US 12,443,740 B2
Data management platform
Walter Trotta, Cranford, NJ (US); Vaibhav Kumar, Monroe, NJ (US); Samuel J. Kass, Oberrieden (CH); and Sasisekar Shanmugasundaram, Warsaw (PL)
Assigned to Citibank, N.A., New York, NY (US)
Filed by Citibank, N.A., New York, NY (US)
Filed on Mar. 28, 2025, as Appl. No. 19/094,636.
Application 19/094,636 is a continuation of application No. 18/134,883, filed on Apr. 14, 2023, granted, now 12,277,243.
Prior Publication US 2025/0252204 A1, Aug. 7, 2025
This patent is subject to a terminal disclaimer.
Int. Cl. G06F 21/00 (2013.01); G06F 21/62 (2013.01)
CPC G06F 21/6218 (2013.01) 20 Claims
OG exemplary drawing
 
1. A data management system, comprising:
one or more first processors communicatively coupled to a first storage device operating on a first computing device in a first jurisdiction, wherein the one or more first processors execute application code instructions that are stored in the first storage device to:
transmit data from the first computing device in the first jurisdiction to a second computing device in a second jurisdiction, the data comprising data fields with a first data field classified as a sensitive data field having sensitive data and a second data field classified as a non-sensitive data field having non-sensitive data, the sensitive data field being tokenized by the first computing device according to a first tokenization protocol before transfer;
transmit detokenization controls to the second jurisdiction, the detokenization controls comprising conditions under which the second computing device may detokenize tokenized data;
cause storage of the tokenized data on the second computing device in the second jurisdiction, wherein the second computing device is unable to access the data without satisfying the conditions;
receive an indication that the second data field has been reclassified into a second sensitive data field;
responsive to the indication that the second data field has been reclassified into the second sensitive data field, cause tokenization of the data in the second data field at the first computing device using a second tokenization protocol, wherein the tokenization generates new tokenized data for the second data field and renders the new tokenized data inaccessible to the second computing device until the tokenized data is retokenized; and
propagate the new tokenized data to the second computing device in the second jurisdiction.