IP Library › Granted Patent US 12,634,326
Granted Patent B2
US 12,634,326 · App. 18/508,887 · Granted May 19, 2026

Systems and methods for cloud service security risk assessment

Inventors: David Jonathan Leigh (Warrenton, VA); Mohammed Golam Sorwar (Alexandria, VA); Sreenarayan Ashok Kumar (Herndon, VA)
Assignee: Capital One Services, LLC
H04L63/1433H04L63/1441
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,634,326
App. No.
18/508,887
Granted
May 19, 2026
Kind
B2
Abstract

In some implementations, a system receives a request to assess security risk associated with a cloud service. The system identifies, based on the request, one or more application programming interface (API) actions associated with the cloud service. The system determines respective security category information for the one or more API actions and/or respective security risk scores for the one or more API actions. The system generates, based on the respective security category information and/or the respective security risk scores, security risk mitigation information. The system causes, based on the security risk mitigation information, one or more actions to be performed. As an example, the system may send the security risk mitigation information to a device, which may allow for presentation of the security risk mitigation information or implementation of code that is included in the security risk mitigation information.

Claims (64)

1 . A system for cloud service security risk assessment, the system comprising:

one or more memories; and

one or more processors, communicatively coupled to the one or more memories, configured to:

receive a request to assess security risk associated with a cloud service;

identify, based on the request, one or more application programming interface (API) actions associated with the cloud service;

determine respective security category information and respective security risk scores for the one or more API actions by applying a machine learning model to API action feature information associated with the one or more API actions;

generate, based on the respective security category information and the respective security risk scores for the one or more API actions, security risk mitigation information; and

cause, based on the security risk mitigation information, one or more actions to be performed.

2 . The system of claim 1 , wherein the one or more processors, to determine the respective security category information and the respective security risk scores for the one or more API actions, are configured to:

determine, for each API action of the one or more API actions, respective API action feature information; and

determine security category information and a security risk score for each API action of the one or more API actions by applying the machine learning model to the respective API action feature information.

3 . The system of claim 2 , wherein the machine learning model is trained based on a security requirements profile, API action feature information associated with a plurality of historical API actions, security category determination information associated with the plurality of historical API actions, and security risk score determination information associated with the plurality of historical API actions.

4 . The system of claim 1 , wherein the one or more processors, to generate the security risk mitigation information, are configured to:

generate the security risk mitigation information by applying a machine learning model to the respective security category information and the respective security risk scores for the one or more API actions.

5 . The system of claim 1 , wherein the security risk mitigation information includes one or more security risk mitigation recommendations, and

wherein the one or more processors, to cause the one or more actions to be performed, are configured to:

send, to a device, the security risk mitigation information,

wherein sending the security risk mitigation information to the device allows the device to present the one or more security risk mitigation recommendations via a display of the device.

6 . The system of claim 1 , wherein the security risk mitigation information includes security risk mitigation code, and

wherein the one or more processors, to cause the one or more actions to be performed, are configured to:

send, to a device, the security risk mitigation information,

wherein sending the security risk mitigation information allows the device to implement the security risk mitigation code in a cloud environment associated with the cloud service.

7 . The system of claim 1 , wherein the security risk mitigation information includes security risk monitoring code, and

wherein the one or more processors, to cause the one or more actions to be performed, are configured to:

send, to a device, the security risk mitigation information,

wherein sending the security risk mitigation information allows the device to implement the security risk monitoring code in association with monitoring the cloud service.

8 . A non-transitory computer-readable medium storing a set of instructions, the set of instructions comprising:

one or more instructions that, when executed by one or more processors of a system for cloud service security risk assessment, cause the system to:

identify one or more application programming interface (API) actions associated with a cloud service;

determine respective security category information for the one or more API actions and respective security risk scores for the one or more API actions by applying a machine learning model to API action feature information associated with the one or more API actions;

generate, based on the respective security category information for the one or more API actions and the respective security risk scores for the one or more API actions, security risk mitigation information; and

cause, based on the security risk mitigation information, one or more actions to be performed.

