IP Library Granted Patent US 11,388,255
Granted Patent B2
US 11,388,255 · App. 16/749,577 · Granted Jul 12, 2022

System and method for tagging in identity management artificial intelligence systems and uses for same, including context based governance

Inventors: Norman Anderson, III (Austin, TX); Jeffrey Foreman (Round Rock, TX); Amar Rama (Austin, TX)
Assignee: SAILPOINT TECHNOLOGIES, INC.
H04L67/306G06F16/2264G06F16/2443
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,388,255
App. No.
16/749,577
Granted
Jul 12, 2022
Kind
B2
Abstract

Systems and methods for embodiments of artificial intelligence systems for identity management are disclosed. Embodiments of the identity management systems disclosed herein may support the creation, association, searching, or visualization of any relevant context to identity management assets for a variety of purposes, including for informing the identity management systems' manual or automated decisions, processes or workflows.

Claims (35)

1. An identity management system, comprising:

a processor;

a non-transitory, computer-readable storage medium, including computer instructions for:

maintaining a search index for identity management artifacts utilized in identity management of a distributed enterprise computing environment and determined based on identity management data obtained from one or more source systems in the distributed enterprise computing environment, the search index comprising a document for each of the identity management artifacts;

determining a set of the identity management artifacts utilized in identity management in the distributed enterprise computing environment based on a specified criteria;

obtaining a tag to associate with the set of the identity management artifacts, wherein the tag was received at the identity management system; and

indexing the tag in the search index in association with each of the set of identity management artifacts substantially in real-time, wherein indexing the tag in association with the each of the set of identity management artifacts comprises determining the document for each of the set of identity management artifacts and storing the tag in each of the documents for each of the set of identity management artifacts, thereby allowing the set of identity management artifacts to be searched using the tag and the search index.

2. The identity management system of claim 1 , wherein determining the set of identity management artifacts comprises searching the set of identity management artifacts based on the specified criteria.

3. The identity management system of claim 1 , wherein the tag was obtained before at least one of the set of the identity management artifacts was determined from the identity management data.

4. The identity management system of claim 1 , wherein the tag is indexed in association with the at least one of the of the set of the identity management artifacts at the same time the document for the at least one of the of the set of the identity management artifacts is determined or created in the search index.

5. The identity management system of claim 1 , wherein determining a set of the identity management artifacts is based on an association of each of the set of the identity management artifacts with a particular identity management artifact.

6. The identity management system of claim 5 , wherein determining the set of the identity management artifacts are identities and the particular identity management artifact is an entitlement.

7. The system of claim 5 , wherein the tag was obtained from the particular identity management artifact.

8. A method, comprising:

maintaining a search index for identity management artifacts utilized in identity, the search index comprising a document for each of the identity management artifacts;

determining a set of the identity management artifacts utilized in identity management in the distributed enterprise computing environment based on a specified criteria;

obtaining a tag to associate with the first set of the identity management artifacts, wherein the tag was received at the identity management system; and

indexing the tag in the search index in association with each of the set of identity management artifacts substantially in real-time, wherein indexing the tag in association with the each of the set of identity management artifacts comprises determining the document for each of the set of identity management artifacts and storing the tag in each of the documents for each of the set of identity management artifacts, thereby allowing the set of identity management artifacts to be searched using the tag and the search index.

9. The method of claim 8 , wherein determining the set of identity management artifacts comprises searching the set of identity management artifacts based on the specified criteria.

10. The method of claim 8 , wherein the tag was obtained before at least one of the set of the identity management artifacts was determined from the identity management data.

11. The method of claim 8 , wherein the tag is indexed in association with the at least one of the of the set of the identity management artifacts at the same time the document for the at least one of the of the set of the identity management artifacts is determined or created in the search index.

12. The method of claim 8 , wherein determining a set of the identity management artifacts is based on an association of each of the set of the identity management artifacts with a particular identity management artifact.

13. The method of claim 12 , wherein determining the set of the identity management artifacts are identities and the particular identity management artifact is an entitlement.

14. The method of claim 12 , wherein the tag was obtained from the particular identity management artifact.

15. A non-transitory computer readable medium, comprising instructions for:

maintaining a search index for identity management artifacts utilized in identity management of a distributed enterprise computing environment and determined based on identity management data obtained from one or more source systems in the distributed enterprise computing environment, the search index comprising a document for each of the identity management artifacts;

determining a set of the identity management artifacts utilized in identity management in the distributed enterprise computing environment based on a specified criteria;

obtaining a tag to associate with the set of the identity management artifacts, wherein the tag was received at the identity management system; and

indexing the tag in the search index in association with each of the set of identity management artifacts substantially in real-time, wherein indexing the tag in association with the each of the set of identity management artifacts comprises determining the document for each of the set of identity management artifacts and storing the tag in each of the documents for each of the set of identity management artifacts, thereby allowing the set of identity management artifacts to be searched using the tag and the search index.

16. The non-transitory computer readable medium of claim 15 , wherein determining the set of identity management artifacts comprises searching the set of identity management artifacts based on the specified criteria.

17. The non-transitory computer readable medium of claim 15 , wherein the tag was obtained before at least one of the set of the identity management artifacts was determined from the identity management data.

18. The non-transitory computer readable medium of claim 15 , wherein the tag is indexed in association with the at least one of the of the set of the identity management artifacts at the same time the document for the at least one of the of the set of the identity management artifacts is determined or created in the search index.

19. The non-transitory computer readable medium of claim 15 , wherein determining a set of the identity management artifacts is based on an association of each of the set of the identity management artifacts with a particular identity management artifact.

20. The non-transitory computer readable medium of claim 19 , wherein determining the set of the identity management artifacts are identities and the particular identity management artifact is an entitlement.

21. The non-transitory computer readable medium of claim 19 , wherein the tag was obtained from the particular identity management artifact.

Assignments (4)
RELEASE OF SECURITY INTEREST Recorded Jun 27, 2025
From: GOLUB CAPITAL MARKETS LLC
To: SAILPOINT TECHNOLOGIES, INC.; SAILPOINT TECHNOLOGIES HOLDINGS, INC.
Reel/Frame 071776/0411 →
PATENT SECURITY AGREEMENT Recorded Jun 25, 2025
From: SAILPOINT TECHNOLOGIES, INC.
To: MORGAN STANLEY SENIOR FUNDING, INC., AS COLLATERAL AGENT
Reel/Frame 071724/0511 →
SECURITY INTEREST Recorded Aug 17, 2022
From: SAILPOINT TECHNOLOGIES, INC.
To: GOLUB CAPITAL MARKETS LLC, AS COLLATERAL AGENT
Reel/Frame 061202/0540 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 10, 2020
From: ANDERSON, NORMAN, III; FOREMAN, JEFFREY; RAMA, AMAR
To: SAILPOINT TECHNOLOGIES, INC.
Reel/Frame 052065/0227 →
Continuity (2)
Continuation 16440690 · Jun 13, 2019
Related Publication 20200396312A1 · Dec 17, 2020