IP Library Granted Patent US 11,487,899
Granted Patent B2
US 11,487,899 · App. 17/081,719 · Granted Nov 1, 2022

Automated tiered security for confidential information and confidential information sharing and methods thereof

Inventor: Rendheer Joshy (Glen Allen, VA)
Assignee: Capital One Services, LLC
G06F21/6245G06F21/31G06F21/645G06F40/205
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,487,899
App. No.
17/081,719
Granted
Nov 1, 2022
Kind
B2
Abstract

Systems and methods of the present disclosure enable automated sharing of confidential information according to tiers of security by receiving an electronic information request from an automated form production application of a computing device associated with a third-party entity. A request security tier associated with the electronic information request is determined according to a security tier of the user-related secure data. At least one authentication requirement associated with the request is determined according to authentication settings of the security tier. An authentication request is generated enabling the user to provide an authentication response to approve the computing device for access to the user-related secure data. The user authentication response is received, the user is authenticated based on the user authentication response and the computing device is allowed to access the user-related secure data to auto-populate each field of an electronic form with associated items of the user-related secure data.

Claims (51)

1. A method comprising:

receiving, by at least one processor, an electronic information request from an automated form production application of a computing device associated with a third-party entity;

wherein the electronic information request comprises user-related secure data associated with at least one form;

wherein the user-related secure data is associated with an account of a user;

identifying, by the at least one processor, each security classification associated with the user-related secure data of each item of the user-related secure data;

determining, by the at least one processor, each security tier of each security classification;

determining, by the at least one processor, a request security tier associated with the electronic information request according to a most secure security tier based on a hierarchy of security tiers;

wherein the hierarchy of security tiers comprises more secure authentication requirements for a greater level of security tier in the hierarchy of security tiers;

determining, by the at least one processor, at least one authentication requirement associated with the request security tier according to authentication settings of the assigned security tier of each item of the user-related secure data;

wherein the at least one authentication requirement comprises a set of user authentication methods based on the request security tier;

restricting, by the at least one processor, access to the user-related secure data associated with each item of the user-related secure data by the automated form production application until a user verification input verifying the user-related secure data associated with each item of the user-related secure data;

generating, by the at least one processor, an authentication request enabling the user to provide user authentication response to the at least one authentication requirement to approve the computing device associated with the third-party entity for access to the user-related secure data;

receiving, by the at least one processor, the user authentication response from the user in response to the at least one authentication requirement;

wherein the user authentication response comprises the user verification input;

authenticating, by the at least one processor, the user based on the user authentication response; and

allowing, by the at least one processor, the computing device associated with the third-party entity to access the user-related secure data associated the electronic information request in response to the authentication of the user; and

wherein the automated form production application is configured to parse the user-related secure data according to fields of the at least one form to auto-populate the fields with the user-related secure data; and

wherein the automated form production application auto-populates each field of the electronic form with associated items of the user-related secure data.

2. The method of claim 1 , further comprising determining, by the at least one processor, the assigned security tier of each item of the user-related secure data based on an information type of each item of the user-related secure data.

3. The method of claim 1 , wherein the user-related secure data associated each item of the user-related secure data comprises at least one JSON file stored in a user account.

4. The method of claim 1 , wherein assigned security tier of each item of the user-related secure data are user-defined.

5. The method of claim 1 , wherein assigned security tier of each item of the user-related secure data are predetermined based on types of information.

6. The method of claim 1 , further comprising:

determining, by the at least one processor, a type of information of each item of the requested information; and

determining, by the at least one processor, the assigned security tier of each item of the requested information based at least in part on the type of information of each item of the requested information.

7. A system comprising:

at least one processor configured to implement instructions stored in a non-transitory computer readable medium causing the at least one processor to perform steps to:

receive an electronic information request from an automated form production application of a computing device associated with a third-party entity;

wherein the electronic information request comprises user-related secure data associated with at least one form;

wherein the user-related secure data is associated with an account of a user;

identify each security classification associated with the user-related secure data of each item of the user-related secure data;

determine each security tier of each security classification;

determine a request security tier associated with the electronic information request according to a most secure security tier based on a hierarchy of security tiers;

wherein the hierarchy of security tiers comprises more secure authentication requirements for a greater level of security tier in the hierarchy of security tiers;

determine at least one authentication requirement associated with the request security tier according to authentication settings of the assigned security tier of each item of the user-related secure data;

wherein the at least one authentication requirement comprises a set of user authentication methods based on the request security tier;

restrict access to the user-related secure data associated with each item of the user-related secure data by the automated form production application until a user verification input verifying the user-related secure data associated with each item of the user-related secure data;

generate an authentication request enabling the user to provide user authentication response to the at least one authentication requirement to approve the computing device associated with the third-party entity for access to the user-related secure data;

receive the user authentication response from the user in response to the at least one authentication requirement;

wherein the user authentication response comprises the user verification input;

authenticate the user based on the user authentication response; and

allow the computing device associated with the third-party entity to access the user-related secure data associated the electronic information request in response to the authentication of the user; and

wherein the automated form production application is configured to parse the user-related secure data according to fields of the at least one form to auto-populate the fields with the user-related secure data; and

wherein the automated form production application auto-populates each field of the electronic form with associated items of the user-related secure data.

8. The system of claim 7 , wherein the at least one processor is configured to implement instructions causing the at least one processor to perform steps to determining, by the at least one processor, the assigned security tier of each item of the user-related secure data based on an information type of each item of the user-related secure data.

9. The system of claim 7 , wherein the user-related secure data associated each item of the user-related secure data comprises at least one JSON file stored in a user account.

10. The system of claim 7 , wherein assigned security tier of each item of the user-related secure data are user-defined.

11. The system of claim 7 , wherein assigned security tier of each item of the user-related secure data are predetermined based on types of information.

12. The system of claim 7 , wherein the at least one processor is configured to implement instructions causing the at least one processor to perform steps to:

determine a type of information of each item of the requested information; and

determine the assigned security tier of each item of the requested information based at least in part on the type of information of each item of the requested information.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 27, 2020
From: JOSHY, RENDHEER
To: CAPITAL ONE SERVICES, LLC
Reel/Frame 054185/0080 →
Continuity (1)
Related Publication 20220129577A1 · Apr 28, 2022