Dynamic Security Criteria for Electronic Files

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current security systems for protecting proprietary information in enterprise environments are inadequate, as they rely on static security criteria that cannot be easily altered, making them vulnerable to unauthorized access from within or outside the network, and are insufficient to manage large volumes of electronic resources effectively.

Innovation Solution

Implementing process-driven security policies that dynamically alter security criteria, such as encryption keys, as electronic files transition through different states, allowing access restrictions to change automatically based on defined security policies, enabling flexible and robust security management.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If static security criteria are used to protect electronic files, then the security system is simple to implement, but the system lacks flexibility and cannot adapt to changing security requirements

Engineering Contradiction:
Improveflexibility of security criteriaVSAvoidcomplexity of security system
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent implements dynamic security criteria that automatically change as files transition through different process states. Security policies are no longer static but evolve dynamically based on the file's current state in the business process, allowing the system to adapt security requirements without manual intervention.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The patent changes security parameters (access rights, encryption keys) based on the state of the file in the business process. As files move through different states (e.g., draft, approved, archived), their security parameters automatically change according to predefined policies, providing flexibility without requiring complex manual reconfiguration.

Inventive Principle:
Principle #35Parameter changes

2Productivity

If manual administration of security criteria is used, then the system is easy to control, but it cannot handle large volumes of electronic resources effectively

Engineering Contradiction:
Improvevolume of electronic resources managedVSAvoidadministrative burden
Core Design Contradiction:
ProductivityVSEase of operation

Solution Approach 1:

The system implements self-service security management where security criteria are automatically applied and updated based on file state transitions. The security system serves itself by automatically enforcing policies without requiring administrator intervention for each file, enabling efficient management of large volumes of electronic resources.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent implements feedback mechanisms where the system continuously monitors file state transitions and automatically adjusts security criteria in response. This closed-loop approach allows the system to respond to changing conditions automatically, reducing administrative burden while maintaining effective control over large numbers of files.

Inventive Principle:
Principle #23Feedback

3Reliability

If security criteria cannot be altered after assignment, then the security system is stable and reliable, but it cannot respond to changing security requirements

Engineering Contradiction:
Improvereliability of security protectionVSAvoidability to alter security criteria
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent makes security criteria dynamic by linking them to file state transitions in the business process. Security criteria are reliably enforced according to predefined policies but can automatically change when files transition between states, providing both reliability and adaptability simultaneously.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The system performs preliminary actions by pre-defining security policies for each possible file state. When a file transitions to a new state, the appropriate security criteria are already in place and automatically applied, ensuring reliable security protection while allowing necessary changes without ad-hoc administrative intervention.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS8127366B2Method and apparatus for transitioning between states of security policies used to secure electronic documents
Publication Date: 2012.02.28 INTELLECTUAL VENTURES I LLC
  • US8127366B2 patent drawing
  • US8127366B2 patent drawing
  • US8127366B2 patent drawing

AI summary

Techniques for dynamically altering security criteria used in a file security system are disclosed. The security criteria pertains to keys (or ciphers) used by the file security system to encrypt electronic files to be secured or to decrypt electronic files already secured. The security criteria can, among other things, include keys that are required to gain access to electronic files. Here, the keys can be changed automatically as electronic files transition between different states of a process-driven security policy. The dynamic alteration of security criteria enhances the flexibility and robustness of the security system. In other words, access restrictions on electronic files can be dependent on the state of the process-driven security policy and enforced in conjunction with one or more cryptographic methods.