Cloud-Based Incident Correlation Timeline for Security Systems
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing surveillance systems face difficulties in correlating and identifying events across multiple entities such as cameras, access doors, POS operators, and alarm systems, making it challenging to detect and analyze incidents effectively.
Innovation Solution
A security system integrated with access control and intrusion detection, utilizing a cloud-based interface that correlates events across sensors, cameras, POS devices, and card readers by creating a timeline-based search function on a user interface, allowing for dynamic correlation and visualization of events, including video images, to enhance incident analysis.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Measurement precision
If traditional surveillance systems monitor multiple entities separately, then each entity can be monitored individually, but it becomes difficult to correlate and identify events across multiple entities
Solution Approach 1:
The patent combines multiple separate monitoring entities (cameras, access doors, POS operators, alarm systems) into a unified cloud-based platform that correlates events across all entities simultaneously. The timeline-based interface merges data from different sources into a single correlated view, enabling event identification across multiple entities without requiring separate analysis of each system.
Solution Approach 2:
The cloud-based server acts as an intermediary that receives data from multiple monitoring entities, processes and correlates the events, then presents the correlated information through the user interface. This intermediary layer handles the complexity of correlating events across entities while presenting a simplified view to users.
2Loss of time
If surveillance systems record all events for later review, then complete event data is preserved, but it becomes time-consuming to identify specific incidents
Solution Approach 1:
The system performs preliminary correlation and organization of events from multiple entities before the user needs to review them. Events are pre-processed, timestamped, and correlated across entities in the cloud, so when users review recordings, the correlation work is already done and incidents can be identified quickly without manual analysis of raw data.
Solution Approach 2:
The patent replaces manual event correlation and analysis with automated cloud-based processing. Instead of guards manually reviewing and correlating events from multiple sources, the system automatically correlates events across entities using timestamp data and presents them in an organized timeline view, dramatically reducing investigation time.
3Productivity
If motion detection and alarm systems are used to alert guards, then immediate alerts are provided for intrusions, but events that do not trigger alarms remain difficult to detect
Solution Approach 1:
The cloud-based platform serves multiple functions: it handles traditional alarm detection while also providing comprehensive event correlation and analysis across all monitoring entities. The same system that detects alarm events also continuously analyzes and correlates non-alarm events from cameras, access doors, and POS systems, enabling detection of incidents that wouldn't trigger traditional alarms.
Solution Approach 2:
The system provides continuous feedback by correlating events across all entities and presenting them in a unified timeline view. This feedback mechanism allows guards to see patterns and relationships between events from different sources, enabling detection of incidents that don't trigger immediate alarms but show unusual patterns when correlated with other entity data.
Data Source
Figure 1
Figure 2
Figure 3
AI summary
A method and apparatus including a cloud server saving a plurality of security events that occurred within a secured area where each saved security event includes an identifier on a device or person monitored by the security system, an identifier of the monitoring function that triggered the saving of the event in the cloud and a time of the event, a user input receiving an identifier of the monitored device or person and at least two different functions monitored by the security system and a processor downloading information of some of the plurality of saved events identified by the received identifiers from the cloud server and presenting the downloaded information of each event at corresponding locations along a timeline.