IP Library Granted Patent US 12,230,377
Granted Patent B2
US 12,230,377 · App. 18/511,407 · Granted Feb 18, 2025

Methods and systems for analyzing accessing of medical data

Inventors: Nicholas T. Culbertson (Baltimore, MD); Robert K. Lord (Baltimore, MD)
Assignee: Protenus, Inc.
G16H10/60G06Q10/105H04L63/10H04L63/1433H04L63/20
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,230,377
App. No.
18/511,407
Granted
Feb 18, 2025
Kind
B2
Abstract

Various aspects described herein relate to presenting electronic patient data accessing information. Data related to a plurality of access events, by one or more employees, of electronic patient data can be received. A set of access events of the plurality of access events can be determined as constituting, by the one or more employees, possible breach of the electronic patient data. An alert related to the set of access events can be provided based on determining that the set of access events constitute possible breach of the electronic patient data.

Claims (43)

1. A computer-implemented method for displaying an indication of non-compliant access to an electronic medical record (EMR) in a graphical user interface (GUI), the method comprising:

displaying a first window within the graphical user interface, the first window containing interactive graphical information depicting a plurality of access events by a plurality of employees to at least one EMR of a plurality of EMRs;

determining, based on access data, that at least one access event of the plurality of access events constitutes a possible breach of the at least one EMR, the determining including:

detecting, by a data patterning component and based on the access data, at least one data pattern of access events by a clinical care group; and

determining, by the data patterning component, the at least one access event by a subset of the clinical care group that is inconsistent to the at least one data pattern of access events;

in response to the determining that at least one access event of the plurality of access events constitutes a possible breach of the at least one EMR, displaying, in the first window, one or more interactive graphical alerts depicting the at least one access event that constitutes the possible breach of the at least one EMR, wherein upon determining that at least two access events constitute possible breaches of the at least one EMR, displaying the interactive graphical alerts depicting the at least two access events in order of a determined priority; and

upon detecting a user interaction with one of the one or more interactive graphical alerts, displaying a second window within the graphical user interface, the second window containing additional information of the at least one access event that constitutes the possible breach of the at least one EMR.

2. The computer-implemented method of claim 1 , wherein displaying the second window within the graphical user interface facilitates further investigation of the at least one access event.

3. The computer-implemented method of claim 1 , wherein the interactive graphical information includes at least one grouping of one or more of the plurality of employees.

4. The computer-implemented method of claim 3 , wherein the at least one access event that constitutes the possible breach of the at least one EMR is an access event by an employee outside the at least one grouping of one or more of the plurality of employees.

5. The computer-implemented method of claim 1 , wherein the graphical information is generated by analyzing, by one or more processors, access data and HR data to determine at least one pattern of access associated with one or more employees of the plurality of employees, the analyzing including clustering a portion of the plurality of access events based on detecting commonalities in the plurality of access events using a machine learning model.

6. The computer-implemented method of claim 5 , wherein the clustered portion of the plurality of access events are displayed as being correlated and the at least one access event is displayed as being isolated.

7. The computer-implemented method of claim 1 , wherein the graphical alert is generated by detecting, by one or more processors and based on at least one pattern of access, that the at least one access event of the plurality of access events that constitutes a possible breach of the at least one EMR is inconsistent with the at least one pattern of access.

8. The computer-implemented method of claim 7 , wherein determining that the at least one access event is inconsistent with at least one pattern of access comprises determining that a degree of deviation of the at least one access event from the at least one pattern of access is greater than a predefined threshold.

9. The computer-implemented method of claim 8 , wherein the predefined threshold is one of:

access duration;

access location; and

access time.

10. The computer-implemented method of claim 1 , wherein the additional information displayed on the second window comprises at least one of: employee identification information, at least one action associated with the at least one access event, and at least one note associated with a patient associated with the at least one EMR.

11. A patient privacy monitoring system for displaying an indication of non-compliant access to an electronic medical record (EMR) on a graphical user interface, the system comprising:

at least one processor; and

at least one storage device comprising instructions which, when executed by the at least one processor, cause the at least one processor to perform operations comprising:

displaying a first window within the graphical user interface, the first window containing interactive graphical information depicting a plurality of access events by a plurality of employees to at least one EMR of a plurality of EMRs;

determining, based on access data, that at least one access event of the plurality of access events constitutes a possible breach of the at least one EMR, the determining including:

detecting, by a data patterning component and based on the access data, at least one data pattern of access events by a clinical care group; and

determining, by the data patterning component, the at least one access event by a subset of the clinical care group that is inconsistent to the at least one data pattern of access events;

in response to the determining that at least one access event of the plurality of access events constitutes a possible breach of the at least one EMR, displaying, in the first window, one or more interactive graphical alerts depicting the at least one access event that constitutes the possible breach of the at least one EMR, wherein upon determining that at least two access events constitute possible breaches of the at least one EMR, displaying the interactive graphical alerts depicting the at least two access events in order of a determined priority; and

upon detecting a user interaction with one of the one or more interactive graphical alerts, displaying a second window within the graphical user interface, the second window containing additional information of the at least one access event that constitutes the possible breach of the at least one EMR.

12. The system of claim 11 , wherein the interactive graphical information includes at least one grouping of one or more of the plurality of employees.

13. The system of claim 12 , wherein the at least one access event that constitutes the possible breach of the at least one EMR is an access event by an employee outside the at least one grouping of one or more of the plurality of employees.

