Cloud Control System for Workload Security and Compliance

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The migration of application workloads and data to the cloud increases the risk of workload availability and data loss, making security more difficult for the owner to manage effectively.

Innovation Solution

A computer system with a repository engine to consolidate controls, a workload engine to determine control applicability, an adherence validation engine to ensure compliance, a security risk engine to assess risks, and an adherence monitoring engine to continuously monitor and measure changes in the cloud computing environment.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If workloads and data are migrated to the cloud computing environment, then accessibility and flexibility are improved, but control over security and protection is reduced

Engineering Contradiction:
Improveaccessibility and flexibilityVSAvoidcontrol over security and protection
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent introduces a cloud control system as an intermediary between the cloud service provider and the data owner. This mediator consolidates controls, validates adherence, monitors compliance, and assesses security risks, thereby restoring control over security and protection while maintaining cloud accessibility and flexibility.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Productivity

If cloud computing environment is used for workload processing and data storage, then cost and scalability are improved, but risk of data loss and security management difficulty increase

Engineering Contradiction:
Improvecost and scalabilityVSAvoidrisk of data loss and security management difficulty
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The patent implements continuous monitoring and validation mechanisms that provide feedback on control adherence and security risk levels. The system continuously monitors the cloud environment, validates compliance with control requirements, and assesses security risks in real-time, enabling proactive security management while maintaining cost-effective cloud operations.

Inventive Principle:
Principle #23Feedback

3Reliability

If controls are applied to cloud computing environment, then security and compliance are improved, but system complexity increases

Engineering Contradiction:
Improvesecurity and complianceVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent consolidates multiple control functions into a single cloud control system. The system merges control consolidation, adherence validation, compliance monitoring, and security risk assessment into one integrated platform, reducing the complexity that would arise from implementing separate systems for each function while maintaining comprehensive security and compliance oversight.

Inventive Principle:
Principle #5Merging (Combining)

Data Source

PatentUS20240305653A1Controls for cloud computing environment
Publication Date: 2024.09.12 WELLS FARGO BANK NA
  • US20240305653A1 patent drawing
  • US20240305653A1 patent drawing
  • US20240305653A1 patent drawing

AI summary

An example computer system for implementing controls for a cloud computing environment can include: one or more processors; and non-transitory computer-readable storage media encoding instructions which, when executed by the one or more processors, causes the computer system to create: a repository engine programmed to consolidate the controls for the cloud computing environment; a workload engine programmed to determine an applicability of the controls to data stored in the cloud computing environment; an adherence validation engine programmed to validate compliance of the controls of the cloud computing environment with the control requirements; a security risk engine programmed to assess security risks associated with the cloud computing environment; and an adherence monitoring engine programmed to continuously monitor compliance of the cloud computing environment with the control requirements and measure changes to the security risks.