IP Library Granted Patent US 12,198,793
Granted Patent B2
US 12,198,793 · App. 18/344,066 · Granted Jan 14, 2025

Methods and systems for analyzing accessing of medical data

Inventors: Nicholas T. Culbertson (Baltimore, MD); Robert K. Lord (Baltimore, MD)
Assignee: Protenus, Inc.
G16H10/60G06Q10/105H04L63/10H04L63/1433H04L63/20
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,198,793
App. No.
18/344,066
Granted
Jan 14, 2025
Kind
B2
Abstract

Various aspects described herein relate to presenting electronic patient data accessing information. Data related to a plurality of access events, by one or more employees, of electronic patient data can be received. A set of access events of the plurality of access events can be determined as constituting, by the one or more employees, possible breach of the electronic patient data. An alert related to the set of access events can be provided based on determining that the set of access events constitute possible breach of the electronic patient data.

Claims (59)

1. A computer-implemented method for displaying an indication of non-compliant access to an electronic medical record (EMR) on a user interface, the computer-implemented method comprising:

receiving, by one or more processors, electronic data from one or more of a plurality of data sources, the electronic data comprising access data associated with a plurality of EMRs;

identifying, by the one or more processors, a plurality of access events by a plurality of employees to one or more EMRs of the plurality of EMRs;

detecting, by the one or more processors, commonalities among the access events of two or more employees of the plurality of employees that have accessed one or more EMRs of the plurality of EMRs in the electronic data, machine-learning commonalities in the electronic data, or network analyzing commonalities in the electronic data, wherein the commonalities are determined based on computing statistical inferences between the plurality of access events;

clustering, by the one or more processors, a portion of the plurality of access events based on detecting commonalities among two or more employees of the plurality of employees that have accessed one or more EMRs of the plurality of EMRs in the electronic data;

based on the clustering, determining, by the one or more processors, at least one pattern of access associated with one or more employees of the plurality of employees;

detecting, based on the at least one pattern of access and by the one or more processors, at least one access event of the plurality of access events that is inconsistent with the at least one pattern of access;

determining, by the one or more processors, that the at least one access event constitutes a possible breach of the EMR based on the at least one access event being inconsistent with the at least one pattern of access; and

transmitting, by the one or more processors and to a display of a first user interface, an alert associated with the at least one access event,

wherein the alert comprises an indicator of the at least one access event and wherein interacting with the indicator causes a display of additional information corresponding to the at least one access event facilitating further investigation of the at least one access event.

2. The computer-implemented method of claim 1 , wherein the alert is selectable by a user via the first user interface.

3. The computer-implemented method of claim 2 , further comprising:

receiving, by the one or more processors, a selection of the alert by the user; and

generating, by the one or more processors, a second user interface in response to the selection of the alert, wherein the second user interface displays a set of data points representing the plurality of access events, including the at least one access event, in association with corresponding employees and times of access.

4. The computer-implemented method of claim 3 , wherein the clustered portion of the plurality of access events are displayed as being correlated and the at least one access event is displayed as being isolated.

5. The computer-implemented method of claim 1 , wherein determining that the at least one access event is inconsistent with the at least one pattern of access comprises determining that a degree of deviation of the at least one access event from the at least one pattern of access is greater than a predefined threshold, wherein the predefined threshold is one of: access duration; access location; and access time.

6. The computer-implemented method of claim 1 , wherein the commonalities include at least one of: EMR accessing times by an employee of the plurality of employees; groups of employees of the plurality of employees accessing a same medical record; or an order in which employees access the same medical record.

7. The computer-implemented method of claim 3 , further comprising:

receiving, by the one or more processors, a selection of a data point of the set of data points on the second user interface; and

causing to display, by the one or more processors, on the second user interface, at least one of: employee identification information, at least one action associated with the at least one access event, and at least one note associated with a patient associated with the one or more EMRs.

