IP Library Granted Patent US 10,855,693
Granted Patent B2
US 10,855,693 · App. 16/415,780 · Granted Dec 1, 2020

Using an adaptive trust profile to generate inferences

Inventor: Richard A. Ford (Austin, TX)
Assignee: Forcepoint, LLC
H04L63/14G06F21/554G06F21/57G06F21/604G06F21/6218G06N5/04H04L9/3239H04L63/102H04L63/1408H04L63/1425H04L63/205H04L67/22H04L67/306G06F2221/2101G06F2221/2141H04L2209/38
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,855,693
App. No.
16/415,780
Granted
Dec 1, 2020
Kind
B2
Abstract

A system, method, and computer-readable medium are disclosed for generating an adaptive trust profile via an adaptive trust profile operation. In various embodiments the adaptive trust profile operation includes monitoring an electronically-observable action of an entity, the electronically-observable action of the entity corresponding to an event enacted by the entity; converting the electronically-observable action of the entity to electronic information representing the action of the entity; generating the adaptive trust profile based upon the action of the entity; and, deriving an inference regarding the action of the entity using the adaptive trust profile.

Claims (61)

1. A computer-implementable method for generating an adaptive trust profile, comprising:

monitoring an electronically-observable action of an entity, the electronically-observable action of the entity corresponding to an event enacted by the entity, the entity comprising a user entity, the user entity enacting a user behavior;

converting the electronically-observable action of the entity to electronic information representing the action of the entity;

generating the adaptive trust profile based upon the action of the entity, the adaptive trust profile comprising a collection of information that describes a particular user entity, the collection of information comprising at least one of a user profile attribute, a user behavior factor and a user mindset factor;

generating a user entity mindset profile for the particular entity, the user entity mindset profile representing aspects of the particular entity that are inferred based upon the electronically-observable user behavior, the mindset profile being generated using the adaptive trust profile;

deriving an inference regarding the action of the entity using the adaptive trust profile;

performing a security analytics operation via a security analytics system, the security analytics system executing on a hardware processor of an information handling system, the security analytics operation using the inference regarding the entity to determine whether a particular event is of analytic utility, the particular event being of analytic utility indicating the action of the entity represents a security risk; and,

mitigating the security risk via the security analytics system based upon the inference when the particular event is of analytic utility.

2. The method of claim 1 , wherein:

the adaptive trust profile comprises the user entity mindset profile; and,

the user entity mindset profile is used when deriving the inference regarding the action of the entity.

3. The method of claim 2 , wherein:

the user entity mindset profile comprises a user behavior factor and a user entity profile.

4. The method of claim 3 , wherein:

the adaptive trust profile comprises an entity state; and,

the user entity profile and the entity state are used when deriving the inference regarding the action of the entity.

5. The method of claim 1 , wherein:

the inference reflects an inferred mental state of the user entity at a particular time during occurrence of the event.

6. A system comprising:

a processor;

a data bus coupled to the processor; and

a non-transitory, computer-readable storage medium embodying computer program code, the non-transitory, computer-readable storage medium being coupled to the data bus, the computer program code interacting with a plurality of computer operations and comprising instructions executable by the processor and configured for:

monitoring an electronically-observable action of an entity, the electronically-observable action of the entity corresponding to an event enacted by the entity, the entity comprising a user entity, the user entity enacting a user behavior;

converting the electronically-observable action of the entity to electronic information representing the action of the entity;

generating the adaptive trust profile based upon the action of the entity, the adaptive trust profile comprising a collection of information that describes a particular user entity, the collection of information comprising at least one of a user profile attribute, a user behavior factor and a user mindset factor;

generating a user entity mindset profile for the particular entity, the user entity mindset profile representing aspects of the particular entity that are inferred based upon the electronically-observable user behavior, the mindset profile being generated using the adaptive trust profile;

deriving an inference regarding the action of the entity using the adaptive trust profile;

performing a security analytics operation via a security analytics system, the security analytics system executing on a hardware processor of an information handling system, the security analytics operation using the inference regarding the entity to determine whether a particular event is of analytic utility, the particular event being of analytic utility indicating the action of the entity represents a security risk; and,

mitigating the security risk via the security analytics system based upon the inference when the particular event is of analytic utility.

