Patents by Inventor Jean-Francois LEGAULT

Jean-Francois LEGAULT has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 11947679
    Abstract: A method for managing vulnerability data may include: (1) ingesting, by a data ingestion engine, vulnerability data from a plurality of sources; (2) normalizing, by a data normalizer module, the vulnerability data into a plurality of data records; (3) generating, by a data processing module, a dynamic risk score for each data record; (4) storing, by a risk record register, a risk record for each data record, wherein the risk record may include the dynamic risk score, a priority level, an identifier for a software application, and a software dependency; (5) selecting, by a control policy selection engine, a control policy based on one of the dynamic risk scores; (6) implementing, by the risk record register, the selected control policy; (7) monitoring, by the risk record register, implementation of the control policy; and (8) updating, by the risk record register, the control policy selection engine based on the monitoring.
    Type: Grant
    Filed: April 19, 2023
    Date of Patent: April 2, 2024
    Assignee: JPMORGAN CHASE BANK, N.A.
    Inventors: Samiksha Patel, Jessica Colvin, Patrick M. Ward, Marty Grant, Jr., David Everett, Jean-Francois Legault
  • Publication number: 20240089262
    Abstract: A system that aggregates client data and cyber indicators to authenticate a client is provided. The system receives a request to access a financial account of the client, and retrieves a client profile. The client profile includes an aggregation of data into a plurality of data indicators. An optimal number of data indicators is determined based on an initial threshold inquiry regarding the request, with the optimal number of data indicators being determined based on a phone requesting the access to the financial account. A risk score is generated based on a weighting for each of the plurality of data indicators included within the optimal number, with the weighting representing a confidence in the accuracy of each of those data indicators. Access to predetermined actions by the client is granted based on the risk score.
    Type: Application
    Filed: November 15, 2023
    Publication date: March 14, 2024
    Applicant: JPMorgan Chase Bank, N.A.
    Inventors: Jean-Francois LEGAULT, D.J. KNOEDLER, Neil GORIN, Kevin LISTON
  • Patent number: 11855994
    Abstract: The invention relates to a method and system that aggregates client data and cyber indicators to authenticate a client. The system comprises: a computer server comprising at least one computer processor and coupled to the memory, programmed to: receive, via an electronic input, an authorization request from a requester for access to an account; identify a client identifier associated with the authorization request; using the client identifier, retrieve, from the memory, a client profile, wherein the client profile is based on an aggregation of client data, client device data, claims data and cyber data; generate a risk score based on the aggregated combination of the client data, client device data, claims data and cyber data to determine whether the requester is authenticated to access the account; and automatically apply an authentication determination to the authorization request.
    Type: Grant
    Filed: May 21, 2021
    Date of Patent: December 26, 2023
    Assignee: JPMORGAN CHASE BANK, N.A.
    Inventors: Jean-Francois Legault, D. J. Knoedler, Neil Gorin, Kevin Liston
  • Patent number: 11809458
    Abstract: The invention relates to database abstraction and data linkage. According to an embodiment of the present invention, the invention takes a variety of attributes (e.g., names, IP address, device identifiers, addresses, phone numbers, account numbers, etc.) and returns the online activity, demographic data, account data and/or other activity, events and data associated with that attribute. The tool may then iterate over each attribute and return a network of connections having multiple degrees of association. The innovative tool may be linked to known bad actor data, and perform automated searches on this data to proactively alert potentially fraudulent activity. The tool may also be developed to add attributes and apply machine learning to the associations to more intelligently describe the returned network. Further, the tool may be developed to describe larger networks having multiple degrees of connections.
    Type: Grant
    Filed: June 10, 2021
    Date of Patent: November 7, 2023
    Assignee: JPMORGAN CHASE BANK, N.A.
    Inventors: Robert Pascarella, Neil Gorin, D. J. Knoedler, Jean-Francois Legault
  • Publication number: 20230252164
    Abstract: A method for managing vulnerability data may include: (1) ingesting, by a data ingestion engine, vulnerability data from a plurality of sources; (2) normalizing, by a data normalizer module, the vulnerability data into a plurality of data records; (3) generating, by a data processing module, a dynamic risk score for each data record; (4) storing, by a risk record register, a risk record for each data record, wherein the risk record may include the dynamic risk score, a priority level, an identifier for a software application, and a software dependency; (5) selecting, by a control policy selection engine, a control policy based on one of the dynamic risk scores; (6) implementing, by the risk record register, the selected control policy; (7) monitoring, by the risk record register, implementation of the control policy; and (8) updating, by the risk record register, the control policy selection engine based on the monitoring.
