Pseudonymized Security Analytics for Anonymity and Risk Identification
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing security systems identify individuals engaging in risky behavior using true identities, which can lead to dilemmas for security administrators and HR personnel, as it reveals sensitive information.
Innovation Solution
A method and system that uses pseudonyms to anonymously identify entities and their corresponding security risk factors by enriching events with pseudonyms and executing security analytics operations.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Measurement precision
If true identities are used to identify individuals engaging in risky behavior, then security analytics can accurately identify security risks, but sensitive information is revealed creating dilemmas for security administrators and HR personnel
Solution Approach 1:
The patent introduces pseudonyms as intermediary identifiers that replace true identities in security analytics systems. These pseudonyms act as mediators between the need for accurate identification and the requirement for privacy protection, allowing the system to track and analyze security risks without exposing sensitive personal information. The pseudonymization process maintains the link between behavior patterns and identifiers while breaking the connection to actual identities.
Solution Approach 2:
The patent creates copies of identity information in the form of pseudonyms that replicate the functional properties of true identities for security analysis purposes. These pseudonym copies allow the system to perform identification and tracking operations without using the original sensitive identity data, thereby preserving privacy while maintaining analytical capabilities.
2Loss of information
If pseudonyms are used to anonymously identify entities, then individual identities are protected, but the ability to trace specific individuals may be reduced
Solution Approach 1:
Pseudonyms serve as intermediary identifiers that maintain traceability within the anonymized system. The patent establishes a mapping mechanism between pseudonyms and true identities that is controlled and secured, allowing the system to trace specific individuals when necessary while maintaining anonymity in normal operations. This intermediary layer enables conditional traceability without compromising everyday privacy protection.
Solution Approach 2:
The patent implements dynamic pseudonym assignment where entities can be assigned different pseudonyms across different contexts or time periods. This dynamic approach allows the system to adapt the level of anonymity and traceability based on specific security requirements, enabling flexible balancing between privacy protection and investigative capabilities when needed.
Data Source
AI summary
A method, system and computer-usable medium for using pseudonyms to identify entities and their corresponding security risk factors is disclosed. In certain embodiments, a computer-implemented method for identifying security risks associated with a plurality of different entities is disclosed, wherein the method comprises: receiving a stream of events, the stream of events comprising a plurality of events associated with the plurality of different entities; pseudonymizing events of the plurality of events by replacing entity names in the plurality of events with corresponding entity pseudonyms to thereby provide a plurality of pseudonymized events; executing security analytics operations on the plurality of pseudonymized events to identify user behaviors presenting security risks; and using the entity pseudonyms to anonymously identify entities engaging in security risk related behaviors.


