US 12,254,016 B2
Facilitating queries of encrypted sensitive data via encrypted variant data objects
Yuvaraj Sankaran, Alpharetta, GA (US); and Vijay Nagarajan, Cumming, GA (US)
Assigned to EQUIFAX INC., Atlanta, GA (US)
Filed by EQUIFAX INC., Atlanta, GA (US)
Filed on Oct. 16, 2023, as Appl. No. 18/487,730.
Application 18/487,730 is a continuation of application No. 16/982,898, granted, now 11,816,116, previously published as PCT/US2019/023598, filed on Mar. 22, 2019.
Claims priority of provisional application 62/646,961, filed on Mar. 23, 2018.
Prior Publication US 2024/0045877 A1, Feb. 8, 2024
This patent is subject to a terminal disclaimer.
Int. Cl. G06F 16/2458 (2019.01); G06F 16/2453 (2019.01); G06F 16/2455 (2019.01); G06F 21/60 (2013.01); G06F 21/62 (2013.01); G06F 40/284 (2020.01)
CPC G06F 16/2468 (2019.01) [G06F 16/24534 (2019.01); G06F 16/2455 (2019.01); G06F 21/602 (2013.01); G06F 21/6245 (2013.01); G06F 40/284 (2020.01)] 20 Claims
OG exemplary drawing
 
1. A secure data processing system comprising:
a processing device;
an identity data repository;
a non-transitory computer-readable memory coupled to the processing device and storing instructions,
wherein the processing device is configured for executing the instructions and thereby performing operations comprising:
creating, in the identity data repository and from sensitive data associated with an entity, a searchable secure entity data object for the entity, wherein creating the searchable secure entity data object comprises:
generating variant data comprising a modified version of the sensitive data,
tokenizing the sensitive data and tokenizing the variant data, and
storing the tokenized sensitive data in a first portion of the searchable secure entity data object, and the tokenized variant data in a second portion of the searchable secure entity data object;
receiving a query regarding the entity;
generating a tokenized query parameter from a query parameter in the query; and
servicing the query by matching the tokenized query parameter to the tokenized variant data in the second portion of the searchable secure entity data object and retrieving the tokenized sensitive data from the first portion of the searchable secure entity data object.