IP Library Granted Patent US 12,282,580
Granted Patent B2
US 12,282,580 · App. 17/701,500 · Granted Apr 22, 2025

Deleting, auditing, and disaster recovery for personal identifiable information

Inventors: Alex Daniel Ciampaglia (Incline Village, NV); Wen Jie Zhou (Brooklyn, NY)
Assignee: Ridgeline, Inc.
G06F21/6245G06F21/60G06F21/602H04L9/0825H04L9/088H04L9/0822
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,282,580
App. No.
17/701,500
Granted
Apr 22, 2025
Kind
B2
Abstract

The present application discloses a method, system, and computer system for deleting, auditing, and/or performing disaster recovery for personal identifiable information (PII). The method includes determining to delete from a dataset PII data corresponding to an individual, determining a PII key associated with the individual, and performing a lookup with respect to the dataset for PII data associated with the individual using the PII key.

Claims (55)

1. A system, comprising:

one or more processors configured to:

determine to delete from a dataset of personal identifiable information (PII) data corresponding to an individual;

determine a PII key associated with the individual;

perform a lookup with respect to the dataset for the PII data associated with the individual using the PII key;

determine whether an other process is using or attempting to use the PII data associated with the individual based at least in part on results corresponding to the lookup performed using the PII key;

in response to a determination that the other process is using or attempting to use the associated PII data, terminate the other process; and

delete the associated PII data, wherein deleting comprises moving an encryption key used to encrypt one or more records of the associated PII data to a trusted storage location; and

a memory coupled to the one or more processors and configured to provide the one or more processors with instructions.

2. The system of claim 1 , wherein:

the dataset comprises one or more data records;

the one or more data records respectively comprise at least three fields:

a first field storing a corresponding data record that is designated for storing PII;

a second field in which information pertaining to the PII key is stored; and

a third field corresponding to a flag that indicates whether the corresponding data record stores PII.

3. The system of claim 2 , wherein performing a lookup with respect to the dataset for the PII data associated with the individual based at least in part on the PII key comprises:

using the PII key to search for records comprised in the dataset that include the second field storing information pertaining the PII key.

4. The system of claim 2 , wherein the information pertaining the PII key stored in the second field comprises a PII key identifier.

5. The system of claim 2 , wherein performing a lookup with respect to the dataset for PII data associated with the individual based at least in part on the PII key comprises:

filtering the dataset based at least in part on the flag stored in the third field for the one or more data records to obtain a subset of data records comprising the PII data; and

performing a search across the subset of data records for resulting records comprising the PII data associated with the individual based at least in part on information stored in the second field.

6. The system of claim 2 , wherein the one or more processors are further configured to delete the PII data associated with the individual based at least in part on results corresponding to a lookup performed based at least in part on the PII key.

7. The system of claim 6 , wherein deleting the PII data associated with the individual comprises deleting the one or more records storing the PII data associated with the individual.

8. The system of claim 6 , wherein deleting the PII data associated with the individual comprises deleting the PII key associated with the individual.

9. The system of claim 6 , wherein deleting the PII data associated with the individual comprises moving the PII data from the dataset to a secure storage area.

10. The system of claim 6 , wherein deleting the PII data associated with the individual comprises deleting an encryption key used to encrypt the one or more records comprising the PII data associated with the individual.

11. The system of claim 1 , wherein:

the PII data is stored in association with at least two identifiers; and

the at least two identifiers comprise a PII key identifier and a record identifier.

12. The system of claim 11 , wherein the record identifier identifies a row of the dataset in which a record for the PII data is stored.

13. The system of claim 11 , wherein the PII key identifier is created for association with the PII data, and the record identifier is created based at least in part on a data model corresponding to the dataset.

14. The system of claim 1 , wherein the one or more processors are further configured to store operation information pertaining to one or more operations performed with respect to the dataset in an audit log.

15. The system of claim 14 , wherein the one or more processors are further configured to:

receive a request to recreate an earlier version of the dataset;

determine, based at least in part on the audit log, any intervening requests to delete the PII data associated with one or more individuals since a time corresponding to an earlier version of the dataset; and

recreate the earlier version of the dataset in a modified state to commit the intervening requests to delete the PII data associated with one or more individuals.

