IP Library Granted Patent US 11,122,011
Granted Patent B2
US 11,122,011 · App. 17/194,662 · Granted Sep 14, 2021

Data processing systems and methods for using a data model to select a target data asset in a data migration

Inventors: Arockia Gunasingam (Marietta, GA); Steven W. Finch (Kennesaw, GA); Saravanan Pitchaimani (Atlanta, GA); Kevin Jones (Atlanta, GA); Jonathan Blake Brannon (Smyrna, GA)
Assignee: OneTrust, LLC
H04L63/0414G06F16/214G06F21/6245
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,122,011
App. No.
17/194,662
Granted
Sep 14, 2021
Kind
B2
Abstract

Data stored on a data asset may be migrated to another data asset while maintaining compliance to applicable regulations. A data asset may experience a failure. Based on the type of data stored by that data asset and the applicable regulations, requirements, and/or restrictions that relate to a transfer of that type data from that data asset, a target data asset may be determined. The data stored on the data asset may then be transferred to the target data asset. The disclosed systems may use data models and/or data maps in determining the requirements for a data transfer and selecting target data assets.

Claims (70)

1. A computer-implemented data processing method for migrating personal data between data centers, the method comprising:

receiving, by one or more computer processors, an indication that data stored at a first data asset is to be migrated to a target data asset;

at least partially in response to receiving the indication that the data stored at the first data asset is to be migrated to the target data asset:

accessing, by one or more computer processors, a first data model associated with the first data asset and a privacy-related data map, wherein the privacy-related data map identifies one or more electronic associations between the first data asset and one or more preconfigured target data assets;

identifying, by one or more computer processors using the privacy-related data map, the one or more preconfigured target data assets;

determining, by one or more computer processors based at least in part on the first data model associated with the first data asset, that the data stored at the first data asset comprises personal data;

selecting, by one or more computer processors using the privacy-related data map and based at least in part on determining that the data stored at the first data asset comprises personal data, a second data asset from among the one or more preconfigured target data assets;

determining, by one or more computer processors, whether the second data asset is available to receive a transfer of the data stored at the first data asset;

at least partially in response to determining that the second data asset is available to receive the transfer of the data stored at the first data asset, selecting, by one or more computer processors, the second data asset as the target data asset; and

at least partially in response to determining that the second data asset is not available to receive the transfer of the data stored at the first data asset, selecting, by one or more computer processors using the privacy-related data map and based at least in part on determining that the data stored at the first data asset comprises personal data, a third data asset from among the one or more preconfigured target data assets as the target data asset; and

initiating, by one or more computer processors, the transfer of the data stored at the first data asset to the target data asset.

2. The computer-implemented data processing method of claim 1 , wherein the one or more preconfigured target data assets are in a same jurisdiction as the first data asset.

3. The computer-implemented data processing method of claim 1 , wherein identifying the one or more preconfigured target data assets comprises determining, by one or more computer processors using the privacy-related data map, a respective privacy risk score for each of the one or more preconfigured target data assets.

4. The computer-implemented data processing method of claim 3 , wherein selecting the second data asset from among the one or more preconfigured target data assets is based at least in part on a privacy risk score for the second data asset.

5. The computer-implemented data processing method of claim 1 , wherein the first data asset comprises a plurality of storage assets managed as a single storage asset.

6. The computer-implemented data processing method of claim 1 , wherein determining that the data stored at the first data asset comprises personal data comprises:

determining, by one or more computer processors based at least in part on the first data model, one or more data elements associated with the first data asset;

determining, by one or more computer processors based at least in part on the first data model, one or more respective attributes of each of the one or more data elements associated with the first data asset; and

determining, by one or more computer processors, that at least one of the one or more data elements associated with the first data asset is associated with personal data.

7. The computer-implemented data processing method of claim 1 , further comprising determining, by one or more computer processors, that the third data asset is available to receive the transfer of the data stored at the first data asset.

