Patent Issued for Data security across data residency restriction boundaries (USPTO 11552955): Kyndryl Inc. - Insurance News | InsuranceNewsNet

InsuranceNewsNet — Your Industry. One Source.™

Sign in
  • Subscribe
  • About
  • Advertise
  • Contact
Home Now reading Newswires
Topics
    • Advisor News
    • Annuity Index
    • Annuity News
    • Companies
    • Earnings
    • Fiduciary
    • From the Field: Expert Insights
    • Health/Employee Benefits
    • Insurance & Financial Fraud
    • INN Magazine
    • Insiders Only
    • Life Insurance News
    • Newswires
    • Property and Casualty
    • Regulation News
    • Sponsored Articles
    • Washington Wire
    • Videos
    • ———
    • About
    • Meet our Editorial Staff
    • Advertise
    • Contact
    • Newsletters
  • Exclusives
  • NewsWires
  • Magazine
  • Newsletters
Sign in or register to be an INNsider.
  • AdvisorNews
  • Annuity News
  • Companies
  • Earnings
  • Fiduciary
  • Health/Employee Benefits
  • Insurance & Financial Fraud
  • INN Exclusives
  • INN Magazine
  • Insurtech
  • Life Insurance News
  • Newswires
  • Property and Casualty
  • Regulation News
  • Sponsored Articles
  • Video
  • Washington Wire
  • Life Insurance
  • Annuities
  • Advisor
  • Health/Benefits
  • Property & Casualty
  • Insurtech
  • About
  • Advertise
  • Contact
  • Editorial Staff

Get Social

  • Facebook
  • X
  • LinkedIn
Newswires
Newswires RSS Get our newsletter
Order Prints
January 26, 2023 Newswires
Share
Share
Post
Email

Patent Issued for Data security across data residency restriction boundaries (USPTO 11552955): Kyndryl Inc.

Insurance Daily News

2023 JAN 26 (NewsRx) -- By a News Reporter-Staff News Editor at Insurance Daily News -- A patent by the inventors Cheng, Karen (North York, CA), Lam, Thanh (Fontana, CA, US), Riley, Daniel S. (Wake Forest, NC, US), Rudden, Mary E. (Denver, CO, US), Trim, Craig M. (Ventura, CA, US), filed on March 24, 2021, was published online on January 10, 2023, according to news reporting originating from Alexandria, Virginia, by NewsRx correspondents.

Patent number 11552955 is assigned to Kyndryl Inc. (New York, New York, United States).

The following quote was obtained by the news editors from the background information supplied by the inventors: “Data is easily shared from one locale to another in the global information landscape. There are an increasing number of legal ramifications that make sharing data across geographic, jurisdictional, political, and other types boundaries complex. The General Data Protection Regulation (GDPR) is legislation that addresses the export of personal data outside of the European Union (EU). The GDPR aims primarily to give control of personal data back to citizens and residents of the EU. Another example legislation is The Health Insurance Portability and Accountability Act (HIPPA), which requires the establishment of national standards for electronic health care transactions and national identifiers for providers, health insurance plans, and employers. There are various other legislative and geo-political restrictions on handling of data that demand adherence because of the monetary and other penalties incurred for violations.

“One challenging aspect to identifying and protecting sensitive data, such as personally identifiable information (PII), is how to deal with “unstructured” content, including documents or files on file shares, personal computing devices, and content management systems. These files, which may contain sensitive data subject to data residency restrictions, can be generated within and/or outside an organization, using many applications, can be converted to multiple file formats (commonly to PDF), and can seemingly have unlimited form and content. While the data or portions thereof may be subject to data residency restrictions such that their movement across a boundary is restricted, in many cases it is acceptable that the insights from data, when removed from the PII and other sensitive information, may be sent across such boundaries, even though the data itself may not.”

In addition to the background information obtained for this patent, NewsRx journalists also obtained the inventors’ summary information for this patent: “Shortcomings of the prior art are overcome and additional advantages are provided through the provision of a computer-implemented method. The method obtains a dataset on which a desired analysis is to be performed. At least some results of the desired analysis are to be transferred from one location to another location. The dataset is subject to data residency restrictions that restrict transfer of the dataset across a boundary to the another location. The method also includes profiling the dataset to identify a profile level for the dataset. The method additionally includes automatically generating a container image based on the identified profile level for the dataset and the data residency restrictions that restrict the transfer of the dataset across the boundary. The container image is configured for instantiation as a container on a container host and execution on the container host to provide a virtual environment having one or more software applications executing therein to process the dataset into a reformatted dataset that is not restricted by the data residency restrictions for transfer across the boundary to the another location. The method further digitally stores the container image to a container registry.

