Risk Visualization of Sensitive Data Objects by Access Exposure

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing data management systems lack effective methods for identifying and visualizing computing objects with sensitive information and associated risk levels, making it difficult to manage and mitigate potential data security risks.

Innovation Solution

A data management system that identifies sensitive information in computing objects, calculates risk levels based on the quantity of sensitive information and user access, and provides intuitive visualizations in a user interface to facilitate risk management.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a data management system stores and manages data from multiple computing systems, then data management capabilities are improved, but the ability to identify and visualize risk levels associated with sensitive information deteriorates due to lack of effective methods

Engineering Contradiction:
Improvedata management capabilityVSAvoidrisk level identification
Core Design Contradiction:
ReliabilityVSDifficulty of detecting and measuring

Solution Approach 1:

The patent applies color-coded visual indicators to represent different risk levels associated with computing objects. High-risk objects are displayed with distinct color markings (e.g., red or orange indicators) while low-risk objects use different colors (e.g., green or blue), enabling administrators to quickly identify and prioritize security risks without complex analysis

Inventive Principle:
Principle #32Color changes

Solution Approach 2:

The patent introduces an intermediary visualization layer between the raw data storage system and the administrator. This intermediary interface translates complex risk assessments into simple visual representations, including risk level indicators, color-coded markers, and prioritized listings that bridge the gap between data management infrastructure and human decision-making

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If the data management system manages a large quantity of computing objects, then data management scope is improved, but the ease of identifying high-risk objects deteriorates due to overwhelming complexity

Engineering Contradiction:
Improvedata management scopeVSAvoidrisk identification efficiency
Core Design Contradiction:
Adaptability or versatilityVSEase of operation

Solution Approach 1:

The patent segments the large set of computing objects into distinct risk level categories (high-risk, medium-risk, low-risk) based on sensitivity analysis. Each segment is visually separated and prioritized in the user interface, with high-risk objects displayed prominently at the top or with special markers, allowing administrators to focus on critical items without being overwhelmed by the total volume of objects

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent adds a visual dimension to risk representation by incorporating color codes, icons, and spatial positioning in the user interface. Instead of presenting risk information as plain text or numerical data, the system projects risk levels into a visual space where magnitude and urgency are immediately apparent through graphical indicators, transforming a one-dimensional data problem into a multi-dimensional visual solution

Inventive Principle:
Principle #17Another dimension (Dimensionality change)

Data Source

PatentUS12608504B2Identification and visualization of top-risk objects
Publication Date: 2026.04.21 RUBRIK INC
  • US12608504B2 patent drawing
  • US12608504B2 patent drawing
  • US12608504B2 patent drawing

AI summary

Methods, systems, and devices for data management are described. A data management system may determine risk levels for a plurality of computing objects. A risk level for a computing object is determined based on a respective quantity of elements comprising sensitive information within the computing object and a respective quantity of users with access to the computing object. The data management system may display the visualizations for a selected subset of computing objects in a user interface. The visualizations for the computing objects may be positioned within the user interface based on respective quantities of elements comprising sensitive information within the computing objects and further based on respective quantities of users with access to the computing objects. The user interface may be configured to receive a selection of a time period and reposition the visualizations of the computing objects within the user interface.