7. The system of claim 6 , wherein:

the adaptive trust profile comprises the user entity mindset profile; and,

the user entity mindset profile is used when deriving the inference regarding the action of the entity.

8. The system of claim 7 , wherein:

the user entity mindset profile comprises a user behavior factor and a user entity profile.

9. The system of claim 8 , wherein:

the adaptive trust profile comprises an entity state; and,

the user entity profile and the entity state are used when deriving the inference regarding the action of the entity.

10. The system of claim 6 , wherein:

the inference reflects an inferred mental state of the user entity at a particular time during occurrence of the event.

11. A non-transitory, computer-readable storage medium embodying computer program code, the computer program code comprising computer executable instructions configured for:

monitoring an electronically-observable action of an entity, the electronically-observable action of the entity corresponding to an event enacted by the entity, the entity comprising a user entity, the user entity enacting a user behavior;

converting the electronically-observable action of the entity to electronic information representing the action of the entity;

generating the adaptive trust profile based upon the action of the entity, the adaptive trust profile comprising a collection of information that describes a particular user entity, the collection of information comprising at least one of a user profile attribute, a user behavior factor and a user mindset factor;

generating a user entity mindset profile for the particular entity, the user entity mindset profile representing aspects of the particular entity that are inferred based upon the electronically-observable user behavior, the mindset profile being generated using the adaptive trust profile;

deriving an inference regarding the action of the entity using the adaptive trust profile

performing a security analytics operation via a security analytics system, the security analytics system executing on a hardware processor of an information handling system, the security analytics operation using the inference regarding the entity to determine whether a particular event is of analytic utility, the particular event being of analytic utility indicating the action of the entity represents a security risk; and,

mitigating the security risk via the security analytics system based upon the inference when the particular event is of analytic utility.

12. The non-transitory, computer-readable storage medium of claim 11 , wherein:

the adaptive trust profile comprises the user entity mindset profile; and,

the user entity mindset profile is used when deriving the inference regarding the action of the entity.

13. The non-transitory, computer-readable storage medium of claim 12 , wherein:

the user entity mindset profile comprises a user behavior factor and a user entity profile.

14. The non-transitory, computer-readable storage medium of claim 13 , wherein:

the adaptive trust profile comprises an entity state; and,

the user entity profile and the entity state are used when deriving the inference regarding the action of the entity.

15. The non-transitory, computer-readable storage medium of claim 11 , wherein:

the inference reflects an inferred mental state of the user entity at a particular time during occurrence of the event.

16. The non-transitory, computer-readable storage medium of claim 13 , wherein:

the computer executable instructions are deployable to a client system from a server system at a remote location.

17. The non-transitory, computer-readable storage medium of claim 13 , wherein:

the computer executable instructions are provided by a service provider to a user on an on-demand basis.

Assignments (8)
RELEASE OF SECURITY INTEREST Recorded Apr 2, 2025
From: UBS AG, STAMFORD BRANCH
To: FORCEPOINT, LLC; BITGLASS, LLC
Reel/Frame 070706/0263 →
SECURITY INTEREST Recorded Apr 1, 2025
From: FORCEPOINT LLC; BITGLASS, LLC
To: SOCIÉTÉ GÉNÉRALE
Reel/Frame 070703/0887 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 19, 2021
From: FORCEPOINT FEDERAL HOLDINGS LLC
To: FORCEPOINT LLC
Reel/Frame 057001/0057 →
CHANGE OF NAME Recorded May 12, 2021
From: FORCEPOINT LLC
To: FORCEPOINT FEDERAL HOLDINGS LLC
Reel/Frame 056214/0798 →
PATENT SECURITY AGREEMENT Recorded Jan 20, 2021
From: REDOWL ANALYTICS, INC.; FORCEPOINT LLC
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 055052/0302 →
RELEASE OF SECURITY INTEREST IN PATENTS Recorded Jan 8, 2021
From: RAYTHEON COMPANY
To: FORCEPOINT LLC
Reel/Frame 055452/0207 →
PATENT SECURITY AGREEMENT SUPPLEMENT Recorded Feb 27, 2020
From: FORCEPOINT LLC
To: RAYTHEON COMPANY
Reel/Frame 052045/0482 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 7, 2019
From: FORD, RICHARD A.
To: FORCEPOINT LLC
Reel/Frame 049407/0210 →