Patents by Inventor Ankur SAND

Ankur SAND has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 12665919
    Abstract: A method, system, and computer-readable storage medium for implementing a service that simplifies network cyber defense capabilities. The method includes: compiling a resource list of resources that exist within a computer network; compiling a cyber defense list of cyber defense mechanisms that exist within the computer network; evaluating the resources and the cyber defense mechanisms, against any applicable threats or vulnerabilities, to determine whether there are any threats to the computer network or any vulnerabilities to that network; and generating a visual indication of any of the computer network's threats or vulnerabilities. The resource list may include a resource configuration of the resources, and the cyber defense list may include a cyber defense configuration of the cyber defense mechanisms.
    Type: Grant
    Filed: February 21, 2023
    Date of Patent: June 23, 2026
    Assignee: JPMORGAN CHASE BANK, N.A.
    Inventors: Ankur Sand, Ken Wilson, Marty Grant
  • Patent number: 12647443
    Abstract: In one example, a non-transitory computer-readable storage medium stores executable program instructions that detect, at a remote device node, vulnerability data associated with an exploitable vulnerability of a target enterprise network; retrieve, by a first local device node, the vulnerability data, which may include a CVSS score, determine, by a second local device node, a vulnerability score VT by determining a first subscore VT1, where the first subscore VT1 is based on a Maximized Confidentiality Impact (MCI) metric that is a modified privacy metric to capture the privacy impact of the exploitable vulnerability, where the first subscore VT1 is also based on a Maximized Highest Impact (MHI) metric to capture reputation damage based on an outsized single impact attribute, and on a Modified Confidentiality (MC) metric, Modified Integrity (MI) metric and Modified Availability (MA) as provided by CVSS; and remediate the exploitable vulnerability based on the vulnerability score VT.
    Type: Grant
    Filed: December 21, 2023
    Date of Patent: June 2, 2026
    Assignee: JPMORGAN CHASE BANK, N.A.
    Inventors: Ankur Sand, Martin J Grant, Luca Baggio, Danny Su, Danica Dometita, Nicholas Campbell, Ken K. Wilson, Dawn David-Swan, David R. Edwards, Syed Islam
  • Publication number: 20250267164
    Abstract: Systems and methods for proactively monitoring the inherent cyber-tech risk of software and hardware components are disclosed. In one embodiment, a method for proactively monitoring a cyber risk of a computer program may include: (1) receiving, by a product/version risk assessment computer program executed by an electronic device and from a user computer program executed by a use electronic device, an identification of a plurality of proposed components to include in the computer program; (2) retrieving, by the product/version risk assessment computer program, vulnerability information for each of the plurality of proposed components, wherein the vulnerability information identifies a security vulnerability for the proposed component; (3) generating, by a product/version risk scoring computer program, a risk score for the computer program under development based on the vulnerability information; and (4) returning, by the vulnerability assessment computer program, the risk score to the user computer program.
    Type: Application
    Filed: April 21, 2025
    Publication date: August 21, 2025
    Inventors: Ankur SAND, Ken WILSON, Marty GRANT, Herman WIJAYA, David R. EDWARDS
  • Patent number: 12284201
    Abstract: Systems and methods for proactively monitoring the inherent cyber-tech risk of software and hardware components are disclosed. In one embodiment, a method for proactively monitoring a cyber risk of a computer program may include: (1) receiving, by a product/version risk assessment computer program executed by an electronic device and from a user computer program executed by a use electronic device, an identification of a plurality of proposed components to include in the computer program; (2) retrieving, by the product/version risk assessment computer program, vulnerability information for each of the plurality of proposed components, wherein the vulnerability information identifies a security vulnerability for the proposed component; (3) generating, by a product/version risk scoring computer program, a risk score for the computer program under development based on the vulnerability information; and (4) returning, by the vulnerability assessment computer program, the risk score to the user computer program.
    Type: Grant
    Filed: December 2, 2022
    Date of Patent: April 22, 2025
    Assignee: JPMORGAN CHASE BANK, N.A.
    Inventors: Ankur Sand, Ken Wilson, Marty Grant, Herman Wijaya, David R. Edwards
  • Publication number: 20240283810
    Abstract: A method, system, and computer-readable storage medium for implementing a service that simplifies network cyber defense capabilities. The method includes: compiling a resource list of resources that exist within a computer network; compiling a cyber defense list of cyber defense mechanisms that exist within the computer network; evaluating the resources and the cyber defense mechanisms, against any applicable threats or vulnerabilities, to determine whether there are any threats to the computer network or any vulnerabilities to that network; and generating a visual indication of any of the computer network's threats or vulnerabilities. The resource list may include a resource configuration of the resources, and the cyber defense list may include a cyber defense configuration of the cyber defense mechanisms.
    Type: Application
    Filed: February 21, 2023
    Publication date: August 22, 2024
    Applicant: JPMorgan Chase Bank, N.A.
    Inventors: Ankur SAND, Ken WILSON, Marty GRANT
  • Publication number: 20240236137
    Abstract: In one example, a non-transitory computer-readable storage medium stores executable program instructions that detect, at a remote device node, vulnerability data associated with an exploitable vulnerability of a target enterprise network; retrieve, by a first local device node, the vulnerability data, which may include a CVSS score, determine, by a second local device node, a vulnerability score VT by determining a first subscore VT1, where the first subscore VT1 is based on a Maximized Confidentiality Impact (MCI) metric that is a modified privacy metric to capture the privacy impact of the exploitable vulnerability, where the first subscore VT1 is also based on a Maximized Highest Impact (MHI) metric to capture reputation damage based on an outsized single impact attribute, and on a Modified Confidentiality (MC) metric, Modified Integrity (MI) metric and Modified Availability (MA) as provided by CVSS; and remediate the exploitable vulnerability based on the vulnerability score VT.
    Type: Application
    Filed: December 21, 2023
    Publication date: July 11, 2024
    Inventors: Ankur Sand, Martin J. Grant, Luca Baggio, Danny Su, Danica Dometita, Nicholas Campbell, Ken K. Wilson, Dawn David-Swan, David R. Edwards, Syed ISLAM
  • Publication number: 20240187439
    Abstract: Systems and methods for proactively monitoring the inherent cyber-tech risk of software and hardware components are disclosed. In one embodiment, a method for proactively monitoring a cyber risk of a computer program may include: (1) receiving, by a product/version risk assessment computer program executed by an electronic device and from a user computer program executed by a use electronic device, an identification of a plurality of proposed components to include in the computer program; (2) retrieving, by the product/version risk assessment computer program, vulnerability information for each of the plurality of proposed components, wherein the vulnerability information identifies a security vulnerability for the proposed component; (3) generating, by a product/version risk scoring computer program, a risk score for the computer program under development based on the vulnerability information; and (4) returning, by the vulnerability assessment computer program, the risk score to the user computer program.
    Type: Application
    Filed: December 2, 2022
    Publication date: June 6, 2024
    Inventors: Ankur SAND, Ken WILSON, Marty GRANT, Herman WIJAYA, David R. EDWARDS