Key Management System for Secure Customer Data Encryption

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Customer interactions captured in recording systems often contain sensitive information that is vulnerable to identity theft and unlawful access due to inadequate security measures, particularly in customer centers where data is stored and transmitted.

Innovation Solution

Implementing a key management system that provides electronic keys for encrypting and decrypting data, ensuring secure communication and storage by using centralized or local key management systems, and maintaining a cache for secure key retrieval and usage, even if other protection mechanisms are breached.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If data is stored in recording systems for evaluation and performance visualization, then productivity and monitoring capabilities are improved, but security and protection against identity theft deteriorate

Engineering Contradiction:
Improveperformance evaluation capabilityVSAvoidvulnerability to identity theft
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The system performs preliminary encryption of captured data before storage, applying encryption keys in advance to protect sensitive information. This preliminary security action ensures that data remains protected from the moment of capture, preventing identity theft while maintaining productivity through automated encryption processes.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces encryption keys as an intermediary mechanism between the recording system and stored data. These keys act as a mediator that controls access to sensitive information, allowing authorized evaluation while preventing unauthorized access. The key management system serves as an intermediary layer that balances security requirements with operational needs.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Object-affected harmful factors

If encryption keys are stored with encrypted data, then security against unauthorized access is improved, but device complexity and key management requirements worsen

Engineering Contradiction:
Improveunauthorized access protectionVSAvoidkey management system complexity
Core Design Contradiction:
Object-affected harmful factorsVSDevice complexity

Solution Approach 1:

The system segments the key management function from the recording system by using separate encryption keys that can be independently managed. This segmentation allows the recording system to focus on capturing data while a dedicated key management system handles security, reducing overall complexity while maintaining strong protection.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent employs copy protection mechanisms where encryption keys are distributed to specific components needed for decryption. Instead of storing all keys universally, the system creates and manages copies of keys only where they are needed for authorized access, reducing complexity while maintaining security.

Inventive Principle:
Principle #26Copying

3Object-affected harmful factors

If encryption is applied to all captured data, then security and data protection are improved, but processing time and computational resources worsen

Engineering Contradiction:
Improvedata protection capabilityVSAvoiddata processing time
Core Design Contradiction:
Object-affected harmful factorsVSLoss of time

Solution Approach 1:

The system applies local quality encryption by selectively encrypting only the portions of captured data that contain sensitive information such as credit card numbers and social security numbers. This targeted approach provides strong protection for critical data while minimizing processing time and computational resources compared to encrypting all data uniformly.

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS7848524B2Systems and methods for a secure recording environment
Publication Date: 2010.12.07 VERINT AMERICAS INC
  • US7848524B2 patent drawing
  • US7848524B2 patent drawing
  • US7848524B2 patent drawing

AI summary

Systems and methods are disclosed for providing electronic keys that are used to encrypt and decrypt secure, captured data in a customer center. In one embodiment, the method comprises the steps of: establishing a secure communication over a network between the key management system and a retrieval component; transmitting a duplicate copy of at least one electronic key to a cache that is electrically coupled to the retrieval component; receiving a request to retrieve the electronic keys; and transmitting the retrieved electronic keys for decrypting the stored data.