8. A system for displaying an indication of non-compliant access to an electronic medical record (EMR) on a user interface, the system comprising:

at least one processor; and

at least one storage device comprising instructions which, when executed by the at least one processor, cause the at least one processor to perform operations comprising:

receiving electronic data from one or more of a plurality of data sources, the electronic data comprising access data associated with a plurality of EMRs;

identifying a plurality of access events by a plurality of employees to one or more EMRs of the plurality of EMRs;

detecting commonalities among two or more employees of the plurality of employees that have accessed one or more EMRs of the plurality of EMRs in the electronic data, machine-learning commonalities in the electronic data, or network analyzing commonalities in the electronic data, wherein the commonalities are determined based on computing statistical inferences between the plurality of access events;

clustering a portion of the plurality of access events based on detecting commonalities among two or more employees of the plurality of employees that have accessed one or more EMRs of the plurality of EMRs in the electronic data;

based on the clustering, determining at least one pattern of access associated with one or more employees of the plurality of employees;

detecting, based on the at least one pattern of access, at least one access event of the plurality of access events that is inconsistent with the at least one pattern of access;

determining that the at least one access event constitutes a possible breach of the EMR based on the at least one access event being inconsistent with the at least one pattern of access; and

transmitting, to a display of a first user interface, an alert associated with the at least one access event,

wherein the alert comprises an indicator of the at least one access event and wherein interacting with the indicator causes a display of additional information corresponding to the at least one access event facilitating further investigation of the at least one access event.

9. The system of claim 8 , wherein the alert is selectable by a user via the first user interface.

10. The system of claim 9 , the operations further comprising:

receiving a selection of the alert by the user; and

generating a second user interface in response to the selection of the alert, wherein the second user interface displays a set of data points representing the plurality of access events, including the at least one access event, in association with corresponding employees and times of access.

11. The system of claim 10 , wherein the clustered portion of the plurality of access events are displayed as being correlated and the at least one access event is displayed as being isolated.

12. The system of claim 8 , wherein determining that the at least one access event is inconsistent with the at least one pattern of access comprises determining that a degree of deviation of the at least one access event from the at least one pattern of access is greater than a predefined threshold, wherein the predefined threshold is one of: access duration; access location; and access time.

13. The system of claim 8 , wherein the commonalities include at least one of: EMR accessing times by an employee of the plurality of employees; groups of employees of the plurality of employees accessing a same medical record; or an order in which employees access the same medical record.

14. The system of claim 10 , the operations further comprising:

receiving a selection of a data point of the set of data points on the second user interface; and

causing to display, on the second user interface, at least one of: employee identification information, at least one action associated with the at least one access event, and at least one note associated with a patient associated with the EMR.

15. A non-transitory computer readable medium storing instructions which, when executed by at least one processor, cause the at least one processor to perform operations for displaying an indication of non-compliant access to an electronic medical record (EMR) on a user interface, the operations comprising:

receiving electronic data from one or more of a plurality of data sources, the electronic data comprising access data associated with a plurality of EMRs;

identifying a plurality of access events by a plurality of employees to one or more EMRs of the plurality of EMRs;

detecting commonalities among two or more employees of the plurality of employees that have accessed one or more EMRs of the plurality of EMRs in the electronic data, machine-learning commonalities in the electronic data, or network analyzing commonalities in the electronic data, wherein the commonalities are determined based on computing statistical inferences between the plurality of access events;

clustering a portion of the plurality of access events based on detecting commonalities among two or more employees of the plurality of employees that have accessed one or more EMRs of the plurality of EMRs in the electronic data;

based on the clustering, determining at least one pattern of access associated with one or more employees of the plurality of employees;

detecting, based on the at least one pattern of access, at least one access event of the plurality of access events that is inconsistent with the at least one pattern of access;

determining that the at least one access event constitutes a possible breach of the EMR based on the at least one access event being inconsistent with the at least one pattern of access; and

transmitting, to a display of a first user interface, an alert associated with the at least one access event,

wherein the alert comprises an indicator of the at least one access event and wherein interacting with the indicator causes a display of additional information corresponding to the at least one access event facilitating further investigation of the at least one access event.

