Integrated Security Tool Set for Sensitive Data Protection

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current industry tools for assessing server and database security are not flexible enough to focus on sensitive data, operate independently, and lack efficient information sharing, leading to inadequate protection of sensitive data and inefficient resource utilization.

Innovation Solution

An integrated security tool set that coordinates and manages server and database security tools, including a sensitive data search tool, security compliance tool, access management tool, and auditing tool, to share information and automate security efforts, focusing on sensitive data protection and compliance.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If multiple independent security tools are used to protect servers and databases, then comprehensive security coverage is achieved, but the tools cannot share information and focus security efforts on the most sensitive data

Engineering Contradiction:
Improvesecurity coverageVSAvoidfocus on sensitive data
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent combines multiple independent security tools into a single integrated platform that maintains all security functions (vulnerability assessment, access management, data discovery, etc.) while enabling centralized coordination. The integration allows the system to pool information from all tools and apply collective intelligence to identify and protect sensitive data, resolving the contradiction between comprehensive coverage and focused protection.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The integrated security platform performs multiple security functions within a single system, including vulnerability scanning, access management, data discovery, and compliance monitoring. This multi-functionality allows the system to maintain comprehensive security coverage while simultaneously applying unified logic to identify sensitive data and allocate security resources efficiently across all functions.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Ease of manufacture

If independent security tools operate separately, then each tool can perform its specific function, but information sharing between tools is lacking and efficiency is reduced

Engineering Contradiction:
Improvetool functionalityVSAvoidinformation sharing efficiency
Core Design Contradiction:
Ease of manufactureVSProductivity

Solution Approach 1:

The patent introduces a centralized integration layer that acts as an intermediary between various security tools. This intermediary collects data from all connected tools, standardizes information formats, and distributes relevant information back to the appropriate tools. This mediator enables efficient information sharing while preserving the specialized functionality of each individual security tool.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Reliability

If security tools audit all access to files and databases, then complete access monitoring is achieved, but excessive resources are consumed for tracking and storing all access data

Engineering Contradiction:
Improveaccess monitoringVSAvoidresource consumption
Core Design Contradiction:
ReliabilityVSLoss of energy

Solution Approach 1:

The patent applies different levels of monitoring intensity to different data based on their sensitivity. Instead of uniformly auditing all access, the system identifies sensitive files and databases and applies enhanced monitoring only to those locations. This local differentiation allows complete monitoring of critical areas while reducing resource consumption for less sensitive data, resolving the contradiction between comprehensive monitoring and resource efficiency.

Inventive Principle:
Principle #3Local quality

4Manufacturing precision

If security configuration tools check all database objects, then complete security assessment is achieved, but the tools cannot target objects dependent on sensitive data tables

Engineering Contradiction:
Improvesecurity assessment completenessVSAvoidsensitive data targeting
Core Design Contradiction:
Manufacturing precisionVSMeasurement precision

Solution Approach 1:

The patent performs preliminary data discovery and sensitivity classification before executing security configuration checks. By first identifying which data tables contain sensitive information and which database objects depend on those tables, the system can then prioritize and focus security assessments on the relevant objects. This preliminary action enables both complete assessment coverage and precise targeting of sensitive data-related objects.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS11182499B2Method of integrating an organizational security system
Publication Date: 2021.11.23 NAHOR TECH INC
  • US11182499B2 patent drawing
  • US11182499B2 patent drawing
  • US11182499B2 patent drawing

AI summary

An integration security tool set integrates a suite of security tools with an organization process and work flow, coordinated and managed by the integrated tool set, to manage server and database security. The integration tool set communicates with different security tools to ensure that different sets of security rules are implemented in the servers and databases in the organization.