Investigatory Container for Network Security Evaluation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Companies, especially small businesses, face challenges in effectively managing and measuring the security of their data and networks due to difficulties in identifying sensitive data locations, communicating cybersecurity investments, ensuring disaster recovery, and assessing the success of security training, leading to increased vulnerability to data breaches.

Innovation Solution

A network security evaluation method and system that utilizes an investigatory container to assess security devices and protocols, determine security scores and ratings, and adjust configurations to enhance security, incorporating features like remote management, data normalization, and blockchain storage for security data.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If companies implement comprehensive cybersecurity technologies, then security protection capability is improved, but difficulty in measuring effectiveness and managing security increases

Engineering Contradiction:
Improvesecurity protection capabilityVSAvoidsecurity management complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent introduces an investigatory container as an intermediary system that automatically evaluates security devices and protocols. This mediator collects data from multiple security tools, normalizes the information, and presents it in a unified format, thereby simplifying the complexity of managing and measuring numerous security technologies without reducing their protective capability.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system implements continuous feedback mechanisms by automatically monitoring security device performance, comparing it against industry standards, and providing actionable insights. This feedback loop enables companies to measure effectiveness and adjust their security posture dynamically, reducing management complexity through automated assessment rather than manual evaluation.

Inventive Principle:
Principle #23Feedback

2Reliability

If companies deploy multiple security devices and protocols, then security coverage is improved, but difficulty in identifying sensitive data locations and measuring security success increases

Engineering Contradiction:
Improvesecurity coverageVSAvoidsecurity effectiveness measurement
Core Design Contradiction:
ReliabilityVSDifficulty of detecting and measuring

Solution Approach 1:

The investigatory container serves as a universal platform that can evaluate multiple types of security devices and protocols simultaneously. It provides a multi-functional assessment capability that covers data location identification, security device performance measurement, and protocol effectiveness evaluation, thereby simplifying the detection and measurement processes across diverse security implementations.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The system acts as an intermediary that aggregates data from various security sources, normalizes different data formats, and presents unified security assessments. This mediation process makes it easier to identify sensitive data locations and measure security success by consolidating information from multiple security devices into a coherent view.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Measurement precision

If companies increase security monitoring and evaluation capabilities, then security awareness is improved, but resource consumption and system complexity increase

Engineering Contradiction:
Improvesecurity evaluation precisionVSAvoidmonitoring system complexity
Core Design Contradiction:
Measurement precisionVSDevice complexity

Solution Approach 1:

The investigatory container implements self-service capabilities by automatically collecting security data, performing evaluations, and generating reports without requiring extensive manual intervention. This automation maintains high measurement precision while reducing the operational complexity and resource consumption associated with continuous security monitoring and evaluation.

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS12021889B2System security evaluation device and method
Publication Date: 2024.06.25 UNCOMMONX INC
  • US12021889B2 patent drawing
  • US12021889B2 patent drawing
  • US12021889B2 patent drawing

AI summary

A method for a system security evaluation includes establishing, by a security evaluation device, a connection to a system associated with an entity. The method further includes obtaining an inventory of system elements of the system. The method further includes identifying one or more desired system elements from the inventory of system elements to perform the system security evaluation. The method further includes identifying one or more security elements from the one or more desired system elements. The method further includes communicating with each security element of one or more security elements to produce system security data. The method further includes analyzing the system security data in light of minimum viable data metrics established by one of more of: one or more external data sources and the entity to produce one or more system security scores indicative of security proficiency of the one or more desired system elements.