US2022318402A1PendingUtilityA1

Data processing systems and methods for efficiently assessing the risk of campaigns

Assignee: ONETRUST LLCPriority: Jun 10, 2016Filed: Jun 13, 2022Published: Oct 6, 2022
Est. expiryJun 10, 2036(~9.9 yrs left)· nominal 20-yr term from priority
G06Q 10/0635G06F 21/6245G06F 2221/2111G06F 2201/81G06F 11/3438G06Q 30/0609G06Q 50/26G06F 21/60Y02D10/00G06F 21/6263G06F 21/316G06F 2221/2119G06Q 30/018G06F 21/50
78
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

Data processing systems and methods, according to various embodiments, are adapted for efficiently processing data to allow for the streamlined assessment of risk ratings for one or more vendors. In various embodiments, the systems/methods may use one or more particular vendor attributes (e.g., as determined from scanning one or more webpages associated with the particular vendor) and the contents of one or more completed templates for the vendor to determine a vendor risk rating for the particular vendor. As a particular example, the system may scan a website associated with the vendor to automatically determine one or more security certifications associated with the vendor and use that information, along with information from a completed template for the vendor, to calculate a vendor risk rating that indicates the risk of doing business with the vendor.

Claims

exact text as granted — not AI-modified
What is claimed is: 
     
         1 . A method comprising:
 receiving, by computing hardware, a completed assessment template regarding a standard from a vendor, the completed assessment template comprising a plurality of question/answer pairings comprising an identification of attributes of the vendor associated with meeting with the standard;   identifying, by the computing hardware, a weighting factor for each of the plurality of question/answer pairings;   determining, by the computing hardware, a relative risk rating for each of the plurality of question/answer pairings;   generating, by the computing hardware, a risk rating for the vendor meeting the standard based on the relative risk rating and the weighting factor for each of the plurality of question/answer pairings; and   facilitating, by the computing hardware, an electronic transfer of the risk rating and the completed assessment template to a plurality of computer systems, wherein each computer system of the plurality of computer systems is associated with a respective entity of a plurality of entities and each respective entity uses the risk rating and the completed assessment template in conducting a respective computerized assessment of a respective campaign that is associated with the respective entity meeting the standard.   
     
     
         2 . The method of  claim 1 , wherein generating the risk rating for the vendor is further based on an indication that the vendor has passed one or more vetting requirements imposed by one or more government entities. 
     
     
         3 . The method of  claim 1 , wherein the electronic transfer of the completed assessment template to the plurality of computer systems is carried out through on online portal integrated with an instance of each computer system of the plurality of computer systems. 
     
     
         4 . The method of  claim 1  further comprising:
 generating, by the computing hardware and based on the risk rating, a graphical user interface by configuring a navigation element on the graphical user interface, wherein the navigation element is configured for initiating a responsive action based on the risk rating; 
 transmitting, by the computing hardware, an instruction to a user device to present the graphical user interface on the user device; 
 receiving, by the computing hardware, an indication of a selection of the navigation element; and 
 responsive to receiving the indication, initiating, by the computing hardware, the responsive action. 
 
     
     
         5 . The method of  claim 4 , wherein the responsive action comprises:
 generating, by the computing hardware, a second graphical user interface comprising an indication of the risk rating; and   transmitting, by the computing hardware, a second instruction to a third-party computing device to present the second graphical user interface on the third-party computing device.   
     
     
         6 . The method of  claim 1  further comprising:
 analyzing, by computing hardware, publicly available data associated with the vendor; and 
 generating, by the computing hardware, an awareness rating for the vendor based on the analyzed publicly available data, wherein the risk rating is further based on the awareness rating. 
 
     
     
         7 . The method of  claim 6 , wherein analyzing the publicly available data comprises:
 determining at least one of employee titles, employee roles, or available job posts with the vendor based on analyzing at least one of a social networking website or a business related job website.   
     
     
         8 . The method of  claim 6 , wherein analyzing the publicly available data comprises:
 determining the vendor has a plurality of contracts with a plurality of government entities.   
     
