Inventor

Eric Jason Brandwine

Inventor
Haymarket, VA, US

Overview

451→
Patents
2010–2021
Patent span
Electricity
Primary field (CPC H)

Patents· 451 as inventor

Public. Assignee & technology derived from the patent record. Each patent links to its LexDana page.

H04Lprimary
H04LTransmission of digital information, e.g. telegraphic communication53%
G06FElectric digital data processing37%
G06QInformation and communication technology [ict] specially adapted for administrative, commercial, financial, managerial or supervisory purposes5%
H04WWireless communication networks2%
H04MTelephonic communication1%
Y02PClimate change mitigation technologies in the production or processing of goods1%
H04NPictorial communication, e.g. television1%
Y02DClimate change mitigation technologies in information and communication technologies [ict], i.e. information and communication technologies aiming at the reduction of their own energy use0%
G06NComputing arrangements based on specific computational models0%
B02CCrushing, pulverising, or disintegrating in general0%
PatentTitleYear
11,106,479Virtual provisioning with implementation resource boundary awareness202111,108,626Rewriting communication headers to manage virtual networks of virtual machines202111,102,189Techniques for delegation of access privileges202111,075,913Enforceable launch configurations202111,063,819Managing use of alternative intermediate destination computing nodes for provided computer networks202111,064,017Peripheral device enabling virtualized computing service extensions202111,055,425Service defense techniques202111,050,844User controlled hardware validation202111,036,869Data security with a security module202111,036,861Host attestation202111,030,669Best practice analysis, optimized resource use202111,014,093Secure destruction machine202110,951,586Providing location-specific network access to remote services202110,936,730Data security using request-supplied keys202110,931,442Authentication through a secret holding proxy202110,924,482Virtual service authorization202110,911,528Managing replication of computing nodes for provided computer networks202110,911,428Use of metadata for computing resource access202110,904,268Managing virtual computing testing202110,887,348Detection of network traffic interception202110,880,165Providing extendible network capabilities for managed computer networks202010,880,283Techniques for remote access to a computing resource service provider202010,868,723Using virtual networking devices and routing information to associate network addresses with computing nodes202010,868,715Providing local secure network access to remote services202010,868,861Techniques for network replication202010,846,135Automated rollback202010,834,139Flexibly configurable data modification services202010,798,120Dynamic detection of firewall misconfigurations202010,769,287Forced data transformation policy202010,771,255Authenticated storage operations202010,762,044Managing deletion of data in a data storage system202010,749,936Managing communications having multiple alternative destinations202010,740,765Best practice analysis as a service202010,740,466Securing interfaces of a compute node202010,728,089Providing access to configurable private computer networks202010,721,238Parameter based key derivation202010,691,822Policy validation management202010,686,646Management of computing sessions202010,685,119Trusted malware scanning202010,666,436Federated key management202010,666,684Security policies with probabilistic actions202010,644,933Providing logical networking functionality for managed computer networks202010,623,243Management of computing sessions202010,621,366Chained security systems202010,616,194Secure data destruction in a distributed environment using key protection mechanisms202010,601,909Managing replication of computing nodes for provided computer networks202010,601,789Session negotiations202010,594,699Providing access to remote networks via external endpoints202010,572,315Application programming interface state management202010,574,534Providing virtual networking device functionality for managed computer networks202010,552,442Stateful database application programming interface202010,530,657Providing virtual networking functionality for managed computer networks202010,521,595Intelligent storage devices with cryptographic functionality201910,516,655Encrypted boot volume access in resource-on-demand environments201910,511,633Trusted-code generated requests201910,503,917Performing operations on intelligent storage with hardened interfaces201910,484,433Virtual communication endpoint services201910,474,829Virtual service provider zones201910,476,860Credential translation201910,467,422Automatic key rotation201910,469,500Enforceable launch configurations201910,467,042Optimized deployment based upon customer locality201910,459,755Service manifests201910,452,514Monitoring and analysis of operating states in a computing environment201910,454,922System and method for recognizing malicious credential guessing attacks201910,445,514Request processing in a compromised account201910,447,613Using transient processing containers for security authorization201910,445,124Managing virtual computing nodes using isolation and migration techniques201910,437,748Core-to-core