Security Product Scoring System for Unified Policy Enforcement

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The complexity of multiple security products and vendors in enterprise networks makes it difficult to determine the effectiveness of each security rule and solution, leading to inefficiencies in enforcing overall security policies and discouraging administrators from replacing suboptimal products.

Innovation Solution

A method and system for scoring the performance of security products by receiving and classifying performance data into product profiles, computing performance scores, and associating these scores with the profiles to select the most effective products for specific cyber threats, allowing for unified representation and replacement without reconfiguration.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If multiple security products from different vendors are deployed to protect against various cyber threats, then the security coverage and protection capability are improved, but the system complexity and difficulty in managing security rules increase significantly

Engineering Contradiction:
Improvesecurity protection capabilityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent merges multiple security products and their diverse security rules into a unified security policy framework. The system consolidates rules from different vendors and product types into a common representation that can be centrally managed and enforced across the enterprise network, reducing the complexity of managing multiple independent security solutions.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The patent creates a universal security policy enforcement mechanism that can handle multiple types of security products and rule formats through a single system. The unified framework provides multi-functional capability to process, prioritize, and enforce diverse security rules from different vendors using common methodologies.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Reliability

If multiple security products with different interfaces and configurations are implemented, then the security coverage is enhanced, but the ease of operation and administrative management deteriorates

Engineering Contradiction:
Improvesecurity coverageVSAvoidadministrative management
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent introduces a unified security policy framework as an intermediary layer between administrators and multiple security products. This framework provides a standardized interface for configuring, monitoring, and managing security rules across different vendors and product types, simplifying administrative operations while maintaining comprehensive security coverage.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The unified framework provides universal management capabilities that work across multiple security product types and vendors through a single administrative interface, enhancing ease of operation while maintaining broad security coverage.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Reliability

If security administrators manually configure and monitor multiple security products, then the security policy enforcement can be customized, but the time consumption and productivity decrease

Engineering Contradiction:
Improvesecurity policy enforcementVSAvoidadministrative efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The patent enables the security system to automatically prioritize, select, and enforce security rules based on predefined criteria and threat contexts. The unified framework self-manages the complex tasks of rule coordination and conflict resolution across multiple security products, reducing the need for manual administrative intervention and improving productivity while maintaining effective security enforcement.

Inventive Principle:
Principle #25Self-service

4Reliability

If security products use vendor-specific security rules and interfaces, then the product functionality is optimized, but the difficulty of detecting and measuring effectiveness increases

Engineering Contradiction:
Improveproduct functionalityVSAvoideffectiveness measurement
Core Design Contradiction:
ReliabilityVSDifficulty of detecting and measuring

Solution Approach 1:

The unified security policy framework acts as an intermediary that translates vendor-specific security rules and effectiveness metrics into a common measurement framework. This allows administrators to detect and measure the effectiveness of security products using standardized criteria while preserving the optimized functionality of individual vendor solutions.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS11444969B2Scoring the performance of security products
Publication Date: 2022.09.13 CYBEREASON INC
  • US11444969B2 patent drawing
  • US11444969B2 patent drawing
  • US11444969B2 patent drawing

AI summary

A method and system for scoring performance of a security product are provided. The method includes receiving security product performance data of the security product configured to handle a specific cyber threat; classifying the performance data into a product profile associated with the security product; computing at least one security product performance score for the product profile based on the classified product security performance data; and associating the at least one security performance score with the product profile. In an embodiment, the method also includes selecting the at least one security product from a plurality of security products based on their respective performance scores for the respective cyber threat.