Patents by Inventor Zakarya A. Abu Al-Saud
Zakarya A. Abu Al-Saud has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).
-
Patent number: 11550284Abstract: Systems and methods include a computer-implemented method for displaying future trends of evaporation pond wastewater quantity and quality. A distributed float network is managed using a wastewater evaporation pond management (WEPM) system with an embedded supervisory control and data acquisition (SCADA) system. The WEPM collects data, including sensory information, from evaporation ponds. A configuration data upload for remote terminal units (RTUs) managed by the WEPM is automated using the WEPM system and the embedded SCADA system. Evaporation pond wastewater quantity and quality and adherence to environmental standards and regulations are monitored using the WEPM system. Environmental compliance data is collected from the distributed float network. The environmental compliance data collected from the distributed float network managed by the WEPM system is analyzed. A dashboard is provided displaying future trends of the evaporation ponds wastewater quantity and quality.Type: GrantFiled: January 14, 2021Date of Patent: January 10, 2023Assignee: Saudi Arabian Oil CompanyInventors: Muhanned Abu Ghdaib, Fouad Alkhabbaz, Soloman M. Almadi, Hassan S. Al-Yousef, Zakarya A. Abu Al Saud
-
Patent number: 11288378Abstract: Systems and methods include a method for protecting data for a remote terminal unit (RTU) and providing audit trail information for forensics procedures. Monitoring is performed for conditions detected at an RTU that warrant a data protection operation at the RTU. The monitoring is performed by an instrumented security function (ISF) chip communicating with the RTU in a supervisory control and data acquisition system (SCADA) network. Upon determining that conditions are warranted, the data protection operation is initiated by the ISF chip. The system also provides audit trail information for forensics procedures upon detecting a threat in the vicinity of the RTU. The system invokes the forensics procedure by initiating the localization services (HBL) embedded as part of the RTU's disk apparatus triggered by a change to the disk apparatus such as a power disconnect or by receiving a security signal from the NAC or local occupancy sensors.Type: GrantFiled: February 20, 2019Date of Patent: March 29, 2022Assignee: Saudi Arabian Oil CompanyInventors: Hassan S. Al-Yousef, Fouad M. Alkhabbaz, Zakarya A. Abu Al Saud, Soloman M. Almadi
-
Publication number: 20210132562Abstract: Systems and methods include a computer-implemented method for displaying future trends of evaporation pond wastewater quantity and quality. A distributed float network is managed using a wastewater evaporation pond management (WEPM) system with an embedded supervisory control and data acquisition (SCADA) system. The WEPM collects data, including sensory information, from evaporation ponds. A configuration data upload for remote terminal units (RTUs) managed by the WEPM is automated using the WEPM system and the embedded SCADA system. Evaporation pond wastewater quantity and quality and adherence to environmental standards and regulations are monitored using the WEPM system. Environmental compliance data is collected from the distributed float network. The environmental compliance data collected from the distributed float network managed by the WEPM system is analyzed. A dashboard is provided displaying future trends of the evaporation ponds wastewater quantity and quality.Type: ApplicationFiled: January 14, 2021Publication date: May 6, 2021Inventors: Muhanned Abu Ghdaib, Fouad Alkhabbaz, Soloman M. Almadi, Hassan S. Al-Yousef, Zakarya A. Abu Al Saud
-
Patent number: 10931790Abstract: Receiving, by a first communication device, an internet protocol (IP) packet via a first synchronous multi-application application programming interface (API) running on a first computer, dividing, by a splitting unit in the first communication device, the IP packet into a command portion and a data portion, encoding, by a data encoding unit in the first communication device, the data portion into a text delimited non-IP format, transmitting, by a transmitting unit in the first communication device, the encoded data portion and the command portion, receiving, by a second communication device, the encoded data portion and the command portion, decoding, by a data decoding unit in the second communication device, the encoded data portion into IP format, combining, by a constructor unit in the second communication device, the decoded data portion and the command portion to regenerate the IP packet, and receiving, by a second synchronous multi-application API running on a second computer, the regenerated IP packetType: GrantFiled: July 3, 2019Date of Patent: February 23, 2021Assignee: Saudi Arabian Oil CompanyInventors: Fouad M. Alkhabbaz, Maatoug Al-Maatoug, Zakarya A. Abu Al Saud
-
Patent number: 10897398Abstract: Systems and methods include a method for configuring, without intervention by a Control System Engineer, a remote terminal unit (RTU) in a “raw” condition from a centralized system in a supervisory control and data acquisition system (SCADA) network augmented by authentication controls from existing Network Access Control or site occupancy sensors. An RTU configuration request is received to configure an RTU in a remote location and pre-configured with an embedded remote configuration assignment capability. A low-level communication channel with the RTU is established through an initial data communication relay apparatus for using a low-level communication protocol. A SCADA Communication Protocol address for the RTU to support a high-level communication channel is assigned. The RTU is connected to the SCADA network and configured for use in the SCADA network. Configuration is done using high-level communication after authenticating the identity of the RTU and the integrity of the configuration request.Type: GrantFiled: February 4, 2019Date of Patent: January 19, 2021Assignee: Saudi Arabian Oil CompanyInventors: Hassan S. Al-Yousef, Fouad M. Alkhabbaz, Zakarya A. Abu Al Saud, Soloman M. Almadi