     
         9 . A system comprising:
 a non-transitory computer-readable medium storing instructions; and   a processing device communicatively coupled to the non-transitory computer-readable medium,   wherein, the processing device is configured to execute the instructions and thereby perform operations comprising:
 accessing a completed assessment template regarding a standard from a vendor, the completed assessment template comprising a plurality of question/answer pairings comprising an identification of attributes of the vendor associated with meeting with the standard; 
 generating a risk rating for the vendor meeting the standard based on a weighting factor for each of the plurality of question/answer pairings and a relative risk rating for each of the plurality of question/answer pairings; and 
 facilitating an electronic transfer the risk rating and the completed assessment template to a plurality of computer systems, wherein each computer system of the plurality of computer systems is associated with a respective entity of a plurality of entities and each respective entity uses the risk rating and the completed assessment template in conducting a respective computerized assessment of a respective campaign that is associated with the respective entity meeting the standard. 
   
     
     
         10 . The system of  claim 9 , wherein the respective campaign involves an initiative being conducted by the respective entity to meet the standard and the respective computerized assessment is configured to measure a maturity of the respective entity in meeting the standard. 
     
     
         11 . The system of  claim 9 , wherein the electronic transfer of the completed assessment template to the plurality of computer systems is carried out through on online portal integrated with an instance of each computer system of the plurality of computer systems. 
     
     
         12 . The system of  claim 9 , wherein generating the risk rating for the vendor is further based on an indication that the vendor has passed one or more vetting requirements imposed by one or more government entities. 
     
     
         13 . The system of  claim 9 , wherein the operations further comprise:
 analyzing publicly available data associated with the vendor; and   generating an awareness rating for the vendor based on the analyzed publicly available data, wherein the risk rating is further based on the awareness rating.   
     
     
         14 . The system of  claim 13 , wherein analyzing the publicly available data comprises:
 determining at least one of employee titles, employee roles, or available job posts with the vendor based on analyzing at least one of a social networking website or a business related job website.   
     
     
         15 . A non-transitory computer-readable medium having program code that is stored thereon, the program code executable by one or more processing devices for performing operations comprising:
 accessing a completed assessment template regarding a standard from a vendor, the completed assessment template comprising a plurality of question/answer pairings comprising an identification of attributes of the vendor associated with meeting with the standard;   generating a risk rating for the vendor meeting the standard based on a weighting factor for each of the plurality of question/answer pairings and a relative risk rating for each of the plurality of question/answer pairings; and   facilitating an electronic transfer of at least one of the risk rating or the completed assessment template to a plurality of computer systems, wherein each computer system of the plurality of computer systems is associated with a respective entity of a plurality of entities and each respective entity uses at least one of the risk rating or the completed assessment template in conducting a respective computerized assessment of a respective campaign that is associated with the respective entity meeting the standard.   
     
     
         16 . The non-transitory computer-readable medium of  claim 15 , wherein the respective campaign involves an initiative being conducted by the respective entity to meet the standard and the respective computerized assessment is configured to measure a maturity of the respective entity in meeting the standard. 
     
     
         17 . The non-transitory computer-readable medium of  claim 15 , wherein the electronic transfer of the completed assessment template to the plurality of computer systems is carried out through on online portal integrated with an instance of each computer system of the plurality of computer systems. 
     
     
         18 . The non-transitory computer-readable medium of  claim 15 , wherein the operations further comprise:
 generating, based on the risk rating, a graphical user interface by configuring a navigation element on the graphical user interface, wherein the navigation element is configured for initiating a responsive action based on the risk rating;   transmitting an instruction to a user device to present the graphical user interface on the user device;   receiving an indication of a selection of the navigation element; and   responsive to receiving the indication, initiating the responsive action comprising:
 generating a second graphical user interface comprising an indication of the risk rating; and 
 transmitting a second instruction to a third-party computing device to present the second graphical user interface on the third-party computing device. 
   
     
     
         19 . The system of non-transitory computer-readable medium of  claim 15 , wherein the operations further comprise:
 analyzing publicly available data associated with the vendor; and   generating an awareness rating for the vendor based on the analyzed publicly available data, wherein the risk rating is further based on the awareness rating.   
     
     
         20 . The non-transitory computer-readable medium of  claim 19  wherein analyzing the publicly available data comprises:
 determining the vendor has a plurality of contracts with a plurality of government entities.

Join the waitlist — get patent alerts

Track US2022318402A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.