Subscriber Data Re-Encryption for Secure Targeted Advertising

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing data security methods for sensitive subscriber information often compromise data availability for uses like targeted advertising, either by providing insufficient security or limiting data flexibility.

Innovation Solution

A network analysis system employs a rolling key groups methodology for encrypting subscriber location and usage data, followed by secure one-way encryption in a data warehouse to create re-encrypted identifiers, allowing secure use in marketing campaigns without exposing sensitive subscriber information.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional encryption methodologies are used to secure sensitive subscriber information, then data security is improved, but data availability for uses like targeted advertising is limited

Engineering Contradiction:
Improvedata securityVSAvoiddata availability
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent segments the encryption process into two distinct stages: first encrypting subscriber information with a initial encryption key, then encrypting the already-encrypted data with a second encryption key. This segmentation allows different portions of the data to be accessed by different authorized parties for different purposes, thereby maintaining security while improving data availability for various uses such as targeted advertising.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces an intermediary encrypted data structure that sits between the original subscriber information and the final encrypted form. This intermediary layer enables controlled access where certain entities can decrypt to the intermediary form for advertising purposes without accessing the original plain text, thus balancing security requirements with data utility.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If more flexible encryption methodologies are used to maintain data availability, then data flexibility is improved, but security necessary for sensitive personal information is compromised

Engineering Contradiction:
Improvedata flexibilityVSAvoiddata security
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent applies preliminary encryption actions by first encrypting the subscriber information before any other processing occurs. This preliminary security measure ensures that even if subsequent flexible operations are performed on the data, the original sensitive information remains protected throughout the entire data lifecycle.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent changes the encryption parameters by applying different encryption keys at different stages. The first encryption key protects the original data, while the second encryption key controls access to the encrypted form. This parameter change strategy allows the system to maintain both security and flexibility by adjusting which encryption layer is active based on the operational context.

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS9037861B2Enhancing data security using re-encryption
Publication Date: 2015.05.19 CELLCO PARTNERSHIP INC
  • US9037861B2 patent drawing
  • US9037861B2 patent drawing
  • US9037861B2 patent drawing

AI summary

A data source may be configured to provide usage data including subscriber identifiers and associated information indicative of subscriber device locations and usage. A data warehouse server may be configured to perform operations including: decrypting subscriber identifiers included in usage data received from the data source using a two-way rolling key groups algorithm; re-encrypting the subscriber identifiers decrypted from the usage data to create secure encrypted identifiers using a one-way secured encryption algorithm; and correlating the subscriber identifiers in the decrypted usage data with the corresponding re-encrypted identifiers.