-
Publication number: 20200265146Abstract: Systems and methods include a method for protecting data for a remote terminal unit (RTU) and providing audit trail information for forensics procedures. Monitoring is performed for conditions detected at an RTU that warrant a data protection operation at the RTU. The monitoring is performed by an instrumented security function (ISF) chip communicating with the RTU in a supervisory control and data acquisition system (SCADA) network. Upon determining that conditions are warranted, the data protection operation is initiated by the ISF chip. The system also provides audit trail information for forensics procedures upon detecting a threat in the vicinity of the RTU. The system invokes the forensics procedure by initiating the localization services (HBL) embedded as part of the RTU's disk apparatus triggered by a change to the disk apparatus such as a power disconnect or by receiving a security signal from the NAC or local occupancy sensors.Type: ApplicationFiled: February 20, 2019Publication date: August 20, 2020Applicant: Saudi Arabian Oil CompanyInventors: Hassan S. Al-Yousef, Fouad M. Alkhabbaz, Zakarya A. Abu Al Saud, Soloman M. Almadi
-
Publication number: 20200252288Abstract: Systems and methods include a method for configuring, without intervention by a Control System Engineer, a remote terminal unit (RTU) in a “raw” condition from a centralized system in a supervisory control and data acquisition system (SCADA) network augmented by authentication controls from existing Network Access Control or site occupancy sensors. An RTU configuration request is received to configure an RTU in a remote location and pre-configured with an embedded remote configuration assignment capability. A low-level communication channel with the RTU is established through an initial data communication relay apparatus for using a low-level communication protocol. A SCADA Communication Protocol address for the RTU to support a high-level communication channel is assigned. The RTU is connected to the SCADA network and configured for use in the SCADA network. Configuration is done using high-level communication after authenticating the identity of the RTU and the integrity of the configuration request.Type: ApplicationFiled: February 4, 2019Publication date: August 6, 2020Applicant: Saudi Arabian Oil CompanyInventors: Hassan S. Al-Yousef, Fouad M. Alkhabbaz, Zakarya A. Abu Al Saud, Soloman M. Almadi
-
Patent number: 10559146Abstract: The present disclosure describes computer-implemented methods, computer program products, and computer systems, for role-based plants unattended premises occupancy monitoring, mapping, and events logging. One computer implemented method includes unlocking a mechanical door controllable by a computing device upon successfully validating login information input by an occupant, performing an occupancy footprint mapping (OFM) by periodically calculating the occupant's location using a triangulation process, determining an identity of the occupant based a received RFID signal, identifying a job role for the occupant based on the occupant's identity, identifying a normal OFM associated with the occupant's job role, calculating a deviation between the OFM and the normal OFM, sending a security event including the OFM to a Syslog server and an object linking, and sending an embedding for process control alarm to a human machine interface if the deviation exceeds a predetermined deviation tolerance threshold.Type: GrantFiled: December 12, 2017Date of Patent: February 11, 2020Assignee: Saudi Arabian Oil CompanyInventors: Fouad M. Alkhabbaz, Hussain Al-Salem, Zakarya A. Abu Al Saud, Nabil J. Ouchn
-
Publication number: 20190356759Abstract: Receiving, by a first communication device, an internet protocol (IP) packet via a first synchronous multi-application application programming interface (API) running on a first computer, dividing, by a splitting unit in the first communication device, the IP packet into a command portion and a data portion, encoding, by a data encoding unit in the first communication device, the data portion into a text delimited non-IP format, transmitting, by a transmitting unit in the first communication device, the encoded data portion and the command portion, receiving, by a second communication device, the encoded data portion and the command portion, decoding, by a data decoding unit in the second communication device, the encoded data portion into IP format, combining, by a constructor unit in the second communication device, the decoded data portion and the command portion to regenerate the IP packet, and receiving, by a second synchronous multi-application API running on a second computer, the regenerated IP packetType: ApplicationFiled: July 3, 2019Publication date: November 21, 2019Inventors: Fouad M. Alkhabbaz, Maatoug Al-Maatoug, Zakarya A. Abu Al Saud
-
Patent number: 10389685Abstract: Systems and methods for securely transmitting data between terminals include receiving, by a first communication device, an internet protocol (IP) packet via a first application programming interface (API) running on a first computer, dividing, by a splitting unit in the first communication device, the IP packet into a command portion and a data portion, encoding, by a data encoding unit in the first communication device, the data portion into a text delimited non-IP format, transmitting, by a transmitting unit in the first communication device, the encoded data portion and the command portion, receiving, by a second communication device, the encoded data portion and the command portion, decoding, by a data decoding unit in the second communication device, the encoded data portion into IP format, combining, by a constructor unit in the second communication device, the decoded data portion and the command portion to regenerate the IP packet, and receiving, by a second API running on a second computer, the regeType: GrantFiled: August 17, 2017Date of Patent: August 20, 2019Assignee: Saudi Arabian Oil CompanyInventors: Fouad M. Alkhabbaz, Hussain Al-Zahir, Maatoug Al-Maatoug, Zakarya A. Abu Al Saud
