×

System for controlling access to a plurality of target systems and applications

  • US 10,708,274 B2
  • Filed: 02/20/2018
  • Issued: 07/07/2020
  • Est. Priority Date: 02/20/2018
  • Status: Active Grant
First Claim
Patent Images

1. A system for controlling access to one or more of a plurality of target systems and/or applications, the system comprising:

  • an input/output (IO) subsystem configured to receive profile data that defines one or more features associated with a target individual from a first user management system, and to communicate instructions to one or more target systems to facilitate access to the one or more target systems/applications by the target individual;

    a storage device that includes a model that relates profile data that defines one or more features associated with a plurality of individuals with one or more entitlements of those individuals, each entitlement indicative of target system/application access;

    a processor in communication with the IO subsystem and the storage device; and

    non-transitory computer readable media in communication with the processor that stores instruction code which, when executed by the processor, causes the processor to;

    control the IO subsystem to receive the profile data associated with a target individual;

    determine a class of the plurality of individuals to which the target individual belongs according to a K-nearest neighbor algorithm;

    determine one or more entitlements associated with the plurality of individuals of the class;

    for each entitlement of the one or more entitlements, determine a number of members of the plurality of individuals of the class having the entitlement;

    select entitlements associated with a number of members, N, that is above a predetermined threshold as entitlements to be granted to the target individual;

    generate, based on the profile data and the model, a listing that includes one or more entitlements associated with the target individual, and confidence values associated with the one or more entitlements, each confidence value indicative of whether the target individual should be granted a corresponding entitlement; and

    for each entitlement having a corresponding confidence value higher than a predetermined threshold, control the IO subsystem to communicate an instruction to a target system associated with the entitlement to allow the target individual access to the target system.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×