发明名称 Sensitive data aliasing
摘要 Database management and security is implemented in a variety of embodiments. In one such embodiment, data sets containing sensitive data elements are analyzed using aliases representing sensitive data elements. In another embodiment, the sensitive data elements are stored in an encrypted form for use from a secure access, while the alias is available for standard access.
申请公布号 US9460298(B1) 申请公布日期 2016.10.04
申请号 US201514843081 申请日期 2015.09.02
申请人 Verisk Crime Analytics, Inc. 发明人 Duhaime David A.;Duhaime Brad J.
分类号 H04L9/00;G06F21/60;G06F21/62;G06F21/32 主分类号 H04L9/00
代理机构 Crawford Maunu PLLC 代理人 Crawford Maunu PLLC
主权项 1. A computer-implemented method for protecting sensitive data elements by using access control and associating aliases to the sensitive data elements, comprising: encrypting, by a computer processor, sensitive data elements to produce encrypted sensitive data elements; generating, by the computer processor and for the sensitive data elements, aliases that are independent from the sensitive data elements; generating, by the computer processor, an association between the aliases and the sensitive data elements; storing the aliases and the encrypted sensitive data elements in one or more storage devices; displaying an interface that includes selection options for requesting access to the one or more storage devices and for verifying an identity of users that are requesting the access to the one or more storage devices; determining, by the computer processor, that a first user is in a standard set of users, the first user requesting the access to the one or more storage devices through the interface; returning, by the computer processor and in response to determining that the first user is in the standard set of users, the aliases in place of the sensitive data elements to the first user via the interface; receiving, from a second user, an alias of the aliases in place of the sensitive data elements; determining, by the computer processor, that the second user is in an authorized set of users, where the authorized set of users does include at least some users in the standard set of users; and returning a sensitive data element associated with the received alias, by the computer processor and based upon a generated association between the returned sensitive data element and the received alias, to the second user via the interface.
地址 Jersey City NJ US