Dynamic Analytic Workspaces with User-Dataset Obfuscation Rules

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing computing systems struggle to dynamically create analytic workspaces with appropriate data obfuscation levels tailored to individual user and dataset pairings, leading to inefficiencies and security vulnerabilities in handling sensitive information.

Innovation Solution

An Obfuscation-as-a-Service (OaaS) platform that automatically generates workspaces with dataset provisioning based on user-specific and data-specific obfuscation levels, leveraging data usage agreements and role-based access controls to ensure secure and customizable data access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If data usage agreements are enforced manually on an individual user-software basis, then data security and privacy protection are improved, but operational complexity and time consumption increase significantly

Engineering Contradiction:
Improvedata securityVSAvoidoperational complexity
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system automatically enforces data usage agreements by embedding DUA rules directly into the software platform. The platform self-manages data protection protocols, access controls, and compliance monitoring without requiring manual intervention from individual users or software administrators, thereby maintaining high security standards while reducing operational complexity

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The invention implements a universal data usage agreement enforcement mechanism that applies across hundreds of different software resources and use cases within large organizations. A single centralized system handles DUA management for all software applications, eliminating the need for separate manual enforcement processes for each individual software tool

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Reliability

If data usage agreements are enforced individually for each user-software pairing, then data privacy protection is improved, but time consumption and productivity decrease

Engineering Contradiction:
Improvedata privacy protectionVSAvoidtime consumption
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

Data usage agreements are pre-configured and embedded into the software platform before users access datasets. The system automatically applies appropriate DUA rules and data obfuscation levels based on pre-established policies, eliminating the need for time-consuming manual review and enforcement processes for each individual data access request

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system implements automated feedback mechanisms that monitor data access patterns and compliance status in real-time. The platform continuously verifies that data usage agreements are being followed and automatically adjusts data obfuscation levels based on user behavior and access patterns, maintaining privacy protection without requiring ongoing manual intervention

Inventive Principle:
Principle #23Feedback

3Ease of operation

If dynamic workspace creation with automated obfuscation is implemented, then ease of data access is improved, but system complexity increases

Engineering Contradiction:
Improveease of data accessVSAvoidsystem complexity
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The invention introduces an intermediary layer between users and datasets that automatically handles data obfuscation and access control. This intermediary component translates complex DUA rules into automated enforcement actions, simplifying the user experience while managing the underlying system complexity through a dedicated mediation layer that handles all obfuscation logic

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS20250335214A1Dynamic workspace creation with automated obfuscation as a computing service
Publication Date: 2025.10.30 INTERNATIONAL BUSINESS MACHINE CORPORATION
  • US20250335214A1 patent drawing
  • US20250335214A1 patent drawing
  • US20250335214A1 patent drawing

AI summary

Mechanisms are provided for dynamically generating workspaces and provisioning them with datasets. The mechanisms store datasets in a data vault for provisioning to dynamically generated workspaces associated with users. The dynamically generated workspaces are computer environments through which the users can perform operations on the one or more datasets. The mechanisms receive a request, from a user, for access to a specified dataset, and retrieve a data usage agreement (DUA) corresponding to a pairing of the user with the specified dataset. The DUA specifies a level of obfuscation to be applied to the specified dataset when provisioning a workspace associated with the user, with the specified dataset. The mechanisms dynamically generate, on-demand, the workspace associated with the user based on the retrieved DUA. The mechanisms also automatically provision, on-demand, the dynamically generated workspace with a version of the specified dataset corresponding to the level of obfuscation specified in the DUA.