Inventor
Gregory Branchek Roth
Inventor
Seattle, WA, US
Overview
Patents· 314 as inventor
Public. Assignee & technology derived from the patent record. Each patent links to its LexDana page.
H04Lprimary
H04LTransmission of digital information, e.g. telegraphic communication52%
G06FElectric digital data processing37%
G06QInformation and communication technology [ict] specially adapted for administrative, commercial, financial, managerial or supervisory purposes5%
H04WWireless communication networks2%
E05BLocks1%
H04NPictorial communication, e.g. television1%
G09CCiphering or deciphering apparatus for cryptographic or other purposes involving the need for secrecy0%
H04QSelecting0%
Y02DClimate change mitigation technologies in information and communication technologies [ict], i.e. information and communication technologies aiming at the reduction of their own energy use0%
G01RMeasuring electric variables0%
PatentTitleYear
11,115,220Complete forward access sessions202111,108,777Temporarily providing a software product access to a resource202111,102,189Techniques for delegation of access privileges202111,042,869Method, medium, and system for associating a payment amount with a physical object202111,036,869Data security with a security module202110,977,377Parent and child account compartments202110,936,078Account management services for load balancers202110,936,730Data security using request-supplied keys202110,936,729Redundant key management202110,931,442Authentication through a secret holding proxy202110,924,286Signing key log management202110,924,482Virtual service authorization202110,911,428Use of metadata for computing resource access202110,911,457Immediate policy effectiveness in eventually consistent systems202110,904,233Protection from data security threats202110,880,283Techniques for remote access to a computing resource service provider202010,855,690Management of secrets using stochastic processes202010,846,659Variable access to time block information202010,834,139Flexibly configurable data modification services202010,834,117Enhanced data security through uniqueness checking202010,826,892Provisioning a device to be an authentication device202010,785,261Techniques for secure session reestablishment202010,769,287Forced data transformation policy202010,771,255Authenticated storage operations202010,771,456Token based one-time password security202010,742,586Assured encrypted delivery202010,735,186Revocable stream ciphers for upgrading encryption in a shared resource environment202010,728,031Durable cryptographic keys202010,721,238Parameter based key derivation202010,721,075Web of trust management in a distributed system202010,673,906Access control using impersonization202010,666,436Federated key management202010,666,684Security policies with probabilistic actions202010,652,232Adaptive timeouts for security credentials202010,644,881Unified management of cryptographic keys using virtual keys and referrals202010,637,855Enhanced authentication for secure communications202010,635,997Finite life instances202010,623,399Virtual requests202010,601,789Session negotiations202010,587,405Supporting a fixed transaction rate with a variably-backed logical cryptographic key202010,579,422Latency-managed task processing202010,579,831Verification of data set components using digitally signed probabilistic data structures202010,574,699Load balancer request processing202010,567,394Data integrity verification202010,560,441Data security operations with expectations202010,542,005Connection control for virtualized environments202010,521,984Challenge-response badge201910,523,707Secure transport channel using multiple cipher suites201910,521,595Intelligent storage devices with cryptographic functionality201910,516,667Hidden compartments201910,511,633Trusted-code generated requests201910,503,917Performing operations on intelligent storage with hardened interfaces201910,491,568Management of encrypted data storage201910,491,586Incorrect password management201910,491,403Data loss prevention with key usage limit enforcement201910,484,433Virtual communication endpoint services201910,474,829Virtual service provider zones201910,469,477Key export techniques201910,469,330Client account versioning metadata manager for cloud computing environments201910,467,422Automatic key rotation201910,452,837Inbound link handling201910,454,922System and method for recognizing malicious credential guessing attacks201910,447,678Automated secret renegotiation201910,425,223Multiple authority key derivation201910,412,059Resource locators with keys201910,402,578Management of encrypted data storage201910,404,670Data security service201910,387,683Policy enforcement