Risk Management Service Segmentation and Intermediary

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Modern organizations face challenges in effectively managing and protecting privileged information across distributed and mobile environments, requiring improved risk management systems that ensure data security, privacy, and compliance with regulations like CCPA and GDPR, while enabling rapid decision-making and coordinated responses to unexpected events.

Innovation Solution

A framework combining IoT and IoP approaches, utilizing a private mobile messaging system, APIs, and cloud-based components for secure and auditable risk assessment and mitigation, enabling trusted message exchange and analysis to coordinate organizational responses, protect privacy, and maintain secure records.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Measurement precision

If organizations collect and analyze large amounts of information to make informed decisions, then decision quality improves, but data security and privacy risks increase

Engineering Contradiction:
Improvedecision qualityVSAvoiddata security and privacy risks
Core Design Contradiction:
Measurement precisionVSObject-affected harmful factors

Solution Approach 1:

The patent segments information into privileged and non-privileged categories, applying different security measures to each. Privileged information receives enhanced protection through encrypted channels and access controls, while non-privileged information can be shared more freely to support decision-making.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces an intermediary layer (secure communication system) that mediates between information collection and decision-making. This intermediary encrypts privileged information, manages access rights, and provides forensic auditing capabilities while enabling necessary information flow.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Speed

If organizations integrate users and systems quickly to respond to threats, then response speed improves, but coordination complexity increases

Engineering Contradiction:
Improveresponse speedVSAvoidcoordination complexity
Core Design Contradiction:
SpeedVSDevice complexity

Solution Approach 1:

The patent implements a universal secure communication system that handles multiple functions: threat alert distribution, coordinated response coordination, forensic auditing, and compliance tracking. This multi-functional approach reduces the number of separate systems needed and simplifies integration.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent establishes pre-configured secure communication channels and predefined response protocols before threats occur. When threats are detected, these pre-established structures enable immediate coordinated response without the complexity of real-time system integration.

Inventive Principle:
Principle #10Preliminary action

3Loss of time

If organizations prioritize structured messaging to mobile users for rapid decisions, then decision-making speed improves, but communication infrastructure complexity increases

Engineering Contradiction:
Improvedecision-making timeVSAvoidcommunication infrastructure complexity
Core Design Contradiction:
Loss of timeVSDevice complexity

Solution Approach 1:

The patent implements self-service mobile applications that automatically receive, display, and respond to structured messages. The system autonomously manages message routing, encryption, and delivery confirmation without requiring complex manual communication infrastructure.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent replaces complex mechanical communication infrastructure with software-based solutions running on standard mobile devices. Structured messaging is delivered through encrypted data channels rather than dedicated hardware communication systems.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

4Reliability

If organizations implement comprehensive duty of care for human assets, then personnel safety improves, but information management liability increases

Engineering Contradiction:
Improvepersonnel safetyVSAvoidinformation management liability
Core Design Contradiction:
ReliabilityVSObject-generated harmful factors

Solution Approach 1:

The patent implements comprehensive forensic auditing that provides feedback on duty of care compliance. The system tracks all privileged information access and communications related to personnel safety, creating an audit trail that demonstrates compliance and reduces liability.

Inventive Principle:
Principle #23Feedback

Solution Approach 2:

The patent changes the state of information from unstructured to structured with embedded metadata that automatically tracks compliance parameters. This transformation enables automated verification of duty of care obligations and reduces information management liability through systematic documentation.

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS11443263B2Organizational risk management subscription service
Publication Date: 2022.09.13 HEYHQ INC
  • US11443263B2 patent drawing
  • US11443263B2 patent drawing
  • US11443263B2 patent drawing

AI summary

An organizational risk management service includes a risk assessment and mitigation platform for evaluating organizational risk. The service includes interfaces for managing connections with organizational and external systems for intake of messaging that provides information which is analyzed to define risks faced by an organization. This risk is defined by analyzing this messaging and its metadata with a system manager, a rules engine, and a message manager. The service and platform models responses to address the risks faced by the organization, and generates event relays that comprise communications, alerts, notifications, instructions, and other information for registered users, and external systems that enable actions for addressing and mitigating the risk and compliance with organizational policies and procedures.