8. A computer system for migrating personal data between data assets, the system comprising:

at least one computer processor; and

computer memory storing computer-executable instructions that, when executed by the at least one computer processor, are operable for:

receiving, by the at least one computer processor, a request to migrate data stored at a first data asset to a target data asset; and

at least partially in response to receiving the request to migrate the data stored at the first data asset to the target data asset:

identifying, by the at least one computer processor based at least in part on the first data asset, a first data model associated with the first data asset, the wherein the first data model identifies one or more preconfigured target data assets associated with the first data asset;

accessing, by the at least one computer processor, the first data model associated with the first data asset;

identifying, by the at least one computer processor using the first data model, the one or more preconfigured target data assets;

determining, by the at least one computer processor using the first data model associated with the first data asset, a type of data stored on the first data asset to be transferred to the target data asset;

selecting, by the at least one computer processor using the first data model associated with the first data asset and based at least in part on the type of data stored on the first data asset to be transferred to the target data asset, a second data asset from among the one or more preconfigured target data assets;

determining, by the at least one computer processor, whether the second data asset is available to receive a transfer of the data stored at the first data asset;

at least partially in response to determining that the second data asset is available to receive the transfer of the data stored at the first data asset, selecting, by the at least one computer processor, the second data asset as the target data asset;

at least partially in response to determining that the second data asset is not available to receive the transfer of the data stored at the first data asset, selecting, by the at least one computer processor using the first data model associated with the first data asset and based at least in part on the type of data stored on the first data asset to be transferred to the target data asset, a third data asset from among the one or more preconfigured target data assets as the target data asset; and

initiating, by the at least one computer processor, the transfer of the data stored at the first data asset from the first data asset to the target data asset.

9. The computer system of claim 8 , wherein selecting the second data asset from among the one or more preconfigured target data assets comprises:

determining, by the at least one computer processor, a respective privacy risk score for each of the one or more preconfigured target data assets; and

selecting, by the at least one computer processor, the second data asset from among the one or more preconfigured target data assets based at least in part on a privacy risk score for the second data asset.

10. The computer system of claim 9 , wherein selecting the second data asset from among the one or more preconfigured target data assets based at least in part on the privacy risk score for the second data asset comprises comparing, by the at least one computer processor, the privacy risk score for the second data asset to each respective privacy risk score for each of the one or more preconfigured target data assets.

11. The computer system of claim 8 , wherein the request to migrate the data stored at the first data asset to the target data asset comprises an indication that a data center in which the first data asset is located has failed or is anticipated to fail.

12. The computer system of claim 8 , wherein the first data asset comprises a plurality of storage assets managed as a single storage asset.

13. The computer system of claim 8 , wherein determining the type of data stored on the first data asset to be transferred to the target data asset comprises determining, by the at least one computer processor, that the data stored on the first data asset to be transferred to the target data asset comprises personal data.

14. The computer system of claim 8 , wherein selecting the second data asset from among the one or more preconfigured target data assets comprises:

performing, by the at least one computer processor, a respective data transfer assessment for each of the one or more preconfigured target data assets; and

selecting, by the at least one computer processor, the second data asset from among the one or more preconfigured target data assets based at least in part on a data transfer assessment for the second data asset.

15. A non-transitory computer-readable medium storing computer-executable instructions for:

receiving, by one or more computer processors, an indication of an imminent outage of a first data asset;

determining, by one or more computer processors at least partially in response to the indication of the imminent outage of the first data asset, to migrate data stored at the first data asset to a target data asset;

determining, by one or more computer processors based at least in part on a first data model associated with the first data asset, one or more data elements associated with the first data asset;

determining, by one or more computer processors based at least in part on the first data model associated with the first data asset, one or more respective attributes of each of the one or more data elements associated with the first data asset;

determining, by one or more computer processors, that at least one of the one or more data elements associated with the first data asset is associated with a particular type of data;

identifying, by one or more computer processors, one or more preconfigured target data assets identified by the first data model associated with the first data asset;

selecting, by one or more computer processors using the first data model associated with the first data asset and based at least in part on determining that at least one of the one or more data elements associated with the first data asset is associated with the particular type of data, a second data asset from among the one or more preconfigured target data assets;

determining, by one or more computer processors, whether the second data asset is available to receive a transfer of a subset of the data stored at the first data asset;

at least partially in response to determining that the second data asset is available to receive the transfer of the subset of the data stored at the first data asset, selecting, by one or more computer processors, the second data asset as the target data asset;

at least partially in response to determining that the second data asset is not available to receive the transfer of the subset of the data stored at the first data asset, selecting, by one or more computer processors using the first data model associated with the first data asset and based at least in part on determining that at least one of the one or more data elements associated with the first data asset is associated with the particular type of data, a third data asset from among the one or more preconfigured target data assets as the target data asset; and

initiating, by one or more computer processors, the transfer of the subset of the data stored at the first data asset to the target data asset.