delays201910,382,200Probabilistic key rotation201910,375,067Mutual authentication with symmetric secrets and signatures201910,366,358Backlogged computing work exchange201910,367,791Resource locators with keys201910,356,062Data access control utilizing key restriction201910,356,069Two factor authentication with authentication objects201910,353,731Efficient suspend and resume of instances201910,348,759Threat detection and mitigation through run-time introspection and instrumentation201910,341,359Multi-user secret decay201910,339,503Variable access to time block information201910,333,903Provisioning network keys to devices to allow them to provide their identity201910,331,895Forced data transformation policy201910,326,597Dynamic response signing capability in a distributed system201910,320,790Temporarily providing a software product access to a resource201910,318,336Posture assessment in a secure execution environment201910,320,624Access control policy simulation and testing201910,313,112Browser security module201910,313,364Adaptive client-aware session security201910,313,312Key rotation techniques201910,298,404Certificate echoing for session security201910,270,781Techniques for data security in a multi-tenant environment201910,262,160Verification of data set components using digitally signed probabilistic data structures201910,263,784Signature verification for data set components using probabilistic data structures201910,263,792Cryptographic key escrow201910,263,994Authorized delegation of permissions201910,263,997Data integrity verification201910,250,603Connection control for virtualized environments201910,250,382Unified management of cryptographic keys using virtual keys and referrals201910,230,705Verifying authenticity of machine-readable identifiers201910,230,730Immediate policy effectiveness in eventually consistent systems201910,225,152Access control policy evaluation and remediation201910,210,341Delayed data access201910,211,977Secure management of information using a security module201910,181,953Trusted data verification201910,158,670Automatic privilege determination201810,148,629User-friendly multifactor authentication201810,148,430Revocable stream ciphers for upgrading encryption in a shared resource environment201810,142,301Encrypted data delivery without intervening decryption201810,142,111Binding digitally signed requests to sessions201810,127,389Performing operations on intelligent storage with hardened interfaces201810,121,017Delayed data access201810,116,441Enhanced-security random data201810,110,587Entity to authorize delegation of permissions201810,110,579Stateless and secure authentication201810,110,382Durable cryptographic keys201810,110,578Source-inclusive credential verification201810,100,553Lock that mechanically detects tampering201810,103,875Authentication through a secret holding proxy201810,097,558Delegated permissions in a distributed electronic environment201810,089,476Compartments201810,090,998Multiple authority data security and access201810,084,818Flexibly configurable data modification services201810,079,681Securing service layer on third party hardware201810,078,687Deletion of elements from a probabilistic data structure201810,078,754Volume cryptographic key management201810,075,471Data loss prevention techniques201810,075,469Assured encrypted delivery201810,075,295Probabilistic key rotation201810,061,915Posture assessment in a secure execution environment201810,055,594Virtual service provider zones201810,050,787Authentication objects with attestation201810,049,202Strong authentication using authentication objects201810,044,503Multiple authority key derivation201810,044,695Application instances authenticated by secure measurements201810,037,428Data security using request-supplied keys201810,038,718Data loss prevention techniques201810,015,018Signing key log management201810,003,584Durable key management20189,992,027Signing key log management20189,985,975Hardware secret usage limits20189,984,238Intelligent storage devices with cryptographic functionality20189,973,488Authentication in a multi-tenant environment20189,967,249Distributed passcode verification system20189,961,055Inaccessibility of data to server involved in secure communication20189,954,866Parameter based key derivation20189,954,856Token based one-time password security20189,946,869Posture assessment in a secure execution environment20189,946,863Strong authentication using authentication objects20189,942,036Supporting a fixed transaction rate with a variably-backed logical cryptographic key20189,942,041Securing service layer on third party hardware20189,934,399Dynamic security policy generation20189,935,940Password