Cybersecurity Feed-Based Data Protection Policy

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Data protection systems face challenges in responding to current cybersecurity threats, as they may not be aware of new threats and thus fail to adjust their policies accordingly, leaving backup storage systems vulnerable to attacks like ransomware.

Innovation Solution

A system that utilizes cybersecurity feeds to evaluate threats, selects appropriate data protection policies based on threat rankings, and implements measures such as isolating data protection storage systems using an air gap to protect against high-risk threats.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If data protection systems use fixed policies without external threat information, then system complexity is reduced, but the systems cannot respond to new cybersecurity threats

Engineering Contradiction:
Improvethreat response capabilityVSAvoidsystem complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The system performs preliminary actions by continuously monitoring cybersecurity feeds and evaluating threats in advance. The threat evaluation module assesses cybersecurity feed content and determines threat levels before attacks occur, allowing the system to proactively adjust data protection policies rather than reactively responding to incidents

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system implements feedback mechanisms by continuously receiving cybersecurity feed content from external sources, evaluating the threat information, and using this feedback to dynamically adjust data protection policies. The policy implementation module modifies backup and restore operations based on the evaluated threat levels, creating a closed-loop adaptive system

Inventive Principle:
Principle #23Feedback

2Reliability

If the system continuously monitors cybersecurity feeds and dynamically adjusts policies, then threat response capability is improved, but resource consumption increases

Engineering Contradiction:
Improvedata protection reliabilityVSAvoidcomputational resource consumption
Core Design Contradiction:
ReliabilityVSUse of energy by moving object

Solution Approach 1:

The system changes operational parameters dynamically based on threat levels. The policy implementation module adjusts backup frequency, storage allocation, and restore operations according to the evaluated cybersecurity threat content, optimizing resource consumption by intensifying protection only when threats are detected rather than maintaining maximum protection continuously

Inventive Principle:
Principle #35Parameter changes

Solution Approach 2:

The system transitions from static fixed policies to dynamic adaptive policies that automatically adjust based on real-time threat assessment. The data protection policies evolve continuously in response to cybersecurity feed content, allowing the system to optimize between protection reliability and resource efficiency by adapting to actual threat conditions

Inventive Principle:
Principle #15Dynamics

3Productivity

If backup storage systems remain connected to the network for continuous backup operations, then backup efficiency is improved, but vulnerability to ransomware attacks increases

Engineering Contradiction:
Improvebackup efficiencyVSAvoidransomware vulnerability
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The system applies preliminary anti-action by evaluating cybersecurity threats and implementing protective measures before ransomware attacks can compromise backup systems. When threats are detected, the policy implementation module isolates backup storage systems or adjusts access controls in advance, preventing harmful actions rather than merely responding to them

Inventive Principle:
Principle #9Preliminary anti-action

Solution Approach 2:

The system introduces an intermediary threat evaluation module that sits between the network and backup operations. This intermediary assesses cybersecurity feed content and mediates backup operations by controlling system connectivity and access based on threat levels, allowing efficient backups when safe while blocking access when threats are present

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS11288364B1Data protection based on cybersecurity feeds
Publication Date: 2022.03.29 EMC IP HLDG CO LLC
  • US11288364B1 patent drawing
  • US11288364B1 patent drawing
  • US11288364B1 patent drawing

AI summary

Data protection based on cybersecurity feeds is described. A system receives cybersecurity feed content from a cybersecurity feed. If the cybersecurity feed content is relevant to data associated with an organization, the system evaluates a cybersecurity threat based on the cybersecurity feed content. The system selects at least one data protection policy, from multiple data protection policies, which corresponds to the evaluated cybersecurity threat. The system implements the selected at least one data protection policy.