Persona-Based Platform for Role-Specific Access Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Employees face inefficiencies when accessing multiple systems and subsystems to complete tasks, requiring extensive training, leading to increased time and cost, and security vulnerabilities due to complex access rights management.

Innovation Solution

A persona-based content generation platform that generates user-specific content pages based on roles and responsibilities, providing access to only necessary applications and features, reducing training needs and enhancing security through an identity lifecycle management system and platform as a service.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If employees are provided access to multiple systems and subsystems to complete tasks, then task functionality is improved, but system complexity and training requirements increase

Engineering Contradiction:
Improvetask functionalityVSAvoidsystem complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent segments the complex array of systems and subsystems into role-based access groups. Each employee role (e.g., sales manager, HR specialist) is assigned a specific subset of systems relevant to their responsibilities, rather than providing universal access to all systems. This segmentation reduces the perceived complexity for each user while maintaining overall system versatility.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent implements a universal role-based access control framework that manages multiple systems through a common interface. This framework provides multi-functionality by enabling the same access control mechanism to manage permissions across diverse systems (CRM, ERP, email, etc.), reducing the need for separate access management for each system.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Adaptability or versatility

If employees are provided access to multiple systems and subsystems to complete tasks, then task functionality is improved, but training time and costs increase

Engineering Contradiction:
Improvetask functionalityVSAvoidtraining time
Core Design Contradiction:
Adaptability or versatilityVSLoss of time

Solution Approach 1:

Training is segmented by role rather than by individual system. Employees receive training specific to their role-based system subset, reducing overall training time. For example, sales managers receive training only on CRM and sales-related systems, not on HR or finance systems.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

A universal training framework based on roles provides multi-functionality across different employee positions. The same role-based access control framework that manages system access also organizes training content, ensuring employees learn only what is relevant to their assigned systems and responsibilities.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Adaptability or versatility

If complex access rights are provided to multiple systems, then task functionality is improved, but security vulnerabilities increase

Engineering Contradiction:
Improvetask functionalityVSAvoidsecurity
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

Access rights are segmented by role, creating distinct security boundaries for different employee positions. Each role receives access only to systems and data necessary for their specific responsibilities, minimizing security exposure. This segmentation ensures that a security breach in one role's systems does not compromise the entire system network.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

A universal role-based access control framework provides consistent security management across all systems. This framework enables centralized security policy enforcement, allowing security administrators to manage and audit access rights uniformly across diverse systems, thereby improving overall security reliability while maintaining task functionality.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS11625682B2Persona-based application platform
Publication Date: 2023.04.11 CORELOGIC SOLUTIONS LLC
  • US11625682B2 patent drawing
  • US11625682B2 patent drawing
  • US11625682B2 patent drawing

AI summary

A system is disclosed that implements features for generating a user-specific content page. In one embodiment, the system includes an identity lifecycle management (ILM) system a platform as a service (PaaS) system, and an application system. The ILM system can store associations of a user with personas, and a list of features of applications, run the application system, associated with each persona. The PaaS system may retrieve data values of the features of the applications associated with the personas of the user from the application system to generate a user-specific content page for the user.