security20189,928,469'Techniques for administrating finite life instances'20189,930,067'Techniques for secure session reestablishment'20189,923,923'Secure transport channel using multiple cipher suites'20189,912,696'Data loss prevention techniques'20189,906,552'Managing system load'20189,906,564'Access control using impersonization'20189,904,788'Redundant key management'20189,900,350'Account management services for load balancers'20189,898,618'Securing a remote database'20189,888,041'Virtual communication endpoint services'20189,887,836'Unified management of cryptographic keys using virtual keys and referrals'20189,882,900'Mutual authentication with symmetric secrets and signatures'20189,882,720'Data loss prevention with key usage limit enforcement'20189,882,888'Revocable shredding of security credentials'20189,882,956'Network-backed mass storage device'20189,876,815Threat detection and mitigation through run-time introspection and instrumentation20189,872,067'Source identification for unauthorized copies of content'20189,864,874'Management of encrypted data storage'20189,866,392'Distributed system web of trust provisioning'20189,854,001Transparent policies20179,853,979Immediate policy effectiveness in eventually consistent systems20179,853,811Optimistic key usage with correction20179,847,983Epoch-based management of security credentials20179,838,430Temporarily providing a software product access to a resource20179,832,171Negotiating a session with a cryptographic domain20179,819,654'Resource locators with keys'20179,805,190'Monitoring execution environments for approved configurations'20179,800,559'Securing service control on third party hardware'20179,780,952'Binding digitally signed requests to sessions'20179,762,577'Mutual authentication with symmetric secrets and signatures'20179,756,031'Portable access to auditing information'20179,754,116'Web services in secure execution environments'20179,727,743'Securing a remote database'20179,729,524'Authenticated device-based storage operations'20179,712,329'Cryptographic key escrow'20179,705,674'Federated key management'20179,699,219'Access control using impersonization'20179,699,173'Incorrect password management'20179,692,757'Enhanced authentication for secure communications'20179,686,261'Entity to authorize delegation of permissions'20179,679,274'Time proposals using variable access to time block information'20179,680,872'Trusted-code generated requests'20179,674,170'Automated secret renegotiation'20179,667,421'Federated key management'20179,660,972'Protection from data security threats'20179,652,604'Authentication objects with delegation'20179,645,847'Efficient suspend and resume of instances'20179,639,825'Securing multifactor authentication'20179,628,875'Provisioning a device to be an authentication device'20179,607,162'Implementation of secure communications in a support system'20179,608,813'Key rotation techniques'20179,600,664'Monitoring execution environments for approved configurations'20179,602,482'Authentication for an API request'20179,602,288'Enhanced data security through uniqueness checking'20179,590,959'Data security service'20179,584,517'Transforms within secure execution environments'20179,577,829'Multi-party computation services'20179,567,770'Lock that electronically detects tampering'20179,571,488'Adaptive timeouts for security credentials'20179,571,481'Once only distribution of secrets'20179,563,763'Enhanced captchas'20179,565,260'Account state simulation service for cloud computing environments'20179,553,757'Substitution of requests or results in access control systems'20179,553,854'Data security service'20179,547,771'Policy enforcement with associated data'20179,544,292'Credential management'20179,524,389'Forensic instance snapshotting'20169,521,000'Complete forward access sessions'20169,519,696'Data transformation policies'20169,521,140'Secure execution environment services'20169,491,111'Securing service control on third party hardware'20169,485,234'Virtualized endpoints in a multi-tenant environment'20169,479,492'Authored injections of context that are resolved at authentication time'20169,471,533'Defenses against use of tainted cache'20169,465,645'Managing backlogged tasks'20169,466,051'Funding access in a distributed electronic environment'20169,455,963'Long term encrypted storage and key management'20169,451,013'Providing instance availability information'20169,450,758'Virtual requests'20169,444,800'Virtual communication endpoint services'20169,443,108'Secure timestamping'20169,443,093'Policy enforcement delays'20169,442,752'Virtual secure execution environments'20169,438,421'Supporting a fixed transaction rate