Patents by Inventor Mark O. Scott

Mark O. Scott has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 9489534
    Abstract: A multi-level security system includes a storage medium partitionable into a plurality of partitions, a file system coupleable to the plurality of partitions, and a plurality of enclaves. Each enclave is assigned a security classification level. Each enclave resides in a different storage partition of the storage medium. Data stored on the storage medium is cryptographically separated at rest on a per-enclave basis. Cryptographic separation occurs at the disk block level, allowing individual blocks to be read and decrypted. The system also includes a reference monitor that enforces a system security policy that governs access to information between the enclaves. The reference monitor allows an enclave having a first classification level to securely read-down to an enclave having a second classification level lower than the first classification level and to write to another enclave having the first classification level.
    Type: Grant
    Filed: October 23, 2014
    Date of Patent: November 8, 2016
    Assignee: Northrop Grumman Systems Corporation
    Inventors: Brant D. Hashii, Mark O. Scott, Daniel R. Silverman, Lee Wixtrom, Jonathan Tester, Steve A. Brown
  • Publication number: 20160117519
    Abstract: A multi-level security system includes a storage medium partitionable into a plurality of partitions, a file system coupleable to the plurality of partitions, and a plurality of enclaves. Each enclave is assigned a security classification level. Each enclave resides in a different storage partition of the storage medium. Data stored on the storage medium is cryptographically separated at rest on a per-enclave basis. Cryptographic separation occurs at the disk block level, allowing individual blocks to be read and decrypted. The system also includes a reference monitor that enforces a system security policy that governs access to information between the enclaves. The reference monitor allows an enclave having a first classification level to securely read-down to an enclave having a second classification level lower than the first classification level and to write to another enclave having the first classification level.
    Type: Application
    Filed: October 23, 2014
    Publication date: April 28, 2016
    Inventors: Brant D. Hashii, Mark O. Scott, Daniel R. Silverman, Lee Wixtrom, Jonathan Tester, Steve A. Brown