-
Publication number: 20190180539Abstract: The present disclosure describes computer-implemented methods, computer program products, and computer systems, for role-based plants unattended premises occupancy monitoring, mapping, and events logging. One computer implemented method includes unlocking a mechanical door controllable by a computing device upon successfully validating login information input by an occupant, performing an occupancy footprint mapping (OFM) by periodically calculating the occupant's location using a triangulation process, determining an identity of the occupant based a received RFID signal, identifying a job role for the occupant based on the occupant's identity, identifying a normal OFM associated with the occupant's job role, calculating a deviation between the OFM and the normal OFM, sending a security event including the OFM to a Syslog server and an object linking, and sending an embedding for process control alarm to a human machine interface if the deviation exceeds a predetermined deviation tolerance threshold.Type: ApplicationFiled: December 12, 2017Publication date: June 13, 2019Inventors: Fouad M. Alkhabbaz, Hussain Al-Salem, Zakarya A. Abu Al Saud, Nabil J. Ouchn
-
Publication number: 20190058693Abstract: Systems and methods for securely transmitting data between terminals include receiving, by a first communication device, an internet protocol (IP) packet via a first application programming interface (API) running on a first computer, dividing, by a splitting unit in the first communication device, the IP packet into a command portion and a data portion, encoding, by a data encoding unit in the first communication device, the data portion into a text delimited non-IP format, transmitting, by a transmitting unit in the first communication device, the encoded data portion and the command portion, receiving, by a second communication device, the encoded data portion and the command portion, decoding, by a data decoding unit in the second communication device, the encoded data portion into IP format, combining, by a constructor unit in the second communication device, the decoded data portion and the command portion to regenerate the IP packet, and receiving, by a second API running on a second computer, the regeType: ApplicationFiled: August 17, 2017Publication date: February 21, 2019Inventors: Fouad M. Alkhabbaz, Hussain Al-Zahir, Maatoug Al-Maatoug, Zakarya A. Abu Al Saud
-
Patent number: 10134207Abstract: A first message from a remote terminal unit (RTU) is received, where the first message indicates that a motion has been detected. In response to receiving the first message, a timer is started at a supervisory control and data acquisition (SCADA) server. Whether a personal identification number (PIN) verification and a radio-frequency identification (RFID) verification have succeeded is determined before the timer expires. In response to determining that at least one of the PIN verification or the RFID verification fails, a communication port connecting the RTU with the SCADA server is disabled.Type: GrantFiled: April 20, 2017Date of Patent: November 20, 2018Inventors: Hassan S. Al-Yousef, Fouad M. Alkhabbaz, Zakarya A. Abu Al Saud, Soloman M. Almadi
-
Patent number: 10038670Abstract: A system for centrally controlling access by computers in a corporate network to a plant network that runs plant applications. The system includes an access control computer in communication with the corporate network and includes a memory, a processor coupled to the memory and a multi-user application stored in the memory and executable by the processor. The multi-user application communicates with a plurality of computers in the corporate network concurrently and communicates with at least one plant application running in the plant network to retrieve data from and pass data to the plant application on behalf of the plurality of computers in the corporate network concurrently. Since all communication from the plurality of computers is tunneled through the access control computer, the likelihood of any virus or worm spreading into the plant network is minimized.Type: GrantFiled: September 29, 2011Date of Patent: July 31, 2018Assignee: Saudi Arabian Oil CompanyInventors: Fouad M. Al-Khabbaz, Zakarya A. Abu Al-Saud, Saad A. Al-Harbi, Osama R. Al-Khunaizi, Hussain A. Al-Salem
-
Publication number: 20130326610Abstract: A system for centrally controlling access by computers in a corporate network to a plant network that runs plant applications. The system includes an access control computer in communication with the corporate network and includes a memory, a processor coupled to the memory and a multi-user application stored in the memory and executable by the processor. The multi-user application communicates with a plurality of computers in the corporate network concurrently and communicates with at least one plant application running in the plant network to retrieve data from and pass data to the plant application on behalf of the plurality of computers in the corporate network concurrently. Since all communication from the plurality of computers is tunneled through the access control computer, the likelihood of any virus or worm spreading into the plant network is minimized.Type: ApplicationFiled: September 29, 2011Publication date: December 5, 2013Applicant: SAUDI ARABIAN OIL COMPANYInventors: Fouad M. Al-Khabbaz, Zakarya A. Abu Al-Saud, Saad A. Al-Harbi, Osama R. Al-Khunaizi, Hussain A. Al-Salem