Social Network Traffic Intermediary for Secure Enterprise Communication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Businesses face challenges in managing and securing employee activities on social networking sites, including the risk of confidential information being disclosed and malicious content being accessed, with existing solutions lacking effective monitoring and filtering capabilities.

Innovation Solution

A system and method for adaptively monitoring and filtering traffic to and from social networking sites, which includes logging user activities, encrypting sensitive information, intercepting and processing posts and requests, and providing controls to restrict user actions and report malicious content.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If businesses block traffic to and from social networking sites, then security risks are reduced, but employee productivity and collaboration are limited

Engineering Contradiction:
ImprovesecurityVSAvoidemployee collaboration
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The patent introduces an intermediary system that sits between the enterprise network and social networking sites. This intermediary captures, monitors, and filters traffic bidirectionally, allowing secure controlled access rather than complete blocking. It enables businesses to maintain security while permitting authorized social networking activities through the intermediary's monitoring and filtering capabilities.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system implements feedback mechanisms by monitoring employee activities on social networking sites and providing reports to employers. This feedback loop allows businesses to track and manage employee behavior, identify security risks, and maintain productivity balance through informed decision-making rather than restrictive blocking.

Inventive Principle:
Principle #23Feedback

2Productivity

If employees are allowed unrestricted access to social networking sites, then collaboration efficiency improves, but risk of confidential information disclosure increases

Engineering Contradiction:
Improvecollaboration efficiencyVSAvoidconfidential information disclosure
Core Design Contradiction:
ProductivityVSObject-generated harmful factors

Solution Approach 1:

The intermediary system acts as a gatekeeper that monitors outgoing traffic from employees to social networking sites. It identifies and filters confidential information before it leaves the enterprise network, allowing legitimate collaboration while preventing unauthorized disclosure of sensitive data through the intermediary's inspection and control mechanisms.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system performs preliminary monitoring and filtering of employee activities before confidential information can be disclosed. By capturing and analyzing traffic in advance, the system prevents harmful actions (information leakage) before they occur, while still allowing productive collaboration activities to proceed.

Inventive Principle:
Principle #10Preliminary action

3Reliability

If monitoring systems are implemented to track employee activities, then security control improves, but employee privacy is compromised

Engineering Contradiction:
Improvesecurity controlVSAvoidemployee privacy
Core Design Contradiction:
ReliabilityVSLoss of information

Solution Approach 1:

The monitoring system provides feedback reports to employers about employee activities on social networking sites, enabling security control through information sharing rather than direct surveillance. This feedback mechanism allows businesses to maintain security oversight while respecting employee privacy by providing aggregated, anonymized activity data rather than invasive monitoring of individual communications.

Inventive Principle:
Principle #23Feedback

4Object-affected harmful factors

If comprehensive filtering is applied to all social networking traffic, then malicious content is blocked, but legitimate business communications are restricted

Engineering Contradiction:
Improvemalicious contentVSAvoidbusiness communications
Core Design Contradiction:
Object-affected harmful factorsVSEase of operation

Solution Approach 1:

The intermediary system selectively filters traffic based on content analysis and context. It distinguishes between malicious content and legitimate business communications by examining the nature, source, and destination of each message, allowing authorized business communications to pass through while blocking harmful content through intelligent filtering rather than blanket restriction.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The filtering system applies different levels of scrutiny to different types of traffic. Rather than uniformly blocking all social networking traffic, it applies localized filtering rules that are tailored to specific communication patterns, business needs, and security risks, allowing legitimate communications to flow freely while targeting only the harmful content for blocking.

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS11012447B2Method, system, and storage medium for secure communication utilizing social networking sites
Publication Date: 2021.05.18 PROOFPOINT INC
  • US11012447B2 patent drawing
  • US11012447B2 patent drawing
  • US11012447B2 patent drawing

AI summary

Embodiments disclosed herein provide secure communication among enterprise users utilizing social networking sites. A server computer may encrypt a post intended for a social networking site and forward the encrypted data or may save the post locally and send a placeholder to the social networking site. The server may receive a message from the social networking site containing the encrypted data or placeholder and determine that a recipient is authorized to view the original post. The server may then decrypt the data or retrieve the original post for servicing the request. In this way, authorized users of an enterprise can utilize social networking sites, which are independently owned and operated, to communicate with each other in a secure manner.