16. The non-transitory computer readable medium of claim 15 , wherein the alert is selectable by a user via the first user interface.

17. The non-transitory computer readable medium of claim 16 , the operations further comprising:

receiving a selection of the alert by the user; and

generating a second user interface in response to the selection of the alert, wherein the second user interface displays a set of data points representing the plurality of access events, including the at least one access event, in association with corresponding employees and times of access.

18. The non-transitory computer readable medium of claim 17 , wherein the clustered portion of the plurality of access events are displayed as being correlated and the at least one access event is displayed as being isolated.

19. The non-transitory computer readable medium of claim 15 , wherein determining that the at least one access event is inconsistent with the at least one pattern of access comprises determining that a degree of deviation of the at least one access event from the at least one pattern of access is greater than a predefined threshold, wherein the predefined threshold is one of: access duration; access location; and access time.

20. The non-transitory computer readable medium of claim 15 , wherein the commonalities include at least one of: EMR accessing times by an employee of the plurality of employees; groups of employees of the plurality of employees accessing a same medical record; or an order in which employees access the same medical record.

Assignments (4)
GRANT OF SECURITY INTEREST IN PATENT RIGHTS Recorded Mar 3, 2025
From: PROTENUS, INC.; BLUESIGHT, INC.
To: MONROE CAPITAL MANAGEMENT ADVISORS, LLC, AS COLLATERAL AGENT
Reel/Frame 070377/0626 →
CORRECTIVE ASSIGNMENT TO CORRECT THE THE NAME OF THE CONVEYING PARTY PREVIOUSLY RECORDED AT REEL: 70225 FRAME: 709. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Feb 24, 2025
From: PROTENUS, INC.
To: BLUESIGHT, INC.
Reel/Frame 070314/0107 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 14, 2025
From: PROTENUS, INC.,
To: BLUESIGHT, INC.
Reel/Frame 070225/0709 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 27, 2023
From: LORD, ROBERT K.; CULBERTSON, NICHOLAS T.
To: PROTENUS INC.
Reel/Frame 064398/0477 →
Continuity (6)
Continuation 17815666 · Jul 28, 2022
Continuation 17505808 · Oct 20, 2021
Continuation 16857716 · Apr 24, 2020
Continuation 15078736 · Mar 23, 2016
Provisional Application 62139494 · Mar 27, 2015
Related Publication 20230343422A1 · Oct 26, 2023
References Cited (20)
US 8578500B2 · Long · 2013 [cited by applicant]
US 8793790B2 · Khurana et al. · 2014 [cited by applicant]
US 9032531B1 · Scorvo et al. · 2015 [cited by applicant]
US 9202189B2 · Long · 2015 [cited by applicant]
US 9330134B2 · Long et al. · 2016 [cited by applicant]
US 20080060051A1 · Lim · 2008 [cited by applicant]
US 20090018882A1 · Burton et al. · 2009 [cited by applicant]
US 20090177675A1 · Trumbull · 2009 [cited by examiner]
US 20100262688A1 · Hussain et al. · 2010 [cited by applicant]
US 20120289787A1 · Kurgan et al. · 2012 [cited by applicant]
US 20130091539A1 · Khurana et al. · 2013 [cited by applicant]
US 20130173309A1 · Dworkin · 2013 [cited by applicant]
US 20150205954A1 · Jou · 2015 [cited by examiner]
US 20150319185A1 · Kirti · 2015 [cited by examiner]
US 20150381631A1 · Salem et al. · 2015 [cited by applicant]
US 20160005044A1 · Moss · 2016 [cited by applicant]
US 20160085986A1 · Long · 2016 [cited by applicant]
US 20160180022A1 · Paixao · 2016 [cited by examiner]
US 20170017760A1 · Freese · 2017 [cited by applicant]
US 20170272336A1 · Johnstone et al. · 2017 [cited by applicant]
Cited By (2)
US 12,555,656 US 12,626,817