Interactive Network Visualization for Security Management

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Network security management faces challenges in quickly extracting meaningful insights from voluminous network data and effectively enforcing security policies in dynamically programmable networks, which can lead to increased complexity and vulnerability to attacks.

Innovation Solution

A network security management system that includes an interactive visualization subsystem, an interaction handling subsystem, and a network analytics subsystem, utilizing game engine technology to present network data visually and enable intuitive user interactions, allowing for real-time analysis and dynamic adjustment of network visualizations to facilitate swift identification and remediation of threats.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional static security policies are deployed across the entire network infrastructure, then network security is maintained, but the system lacks adaptability to dynamic threats and changing network conditions

Engineering Contradiction:
Improvenetwork securityVSAvoidsecurity policy adaptability
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent implements dynamic security policies that automatically adjust based on real-time network conditions, threat levels, and contextual factors. The system transitions from static, pre-defined security rules to dynamically generated policies that adapt to changing network environments, thereby maintaining reliability while improving adaptability to new threats.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The system changes security policy parameters in real-time based on network context, threat assessments, and operational conditions. By dynamically adjusting policy parameters rather than using fixed rules, the system achieves both consistent security enforcement and adaptability to evolving threats.

Inventive Principle:
Principle #35Parameter changes

2Measurement precision

If voluminous network data is collected for security analysis, then threat detection capability is improved, but the complexity of extracting meaningful insights increases

Engineering Contradiction:
Improvethreat detection capabilityVSAvoiddata analysis complexity
Core Design Contradiction:
Measurement precisionVSDevice complexity

Solution Approach 1:

The system extracts only the most relevant and meaningful features from voluminous network data using automated analysis. By filtering out noise and focusing on critical security indicators, the system improves threat detection while reducing the complexity of data processing and interpretation.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent introduces an intermediary layer of automated analysis tools and algorithms that process raw network data and transform it into actionable security insights. This intermediary processing layer simplifies the complexity of analyzing voluminous data by providing structured, interpreted information to security personnel.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Reliability

If manual analysis of network data is performed, then security policies can be enforced, but response time to threats is delayed

Engineering Contradiction:
Improvesecurity policy enforcementVSAvoidthreat response time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The system implements automated security policy enforcement that operates without manual intervention. Security policies are automatically generated, deployed, and executed based on real-time network conditions and threat assessments, eliminating delays associated with manual analysis and response while maintaining reliable security enforcement.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The system performs preliminary automated analysis and prepares security responses in advance before threats fully manifest. By proactively monitoring network conditions and pre-positioning security measures, the system reduces response time while ensuring reliable policy enforcement when threats occur.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS10291653B2Visually intuitive interactive network management
Publication Date: 2019.05.14 SRI INTERNATIONAL
  • US10291653B2 patent drawing
  • US10291653B2 patent drawing
  • US10291653B2 patent drawing

AI summary

Network security management technology as disclosed herein generates and dynamically updates an intuitive, interactive visualization of a computer network in live operation. The network security management technology interprets human user interactions, such as gestures, as network directives, and updates the interactive visualization in response to the network directives.