependent upon the metadata or storage data not including malware.

17 . The computer program product of claim 15 , wherein the modified dataset is modified to remove malware from the dataset.

18 . The computer program product of claim 15 , wherein the metadata includes trace information to identify a user or an event that compromised security of the dataset.

19 . The computer program product of claim 15 , wherein the metadata indicates a source for the dataset, one or more users that modified the dataset, or one or more actions that were performed on the dataset.

20 . The computer program product of claim 15 , wherein the security policy specifies one or more portions of the dataset to modify in compliance with one or more privacy specifications.

Assignments (3)
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENT RIGHTS Recorded Jun 11, 2025
From: BARCLAYS BANK PLC, AS ADMINISTRATIVE AGENT
To: PURE STORAGE, INC.
Reel/Frame 071558/0523 →
SECURITY INTEREST Recorded Aug 26, 2020
From: PURE STORAGE, INC.
To: BARCLAYS BANK PLC AS ADMINISTRATIVE AGENT
Reel/Frame 053867/0581 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 23, 2019
From: EMBERSON, MARK; COX, MARK; POWER, TYLER
To: PURE STORAGE, INC.
Reel/Frame 048114/0508 →