Email Security Classification Routing via White List Validation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing methods for securing restricted information in electronic mail messages are ineffective due to user mistakes or intentional violations, and they often impractically limit communication by restricting the ability to send messages outside the enterprise.
Innovation Solution
A system and method where a client device determines the security classification of an email message and routes it based on this classification, using a white list to validate recipients and ensure that only authorized parties receive the message, with the option to send messages internally or externally based on predefined security protocols.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If procedures and rules are established for users to secure restricted information, then information security is improved, but user compliance deteriorates due to mistakes or intentional violations
Solution Approach 1:
The system automatically classifies information as restricted or non-restricted based on predefined criteria without requiring user judgment. The email application itself performs the security classification and enforcement actions, eliminating reliance on user compliance with procedures and rules.
Solution Approach 2:
The patent introduces an intermediary classification mechanism that sits between the user and the information. This intermediary automatically determines whether information is restricted and applies appropriate security measures, acting as a mediator that enforces security without requiring user intervention or decision-making.
2Reliability
If an email application prevents users from attaching electronic files or limits recipients to pre-defined sets, then information security is improved, but communication flexibility deteriorates
Solution Approach 1:
The system dynamically adjusts security restrictions based on the actual classification of each email message. Rather than applying static, blanket restrictions to all emails, the system adapts its security measures to each message's specific classification, allowing flexible communication for non-restricted information while maintaining security for restricted information.
Solution Approach 2:
The patent applies different security measures to different parts of the email system based on local conditions. Restricted information receives enhanced security controls (such as encryption or approval requirements), while non-restricted information flows freely. This local differentiation allows the system to maintain both security and communication flexibility simultaneously.
Data Source
AI summary
Systems and methods are provided to secure restricted information in electronic mail messages. According to some embodiments, it is determined at a client device that an email message is being generated by a user. A security classification may be associated with the email message, and the email message may be sent toward a destination along with an indication of the security classification, wherein the email message is routed based, at least in part, on the security classification.