16. The system of claim 15 , wherein recreating the earlier version of the dataset in the modified state comprises:

using the earlier version of the dataset to obtain a reconstructed dataset;

searching the reconstructed dataset for the PII data corresponding to the intervening requests to delete the PII data associated with one or more individuals since a time corresponding to the earlier version of the dataset;

deleting the PII data corresponding to the intervening requests from the reconstructed dataset to obtain a resulting dataset; and

providing the resulting dataset in response to the request to recreate the earlier version of the dataset.

17. A method, comprising:

determining, using a processor, to delete from a dataset of personal identifiable information (PII) data corresponding to an individual;

determining a PII key associated with the individual;

performing a lookup with respect to the dataset for the PII data associated with the individual using the PII key;

determining whether an other process is using or attempting to use the PII data associated with the individual based at least in part on results corresponding to the lookup performed using the PII key;

in response to a determination that the other process is using or attempting to use the associated PII data, terminating the other process; and

deleting the associated PII data, wherein deleting comprises moving an encryption key used to encrypt one or more records of the associated PII data to a trusted storage location.

18. A computer program product embodied in a non-transitory computer readable medium and comprising computer instructions for:

determining to delete from a dataset of personal identifiable information (PII) data corresponding to an individual;

determining a PII key associated with the individual;

performing a lookup with respect to the dataset for the PII data associated with the individual using the PII key;

determining whether an other process is using or attempting to use the PII data associated with the individual based at least in part on results corresponding to the lookup performed using the PII key;

in response to a determination that the other process is using or attempting to use the associated PII data, terminating the other process; and

deleting associated PII data, wherein deleting comprises moving an encryption key used to encrypt one or more records of the associated PII data to a trusted storage location.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 12, 2022
From: CIAMPAGLIA, ALEX DANIEL; ZHOU, WEN JIE
To: RIDGELINE, INC.
Reel/Frame 060792/0239 →
Continuity (2)
Provisional Application 63247133 · Sep 22, 2021
Related Publication 20230088657A1 · Mar 23, 2023
References Cited (19)
US 11182635B2 · Odate · 2021 [cited by applicant]
US 11816103B1 · Goel · 2023 [cited by examiner]
US 20070261114A1 · Pomerantsev · 2007 [cited by applicant]
US 20100005509A1 · Peckover · 2010 [cited by applicant]
US 20140115710A1 · Hughes · 2014 [cited by examiner]
US 20170142082A1 · Qian · 2017 [cited by applicant]
US 20190197217A1 · Donovan · 2019 [cited by examiner]
US 20200125725A1 · Petersen · 2020 [cited by applicant]
US 20200302082A1 · Carteri · 2020 [cited by examiner]
US 20200327540A1 · Chavarria · 2020 [cited by applicant]
US 20210182423A1 · Padmanabhan · 2021 [cited by examiner]
US 20220329413A1 · Schindewolf · 2022 [cited by examiner]
US 20230034426A1 · Kati · 2023 [cited by examiner]
CN 111404662 · 2023 [cited by applicant]
KR 20130012136 · 2013 [cited by applicant]
Author Unknown, “CryptDB”, downloaded from <https://css.csail.mit.edu/cryptdb/> retrieved on Mar. 10, 2022. [cited by applicant]
Boneh et al., “Order-Revealing Encryption”, retrieved from <https://crypto.stanford.edu/ore/> on Mar. 10, 2022. [cited by applicant]
API Evangelist, Secrets and Personally Identifiable Information (PH) Across Our API Definitions, Jan. 27, 2020, 6 pages, https://apievangelist.com/2020/01/27/secrets-and-personally-identifiable-information-pii-across-ou… [cited by applicant]
Cossack Labs, PII Encryption Requirements: Cheatsheet, Apr. 2, 2020, 27 pages, https://www.cossacklabs.com/blog/pii-encryption-requirements-cheatsheet/. [cited by applicant]
Cited By (1)
US 12,556,907