    Type: Application
    Filed: April 19, 2023
    Publication date: August 10, 2023
    Inventors: Samiksha PATEL, Jessica COLVIN, Patrick M. WARD, Marty GRANT, JR., David EVERETT, Jean-Francois LEGAULT
  • Patent number: 11704414
    Abstract: A method for managing vulnerability data may include: (1) ingesting, by a data ingestion engine, vulnerability data from a plurality of sources; (2) normalizing, by a data normalizer module, the vulnerability data into a plurality of data records; (3) generating, by a data processing module, a dynamic risk score for each data record; (4) storing, by a risk record register, a risk record for each data record, wherein the risk record may include the dynamic risk score, a priority level, an identifier for a software application, and a software dependency; (5) selecting, by a control policy selection engine, a control policy based on one of the dynamic risk scores; (6) implementing, by the risk record register, the selected control policy; (7) monitoring, by the risk record register, implementation of the control policy; and (8) updating, by the risk record register, the control policy selection engine based on the monitoring.
    Type: Grant
    Filed: April 27, 2021
    Date of Patent: July 18, 2023
    Assignee: JPMORGAN CHASE BANK, N.A.
    Inventors: Samiksha Patel, Jessica Colvin, Patrick M. Ward, Martin J. Grant, Jr., David Everett, Jean-Francois Legault
  • Patent number: 11671439
    Abstract: The invention relates to digital cloud forensics. An embodiment of the present invention applies collection processes and tools to cloud infrastructure as a service to provide a more efficient and faithful representation of evidence. An embodiment of the present invention applies innovative concepts to retrospectively investigate ephemeral instances which may have long since terminated. This innovative process provides organizations a strategy to provide forensic investigations within either a public or private cloud environment.
    Type: Grant
    Filed: June 10, 2021
    Date of Patent: June 6, 2023
    Assignee: JPMORGAN CHASE BANK, N.A.
    Inventors: Michael P. Vega, James Regan, Matteo Michelini, Jean-Francois Legault
  • Patent number: 11494773
    Abstract: The invention relates to a method and system that combines payment data and cyber fraud indicators to identify potential fraud in payment requests from a client. The system comprises: a memory that stores and maintains a list of known fraud characteristics and cyber fraud indicators; and a computer processor, coupled to the memory, programmed to: receive, via an electronic input, a payment instruction from the client; identify one or more cyber fraud indicators associated with the payment instruction; apply payment decisioning to merge the one or more cyber fraud indicators to the payment instruction; generate a risk score based on the payment decisioning to determine whether the payment instruction should be executed; and automatically apply the payment decisioning to the payment instruction.
    Type: Grant
    Filed: September 22, 2017
    Date of Patent: November 8, 2022
    Assignee: JPMORGAN CHASE BANK, N.A.
    Inventors: Jean-Francois Legault, Josh Pope, Wayne A. Willoughby, D. J. Knoedler, Rahul Saxena, Anish Pyne, Rohan M. Amin
  • Publication number: 20220103581
    Abstract: Systems and methods for cybersecurity operations threat modeling are disclosed. In one embodiment, a method may include: (1) receiving threat actor data and threat actor group data; (2) processing the threat actor data and the threat actor group data; (3) for each threat actor group, generating a threat actor group profile; (4) collecting operational data from an organizational system; (5) generating a threat model by applying the threat actor group profile to the operational data; and (6) deploying at least one countermeasure to the organizational system in response to the threat model.
    Type: Application
    Filed: July 26, 2021
    Publication date: March 31, 2022
    Inventors: Daniel L. BERNHOLZ, Jean-Francois LEGAULT, Patrick M. WARD, Joshuah T. SOWERS, Samuel A. GUTHRIE, Brett WALLACE, Marcus MILLIGAN, Lindsey AXILROD, Kirsten WENZEL, Ken H. CHUNG, Chee Peng CHANG, Ross A. KNAPP, Emmanouil VRENTZOS, Daniel SU
  • Publication number: 20210352084
    Abstract: Systems and methods are provided for detecting malware. The method includes receiving a request for a web page; determining expected attributes of the web page; generating a modified web page by combining the web page with code for detecting malware; transmitting the modified web page to a client device; receiving data collected from the executed version of the modified web page; determining attributes of the executed version of the modified web page; comparing the expected attributes with the attributes of the executed version of the modified web page; and determining whether the malware is present on the client device based on the comparison.
