Distributed Customer Data Privacy Broker Architecture

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing systems for managing customer data privacy in wireless telephony services face challenges in securely accessing and regulating customer data across distributed networks, particularly in ensuring compliance with privacy regulations and customer preferences.

Innovation Solution

A distributed architecture for customer data privacy management that includes a central broker and distributed components, where the distributed component communicates with the central broker to manage customer privacy data according to set rules, allowing for local storage and load balancing to enhance security and accessibility.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If customer data is stored centrally in a single location, then data security and centralized control are improved, but system reliability and accessibility deteriorate due to single points of failure and network dependencies

Engineering Contradiction:
Improvesystem reliabilityVSAvoiddistributed architecture complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent segments the centralized data storage system into multiple distributed data stores across different locations. Each data store holds portions of customer data and can independently serve requests, eliminating the single point of failure inherent in centralized storage. The segmentation allows the system to maintain reliability even when individual nodes are compromised or fail.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces a privacy management broker as an intermediary component that coordinates between distributed data stores and applications. This broker enforces privacy rules and manages data access permissions across the distributed architecture, simplifying the complexity by providing a centralized control mechanism while maintaining distributed storage benefits.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Speed

If all customer data is retrieved from central storage for every application request, then data consistency is improved, but access speed and system efficiency deteriorate due to continuous network communication overhead

Engineering Contradiction:
Improvedata access speedVSAvoiddata consistency
Core Design Contradiction:
SpeedVSLoss of information

Solution Approach 1:

The patent implements preliminary action by pre-fetching and caching customer data in distributed data stores before it is actually needed by applications. Data is retrieved from central storage in advance and stored locally at distributed nodes, so that when applications need the data, it is already available locally, significantly reducing access time and network overhead.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent applies local quality by allowing different distributed data stores to maintain local copies of data relevant to their specific regions or functions. Each node can serve local requests independently without requiring continuous communication with the central storage, improving access speed while maintaining data consistency through selective synchronization.

Inventive Principle:
Principle #3Local quality

3Ease of operation

If distributed components store customer data locally, then access speed is improved, but data security and centralized control deteriorate due to increased attack surfaces and decentralized management

Engineering Contradiction:
Improvedata accessibilityVSAvoidsecurity risks
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The privacy management broker serves as a security intermediary that all data access requests must pass through. Even though data is distributed locally, the broker enforces centralized security policies, validates access permissions, and monitors data access patterns. This maintains centralized control and security oversight while allowing fast local access to authorized data.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent changes the security parameter from centralized physical security to distributed logical security. Instead of relying on the physical security of a single central storage facility, the system implements security through distributed encryption, access control lists, and policy-based authorization that can be enforced across all distributed nodes, reducing the impact of any single point being compromised.

Inventive Principle:
Principle #35Parameter changes

4Adaptability or versatility

If a centralized privacy management system is used, then rule enforcement is improved, but system scalability and fault tolerance deteriorate due to centralized bottlenecks

Engineering Contradiction:
Improvesystem scalabilityVSAvoidfault tolerance
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent segments the centralized privacy management system into multiple distributed privacy rule engines deployed across different nodes. Each engine can independently evaluate and enforce privacy rules for data in its local data store. This segmentation enables the system to scale horizontally by adding more nodes while maintaining fault tolerance, as the failure of one rule engine does not affect the others.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent implements dynamics by making the privacy management architecture adaptable and reconfigurable. The distributed rule engines can dynamically load, update, and enforce privacy rules without requiring centralized coordination for every change. This dynamic capability allows the system to scale flexibly and maintain reliability even as the system grows and individual components fail.

Inventive Principle:
Principle #15Dynamics

Data Source

PatentUS8326767B1Customer data privacy implementation
Publication Date: 2012.12.04 T MOBILE INNOVATIONS LLC
  • US8326767B1 patent drawing
  • US8326767B1 patent drawing
  • US8326767B1 patent drawing

AI summary

A system for privacy management of customer data is provided. The system includes a data store, a plurality of applications, a central broker and a distributed component. The data store maintains customer privacy data used by the applications. The central broker provides the applications with customer data and manages the customer privacy data according to a set of rules regarding access to the customer privacy data. The distributed component is distributed from the central broker and is operable to communicate with the central broker to obtain at least some of the customer data. The distributed component provides at least some of the customer privacy data to the applications according to the set of rules regarding access to the customer privacy data.