Backup Security Metrics for Multi-Node Ransomware Risk Management

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing tools for managing backup data security in computer systems are inefficient and time-consuming, making it difficult for operators to assess the overall security of backup copies across multiple nodes, increasing the risk of malware or ransomware attacks.

Innovation Solution

A method and system that provides a backup security metric for each node based on multiple data-security criteria, allowing users to visualize and manage data-security levels through a graphical user interface, enabling targeted actions to improve security.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If multiple separate tools (antivirus package, encryption tools) are used to manage backup security, then data security coverage is improved, but system complexity and time consumption increase

Engineering Contradiction:
Improvedata securityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent combines multiple separate security tools (antivirus packages, encryption tools, backup management utilities) into a single integrated backup security management system. This system provides comprehensive security functionality through unified interfaces and centralized control, reducing the complexity of managing multiple separate tools while maintaining enhanced data security protection.

Inventive Principle:
Principle #5Merging (Combining)

2Measurement precision

If comprehensive security checks are performed on all backup copies, then security assessment accuracy is improved, but time consumption increases

Engineering Contradiction:
Improvesecurity assessment accuracyVSAvoidtime consumption
Core Design Contradiction:
Measurement precisionVSLoss of time

Solution Approach 1:

The system implements automated feedback mechanisms that continuously monitor backup copy status, security metrics, and system conditions. Based on this feedback, the system dynamically adjusts security assessment priorities and can identify high-risk backup copies that require immediate attention, thereby maintaining high assessment accuracy while reducing overall time consumption through intelligent resource allocation.

Inventive Principle:
Principle #23Feedback

3Reliability

If manual monitoring of backup security status is performed, then security oversight is improved, but productivity decreases

Engineering Contradiction:
Improvesecurity oversightVSAvoidmanagement efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The backup security management system implements self-service capabilities through automated security assessments, threat detection, and risk evaluation. The system autonomously monitors backup copy integrity, performs security checks, and generates reports without requiring continuous manual intervention, thereby maintaining strong security oversight while significantly improving operational productivity.

Inventive Principle:
Principle #25Self-service

4Ease of operation

If security metrics are not visualized, then system simplicity is maintained, but ease of operation decreases

Engineering Contradiction:
Improvesecurity management easeVSAvoidinterface complexity
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The system employs visual indicators including color-coded status displays to represent different security states of backup copies. Healthy backup copies are indicated by green status, warning states by yellow, and critical issues by red. This visual encoding allows operators to quickly assess security status across multiple backup copies without complex interfaces, enhancing ease of operation while maintaining intuitive simplicity.

Inventive Principle:
Principle #32Color changes

Data Source

PatentUS12468831B2Backup data security management system and associated method
Publication Date: 2025.11.11 PREDATAR LTD
  • US12468831B2 patent drawing
  • US12468831B2 patent drawing
  • US12468831B2 patent drawing

AI summary

The disclosure relates to a computer implemented method for assisting a user managing the data-security of backup copies of a computer system having a plurality of nodes, the method comprising: receiving status data for backup copies associated with a plurality of nodes, wherein, for each node, the status data provides a status of one or more backup copies associated with the node with respect to a plurality of data-security criteria; determining a backup security metric for each of the plurality of nodes based on the status data; and providing the security metrics for the user to demonstrate the relative level of backup data-security of the plurality of nodes.