Dynamic Security Criteria for Electronic Files
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current security systems for protecting proprietary information in enterprise environments are inadequate, as they rely on static security criteria that cannot be easily altered, making them vulnerable to unauthorized access from within or outside the network, and are insufficient to manage large volumes of electronic resources effectively.
Innovation Solution
Implementing process-driven security policies that dynamically alter security criteria, such as encryption keys, as electronic files transition through different states, allowing access restrictions to change automatically based on defined security policies, enabling flexible and robust security management.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If static security criteria are used to protect electronic files, then the security system is simple to implement, but the system lacks flexibility and cannot adapt to changing security requirements
Solution Approach 1:
The patent implements dynamic security criteria that automatically change as files transition through different process states. Security policies are no longer static but evolve dynamically based on the file's current state in the business process, allowing the system to adapt security requirements without manual intervention.
Solution Approach 2:
The patent changes security parameters (access rights, encryption keys) based on the state of the file in the business process. As files move through different states (e.g., draft, approved, archived), their security parameters automatically change according to predefined policies, providing flexibility without requiring complex manual reconfiguration.
2Productivity
If manual administration of security criteria is used, then the system is easy to control, but it cannot handle large volumes of electronic resources effectively
Solution Approach 1:
The system implements self-service security management where security criteria are automatically applied and updated based on file state transitions. The security system serves itself by automatically enforcing policies without requiring administrator intervention for each file, enabling efficient management of large volumes of electronic resources.
Solution Approach 2:
The patent implements feedback mechanisms where the system continuously monitors file state transitions and automatically adjusts security criteria in response. This closed-loop approach allows the system to respond to changing conditions automatically, reducing administrative burden while maintaining effective control over large numbers of files.
3Reliability
If security criteria cannot be altered after assignment, then the security system is stable and reliable, but it cannot respond to changing security requirements
Solution Approach 1:
The patent makes security criteria dynamic by linking them to file state transitions in the business process. Security criteria are reliably enforced according to predefined policies but can automatically change when files transition between states, providing both reliability and adaptability simultaneously.
Solution Approach 2:
The system performs preliminary actions by pre-defining security policies for each possible file state. When a file transitions to a new state, the appropriate security criteria are already in place and automatically applied, ensuring reliable security protection while allowing necessary changes without ad-hoc administrative intervention.
Data Source
AI summary
Techniques for dynamically altering security criteria used in a file security system are disclosed. The security criteria pertains to keys (or ciphers) used by the file security system to encrypt electronic files to be secured or to decrypt electronic files already secured. The security criteria can, among other things, include keys that are required to gain access to electronic files. Here, the keys can be changed automatically as electronic files transition between different states of a process-driven security policy. The dynamic alteration of security criteria enhances the flexibility and robustness of the security system. In other words, access restrictions on electronic files can be dependent on the state of the process-driven security policy and enforced in conjunction with one or more cryptographic methods.


