Patents Assigned to Imprivata, Inc.
-
Patent number: 9246902Abstract: A user of a client device that executes a remote application is authenticated by first receiving an HTTP or HTTPS request to authenticate the user from the remote application. The user is prompted for authentication information, and authentication information is obtained by communicating with a hardware device in electronic communication with the client device. The user's authorization to use the remote application is then verified using a computer processor and using the authentication information.Type: GrantFiled: July 1, 2014Date of Patent: January 26, 2016Assignee: Imprivata, Inc.Inventors: John Gage, Alain Slak, David M. T. Ting
-
Patent number: 9189225Abstract: Firmware updates for, e.g., thin client devices may be achieved in a seamless, non-disruptive manner using a two-stage firmware loader, including a base loader pre-installed on the device and a caching loader downloaded, by the base loader, from a firmware server and thereafter responsible for downloading and updating other firmware application packages.Type: GrantFiled: October 16, 2013Date of Patent: November 17, 2015Assignee: Imprivata, Inc.Inventors: Pieter-Jan Boone, Lou Bergandi, Feroz Gora, David Kashtan, David M. T. Ting, Michael Michlin, Robert Calder, Alain Slak, Taras Lushney
-
Patent number: 9118656Abstract: Requests to gain access to secure resources are adjudicated according to authentication policies that include rules based on user-states derived from multiple heterogeneous access-control systems. Comprehensive user authentication and access control based on rules and policies that encompass a user's status in multiple access-control systems, including both logical access (e.g., Active Directory, RADIUS, Virtual Private Network, etc.) as well as physical access (e.g., card-based) control systems, may be realized.Type: GrantFiled: January 25, 2007Date of Patent: August 25, 2015Assignee: Imprivata, Inc.Inventors: David M. T. Ting, Omar Hussain, Gregg LaRoche
-
Patent number: 8973091Abstract: Representative embodiments of secure authentication include receiving, by a server, information from a mobile device identifying (i) the mobile device and (ii) an identifying tag read by the mobile device; accessing, by the server, a database to identify (i) a user associated with the mobile device, (ii) a secure device associated with the identifying tag, and (iii) a security policy associated with the secure device; and if the policy permits access by the identified user to the identified secure device, causing access to the secure device to be accorded to the user.Type: GrantFiled: October 3, 2012Date of Patent: March 3, 2015Assignee: Imprivata, Inc.Inventors: David M. T. Ting, Michael C. Bilancieri, Edward J. Gaudet, Jason Mafera
-
Patent number: 8839456Abstract: Data and data requests of users of applications are filtered using a client-resident agent. A user profile may contain data pertaining to restrictions on content the user is permitted to view or types of requests the user is permitted to make. within one or more applications. Data in the user profile may be used to grant or deny access to applications, filter particular content from the user's view, or filter particular data requests made by the user.Type: GrantFiled: February 23, 2011Date of Patent: September 16, 2014Assignee: Imprivata, Inc.Inventor: David Ting
-
Patent number: 8792679Abstract: A face is detected within a camera's field despite inadequate illumination. In various embodiments, multiple images of the inadequately illuminated field of view are obtained and summed into a composite image. The composite image is tone-mapped based on a facial lighting model, and a bounded group of pixels in the tone-mapped image having a lighting distribution indicative of a face is identified. Facial features are resolved within the bounded group of pixels.Type: GrantFiled: September 7, 2012Date of Patent: July 29, 2014Assignee: Imprivata, Inc.Inventors: Kuntal Sengupta, Robert Calder
-
Patent number: 8683562Abstract: Embodiments of the invention facilitate the use of a contactless memory token to automate log-on procedures to a remote access server using dynamic one-time passwords (OTPs). A series of workflow steps establishes the identity of the user and charges a token with a number of dynamic OTPs that can be subsequently verified using, for example, a Radius server sitting behind a VPN or SSL/VPN server.Type: GrantFiled: February 1, 2012Date of Patent: March 25, 2014Assignee: Imprivata, Inc.Inventors: David M. T. Ting, Jason Mafera
-
Patent number: 8538072Abstract: Various embodiments of the invention provide for methods and systems for detecting an operator's use of a secure system. Images are acquired from image sensors that monitor a detection zone about the secure system. Faces within the images are identified and tracked among subsequently acquired images. Upon receipt of a valid login at the secure system, one of the tracked faces is selected as a primary operator and tracked as they operate the secure system.Type: GrantFiled: August 25, 2009Date of Patent: September 17, 2013Assignee: Imprivata, Inc.Inventors: Michael Findlay Kelly, David M. J. McMordie
-
Publication number: 20130145420Abstract: Representative embodiments of secure authentication include receiving, by a server, information from a mobile device identifying (i) the mobile device and (ii) an identifying tag read by the mobile device; accessing, by the server, a database to identify (i) a user associated with the mobile device, (ii) a secure device associated with the identifying tag, and (iii) a security policy associated with the secure device; and if the policy permits access by the identified user to the identified secure device, causing access to the secure device to be accorded to the user.Type: ApplicationFiled: October 3, 2012Publication date: June 6, 2013Applicant: Imprivata, Inc.Inventor: Imprivata, Inc.
-
Publication number: 20130133042Abstract: An apparatus, method and program product locally stores biometric data in response to a user accessing a network (38). Local storage of the biometric data allows the user to biometrically access a local computer (20) in the absence of a network connection (18) and/or submitted ID.Type: ApplicationFiled: October 25, 2012Publication date: May 23, 2013Applicant: Imprivata, Inc.Inventor: Imprivata, Inc.