with a variably-backed logical cryptographic key'20169,438,618'Threat detection and mitigation through run-time introspection and instrumentation'20169,436,335'Input transformative system'20169,424,429'Account management services for load balancers'20169,420,007'Access control using impersonization'20169,418,213'Delegated permissions in a distributed electronic environment'20169,405,920'Data integrity verification'20169,407,440'Multiple authority data security and access'20169,394,723'Lock that mechanically detects tampering'20169,398,066'Server defenses against use of tainted cache'20169,397,835'Web of trust management in a distributed system'20169,374,368'Distributed passcode verification system'20169,369,461'Passcode verification using hardware secrets'20169,367,697'Data security with a security module'20169,325,739'Dynamic security policy generation'20169,319,392'Credential management'20169,311,500'Data security using request-supplied keys'20169,313,191'Virtual requests'20169,306,814'Providing instance availability information'20169,305,177'Source identification for unauthorized copies of content'20169,300,464'Probabilistic key rotation'20169,300,639'Device coordination'20169,292,621'Managing autocorrect actions'20169,294,507'Techniques for data security in a multi-tenant environment'20169,292,711'Hardware secret usage limits'20169,286,491'Virtual service provider zones'20169,288,208'Cryptographic key escrow'20169,276,919'System and method for recognizing malicious credential guessing attacks'20169,270,662'Adaptive client-aware session security'20169,262,642'Adaptive client-aware session security as a service'20169,264,449'Automatic privilege determination'20169,264,419'Two factor authentication with authentication objects'20169,258,118'Decentralized verification in a distributed system'20169,258,117'Mutual authentication with symmetric secrets and signatures'20169,256,762'Securing a remote database'20169,251,097'Redundant key management'20169,246,690'Secure execution environment services'20169,240,886'Authentication adaptation'20169,237,019'Resource locators with keys'20169,231,930'Virtual endpoints for request authentication'20169,225,744'Constrained credentialed impersonation'20159,225,690'Browser security module'20159,218,476'Token based one-time password security'20159,218,474'Enhanced biometric security measures'20159,215,076'Key generation for hierarchical data access'20159,210,178'Mixed-mode authorization metadata manager for cloud computing environments'20159,203,613'Techniques for client constructed sessions'20159,203,818'Adaptive timeouts for security credentials'20159,197,409'Key derivation techniques'20159,178,701'Parameter based key derivation'20159,148,414'Credential management in a multi-tenant environment'20159,117,062'Stateless and secure authentication'20159,106,405'Multi-user secret decay'20159,098,675'Authorized delegation of permissions'20159,083,749'Managing multiple security policy representations in a distributed environment'20159,075,788'Account state simulation service for cloud computing environments'20159,071,429'Revocable shredding of security credentials'20159,053,297'Filtering communications'20159,037,854'Privileged cryptographic services in a virtualized environment'20159,038,148'Secret variation for network sessions'20159,037,511'Implementation of secure communications in a support system'20158,996,860'Tolerance factor-based secret decay'20158,973,108'Use of metadata for computing resource access'20158,966,570'Entity to authorize delegation of permissions'20158,955,149'Impersonation authorizations'20158,938,775'Dynamic data loss prevention in a multi-tenant environment'20158,892,865'Multiple authority key derivation'2014Career & activity timeline
Assembled from patent assignee/location history and declaration credentials.
2013–2021Patents assigned to AMAZON TECH INC (304)· patent assignee history
2013–2020Patents assigned to ROTH GREGORY B (50)· patent assignee history
2013–2021Based in Seattle, WA, US· patent location history
2014–2018Patents assigned to BAER GRAEME D (18)· patent assignee history
2014–2018Patents assigned to FITCH NATHAN R (17)· patent assignee history
2014–2018Patents assigned to BRANDWINE ERIC JASON (16)· patent assignee history
Inventor activity
Assignee and location history derived from the patent record.
Assignees
| Assignee | Patents | Span |
|---|---|---|
| AMAZON TECH INC | 304 | 2013–2021 |
| ROTH GREGORY Bself | 50 | 2013–2020 |
| BAER GRAEME D | 18 | 2014–2018 |
| FITCH NATHAN R | 17 | 2014–2018 |
| BRANDWINE ERIC JASON | 16 | 2014–2018 |
Locations
| Location | Patents | Span |
|---|---|---|
| Seattle, Washington, US | 314 | 2013–2021 |