“Further, a computer system is provided that includes a memory and a processor in communication with the memory, wherein the computer system is configured to perform a method. The method obtains a dataset on which a desired analysis is to be performed. At least some results of the desired analysis are to be transferred from one location to another location. The dataset is subject to data residency restrictions that restrict transfer of the dataset across a boundary to the another location. The method also includes profiling the dataset to identify a profile level for the dataset. The method additionally includes automatically generating a container image based on the identified profile level for the dataset and the data residency restrictions that restrict the transfer of the dataset across the boundary. The container image is configured for instantiation as a container on a container host and execution on the container host to provide a virtual environment having one or more software applications executing therein to process the dataset into a reformatted dataset that is not restricted by the data residency restrictions for transfer across the boundary to the another location. The method further digitally stores the container image to a container registry.

“Yet further, a computer program product that includes a computer readable storage medium readable by a processing circuit and storing instructions for execution by the processing circuit is provided for performing a method. The method obtains a dataset on which a desired analysis is to be performed. At least some results of the desired analysis are to be transferred from one location to another location. The dataset is subject to data residency restrictions that restrict transfer of the dataset across a boundary to the another location. The method also includes profiling the dataset to identify a profile level for the dataset. The method additionally includes automatically generating a container image based on the identified profile level for the dataset and the data residency restrictions that restrict the transfer of the dataset across the boundary. The container image is configured for instantiation as a container on a container host and execution on the container host to provide a virtual environment having one or more software applications executing therein to process the dataset into a reformatted dataset that is not restricted by the data residency restrictions for transfer across the boundary to the another location. The method further digitally stores the container image to a container registry.

“In some embodiments, the method also includes making available the container image for selection and instantiation on the container host, which has an advantage that container may be reused where appropriate, saving additional processing and configuration. The method can check whether an appropriate container for processing the dataset into the reformatted dataset already exists as a container image in the registry, and automatically perform the generating the container based on determining that no appropriate container for processing the dataset into the reformatted dataset already exists in the registry.

“In some embodiments, a container instantiated from the generated container includes an input data volume for storing the dataset and an output data volume for storing the reformatted dataset, which has an advantage in that is compartmentalizes data that is safe to send across the boundary and data which is not safe to send across the boundary. This has an advantage in that the appropriate permissions, access, and purging of the data can be easily applied to the subject volume. The method can include generating a data definition language defining data structures to hold the reformatted dataset in the output data volume, which has an advantage in that it provides structure to potentially unstructured data, to facilitates desired analytics processing and data reformatting.”

The claims supplied by the inventors are:

“1. A computer-implemented method comprising: obtaining a dataset on which a desired analysis is to be performed, with at least some results of the desired analysis to be transferred from one location to another location, wherein the dataset is subject to data residency restrictions that restrict transfer of the dataset across a boundary to the another location; profiling the dataset to identify a profile level for the dataset; automatically generating a container image based on the identified profile level for the dataset and the data residency restrictions that restrict the transfer of the dataset across the boundary, wherein the container image is configured for instantiation as a container on a container host and execution on the container host to provide a virtual environment having one or more software applications executing therein to process the dataset into a reformatted dataset that is not restricted by the data residency restrictions for transfer across the boundary to the another location; and digitally storing the container image to a container registry.

“2. The method of claim 1, further comprising making available the container image for selection and instantiation on the container host.

“3. The method of claim 2, further comprising checking whether an appropriate container for processing the dataset into the reformatted dataset already exists as a container image in the container registry, wherein the automatically generating the container image is performed based on determining that no appropriate container for processing the dataset into the reformatted dataset already exists as a container image in the registry.

“4. The method of claim 1, wherein a container instantiated from the generated container image comprises an input data volume for storing the dataset and an output data volume for storing the reformatted dataset.

“5. The method of claim 4, wherein the generating the container image configures the generated container image such that, based on terminating the container instantiated from the generated container image, data of the input data volume is lost.

“6. The method of claim 5, wherein the generating the container image configures the generated container image such that the instantiation of the generated container image includes restrictions that prevent extraction of data from the input data volume out of the container instantiated from the generated container image.

“7. The method of claim 4, further comprising generating a data definition language defining data structures to hold the reformatted dataset in the output data volume.

