Remote Device Security Mode Adaptation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Corporate security systems are inadequate when employees work remotely, as they lack control over personal devices and networks, making them vulnerable to unauthorized access and threats like ransomware, while applying full corporate security limits user freedom and device functionality.

Innovation Solution

A system that determines the operating mode of a remote device to selectively apply corporate or personal security protocols, using protection files to validate resource access, ensuring secure access to corporate resources while allowing personal freedoms.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If full corporate security is applied to remote devices, then security protection is improved, but user freedom and device functionality are severely limited

Engineering Contradiction:
Improvesecurity protectionVSAvoiduser freedom
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system dynamically adjusts security measures based on the detected operating mode. When corporate mode is detected, full security protocols are applied. When personal mode is detected, security is relaxed to allow personal activities. This dynamic adaptation resolves the contradiction by making security flexible rather than static.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

Different security levels are applied to different operational contexts (local qualities). Corporate-mode activities receive strict security protection, while personal-mode activities receive relaxed security. This allows the system to provide appropriate security for each context without uniformly restricting all user activities.

Inventive Principle:
Principle #3Local quality

2Reliability

If corporate security measures are applied to personal devices, then data protection is improved, but control over software and user activities is lost

Engineering Contradiction:
Improvedata protectionVSAvoidcontrol over software
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The security system dynamically adapts its control level based on the operating mode detected on the personal device. In corporate mode, the system exercises full control over software execution and user activities. In personal mode, control is relaxed to allow installation of personal software and freedom of user activities, thus maintaining adaptability while ensuring data protection when needed.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The system changes the security parameter (control level) based on the operating mode. When in corporate mode, strict control parameters are applied. When in personal mode, relaxed control parameters are applied. This parameter change allows the system to balance data protection with software freedom.

Inventive Principle:
Principle #35Parameter changes

3Reliability

If uniform security policies are applied to all corporate devices, then security consistency is improved, but individual user trust levels are not considered

Engineering Contradiction:
Improvesecurity consistencyVSAvoiduser trust differentiation
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The system applies different security policies to different users based on their trust levels (local quality). High-trust users receive relaxed security policies that allow more freedom, while low-trust users receive strict security policies. This resolves the contradiction by making security policies customized to each user's trust level rather than uniformly applied.

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS12177221B2System and method for improved security when working remotely
Publication Date: 2024.12.24 PC MATIC INC
  • US12177221B2 patent drawing
  • US12177221B2 patent drawing
  • US12177221B2 patent drawing

AI summary

A system for computer security of a remote device having a processor includes a way to determine an operating mode of the remote device and a way to validate a resource (e.g., program, script, web address). When an attempt is made to access a resource, the operating mode of the remote device is determined and when the operating mode of the remote device is a corporate operating mode, then the resource is evaluated using a corporate protection file. Otherwise, when the operating mode of the remote device is determined to be a personal operating mode, then the resource is evaluated using a personal protection file. When the resource validation determines that the resource is approved, access to the resource is provided; otherwise, access to the resource is prevented.