Organizational risk management subscription service
Abstract
An organizational risk management service includes a risk assessment and mitigation platform for evaluating organizational risk. The service includes interfaces for managing connections with organizational and external systems for intake of messaging that provides information which is analyzed to define risks faced by an organization. This risk is defined by analyzing this messaging and its metadata with a system manager, a rules engine, and a message manager. The service and platform models responses to address the risks faced by the organization, and generates event relays that comprise communications, alerts, notifications, instructions, and other information for registered users, and external systems that enable actions for addressing and mitigating the risk and compliance with organizational policies and procedures.
Claims
exact text as granted — not AI-modified1 . A method of assessing and mitigating a defined risk for an organization, comprising:
identifying a defined risk to an organization from at least one of individual risk information communicated in one or more mobile messages, and external event information communicated in one or more external messages; analyzing a plurality of metadata representing the at least one of the individual risk information and the external event information to identify overlap between the individual risk information and the external event information that correlates a proximity of an event to one or both of a registered organizational user or an organizational facility, the proximity defined by one or more of a globally-unique message identifier, a message source, a message type, a timing of message origination, an associated message identifier, a location of an originating device, and a status of the originating device; defining one or more action requests responsive to the defined risk based on rules that represent compliance with defined policies and procedures of the organization; surveying at least one registered organizational user through one or more mobile clients with the one or more action requests, wherein the one or more mobile clients confirm both receipt of the one or more action requests and an acknowledgment with the rules by the at least one organizational user; assessing a status of the defined risk, and determining a further status of affected organizational users from responses of the at least one registered organizational user to the one or more action requests, to identify the compliance with the defined policies and procedures and further action to address the defined risk; and communicating an event relay to the affected organizational individuals or the one or more external systems.
2 . The method of claim 1 , wherein the event relay is one or more of a notification pushed to the one or more mobile clients, a task assigned to the one or more mobile clients, a message sent to the one or more mobile clients or the one or more external systems, a command sent to the one or more external systems, and a notification sent to one or more external systems.
3 . The method of claim 1 , further comprising generating one or more of mitigation assessment relative to the defined risk, and a report of compliance with the defined policies and procedures by the affected organizational users.
4 . The method of claim 1 , further comprising generating a display of the outbound alert, the affected organizational users who have acknowledged the outbound alert, and the affected organizational users who have not acknowledged the outbound alert.
5 . The method of claim 1 , further comprising comparing the one or more mobile messages with the one or more external messages to identify at least one registered organizational user or at least one organizational facility that are affected by the defined risk.
6 . The method of claim 1 , wherein the individual risk information represents one or more actions that are either taken or requested by the registered organizational user, the one or more actions including a report, a request for support, a monitor signal, a panic signal, a survey broadcast, or an access request.
7 . The method of claim 1 , wherein the individual risk information is generated within a private mobile messaging system configured with at least one system client that communicates with a mobile application associated with a mobile device of the registered organizational user.
8 . The method of claim 7 , further comprising facilitating communications between the one or more mobile clients and the system manager, the external systems and the system manager, and the message manager and the external systems within a plurality of application programming interfaces, the plurality of application programming interfaces including:
a set of inbound information application programming interfaces for exchanging information between the organization and one or more mobile clients associated with the registered organizational user; a set of inbound application programming interfaces for exchanging information between the organization and the external systems, a set of outbound information application programming interfaces for relaying the one or more action requests to the one or more mobile clients, and a set of outbound application programming interfaces for relaying information to the one or more external systems to implement specific actions associated with the defined risk.
9 . The method of claim 1 , further comprising integrating the individual risk information for each registered organizational user that is relevant to the defined risk, with facilities information representing the organizational facility for the organization that is relevant to the defined risk, and with the external event information relevant to the defined risk.Join the waitlist — get patent alerts
Track US2023004893A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.