IP Library › Granted Patent US 12,052,241
Granted Patent B2
US 12,052,241 · App. 18/184,870 · Granted Jul 30, 2024

Biometric cybersecurity and workflow management

Inventor: Wyatt Cobb (Mission Hills, KS)
Assignee: SoftWarfare, LLC
H04L63/0861G06F21/32G06F21/606G06V10/764G06V40/70H04L63/0263H04L63/105G06V40/1365G06V40/16G06V40/197H04L2463/082
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,052,241
App. No.
18/184,870
Granted
Jul 30, 2024
Kind
B2
Abstract

A system, method, and media for providing web-based security to a workflow process is presented. Data may be processed in a web-based workflow management system. The system may detect the transfer of high-level security data through the workflow. Upon detection of the data transfers the system may request review and approval in the form of a biometric input from an approved user to allow the data to be transferred.

Claims (61)

1. A system for providing security to a workflow process on a system, comprising:

a sensor configured to collect biometric data for a user;

at least one processor;

a datastore storing:

stored biometric identity data for a plurality of authorized users; and

stored client computing device data indicative of a plurality of client computing devices associated with the plurality of authorized users; and

one or more non-transitory computer-readable media storing computer-executable instructions that, when executed by the at least one processor, perform a method of providing the security to the workflow process, the method comprising:

receiving, from a client computing device, a request to transfer data across a network,

wherein the request to transfer the data is associated with a security level;

requesting authentication information from an application on the client computing device based on the security level;

obtaining, via the application on the client computing device, biometric authentication data of the user of the client computing device and information indicative of the client computing device;

performing a first comparison of the biometric authentication data of the user with the stored biometric identity data;

performing a second comparison of the information indicative of the client computing device with the stored client computing device data; and

approving the request to transfer the data based at least on the first comparison and the second comparison.

2. The system of claim 1 , wherein the biometric authentication data comprises one of a fingerprint or palm print.

3. The system of claim 1 , wherein the biometric authentication data comprises one of a retinal scan, an iris scan, or a facial scan.

4. The system of claim 1 , wherein the method further comprises storing a first result of the first comparison, a second result of the second comparison, the biometric authentication data, and the information indicative of the client computing device.

5. The system of claim 4 , wherein the method further comprises using the first result of the first comparison, the second result of the second comparison, the biometric authentication data, and the information indicative of the client computing device to train machine learning models.

6. The system of claim 1 , wherein the method further comprises:

determining a likelihood of authentication based on the information indicative of the client computing device and the biometric authentication data; and

requesting additional authentication data when the likelihood is below a threshold value.

7. The system of claim 1 , wherein the method further comprises collecting, by the application, user account information and log history.

8. The system of claim 1 , wherein the biometric authentication data is a first authentication and wherein the method further comprises requesting at least one second form of authentication from the user.

9. One or more non-transitory computer-readable media storing computer-executable instructions that, when executed by at least one processor, perform a method of providing security to a workflow process, the method comprising steps of:

receiving, from a client computing device, a transfer request to transfer data across a network;

performing an analysis of the transfer request for potential security threats;

flagging the transfer request as a security threat based on the analysis;

requesting authentication information from an application on the client computing device;

obtaining, via the application on the client computing device, at least one form of authentication from a user of the client computing device and information indicative of the client computing device;

performing a first comparison of the at least one form of the authentication from the user with stored authorized identity data;

performing a second comparison of the information indicative of the client computing device with stored authorized client computing device data,

wherein the stored authorized client computing device data is associated with the stored authorized identity data; and

approving the transfer request to transfer the data based at least on the first comparison and the second comparison.

10. The media of claim 9 , wherein the method further comprises:

updating a threat profile based on the transfer request, the at least one form of the authentication, and the information indicative of the client computing device; and

utilizing the threat profile to detect future threats.

11. The media of claim 9 , wherein the at least one form of the authentication of the user is a biometric authentication obtained by at least one biometric sensor.

12. The media of claim 11 , wherein the at least one biometric sensor is one of a camera, a retinal scanner, and a fingerprint scanner.

13. The media of claim 12 ,

wherein the at least one biometric sensor is disposed on a mobile device of the user, and

wherein the at least one form of the authentication of the user is one factor of a multifactor authentication.

14. The media of claim 9 , wherein the transfer request being flagged as the security threat is indicative of a risk of regulatory non-compliance.

15. One or more non-transitory computer-readable media storing computer-executable instructions that, when executed by at least one processor, perform a method of providing security to a workflow process, the method comprising steps of:

receiving, from a client computing device, a transfer request to transfer data across a network;

performing an analysis of the transfer request for potential security threats;

flagging the transfer request as a security threat based on the analysis;

requesting authentication information from the client computing device;

obtaining, by the client computing device, at least one form of authentication from a user of the client computing device and information indicative of the client computing device;

performing a first comparison of the at least one form of the authentication from the user with stored authorized identity data;

performing a second comparison of the information indicative of the client computing device with stored authorized client computing device data,

wherein the stored authorized client computing device data is associated with the stored authorized identity data; and

approving the transfer request to transfer the data based at least on the first comparison and the second comparison.

16. The media of claim 15 , wherein the at least one form of the authentication of the user is a biometric authentication obtained by at least one biometric sensor.

17. The media of claim 16 ,

wherein the at least one biometric sensor is disposed on a mobile device of the user, and

wherein the at least one form of the authentication of the user is one factor of a multifactor authentication.

18. The media of claim 17 , wherein the biometric authentication is one of a retinal scan, an iris scan, a facial scan, a fingerprint scan, or a palm scan.

19. The media of claim 15 , wherein the method further comprises obtaining user account information and log history with the at least one form of the authentication and the information indicative of the client computing device.

20. The media of claim 15 ,

updating a threat profile based on the transfer request, the at least one form of the authentication, and the information indicative of the client computing device; and

utilizing the threat profile to detect future threats.

Assignments (2)
SECURITY INTEREST Recorded Mar 20, 2025
From: SOFTWARFARE, LLC
To: OUTDOOR BANK
Reel/Frame 070583/0259 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 16, 2023
From: COBB, WYATT
To: SOFTWARFARE, LLC
Reel/Frame 063002/0065 →
Continuity (3)
Continuation 17068167 · Oct 12, 2020
Continuation 15970071 · May 3, 2018
Related Publication 20230224298A1 · Jul 13, 2023