communication201910,425,223Multiple authority key derivation201910,419,287Using virtual networking devices and routing information to associate network addresses with computing nodes201910,409,985Trusted computing host201910,412,059Resource locators with keys201910,412,191Hardware validation201910,412,156Techniques for utilizing network destination identifiers simultaneously announced from multiple locations201910,404,670Data security service201910,402,252Alternative event reporting for peripheral devices201910,389,709Securing client-specified credentials at cryptographically attested resources201910,382,449Permissions decisions in a service provider environment201910,382,195Validating using an offload device security component201910,382,561Intelligent network service provisioning and maintenance201910,373,218Managing use of software components201910,375,103Dynamic detection of firewall misconfigurations201910,367,791Resource locators with keys201910,361,911Managing use of alternative intermediate destination computing nodes for provided computer networks201910,355,991Managing communications using alternative packet addressing201910,356,062Data access control utilizing key restriction201910,346,623Service defense techniques201910,341,355Confidential malicious behavior analysis for virtual computing resources201910,341,281Access control policies associated with freeform metadata201910,331,895Forced data transformation policy201910,333,962Correlating threat information across sources of distributed computing systems201910,326,597Dynamic response signing capability in a distributed system201910,320,750Source specific network scanning in a distributed environment201910,318,747Block chain based authentication201910,318,336Posture assessment in a secure execution environment201910,313,312Key rotation techniques201910,303,455Deploying application updates based on deployment plan201910,289,453Allocating computing resources201910,284,519Dynamically updating authentication schemes201910,275,282Automated rollback201910,270,781Techniques for data security in a multi-tenant environment201910,243,739Validating using an offload device security component201910,243,939Key distribution in a distributed computing environment201910,237,233Allocating identifiers with minimal fragmentation201910,237,249Key revocation201910,229,270Host attestation201910,230,525Public key rollup for merkle tree signature scheme201910,225,146Using virtual networking devices to manage routing information201910,223,538Preventing persistent storage of cryptographic information201910,216,921Techniques for attesting to information201910,218,511Signature delegation201910,211,985Validating using an offload device security component201910,210,510Conditioned use of certificates201910,210,341Delayed data access201910,211,977Secure management of information using a security module201910,198,297Provisioning virtual resource on a server based on label associated with virtual resource and servers201910,178,119Correlating threat information across multiple levels of distributed computing systems201910,178,077Preventing persistent storage of cryptographic information using signaling201910,169,591Chained security systems201910,158,670Automatic privilege determination201810,148,675Block-level forensics for distributed computing systems201810,142,290Host-based firewall for distributed computer systems201810,133,867Trusted malware scanning201810,133,591Network traffic data in virtualized environments201810,129,034Signature delegation201810,127,389Performing operations on intelligent storage with hardened interfaces201810,120,714Customizing computing resources for application workload201810,121,017Delayed data access201810,114,668Managing private use of program execution capacity201810,104,127Managing computing resource usage for standards compliance201810,103,875Authentication through a secret holding proxy201810,097,531Techniques for credential generation201810,084,851Managing use of intermediate destination hardware devices for provided computer networks201810,084,784Restricting access to computing resources201810,084,818Flexibly configurable data modification services201810,079,681Securing service layer on third party hardware201810,078,754Volume cryptographic key management201810,079,842Transparent volume based intrusion detection201810,075,471Data loss prevention techniques201810,073,740Failure resiliency provisioning201810,075,305Methods and apparatus for remapping public network addresses on a network to an external network via a private communications channel201810,070,195Computing resource service security method201810,067,781Service manifests201810,063,380Secure interface for invoking privileged operations201810,061,915Posture assessment in a secure execution environment201810,055,594Virtual service provider zones201810,044,503Multiple authority key derivation201810,038,558Cryptographically verified repeatable virtualized computing201810,038,718Data loss prevention techniques201810,037,257Examining local hardware using a location-aware peripheral device201810,037,428Data security using request-supplied keys201810,033,659Reputation-based mediation of virtual control planes201810,027,749Techniques for network replication201810,027,678Location-aware