    Type: Application
    Filed: July 21, 2021
    Publication date: November 11, 2021
    Applicant: JPMorgan Chase Bank, N.A.
    Inventors: Jean-Francois LEGAULT, Paul YACOVETTA
  • Publication number: 20210342450
    Abstract: A method for managing vulnerability data may include: (1) ingesting, by a data ingestion engine, vulnerability data from a plurality of sources; (2) normalizing, by a data normalizer module, the vulnerability data into a plurality of data records; (3) generating, by a data processing module, a dynamic risk score for each data record; (4) storing, by a risk record register, a risk record for each data record, wherein the risk record may include the dynamic risk score, a priority level, an identifier for a software application, and a software dependency; (5) selecting, by a control policy selection engine, a control policy based on one of the dynamic risk scores; (6) implementing, by the risk record register, the selected control policy; (7) monitoring, by the risk record register, implementation of the control policy; and (8) updating, by the risk record register, the control policy selection engine based on the monitoring.
    Type: Application
    Filed: April 27, 2021
    Publication date: November 4, 2021
    Inventors: Samiksha PATEL, Jessica COLVIN, Patrick M. WARD, Martin J. GRANT, JR., David EVERETT, Jean-Francois LEGAULT
  • Publication number: 20210306364
    Abstract: The invention relates to digital cloud forensics. An embodiment of the present invention applies collection processes and tools to cloud infrastructure as a service to provide a more efficient and faithful representation of evidence. An embodiment of the present invention applies innovative concepts to retrospectively investigate ephemeral instances which may have long since terminated. This innovative process provides organizations a strategy to provide forensic investigations within either a public or private cloud environment.
    Type: Application
    Filed: June 10, 2021
    Publication date: September 30, 2021
    Inventors: Michael P. Vega, James Regan, Matteo Michelini, Jean-Francois Legault
  • Publication number: 20210303600
    Abstract: The invention relates to database abstraction and data linkage. According to an embodiment of the present invention, the invention takes a variety of attributes (e.g., names, IP address, device identifiers, addresses, phone numbers, account numbers, etc.) and returns the online activity, demographic data, account data and/or other activity, events and data associated with that attribute. The tool may then iterate over each attribute and return a network of connections having multiple degrees of association. The innovative tool may be linked to known bad actor data, and perform automated searches on this data to proactively alert potentially fraudulent activity. The tool may also be developed to add attributes and apply machine learning to the associations to more intelligently describe the returned network. Further, the tool may be developed to describe larger networks having multiple degrees of connections.
    Type: Application
    Filed: June 10, 2021
    Publication date: September 30, 2021
    Inventors: Robert Pascarella, Neil GORIN, D.J. KNOEDLER, Jean-Francois LEGAULT
  • Publication number: 20210288968
    Abstract: The invention relates to a method and system that aggregates client data and cyber indicators to authenticate a client. The system comprises: a computer server comprising at least one computer processor and coupled to the memory, programmed to: receive, via an electronic input, an authorization request from a requester for access to an account; identify a client identifier associated with the authorization request; using the client identifier, retrieve, from the memory, a client profile, wherein the client profile is based on an aggregation of client data, client device data, claims data and cyber data; generate a risk score based on the aggregated combination of the client data, client device data, claims data and cyber data to determine whether the requester is authenticated to access the account; and automatically apply an authentication determination to the authorization request.
    Type: Application
    Filed: May 21, 2021
    Publication date: September 16, 2021
    Inventors: Jean-Francois Legault, D.J. Knoedler, Neil Gorin, Kevin Liston
  • Patent number: 11102237
    Abstract: Systems and methods are provided for detecting malware. The method includes receiving a request for a web page; determining expected attributes of the web page; generating a modified web page by combining the web page with code for detecting malware; transmitting the modified web page to a client device; receiving data collected from the executed version of the modified web page; determining attributes of the executed version of the modified web page; comparing the expected attributes with the attributes of the executed version of the modified web page; and determining whether the malware is present on the client device based on the comparison.
