Dynamic Micro-Segmentation via Website Access Variance
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current computer security systems face challenges in effectively applying micro-segmentation to devices with complex website access patterns, as they are typically limited to devices with simple access patterns, failing to provide adequate protection for devices with varying and dynamic website usage.
Innovation Solution
A method and system for micro-segmenting devices by dynamically measuring the variance in website access patterns over time and applying a security profile that limits access to previously accessed unique domains, categories, or security risk levels, thereby defining a set of whitelisted websites based on observed patterns.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If micro-segmentation is applied to devices with simple website access patterns, then security protection is improved, but the scope of protected devices is limited and excludes devices with complex access patterns
Solution Approach 1:
The patent implements dynamic micro-segmentation by continuously monitoring website access patterns and automatically adjusting security profiles based on observed behavior. The system transitions from static, pre-defined segmentation rules to dynamic, behavior-based segmentation that adapts to each device's actual usage patterns, thereby extending protection to devices with complex and varying access patterns while maintaining security effectiveness
Solution Approach 2:
The system changes the parameter of segmentation criteria from fixed, simple rules (e.g., allowing only 5 specific domains) to flexible, measured variance thresholds. By monitoring the variance in website access patterns and comparing against threshold levels, the system can determine whether a device exhibits simple or complex patterns and apply appropriate security profiles, thus expanding adaptability while maintaining reliability
2Reliability
If strict micro-segmentation rules are applied to limit device access, then security protection is improved, but device functionality may be hindered
Solution Approach 1:
The system performs preliminary monitoring and profiling of website access patterns before applying restrictive security rules. By observing devices during an initial period and establishing their normal behavior baselines, the system can then apply micro-segmentation rules that are tailored to each device's actual usage patterns, preventing false restrictions that would hinder functionality while maintaining security
Solution Approach 2:
The system implements continuous feedback loops where website access patterns are monitored, variance is measured, and security profiles are adjusted based on observed behavior. This feedback mechanism ensures that segmentation rules remain aligned with actual device needs, automatically relaxing restrictions when legitimate access patterns are detected while maintaining protection against anomalies, thus preserving device functionality
Data Source
AI summary
The disclosed computer-implemented method for performing micro-segmenting may include (i) identifying at least a portion of a device, (ii) measuring a variance value that indicates a level of variance in terms of websites accessed by the portion of the device over a period of time, and (iii) locking, in response to determining that the variance value satisfies a threshold level of simplicity, the portion of the device by applying a security profile to the portion of the device that limits the portion of the device to accessing a set of websites that is defined in terms of the websites accessed by the portion of the device over the period of time. Various other methods, systems, and computer-readable media are also disclosed.