security configuration of peripheral devices201810,013,662Virtual resource cost tracking with dedicated implementation resources201810,009,315Outside live migration20189,998,335Emulating virtual router device functionality in virtual computer networks20189,992,139Virtualized computing resource scheduler20189,992,203Providing access to remote networks via external endpoints20189,984,238Intelligent storage devices with cryptographic functionality20189,979,694Managing communications between virtual computing nodes in a substrate network20189,973,488Authentication in a multi-tenant environment20189,973,379Managing integration of external nodes into provided computer networks20189,959,132Managing virtual computing nodes using isolation and migration techniques20189,954,866Parameter based key derivation20189,946,869Posture assessment in a secure execution environment20189,942,041Securing service layer on third party hardware20189,912,696'Data loss prevention techniques'20189,912,593'Selective distribution of routing information'20189,898,618'Securing a remote database'20189,900,214'Using virtual networking devices to manage network configuration'20189,888,041'Virtual communication endpoint services'20189,882,773'Virtual resource provider with virtual control planes'20189,882,888'Revocable shredding of security credentials'20189,880,866'Cryptographically attested resources for hosting virtual machines'20189,876,773Packet authentication and encryption in virtual networks20189,875,174Optimizing the execution of an application executing on a programmable execution service20189,872,067'Source identification for unauthorized copies of content'20189,871,850'Enhanced browsing using CDN routing capabilities'20189,864,727'Providing dynamically scaling computing load balancing'20189,854,001Transparent policies20179,853,949Secure time service20179,846,778Encrypted boot volume access in resource-on-demand environments20179,836,466Managing objects using tags20179,832,171Negotiating a session with a cryptographic domain20179,825,911'Security policy check based on communication establishment handshake packet'20179,819,654'Resource locators with keys'20179,800,559'Securing service control on third party hardware'20179,792,143'Platform secure execution modes'20179,794,116'Managing use of intermediate destination computing nodes for provided computer networks'20179,785,928'Virtualized administration of software use authorization'20179,781,012'Behavior monitoring and compliance for multi-tenant resources'20179,774,612'Managing virtual computing testing'20179,769,021'Using virtual networking devices to manage routing cost information'20179,767,445'Statistically cost-following accounting model'20179,756,050'Using transient processing containers for security authorization'20179,756,018'Establishing secure remote access to private computer networks'20179,754,297'Network routing metering'20179,754,116'Web services in secure execution environments'20179,754,253'Conditioned use of certificates'20179,749,181'Managing communications for modified computer networks'20179,740,583'Layered keys for storage volumes'20179,736,016'Managing failure behavior for computing nodes of provided computer networks'20179,727,743'Securing a remote database'20179,729,524'Authenticated device-based storage operations'20179,729,517'Secure virtual machine migration'20179,722,932'Packet path selection using shuffle sharding'20179,722,871'Using virtual networking devices and routing information to associate network addresses with computing nodes'20179,712,542'Permissions decisions in a service provider environment'20179,703,976'Encryption for physical media transfer'20179,705,855'Secure data destruction in a distributed environment using key protection mechanisms'20179,705,674'Federated key management'20179,686,349'Providing extendible network capabilities for managed computer networks'20179,679,279'Managing transfer of hosted service licenses'20179,680,808'Preventing persistent storage of cryptographic information using signaling'20179,680,872'Trusted-code generated requests'20179,667,421'Federated key management'20179,667,414'Validating using an offload device security component'20179,652,617'Analyzing security of applications'20179,641,434'Private network address obfuscation and verification'20179,641,450'Resource placement templates for virtual networks'20179,639,705'Encryption management for data storage'20179,628,294'Methods and apparatus for remapping public network addresses on a network to an external network via a private communications channel'20179,626,710'Best practice analysis, optimized resource use'20179,626,512'Validating using an offload device security component'20179,621,584'Standards compliance for computing data'20179,614,873'Enforceable launch configurations'20179,614,737'Appliance backnets in dedicated resource environment'20179,608,813'Key rotation techniques'20179,607,162'Implementation of secure communications in a support system'20179,608,930'Allocating identifiers with minimal fragmentation'20179,590,959'Data security service'20179,591,003'Dynamic application security verification'20179,584,325'User-configurable cryptographic interface controller'20179,584,517'Transforms within secure execution environments'20179,576,155'Trusted