US 11,792,222 B2
Automated risk assessment module with real-time compliance monitoring
Patrick Glenn Murray, Kula, HI (US); Carman Kwong, Calgary (CA); Christopher Cross, Calgary (CA); Jose Costa Moreno, Calgary (CA); Harpreet Shergill, Calgary (CA); and Keegan Callin, Calgary (CA)
Assigned to OneTrust LLC, Atlanta, GA (US)
Filed by OneTrust LLC, Atlanta, GA (US)
Filed on Jul. 20, 2022, as Appl. No. 17/869,144.
Application 17/869,144 is a continuation of application No. 17/373,534, filed on Jul. 12, 2021, granted, now 11,425,160.
Application 17/373,534 is a continuation in part of application No. 17/191,346, filed on Mar. 3, 2021, granted, now 11,283,840, issued on Mar. 22, 2022.
Application 17/191,346 is a continuation in part of application No. 16/013,037, filed on Jun. 20, 2018, granted, now 10,951,658, issued on Mar. 16, 2021.
Prior Publication US 2022/0368728 A1, Nov. 17, 2022
Int. Cl. H04L 9/40 (2022.01)
CPC H04L 63/1433 (2013.01) [H04L 63/0414 (2013.01); H04L 63/20 (2013.01); H04L 63/306 (2013.01)] 20 Claims
OG exemplary drawing
 
1. A method comprising:
performing, with processing hardware of a computing system, operations comprising:
establishing a session between a server computing system and a client computing system;
providing, via the session, an objective identification interface to the client computing system;
accessing first mapping data that links (a) a set of objectives identified via input to the objective identification interface with (b) a set of risks associated with operations using the client computing system;
accessing second mapping data that links the set of risks with a set of control operations;
associating, based on the first mapping data and the second mapping data, the set of risks and the set of control operations with the client computing system;
determining that a first software configuration and a second software configuration have been implemented, wherein the first software configuration and the second software configuration respectively monitor a first state and a second state of data applicable to the set of control operations;
performing a risk assessment operation that comprises determining that the first state of the data tracked via the first software configuration indicates an update within a specified time period and that the second state of the data tracked via the second software configuration indicates no updates within the specified time period; and
providing, via the session and based on the risk assessment operation, a risk assessment interface comprising (a) indications of mitigation of the set of risks and (b) interface elements configured for performing operations with respect to the client computing system that modify the mitigation of the set of risks.