9 . The non-transitory computer-readable medium of claim 8 , wherein the one or more instructions, that cause the system to determine the respective security category information for the one or more API actions and the respective security risk scores for the one or more API actions, cause the system to:

determine, for each API action of the one or more API actions, respective API action feature information; and

determine at least one of security category information or a security risk score for each API action of the one or more API actions by applying the machine learning model to the respective API action feature information.

10 . The non-transitory computer-readable medium of claim 9 , wherein the machine learning model is trained based on a security requirements profile, API action feature information associated with a plurality of historical API actions, and at least one of security category determination information associated with the plurality of historical API actions or security risk score determination information associated with the plurality of historical API actions.

11 . The non-transitory computer-readable medium of claim 8 , wherein the one or more instructions, that cause the system to generate the security risk mitigation information, cause the system to:

generate the security risk mitigation information by applying a machine learning model to the respective security category information for the one or more API actions and the respective security risk scores for the one or more API actions.

12 . The non-transitory computer-readable medium of claim 8 , wherein the security risk mitigation information includes one or more security risk mitigation recommendations, and

wherein the one or more instructions, that cause the system to cause the one or more actions to be performed, cause the system to:

send, to a device, the security risk mitigation information to allow for presentation of the one or more security risk mitigation recommendations by the device.

13 . The non-transitory computer-readable medium of claim 8 , wherein the security risk mitigation information includes security risk mitigation code, and

wherein the one or more instructions, that cause the system to cause the one or more actions to be performed, cause the system to:

send, to a device, the security risk mitigation information to allow for implementation of the security risk mitigation code in a cloud environment associated with the cloud service.

14 . The non-transitory computer-readable medium of claim 8 , wherein the security risk mitigation information includes security risk monitoring code, and

wherein the one or more instructions, that cause the system to cause the one or more actions to be performed, cause the system to:

send, to a device, the security risk mitigation information to allow for implementation of the security risk monitoring code in association with monitoring the cloud service.

15 . A method, comprising:

determining, by a system for cloud service security risk assessment, security category information for an application programming interface (API) action associated with a cloud service and a security risk score for the API action by applying a machine learning model to API action feature information associated with the API action;

generating, by the system and based on the security category information for the API action and the security risk score for the API action, security risk mitigation information; and

causing, by the system and based on the security risk mitigation information, one or more actions to be performed.

16 . The method of claim 15 , wherein determining the security category information for the API action and the security risk score for the API action comprises:

determining the API action feature information associated with the API action.

17 . The method of claim 15 , wherein generating the security risk mitigation information comprises:

generating the security risk mitigation information by applying a machine learning model to the security category information for the API action and the security risk score for the API action.

18 . The method of claim 15 , wherein the security risk mitigation information includes one or more security risk mitigation recommendations, and

wherein causing the one or more actions to be performed comprises:

sending, to a device, the security risk mitigation information to allow for presentation of the one or more security risk mitigation recommendations.

19 . The method of claim 15 , wherein the security risk mitigation information includes security risk mitigation code, and

wherein causing the one or more actions to be performed comprises:

sending, to a device, the security risk mitigation information to allow for implementation of the security risk mitigation code in association with the cloud service.

20 . The method of claim 15 , wherein the security risk mitigation information includes security risk monitoring code, and

wherein causing the one or more actions to be performed comprises:

sending, to a device, the security risk mitigation information to allow for implementation of the security risk monitoring code in association with monitoring the cloud service.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 14, 2023
From: LEIGH, DAVID JONATHAN; SORWAR, MOHAMMED GOLAM; ASHOK KUMAR, SREENARAYAN
To: CAPITAL ONE SERVICES, LLC
Reel/Frame 065563/0278 →
Continuity (1)
Related Publication 20250159013A1 · May 15, 2025
References Cited (7)
US 11763006B1 · Rao · 2023 [cited by examiner]
US 20150350174A1 · Reno et al. · 2015 [cited by applicant]
US 20170118239A1 · Most · 2017 [cited by examiner]
US 20190334943A1 · Arvanites · 2019 [cited by examiner]
US 20210352097A1 · Vlahovic · 2021 [cited by examiner]
US 20230120174A1 · Seck · 2023 [cited by examiner]
US 20240403444A1 · Jeevagunta · 2024 [cited by examiner]