    Type: Grant
    Filed: May 1, 2019
    Date of Patent: August 24, 2021
    Assignee: JPMORGAN CHASE BANK, N.A.
    Inventors: Jean-Francois Legault, Paul Yacovetta
  • Patent number: 11036767
    Abstract: The invention relates to database abstraction and data linkage. According to an embodiment of the present invention, the invention takes a variety of attributes (e.g., names, IP address, device identifiers, addresses, phone numbers, account numbers, etc.) and returns the online activity, demographic data, account data and/or other activity, events and data associated with that attribute. The tool may then iterate over each attribute and return a network of connections having multiple degrees of association. The innovative tool may be linked to known bad actor data, and perform automated searches on this data to proactively alert potentially fraudulent activity. The tool may also be developed to add attributes and apply machine learning to the associations to more intelligently describe the returned network. Further, the tool may be developed to describe larger networks having multiple degrees of connections.
    Type: Grant
    Filed: June 26, 2018
    Date of Patent: June 15, 2021
    Assignee: JPMorgan Chase Bank, N.A.
    Inventors: Robert Pascarella, Neil Gorin, D. J. Knoedler, Jean-Francois Legault
  • Patent number: 11038908
    Abstract: The invention relates to digital cloud forensics. An embodiment of the present invention applies collection processes and tools to cloud infrastructure as a service to provide a more efficient and faithful representation of evidence. An embodiment of the present invention applies innovative concepts to retrospectively investigate ephemeral instances which may have long since terminated. This innovative process provides organizations a strategy to provide forensic investigations within either a public or private cloud environment.
    Type: Grant
    Filed: August 3, 2018
    Date of Patent: June 15, 2021
    Assignee: JPMorgan Chase Bank, N.A.
    Inventors: Michael P. Vega, James Regan, Matteo Michelini, Jean-Francois Legault
  • Patent number: 11019063
    Abstract: The invention relates to a method and system that aggregates client data and cyber indicators to authenticate a client. The system comprises: a computer server comprising at least one computer processor and coupled to the memory, programmed to: receive, via an electronic input, an authorization request from a requester for access to an account; identify a client identifier associated with the authorization request; using the client identifier, retrieve, from the memory, a client profile, wherein the client profile is based on an aggregation of client data, client device data, claims data and cyber data; generate a risk score based on the aggregated combination of the client data, client device data, claims data and cyber data to determine whether the requester is authenticated to access the account; and automatically apply an authentication determination to the authorization request.
    Type: Grant
    Filed: August 23, 2017
    Date of Patent: May 25, 2021
    Assignee: JPMorgan Chase Bank, N.A.
    Inventors: Jean-Francois Legault, D. J. Knoedler, Neil Gorin, Kevin Liston
  • Patent number: 10498753
    Abstract: The invention relates to a method and system that analyzes domain names for potential fraud. The system comprises: a memory that stores and maintains a list of known domain names associated with an entity; and a computer processor, coupled to the memory, programmed to: receive, via an electronic input, one or more registered domain names from a registration source; access the list of known domain names; apply logic rules to determine visually similar domain names by comparing the one or more registered domain names to the list of known domain names; identify a relevant recipient based on the visually similar domain name; and generate and transmit, via a communication interface, a message to the recipient, the message comprising the visually similar domain name and associated information relevant to the domain name registration.
    Type: Grant
    Filed: December 8, 2016
    Date of Patent: December 3, 2019
    Assignee: JPMorgan Chase Bank, N.A.
    Inventors: Josh Pope, D. J. Knoedler, Jean-Francois Legault, Robert Pascarella
  • Publication number: 20190364058
    Abstract: Systems and methods are provided for detecting malware. The method includes receiving a request for a web page; determining expected attributes of the web page; generating a modified web page by combining the web page with code for detecting malware; transmitting the modified web page to a client device; receiving data collected from the executed version of the modified web page; determining attributes of the executed version of the modified web page; comparing the expected attributes with the attributes of the executed version of the modified web page; and determining whether the malware is present on the client device based on the comparison.
    Type: Application
    Filed: May 1, 2019
    Publication date: November 28, 2019
    Applicant: JPMorgan Chase Bank, N.A.
    Inventors: Jean-Francois LEGAULT, Paul YACOVETTA