computing host'20179,576,141'Access controls on the use of freeform metadata'20179,577,876'Using virtual networking devices to manage routing communications between connected computer networks'20179,569,232'Network traffic data in virtualized environments'20179,553,854'Data security service'20179,553,774'Cost tracking for virtual control planes'20179,547,771'Policy enforcement with associated data'20179,544,137'Encrypted boot volume access in resource-on-demand environments'20179,530,020'Use of freeform metadata for access control'20169,525,684'Device-specific tokens for authentication'20169,524,167'Providing location-specific network access to remote services'20169,521,140'Secure execution environment services'20169,519,696'Data transformation policies'20169,521,037'Providing access to configurable private computer networks'20169,514,324'Approaches for restricting access to data'20169,509,503'Encrypted boot volume access in resource-on-demand environments'20169,503,268'Securing results of privileged computing operations'20169,497,040'Using virtual networking devices and routing information to initiate external actions'20169,491,002'Managing communications involving external nodes of provided computer networks'20169,491,111'Securing service control on third party hardware'20169,473,386'Selective distribution of routing information'20169,467,398'Using virtual networking devices to connect managed computer networks'20169,455,871'Best practice analysis, migration advisor'20169,455,963'Long term encrypted storage and key management'20169,455,975'Techniques for managing credentials in a distributed computing environment'20169,448,824'Capacity availability aware auto scaling'20169,450,967'Intelligent network service provisioning and maintenance'20169,443,074'Techniques for attesting to information'20169,444,800'Virtual communication endpoint services'20169,442,752'Virtual secure execution environments'20169,444,763'Optimizing communication among collections of computing resources'20169,438,556'Flexibly configurable remote network identities'20169,436,508'Provisioning virtual resource on a server based on label associated with virtual resource and servers'20169,432,407'Providing and accessing data in a standard-compliant manner'20169,432,374'Disabling administrative access to computing resources'20169,425,966'Security mechanism evaluation service'20169,407,539'Techniques for utilizing network destination identifiers simultaneously announced from multiple locations'20169,398,121'Selecting among virtual networking protocols'20169,397,909'Methods and apparatus for scalable private services'20169,384,029'Managing virtual computing nodes'20169,374,341'Establishing secure remote access to private computer networks'20169,374,244'Remote browsing session management'20169,367,697'Data security with a security module'20169,367,339'Cryptographically attested resources for hosting virtual machines'20169,363,102'Methods and apparatus for implementing anycast flow stickiness in stateful sessions'20169,342,412'Managing replication of computing nodes for provided computer networks'20169,331,915'Dynamic network traffic mirroring'20169,319,272'Methods and apparatus for providing composed appliance services in virtualized private networks'20169,313,172'Providing access to remote networks via external endpoints'20169,311,500'Data security using request-supplied keys'20169,304,800'Using virtual provisioning machines to provision devices'20169,305,177'Source identification for unauthorized copies of content'20169,305,164'Tiered network flow analysis'20169,300,639'Device coordination'20169,300,625'Network address verification'20169,294,507'Techniques for data security in a multi-tenant environment'20169,294,437'Remotely configured network appliances and services'20169,294,282'Cryptographically verified repeatable virtualized computing'20169,288,182'Network gateway services and extensions'20169,286,491'Virtual service provider zones'20169,282,027'Managing use of alternative intermediate destination computing nodes for provided computer networks'20169,276,919'System and method for recognizing malicious credential guessing attacks'20169,276,811'Providing virtual networking functionality for managed computer networks'20169,264,334'Managing power consumption in a data center'2016

Career & activity timeline

Assembled from patent assignee/location history and declaration credentials.

2010–2021Patents assigned to AMAZON TECH INC (442)· patent assignee history
2010–2021Based in Haymarket, VA, US· patent location history
2012–2021Patents assigned to BRANDWINE ERIC JASON (111)· patent assignee history
2012–2019Patents assigned to BRANDWINE ERIC J (45)· patent assignee history
2012–2016Patents assigned to DOANE ANDREW J (24)· patent assignee history
2013–2021Patents assigned to THEIMER MARVIN M (23)· patent assignee history
2016–2020Based in Seattle, WA, US· patent location history

Inventor activity

Assignee and location history derived from the patent record.

Assignees
AssigneePatentsSpan
AMAZON TECH INC4422010–2021
BRANDWINE ERIC JASONself1112012–2021
BRANDWINE ERIC Jself452012–2019
DOANE ANDREW J242012–2016
THEIMER MARVIN M232013–2021
Locations
LocationPatentsSpan
Haymarket, Virginia, US4492010–2021
Seattle, Washington, US22016–2020