Security Management System for Apparatus Operation Information Association

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Security administrators face difficulties in selecting appropriate measures for apparatuses with security risks due to varying operational environments, making it challenging to determine the right measure for each apparatus.

Innovation Solution

An information processing apparatus and security management system that identify and display operation information corresponding to applicable measures for apparatuses with security risks, using measure information and definition information to associate the appropriate measures with operation information, facilitating informed decision-making.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a measure is provided against security vulnerability without considering operational environment, then the security risk can be addressed, but it becomes difficult to select the appropriate measure for each apparatus

Engineering Contradiction:
Improvesecurity risk mitigationVSAvoidmeasure selection difficulty
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent segments the measure selection process by dividing apparatuses into groups based on their operational environments and vulnerability types. Each segment receives tailored measures appropriate to its specific characteristics, making selection easier while maintaining security effectiveness.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent changes the parameters of measure selection by introducing operational environment parameters (apparatus type, location, function) as key factors. This transforms the selection process from a generic approach to a parameter-driven approach that adapts to specific apparatus characteristics.

Inventive Principle:
Principle #35Parameter changes

2Ease of operation

If operation information is collected and displayed for each apparatus, then appropriate measure selection is facilitated, but the system complexity increases

Engineering Contradiction:
Improvemeasure selection easeVSAvoidsystem complexity
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The patent implements a universal information processing apparatus that performs multiple functions: collecting operation information, determining vulnerability presence, identifying applicable measures, and displaying results. This multi-functional approach consolidates complexity into a single system rather than distributing it across multiple specialized components.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The information processing apparatus acts as an intermediary between the diverse apparatuses and the security management process. It standardizes the interaction by collecting uniform operation information and presenting standardized measure recommendations, thereby managing complexity through intermediation.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Ease of manufacture

If generic security measures are applied to all apparatuses, then implementation is simplified, but the measures may not be appropriate for specific operational environments

Engineering Contradiction:
Improvemeasure implementation simplicityVSAvoidmeasure applicability
Core Design Contradiction:
Ease of manufactureVSAdaptability or versatility

Solution Approach 1:

The patent introduces dynamics into the measure selection process by making it adaptive to operational environment changes. The system dynamically determines applicable measures based on current apparatus states, vulnerability types, and operational contexts, allowing measures to be tailored without requiring complex manual configuration.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The apparatus essentially performs self-service in the security measurement process by automatically providing its operation information and having the system automatically determine applicable measures. This reduces the need for manual assessment while maintaining adaptability to specific environments.

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS10699019B2Information processing apparatus, security management system, security measure providing method, security information distribution method, and program
Publication Date: 2020.06.30 NEC CORP
  • US10699019B2 patent drawing
  • US10699019B2 patent drawing
  • US10699019B2 patent drawing

AI summary

A management apparatus (10) includes: an identification unit (110) that identifies a kind of operation information corresponding to a measure applicable to an apparatus to be managed having a security risk by using measure information indicating a measure applicable to the apparatus to be managed having the security risk and definition information defining a correspondence relationship between the kind of operation information of the apparatus to be managed and the measure against the security risk; an acquisition unit (120) that acquires operation information of the identified kind; and a display processing unit (130) that displays the acquired operation information in association with the measure applicable to the apparatus to be managed having the security risk on a display apparatus.