AI Filter for Sensitive Data Substitution
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current methods for protecting sensitive data in distributed systems, such as encryption and passwords, are inadequate once the data is received and unencrypted, as they fail to prevent exposure and misuse of sensitive information.
Innovation Solution
A system utilizing an artificial intelligence filter to detect sensitive data based on predefined rules, replacing it with substitute values before transmission to third-party services, and reversing the substitution upon receiving results, ensuring that sensitive data is not externally exposed.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If encryption or passwords are used to protect sensitive data during transmission, then data security during transmission is improved, but once the data is received and unencrypted, the sensitive data may be re-exposed to access and misuse
Solution Approach 1:
The patent applies preliminary action by replacing sensitive data with substitute values before the data leaves the secure network zone. This proactive substitution occurs during data preparation, ensuring that even if data is intercepted or accessed improperly at the third-party service, the actual sensitive information remains protected throughout the entire process
Solution Approach 2:
The patent uses substitute values as an intermediary between the sensitive data and the third-party service. These substitute values act as a mediator that allows the third-party service to perform analysis without direct access to the actual sensitive data, thereby preventing exposure and misuse while still enabling the service to function
2Adaptability or versatility
If sensitive data is transmitted to third-party services for analysis, then advanced data analysis capability is improved, but the sensitive data may be exposed for collection and analysis in undesirable ways
Solution Approach 1:
The patent creates a copy of the data structure with substitute values that mirrors the format and characteristics of the original sensitive data. This copy allows third-party services to perform analysis on data with the same structure and relationships, maintaining analytical capability while ensuring the original sensitive data remains protected and is not exposed to undesirable collection or misuse
3Object-affected harmful factors
If sensitive data values are replaced with substitute values before transmission, then data exposure risk is reduced, but the complexity of the data processing system increases
Solution Approach 1:
The patent extracts the sensitive data values from the dataset before transmission, separating them into a secure storage location while replacing them with substitute values in the transmitted data. This extraction approach simplifies the overall system architecture by clearly separating sensitive data handling from data processing operations, making the system more manageable despite the added security layer
4Productivity
If automated substitution and restoration of sensitive data is implemented, then manual intervention is eliminated improving efficiency, but the system requires sophisticated filtering and detection capabilities
Solution Approach 1:
The patent implements self-service by enabling the system to automatically identify, replace, and restore sensitive data without manual intervention. The secure data processing system autonomously manages the substitution and restoration processes, improving efficiency and productivity while the sophisticated filtering and detection capabilities are integrated into the automated workflow
Data Source
AI summary
A method includes providing a data set to an artificial intelligence filter trained to detect sensitive data based on sensitive data rules and detect one or more sensitive data values in the data set. The one or more sensitive data values are replaced with one or more substitute values in the data set, and the data set is associated with a key value. The data set is sent with the one or more substitute values to a third-party service to obtain a result. The key value associated with the result is identified. The one or more sensitive data values associated with the one or more substitute values are determined based on the key value. The one or more substitute values are replaced with the one or more sensitive data values in combination with a portion of the result to create a modified result.


