Automated Data Classification for Legal and Security Risk Mitigation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The increasing reliance on electronic data poses challenges in managing and securing data objects, including risks associated with legal compliance, data security, and the need for effective data retention and deletion, as existing methods lack granularity and automation in classifying and orchestrating services.

Innovation Solution

An information management system that classifies data objects with high automation and granularity, allowing for individualized categorization and service orchestration based on entity-defined rules, enabling secure data placement, compliance with regulations, and efficient service delivery, including data protection, retention, and deletion.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If manual data classification methods are used, then ease of operation is improved, but productivity and measurement precision deteriorate

Engineering Contradiction:
Improveease of operationVSAvoidproductivity
Core Design Contradiction:
Ease of operationVSProductivity

Solution Approach 1:

The system performs automated discovery and classification of data objects without requiring manual intervention. The information management system autonomously identifies data objects, determines their categories, and assigns appropriate services based on pre-defined policies, eliminating the need for manual classification while maintaining operational simplicity for users.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent replaces manual mechanical classification processes with automated computer-based systems. The information management system uses software algorithms to discover, classify, and manage data objects automatically, substituting human manual operations with electronic automation that achieves both high productivity and ease of use.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

2Measurement precision

If automated data classification with high granularity is implemented, then measurement precision and reliability are improved, but device complexity increases

Engineering Contradiction:
Improvemeasurement precisionVSAvoiddevice complexity
Core Design Contradiction:
Measurement precisionVSDevice complexity

Solution Approach 1:

The system segments data objects into distinct categories based on their characteristics and applies different services to each category. By dividing the complex task of data management into discrete classification categories and service types, the system achieves high measurement precision while managing complexity through structured organization rather than monolithic processing.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The information management system applies different classification and service strategies to different data objects based on their specific characteristics. Each data object receives tailored classification and service assignment appropriate to its type, sensitivity, and requirements, enabling high precision without requiring the entire system to be overly complex.

Inventive Principle:
Principle #3Local quality

3Reliability

If comprehensive data protection and security services are applied to all data, then reliability and security are improved, but loss of energy and loss of time increase

Engineering Contradiction:
ImprovereliabilityVSAvoidloss of energy
Core Design Contradiction:
ReliabilityVSLoss of energy

Solution Approach 1:

The system applies data protection and security services selectively based on the classification of individual data objects. Sensitive data receives enhanced security measures while less sensitive data receives appropriate but reduced protection, optimizing the balance between reliability and energy consumption by avoiding uniform over-protection of all data.

Inventive Principle:
Principle #3Local quality

Solution Approach 2:

The information management system applies security services to the extent necessary for each data object's protection needs rather than applying maximum protection universally. This partial action approach ensures adequate security for critical data while reducing unnecessary energy and time consumption for data that does not require such intensive protection.

Inventive Principle:
Principle #16Partial or excessive action

Data Source

PatentUS9141658B1Data classification and management for risk mitigation
Publication Date: 2015.09.22 EMC IP HLDG CO LLC
  • US9141658B1 patent drawing
  • US9141658B1 patent drawing
  • US9141658B1 patent drawing

AI summary

An information management system is leveraged to mitigate risks associated with data objects in a computer system. The information management system collects information about the data objects and classifies the data objects into one or more categories. The results of the classification and/or the collected information can be stored in a data repository and used to mitigate legal and/or security risks. For instance, the data repository can be searched and/or queried to identify data objects that a party associated with the computer system is legally required to disclose to an adverse party in a legal proceeding. Alternately or additionally, the information in the data repository can be used to classify a data object into a category requiring one or more security and/or legal measures. The information management system maps the category to a service level and orchestrates execution of the service level.