Patents by Inventor Carl Dashfield
Carl Dashfield has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).
-
Patent number: 12192360Abstract: A method for facilitating identity and access management in a cloud environment based on a zero-trust configuration is provided. The method includes retrieving, via a job, a token from a corresponding identity provider, the job including a unit of work and a unit of execution that corresponds to a change; retrieving, via the job, a change authorization from a change management system, the change authorization including a signed change authorization; retrieving, via the job, a change artifact from an artifact repository, the change artifact including a signed change artifact; requesting, via the job, a change orchestrator to execute the change, the request including the token, the change authorization, and the change artifact; instructing, via the change orchestrator, a service broker to execute the change; and executing, via the service broker, the change within the cloud environment.Type: GrantFiled: June 28, 2022Date of Patent: January 7, 2025Assignee: JPMORGAN CHASE BANK, N.A.Inventors: Kabron Austin Kline, Godfrey Paul, Ily Zislin, Ian Mark Miller, Carl Dashfield
-
Patent number: 12184634Abstract: A method for validating an access request with respect to an application is provided. The method includes: receiving an access request from a user with respect to an application; retrieving, from a memory, group identification information that relates to at least one group to which the user belongs; retrieving, from the memory, scope information that indicates qualifications and/or characteristics of a relationship between the user and the at least one group; and generating a token that notifies the application of the group identification information and the scope information, and is usable by the application for validating the access request. The method may be implemented in an Active Directory Federation Services (AD FS) environment.Type: GrantFiled: August 4, 2021Date of Patent: December 31, 2024Assignee: JPMORGAN CHASE BANK, N.A.Inventors: Carl Dashfield, Michael D Ackerman, Michael George Norman, Kabron Austin Kline, Isaac Leonardo Blum, Afzaal Syed, Douglas J Symalla
-
Publication number: 20230015246Abstract: A method for facilitating identity and access management in a cloud environment based on a zero-trust configuration is provided. The method includes retrieving, via a job, a token from a corresponding identity provider, the job including a unit of work and a unit of execution that corresponds to a change; retrieving, via the job, a change authorization from a change management system, the change authorization including a signed change authorization; retrieving, via the job, a change artifact from an artifact repository, the change artifact including a signed change artifact; requesting, via the job, a change orchestrator to execute the change, the request including the token, the change authorization, and the change artifact; instructing, via the change orchestrator, a service broker to execute the change; and executing, via the service broker, the change within the cloud environment.Type: ApplicationFiled: June 28, 2022Publication date: January 19, 2023Applicant: JPMorgan Chase Bank, N.A.Inventors: Kabron Austin KLINE, Godfrey PAUL, Ily ZISLIN, Ian Mark MILLER, Carl DASHFIELD
-
Patent number: 11516207Abstract: A method for facilitating a provision of a certificate that securely verifies an identification of an application is provided. The method includes: validating a bootstrap identity that identifies the application at a time of invocation; generating a first token that is signed with a first private key and transmitting the signed first token to the application; receiving, from an external server, a request for a public key to be used for verifying the first private key; and transmitting the requested public key to the external server in order to prompt the external server to provide the certificate to the application. When prompted to provide the certificate to the application, the external server generates a second token that is signed with a second private key and transmits the certificate in conjunction with the signed second token to the application. The private keys are never shared with the application.Type: GrantFiled: June 2, 2020Date of Patent: November 29, 2022Assignee: JPMORGAN CHASE BANK, N.A.Inventors: Adrian Asher, Kabron Austin Kline, Tamila Fathi, Jared Dean Mitten, Carl Dashfield
-
Patent number: 11514017Abstract: Systems and methods for provisioning a new secondary IdentityIQ instance to an existing IdentityIQ instance are disclosed.Type: GrantFiled: August 3, 2020Date of Patent: November 29, 2022Assignee: JPMORGAN CHASE BANK, N.A.Inventors: Isaac Leonardo Blum, Brian Dillon, Corey Lansford, Carl Dashfield, Richard Seidenstein
-
Publication number: 20220046004Abstract: A method for validating an access request with respect to an application is provided. The method includes: receiving an access request from a user with respect to an application; retrieving, from a memory, group identification information that relates to at least one group to which the user belongs; retrieving, from the memory, scope information that indicates qualifications and/or characteristics of a relationship between the user and the at least one group; and generating a token that notifies the application of the group identification information and the scope information, and is usable by the application for validating the access request. The method may be implemented in an Active Directory Federation Services (AD FS) environment.Type: ApplicationFiled: August 4, 2021Publication date: February 10, 2022Applicant: JPMorgan Chase Bank, N.A.Inventors: Carl DASHFIELD, Michael D ACKERMAN, Michael George NORMAN, Kabron Austin KLINE, Isaac Leonardo BLUM, Afzaal SYED, Douglas J SYMALLA
-
