Email Security Classification Routing via White List Validation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing methods for securing restricted information in electronic mail messages are ineffective due to user mistakes or intentional violations, and they often impractically limit communication by restricting the ability to send messages outside the enterprise.

Innovation Solution

A system and method where a client device determines the security classification of an email message and routes it based on this classification, using a white list to validate recipients and ensure that only authorized parties receive the message, with the option to send messages internally or externally based on predefined security protocols.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If procedures and rules are established for users to secure restricted information, then information security is improved, but user compliance deteriorates due to mistakes or intentional violations

Engineering Contradiction:
Improveinformation securityVSAvoiduser compliance
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system automatically classifies information as restricted or non-restricted based on predefined criteria without requiring user judgment. The email application itself performs the security classification and enforcement actions, eliminating reliance on user compliance with procedures and rules.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent introduces an intermediary classification mechanism that sits between the user and the information. This intermediary automatically determines whether information is restricted and applies appropriate security measures, acting as a mediator that enforces security without requiring user intervention or decision-making.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If an email application prevents users from attaching electronic files or limits recipients to pre-defined sets, then information security is improved, but communication flexibility deteriorates

Engineering Contradiction:
Improveinformation securityVSAvoidcommunication flexibility
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The system dynamically adjusts security restrictions based on the actual classification of each email message. Rather than applying static, blanket restrictions to all emails, the system adapts its security measures to each message's specific classification, allowing flexible communication for non-restricted information while maintaining security for restricted information.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The patent applies different security measures to different parts of the email system based on local conditions. Restricted information receives enhanced security controls (such as encryption or approval requirements), while non-restricted information flows freely. This local differentiation allows the system to maintain both security and communication flexibility simultaneously.

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS8793801B2Systems and methods to secure restricted information in electronic mail messages
Publication Date: 2014.07.29 GOLDMAN SACHS & CO LLC
  • US8793801B2 patent drawing
  • US8793801B2 patent drawing
  • US8793801B2 patent drawing

AI summary

Systems and methods are provided to secure restricted information in electronic mail messages. According to some embodiments, it is determined at a client device that an email message is being generated by a user. A security classification may be associated with the email message, and the email message may be sent toward a destination along with an indication of the security classification, wherein the email message is routed based, at least in part, on the security classification.