Enterprise Data Tokenization for Secure Public Service Integration
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Enterprises face challenges in securely using public services like social media and cloud storage due to trust issues with third-party vendors, as existing encryption methods often result in garbled text that is not user-friendly and require administrative access to underlying platforms.
Innovation Solution
A method and system that utilize tokenization and steganographic techniques to make secure enterprise content imperceptible on public services, allowing seamless integration while maintaining confidentiality, using a VPE system that intercepts communications, applies encryption or tokenization based on enterprise policies, and uses secret sharing for enhanced security.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If existing encryption methods are used to secure enterprise data on public services, then data confidentiality is improved, but the content becomes garbled text that is not user-friendly
Solution Approach 1:
The patent introduces an intermediary system that sits between the enterprise user and the public service platform. This intermediary performs tokenization of sensitive data before transmission, replacing actual data with tokens that are imperceptible on the public platform. The system acts as a mediator that maintains both security and usability by handling the transformation process transparently.
Solution Approach 2:
The patent changes the parameter of data representation from human-readable text to tokenized imperceptible form. By transforming the state of data from plaintext to tokens embedded in imperceptible content, the system achieves both confidentiality and user-friendliness, as users interact with the system without noticing the transformation.
2Adaptability or versatility
If enterprises use public services for storing and sharing data, then service accessibility and cost are improved, but trust issues and security risks worsen
Solution Approach 1:
The patent segments data into two distinct parts: tokens that are placed on the public service platform and the actual sensitive data that remains under enterprise control. This segmentation allows the enterprise to utilize public services for storage and sharing while maintaining security, as the public platform only holds meaningless tokens without access to the actual data.
Solution Approach 2:
The patent introduces an intermediary tokenization system that enables secure use of public services. This intermediary layer allows enterprises to leverage the accessibility and cost benefits of public services while mitigating trust issues by ensuring that sensitive data never actually resides on the untrusted public platform.
3Reliability
If data is encrypted for security, then confidentiality is improved, but administrative access and platform control are required which increases complexity
Solution Approach 1:
The patent implements a self-service tokenization approach where the enterprise's own system performs the tokenization and data management without requiring administrative access to the public service platform. The system autonomously handles data transformation and token management, eliminating the need for complex administrative interventions.
Solution Approach 2:
The patent introduces an intermediary tokenization layer that simplifies security management by handling all cryptographic and tokenization operations centrally. This intermediary absorbs the complexity of security management, allowing the public service platform to remain simple while maintaining high security standards through the intermediary's sophisticated tokenization mechanisms.
Data Source
AI summary
A method, system, apparatus and computer programs are disclosed to process content for an enterprise. The method includes reviewing, using at least one enterprise policy, content that is to be sent through a data communications network to a public service to determine if the content comprises secure data and, in response to identifying secure data, modifying the content to be sent to the public service such that a presence of secure data will be visually imperceptible when the content is rendered at the public service. The step of modifying can include steganographically embedding the secure data or a link to the secure data in a container such as image data.