16. The non-transitory computer-readable medium of claim 15 , further comprising instructions for:

receiving, by one or more computer processors, an indication that the transfer of the subset of the data stored at the first data asset to the target data asset failed;

at least partially in response to receiving the indication that the transfer of the subset of the data stored at the first data asset to the target data asset failed, selecting, by one or more computer processors using the first data model associated with the first data asset and based at least in part on determining that at least one of the one or more data elements associated with the first data asset is associated with the particular type of data, a fourth data asset from among the one or more preconfigured target data assets as the target data asset; and

initiating, by one or more computer processors, a second transfer of the subset of the data stored at the first data asset to the target data asset.

17. The non-transitory computer-readable medium of claim 16 , wherein calculating the data transfer risk score for the transfer of the subset of the data stored at the first data asset to the second data asset based at least in part on the first jurisdiction and the second jurisdiction comprises determining, by one or more computer processors, whether the first jurisdiction is a same jurisdiction as the second jurisdiction.

18. The non-transitory computer-readable medium of claim 15 , wherein:

the computer-executable instructions further comprise instructions for calculating, by one or more computer processors, a data transfer risk score for the transfer of the subset of the data stored at the first data asset to the second data asset based at least in part on the particular type of data; and

selecting the second data asset as the target data asset is based at least in part on the data transfer risk score.

19. The non-transitory computer-readable medium of claim 15 , wherein:

the computer-executable instructions further comprise instructions for:

determining, by one or more computer processors using the first data model associated with the first data asset, a first jurisdiction for the first data asset;

determining, by one or more computer processors using the first data model associated with the first data asset, a second jurisdiction for the second data asset; and

calculating, by one or more computer processors, a data transfer risk score for the transfer of the subset of the data stored at the first data asset to the second data asset based at least in part on the first jurisdiction and the second jurisdiction; and

selecting the second data asset as the target data asset is based at least in part on the data transfer risk score.

Assignments (2)
SECURITY INTEREST Recorded Jul 5, 2022
From: ONETRUST LLC
To: KEYBANK NATIONAL ASSOCIATION, AS ADMINISTRATIVE AGENT
Reel/Frame 060573/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 8, 2021
From: GUNASINGAM, AROCKIA; FINCH, STEVEN W.; PITCHAIMANI, SARAVANAN; JONES, KEVIN; BRANNON, JONATHAN BLAKE
To: ONETRUST, LLC
Reel/Frame 055520/0598 →
Continuity (21)
Continuation 16863226 · Apr 30, 2020
Continuation In Part 16565265 · Sep 9, 2019
Continuation In Part 16277539 · Feb 15, 2019
Continuation In Part 16159566 · Oct 12, 2018
Continuation In Part 16055083 · Aug 4, 2018
Continuation In Part 15996208 · Jun 1, 2018
Continuation In Part 15853674 · Dec 22, 2017
Continuation In Part 15619455 · Jun 10, 2017
Continuation In Part 15254901 · Sep 1, 2016
Provisional Application 62728437 · Sep 7, 2018
Provisional Application 62360123 · Jul 8, 2016
Provisional Application 62353802 · Jun 23, 2016
Provisional Application 62348695 · Jun 10, 2016
Provisional Application 62541613 · Aug 4, 2017
Provisional Application 62537839 · Jul 27, 2017
Provisional Application 62547530 · Aug 18, 2017
Provisional Application 62572096 · Oct 13, 2017
Provisional Application 62728435 · Sep 7, 2018
Provisional Application 62631684 · Feb 17, 2018
Provisional Application 62631703 · Feb 17, 2018
Related Publication 20210194854A1 · Jun 24, 2021
Cited By (1)
US 12,719,871