“8. The method of claim 1, further comprising: instantiating the generated container image on a data processing system, wherein the data processing system comprises a server responsible for a database in which the dataset is stored; and receiving a script by the data processing system and executing the script to perform the profiling and the identifying the profile level for the dataset based on identifying the another location and based on the data residency restrictions that restrict the transfer of the dataset across the boundary.

“9. The method of claim 1, wherein the profiling classifies personally identifiable information of the dataset and determines the profile level for the dataset based on the classified personally identifiable information, and wherein the reformatted dataset has the personally identifiable information removed or aggregated, such that the reformatted dataset does not include the personally identifiable information.

“10. The method of claim 1, wherein the generated container image specifies executable code and dependencies to process the dataset into the reformatted dataset, wherein processing the dataset into the reformatted dataset comprises a portion of the desired analysis of the dataset, and wherein the reformatted dataset comprises the at least some results of the desired analysis for transfer to the another location.

“11. The method of claim 1, wherein the desired analysis is to be performed by processing across the one location and a plurality of additional locations of which the another location is a part, wherein a respective data processing system at each additional location of the plurality of additional locations is to analyze respective intermediate data of the desired analysis, wherein respective data residency restrictions apply to the intermediate data residing at the additional location and restrict transfer of the intermediate data from that additional location across a respective boundary to a next additional location of the plurality of additional locations, and wherein the method further comprises: automatically generating a respective container image for each additional location of the plurality of additional locations, the generated respective container image generated based on (i) an identified profile level of the intermediate data that is to reside at the additional location and on (ii) the data residency restrictions that restrict the transfer of the intermediate data to the next additional location, the generated respective container image being configured for instantiation and execution as a respective container to: receive the intermediate data for processing at that additional location; process the intermediate data into a reformatted intermediate dataset that is not restricted for transfer across the boundary to the next additional location; and transfer, to the generated respective container for the next additional location, the reformatted intermediate dataset as the respective intermediate data for analysis at that next additional location.

“12. A computer system comprising: a memory; and a processor in communication with the memory, wherein the computer system is configured to perform a method comprising: obtaining a dataset on which a desired analysis is to be performed, with at least some results of the desired analysis to be transferred from one location to another location, wherein the dataset is subject to data residency restrictions that restrict transfer of the dataset across a boundary to the another location; profiling the dataset to identify a profile level for the dataset; automatically generating a container image based on the identified profile level for the dataset and the data residency restrictions that restrict the transfer of the dataset across the boundary, wherein the container image is configured for instantiation as a container on a container host and execution on the container host to provide a virtual environment having one or more software applications executing therein to process the dataset into a reformatted dataset that is not restricted by the data residency restrictions for transfer across the boundary to the another location; and digitally storing the container image to a container registry.

“13. The computer system of claim 12, wherein a container instantiated from the generated container image comprises an input data volume for storing the dataset and an output data volume for storing the reformatted dataset.

“14. The computer system of claim 13, wherein the method further comprises generating a data definition language defining data structures to hold the reformatted dataset in the output data volume.

“15. The computer system of claim 12, wherein the method further comprises: instantiating the generated container image on a data processing system, wherein the data processing system comprises a server responsible for a database in which the dataset is stored; and receiving a script by the data processing system and executing the script to perform the profiling and the identifying the profile level for the dataset based on identifying the another location and based on the data residency restrictions that restrict the transfer of the dataset across the boundary.

“16. The computer system of claim 12, wherein the desired analysis is to be performed by processing across the one location and a plurality of additional locations of which the another location is a part, wherein a respective data processing system at each additional location of the plurality of additional locations is to analyze respective intermediate data of the desired analysis, wherein respective data residency restrictions apply to the intermediate data residing at the additional location and restrict transfer of the intermediate data from that additional location across a respective boundary to a next additional location of the plurality of additional locations, and wherein the method further comprises: automatically generating a respective container image for each additional location of the plurality of additional locations, the generated respective container image generated based on (i) an identified profile level of the intermediate data that is to reside at the additional location and on (ii) the data residency restrictions that restrict the transfer of the intermediate data to the next additional location, the generated respective container image being configured for instantiation and execution as a respective container to: receive the intermediate data for processing at that additional location; process the intermediate data into a reformatted intermediate dataset that is not restricted for transfer across the boundary to the next additional location; and transfer, to the generated respective container for the next additional location, the reformatted intermediate dataset as the respective intermediate data for analysis at that next additional location.”

There are additional claims. Please visit full patent to read further.