14. The system of claim 11 , wherein the graphical information is generated by analyzing, by one or more processors, access data and HR data to determine at least one pattern of access associated with one or more employees of the plurality of employees, the analyzing including clustering a portion of the plurality of access events based on detecting commonalities in the plurality of access events using a machine learning model.

15. The system of claim 14 , wherein the clustered portion of the plurality of access events are displayed as being correlated and the at least one access event is displayed as being isolated.

16. A non-transitory computer readable medium storing instructions which, when executed by at least one processor of a patient privacy monitoring system, cause the at least one processor to perform operations for displaying an indication of non-compliant access to an electronic medical record (EMR) on a graphical user interface, the operations comprising:

displaying a first window within the graphical user interface, the first window containing interactive graphical information depicting a plurality of access events by a plurality of employees to at least one EMR of a plurality of EMRs;

determining, based on access data, that at least one access event of the plurality of access events constitutes a possible breach of the at least one EMR, the determining including:

detecting, by a data patterning component and based on the access data, at least one data pattern of access events by a clinical care group; and

determining, by the data patterning component, the at least one access event by a subset of the clinical care group that is inconsistent to the at least one data pattern of access events;

in response to the determining that at least one access event of the plurality of access events constitutes a possible breach of the at least one EMR, displaying, in the first window, one or more interactive graphical alerts depicting the at least one access event that constitutes the possible breach of the EMR, wherein upon determining that at least two access events constitute possible breaches of the at least one EMR, displaying the interactive graphical alerts depicting the at least two access events in order of a determined priority; and

upon detecting a user interaction with one of the one or more interactive graphical alerts, displaying a second window within the graphical user interface, the second window containing additional information of the at least one access event that constitutes the possible breach of the at least one EMR.

17. The non-transitory computer readable medium of claim 16 , wherein the interactive graphical information includes at least one grouping of one or more of the plurality of employees.

18. The non-transitory computer readable medium of claim 17 , wherein the at least one access event that constitutes the possible breach of the at least one EMR is an access event by an employee outside the at least one grouping of one or more of the plurality of employees.

19. The non-transitory computer readable medium of claim 16 , wherein the graphical information is generated by analyzing, by one or more processors, access data and HR data to determine at least one pattern of access associated with one or more employees of the plurality of employees, the analyzing including clustering a portion of the plurality of access events based on detecting commonalities in the plurality of access events using a machine learning model.

20. The non-transitory computer readable medium of claim 19 , wherein the clustered portion of the plurality of access events are displayed as being correlated and the at least one access event is displayed as being isolated.

Assignments (4)
GRANT OF SECURITY INTEREST IN PATENT RIGHTS Recorded Mar 3, 2025
From: PROTENUS, INC.; BLUESIGHT, INC.
To: MONROE CAPITAL MANAGEMENT ADVISORS, LLC, AS COLLATERAL AGENT
Reel/Frame 070377/0626 →
CORRECTIVE ASSIGNMENT TO CORRECT THE THE NAME OF THE CONVEYING PARTY PREVIOUSLY RECORDED AT REEL: 70225 FRAME: 709. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Feb 24, 2025
From: PROTENUS, INC.
To: BLUESIGHT, INC.
Reel/Frame 070314/0107 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 14, 2025
From: PROTENUS, INC.,
To: BLUESIGHT, INC.
Reel/Frame 070225/0709 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 20, 2023
From: CULBERTSON, NICHOLAS T.; LORD, ROBERT K.
To: PROTENUS, INC.
Reel/Frame 065623/0486 →
Continuity (6)
Continuation 17815804 · Jul 28, 2022
Continuation 17105282 · Nov 25, 2020
Continuation 16857716 · Apr 24, 2020
Continuation 15078736 · Mar 23, 2016
Provisional Application 62139494 · Mar 27, 2015
Related Publication 20240087694A1 · Mar 14, 2024
References Cited (19)
US 8578500B2 · Long · 2013 [cited by applicant]
US 8793790B2 · Khurana et al. · 2014 [cited by applicant]
US 9032531B1 · Scorvo et al. · 2015 [cited by applicant]
US 9112850B1 · Eisen · 2015 [cited by applicant]
US 9202189B2 · Long · 2015 [cited by applicant]
US 9330134B2 · Long et al. · 2016 [cited by applicant]
US 20080060051A1 · Lim · 2008 [cited by examiner]
US 20090018882A1 · Burton et al. · 2009 [cited by applicant]
US 20090177675A1 · Trumbull · 2009 [cited by examiner]
US 20120289787A1 · Kurgan et al. · 2012 [cited by applicant]
US 20130091539A1 · Khurana et al. · 2013 [cited by applicant]
US 20130173309A1 · Dworkin · 2013 [cited by applicant]
US 20150205954A1 · Jou et al. · 2015 [cited by applicant]
US 20150381631A1 · Salem et al. · 2015 [cited by applicant]
US 20160085986A1 · Long · 2016 [cited by applicant]
US 20160088000A1 · Siva Kumar · 2016 [cited by examiner]
US 20160180022A1 · Paixao · 2016 [cited by examiner]
US 20160196728A1 · Suman · 2016 [cited by applicant]
US 20170272336A1 · Johnstone et al. · 2017 [cited by applicant]
Cited By (2)
US 12,555,656 US 12,626,817