Publication number: 20210377257Abstract: A method for facilitating a provision of a certificate that securely verifies an identification of an application is provided. The method includes: validating a bootstrap identity that identifies the application at a time of invocation; generating a first token that is signed with a first private key and transmitting the signed first token to the application; receiving, from an external server, a request for a public key to be used for verifying the first private key; and transmitting the requested public key to the external server in order to prompt the external server to provide the certificate to the application. When prompted to provide the certificate to the application, the external server generates a second token that is signed with a second private key and transmits the certificate in conjunction with the signed second token to the application. The private keys are never shared with the application.Type: ApplicationFiled: June 2, 2020Publication date: December 2, 2021Applicant: JPMorgan Chase Bank, N.A.Inventors: Adrian ASHER, Kabron Austin KLINE, Tamila FATHI, Jared Dean MITTEN, Carl DASHFIELD
-
Publication number: 20210034599Abstract: Systems and methods for provisioning a new secondary IdentityIQ instance to an existing IdentityIQ instance are disclosed.Type: ApplicationFiled: August 3, 2020Publication date: February 4, 2021Inventors: Isaac Leonardo Blum, Brian Dillon, Corey Lansford, Carl Dashfield, Richard Seidenstein
-
Patent number: 8135847Abstract: A preferred embodiment of the subject invention comprises a system for implementing computer network services and applications, comprising a front-end component comprising one or more applications; a back-end component comprising one or more services; and an abstraction layer component operable to communicate with the front-end and back-end components. In another preferred embodiment, the subject invention comprises a system for linking applications and services, comprising: a vendor connectivity component; a business integration component; a security component; a utility component; and a back end connectivity component.Type: GrantFiled: June 13, 2011Date of Patent: March 13, 2012Assignee: Bank of America CorporationInventors: Guy Pujol, Albert Bauer, Rodney Bass, Carl Dashfield, Shashidhar Gurrala, Gafar Lawal, Wissam D. Mazboudi, Suresh Nair
-
Publication number: 20110252148Abstract: A preferred embodiment of the subject invention comprises a system for implementing computer network services and applications, comprising a front-end component comprising one or more applications; a back-end component comprising one or more services; and an abstraction layer component operable to communicate with the front-end and back-end components. In another preferred embodiment, the subject invention comprises a system for linking applications and services, comprising: a vendor connectivity component; a business integration component; a security component; a utility component; and a back end connectivity component.Type: ApplicationFiled: June 13, 2011Publication date: October 13, 2011Applicant: Bank of America CorporationInventors: Guy Pujol, Albert Bauer, Rodney Bass, Carl Dashfield, Shashidhar Gurrala, Gafar Lawal, Wissam D. Mazboudi, Suresh Nair
-
Patent number: 7984162Abstract: A preferred embodiment of the subject invention comprises a system for implementing computer network services and applications, comprising a front-end component comprising one or more applications; a back-end component comprising one or more services; and an abstraction layer component operable to communicate with the front-end and back-end components. In another preferred embodiment, the subject invention comprises a system for linking applications and services, comprising: a vendor connectivity component; a business integration component; a security component; a utility component; and a back end connectivity component.Type: GrantFiled: July 14, 2009Date of Patent: July 19, 2011Assignee: Bank of America CorporationInventors: Guy Pujol, Albert Bauer, Rodney Bass, Carl Dashfield, Shashidhar Gurrala, Gafar Lawal, Wissam D. Mazboudi, Suresh Nair
-
Publication number: 20100030899Abstract: A preferred embodiment of the subject invention comprises a system for implementing computer network services and applications, comprising a front-end component comprising one or more applications; a back-end component comprising one or more services; and an abstraction layer component operable to communicate with the front-end and back-end components. In another preferred embodiment, the subject invention comprises a system for linking applications and services, comprising: a vendor connectivity component; a business integration component; a security component; a utility component; and a back end connectivity component.Type: ApplicationFiled: July 14, 2009Publication date: February 4, 2010Applicant: Merrill Lynch & Company, Inc.Inventors: Guy Pujol, Albert Bauer, Rodney Bass, Carl Dashfield, Shashidhar Gurrala, Gafar Lawal, Wissam D. Mazboudi, Suresh Nair
-
Patent number: 7574511Abstract: A preferred embodiment of the subject invention comprises a system for implementing computer network services and applications, comprising a front-end component comprising one or more applications; a back-end component comprising one or more services; and an abstraction layer component operable to communicate with the front-end and back-end components. In another preferred embodiment, the subject invention comprises a system for linking applications and services, comprising: a vendor connectivity component; a business integration component; a security component; a utility component; and a back end connectivity component.Type: GrantFiled: March 12, 2004Date of Patent: August 11, 2009Assignee: Merrill Lynch & Company, Inc.Inventors: Guy Pujol, Albert Bauer, Rodney Bass, Carl Dashfield, Shashidhar Gurrala, Gafar Lawal, Wissam D. Mazboudi, Suresh Nair
-
Publication number: 20050204048Abstract: A preferred embodiment of the subject invention comprises a system for implementing computer network services and applications, comprising a front-end component comprising one or more applications; a back-end component comprising one or more services; and an abstraction layer component operable to communicate with the front-end and back-end components. In another preferred embodiment, the subject invention comprises a system for linking applications and services, comprising: a vendor connectivity component; a business integration component; a security component; a utility component; and a back end connectivity component.Type: ApplicationFiled: March 12, 2004Publication date: September 15, 2005Inventors: Guy Pujol, Albert Bauer, Rondney Bass, Carl Dashfield, Shashidhar Gurrala, Gafar Lawal, Wissam Mazboudi, Suresh Nair