-
Patent number: 8327421Abstract: Application-specific and single-sign-on user-authentication credentials are analyzed and consolidated based on commonalities among the credentials and usage of the applications to which they are attributed according to a process whereby a plurality of user-authentication credentials each associated with a different computer application are received; at least a subset of the plurality of user-authentication credentials are associated with each other based on consistencies among the associated authentication credentials and observed application usage patterns attributed to each respective user-authentication credential; an identity signature is created for the individual based on the subset of associated user-authentication credentials; and the identity signature is attributed to the individual.Type: GrantFiled: January 30, 2007Date of Patent: December 4, 2012Assignee: Imprivata, Inc.Inventor: David M. T. Ting
-
Patent number: 8220063Abstract: In one aspect, the invention relates to generating a trusted communication channel with a client. An agent module is provided at the client along with a task set including one or more tasks. One or more client components needed to complete each of the tasks of the task set is determined, and it is further determined whether each of the needed client components is trustworthy. An equivalent component for components determined to be untrustworthy may be provided.Type: GrantFiled: December 18, 2008Date of Patent: July 10, 2012Assignee: Imprivata, Inc.Inventor: David M. T. Ting
-
Patent number: 8171288Abstract: A rule based biometric user authentication method and system in a computer network environment is provided. Multiple authentication rules can exist in the computer network. For example, there may be a default system-wide rule, and a rule associated with a particular user trying to log in. There may be other rules such as one associated with a remote computer from which the user is logging in, one associated with a group to which the user belongs, or one associated with a system resource to which the user requires access such as an application program or a database of confidential information. An order of precedence among the rules is then established which is used to authenticate the user.Type: GrantFiled: August 8, 2005Date of Patent: May 1, 2012Assignee: Imprivata, Inc.Inventors: Timothy J. Brown, Gregory C. Jensen, Rodney Rivers, Dan Nelson
-
Patent number: 7950021Abstract: Software processes are automated by storing predetermined responses and recognizing the screens of server and/or web-based applications that require data to continue operating.Type: GrantFiled: March 29, 2006Date of Patent: May 24, 2011Assignee: Imprivata, Inc.Inventors: David M. T. Ting, Charles Kekeh
-
Patent number: 7941849Abstract: User activities in various applications are audited using a client-resident agent. An alias for an individual is associated with a user profile for the individual user. The user profile may contain data pertaining to the user's activities within one or more applications. Data in the user profile may be used to determine which actions are audited, and how the audit data is used.Type: GrantFiled: March 21, 2003Date of Patent: May 10, 2011Assignee: Imprivata, Inc.Inventor: David M. T. Ting
-
Patent number: 7660880Abstract: User access to applications is controlled by associating an alias for an individual with a user profile for the individual; the user profile typically contains data referring to one or more applications. Access to an application is obtained using the data in the user profile, e.g., through automatic completion of forms or screens within an application. In addition, the user profile may be employed to limit user access to parts of an application, or to terminate a user's access to an application.Type: GrantFiled: March 21, 2003Date of Patent: February 9, 2010Assignee: Imprivata, Inc.Inventors: David M. T. Ting, Chen Ho, Parind Shah, Bushan Yadav Byragani
-
Patent number: 7398549Abstract: The invention relates to systems and methods for using a template in the authentication process using biometric data. In one embodiment, a module modifies a template of the reference set of biometric data with the candidate set of biometric data when the user is authenticated. In another embodiment, a module modifies a copy of the template of the reference biometric data with modification data thereby creating a challenge template. The client compares the challenge template to a candidate set of biometric data thereby creating a response vector. A module authenticates the user based on the response vector and the modification data.Type: GrantFiled: May 17, 2002Date of Patent: July 8, 2008Assignee: Imprivata, Inc.Inventor: David M. T. Ting
-
Patent number: 7356705Abstract: In one aspect, the invention relates to generating a trusted communication channel with a client. An agent module is provided at the client along with a task set including one or more tasks. One or more client components needed to complete each of the tasks of the task set is determined, and it is further determined whether each of the needed client components is trustworthy. An equivalent component for components determined to be untrustworthy may be provided.Type: GrantFiled: May 17, 2002Date of Patent: April 8, 2008Assignee: Imprivata, Inc.Inventor: David M. T. Ting
-
Publication number: 20020174347Abstract: The invention relates to systems and methods for using a template in the authentication process using biometric data. In one embodiment, a module modifies a template of the reference set of biometric data with the candidate set of biometric data when the user is authenticated. In another embodiment, a module modifies a copy of the template of the reference biometric data with modification data thereby creating a challenge template. The client compares the challenge template to a candidate set of biometric data thereby creating a response vector. A module authenticates the user based on the response vector and the modification data.Type: ApplicationFiled: May 17, 2002Publication date: November 21, 2002Applicant: Imprivata, Inc.Inventor: David M.T. Ting
-
Publication number: 20020174346Abstract: The invention relates to systems and methods for using a template in the authentication process using biometric data. In one embodiment, a module modifies a template of the reference set of biometric data with the candidate set of biometric data when the user is authenticated. In another embodiment, a module modifies a copy of the template of the reference biometric data with modification data thereby creating a challenge template. The client compares the challenge template to a candidate set of biometric data thereby creating a response vector. A module authenticates the user based on the response vector and the modification data.Type: ApplicationFiled: May 17, 2002Publication date: November 21, 2002Applicant: Imprivata, Inc.Inventor: David M. T. Ting