Patents by Inventor Mark David MOROWCZYNSKI

Mark David MOROWCZYNSKI has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Publication number: 20240171406
    Abstract: A first verifiable credential is received at a second entity from a first entity. The first verifiable credential is cryptographically signed by the first entity using decentralized identifier (DID) of the first entity. The first verifiable credential includes a security indicator that specifies a security posture of the second entity based on security settings implemented by the second entity. A second verifiable credential is generated that embeds the first verifiable credential therein. The second verifiable credential is provided to a third entity. The second verifiable credential causes the third entity to verify the cryptographic signature of the first entity with a public key associated with the DID of the first entity to determine that the first verifiable credential is valid and that the security settings being implemented by the second entity are in compliance with security policies of the third entity.
    Type: Application
    Filed: November 22, 2022
    Publication date: May 23, 2024
    Inventors: Bailey Marie BERCIK, Mark David MOROWCZYNSKI, Arvind Bipin SUTHAR, Ramiro CALDERON ROMERO
  • Patent number: 11463444
    Abstract: A secure cloud-based privileged access management (CBPAM) service manages on-premise resources. While enrolling an on-premise authentication domain admin group, a secured cloud-based shadow administrating group (SCBSAG) is created; a SCBSAG security identification includes at least part of the enrollee's security identification. The SCBSAG belongs to a clean CBPAM authentication domain which may be secured by defense in depth controls such as time limits on authentication or authorization, password avoidance, least privilege, one-way syncing, and one-way trust. Management via the configured SCBSAG may be fostered by emptying the on-premise admin group, although a break glass account may be kept. CBPAM services direct administrative actions toward on-premise resources through SCBSAGs for cloud tenants, providing secure management control as a service, with broader geographic scope and lower maintenance burdens and costs than privileged access management approaches that are not cloud-based.
    Type: Grant
    Filed: June 11, 2020
    Date of Patent: October 4, 2022
    Assignee: Microsoft Technology Licensing, LLC
    Inventors: Michael Eugene Stephens, Mark David Morowczynski, Oana Elena Enache, Steven Jay Lieberman
  • Publication number: 20210392142
    Abstract: A secure cloud-based privileged access management (CBPAM) service manages on-premise resources. While enrolling an on-premise authentication domain admin group, a secured cloud-based shadow administrating group (SCBSAG) is created; a SCBSAG security identification includes at least part of the enrollee's security identification. The SCBSAG belongs to a clean CBPAM authentication domain which may be secured by defense in depth controls such as time limits on authentication or authorization, password avoidance, least privilege, one-way syncing, and one-way trust. Management via the configured SCBSAG may be fostered by emptying the on-premise admin group, although a break glass account may be kept. CBPAM services direct administrative actions toward on-premise resources through SCBSAGs for cloud tenants, providing secure management control as a service, with broader geographic scope and lower maintenance burdens and costs than privileged access management approaches that are not cloud-based.
    Type: Application
    Filed: June 11, 2020
    Publication date: December 16, 2021
    Inventors: Michael Eugene STEPHENS, Mark David MOROWCZYNSKI, Oana Elena ENACHE, Steven Jay LIEBERMAN