URL and more information on this patent, see: Cheng, Karen. Data security across data residency restriction boundaries. U.S. Patent Number 11552955, filed March 24, 2021, and published online on January 10, 2023. Patent URL (for desktop use only): https://ppubs.uspto.gov/pubwebapp/external.html?q=(11552955)&db=USPAT&type=ids

(Our reports deliver fact-based news of research and discoveries from around the world.)

Older

Patent Issued for Complex composite tokens (USPTO 11553352): eBay Inc.

Newer

Retiree medical costs are soaring

Advisor News

  • How advisors can prepare clients for an uncertain retirement landscape
  • Investors aren’t waiting out uncertainty
  • Transamerica and Advo(k)ate Advisors launch pooled employer plan
  • ‘I wish I’d met him sooner:’ Karlan Tucker remembered for integrity, faith
  • Why women must be more engaged in investing
More Advisor News

Annuity News

  • NAIC regulators begin consensus phase on annuity illustration overhaul
  • AM Best Revises Outlooks to Negative for Subsidiaries of Group 1001 Insurance Holdings, LLC
  • Market-value adjusted annuities: Key considerations for advisors
  • Private equity’s next play in insurance
  • Immediate Care Plan: A new solution for funding LTC
More Annuity News

Health/Employee Benefits News

  • New Findings in Managed Care Described from Creighton University School of Medicine (Barriers beyond Medicaid: A Midwest study on pancreatic surgery access in the post-Affordable Care Act era): Managed Care
  • Abbott’s 'Keep Texas Affordable' plan: Lower housing costs, new health insurance plan
  • 1 in 4 American workers report staying in unwanted jobs for health insurance: West Health Institute
  • Medicare Moments | Medicare's Enrollment Process in Simple Terms
  • Waitlist, policy changes stir worries among families of Arkansans with disabilities
More Health/Employee Benefits News

Life Insurance News

  • Judge again tosses Penn Mutual whole life lawsuit alleging tax scam
  • Declined by a machine? The end of the unexplainable no
  • AM Best Revises Outlooks to Negative for Subsidiaries of Group 1001 Insurance Holdings, LLC
  • Court sides with Ameritas in denying $4M STOLI payout to Wells Fargo
  • AM Best Removes From Under Review With Positive Implications and Upgrades Credit Ratings of The Fortegra Group, Inc.’s Insurance Subsidiaries
More Life Insurance News

NEWS INSIDE

  • Companies
  • Earnings
  • Economic News
  • INN Magazine
  • Insurtech News
  • Newswires Feed
  • Regulation News
  • Washington Wire
  • Videos

FEATURED OFFERS

Press Releases

  • Ibexis Announces Expanded Bank Relationships and New Index Options for FIA Plus® and WealthDefender® Series
  • Agent Review Launches Video AI Identity Verification to Help Protect Insurance Professionals, Consumers and Public Trust
  • Prosperity Life GroupSM Launches Prosperity PathWaySM Series, Bringing Greater Choice and Flexibility to Retirement Income Planning
  • Senior Market Sales® Fortifies Annuity Reach With Acquisition of Retirement Planning Firm Stratton & Company
More Press Releases > Add Your Press Release >

How to Write For InsuranceNewsNet

Find out how you can submit content for publishing on our website.
View Guidelines

Topics

  • Advisor News
  • Annuity Index
  • Annuity News
  • Companies
  • Earnings
  • Fiduciary
  • From the Field: Expert Insights
  • Health/Employee Benefits
  • Insurance & Financial Fraud
  • INN Magazine
  • Insiders Only
  • Life Insurance News
  • Newswires
  • Property and Casualty
  • Regulation News
  • Sponsored Articles
  • Washington Wire
  • Videos
  • ———
  • About
  • Meet our Editorial Staff
  • Advertise
  • Contact
  • Newsletters

Top Sections

  • AdvisorNews
  • Annuity News
  • Health/Employee Benefits News
  • InsuranceNewsNet Magazine
  • Life Insurance News
  • Property and Casualty News
  • Washington Wire

Our Company

  • About
  • Advertise
  • Contact
  • Meet our Editorial Staff
  • Magazine Subscription
  • Write for INN

Sign up for our FREE e-Newsletter!

Get breaking news, exclusive stories, and money- making insights straight into your inbox.

select Newsletter Options
Facebook Linkedin Twitter
© 2026 InsuranceNewsNet.com, Inc. All rights reserved.
  • Terms & Conditions
  • Privacy Policy
  • InsuranceNewsNet Magazine

Sign in with your Insider Pro Account

Not registered? Become an Insider Pro.
Insurance News | InsuranceNewsNet