Summary-Based Privacy Security for Benchmarking Data

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In a software as a service platform, tenants face challenges in sharing data for benchmarking purposes while maintaining data privacy, as third parties may require more detailed information than tenants are comfortable with, leading to reluctance in using the service.

Innovation Solution

A system for summary-based privacy security that allows tenants to opt-in to benchmark categories with specified privacy levels, summarizing their data before sharing it with a commingled database, ensuring only summarized data is used for benchmarking calculations, and obfuscating results to maintain privacy.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Loss of information

If tenants provide detailed data to third parties for benchmarking, then the quality and completeness of benchmark data improves, but tenant data privacy and security deteriorate

Engineering Contradiction:
Improvebenchmark data qualityVSAvoiddata privacy risk
Core Design Contradiction:
Loss of informationVSObject-affected harmful factors

Solution Approach 1:

The patent extracts only the necessary aggregated benchmark metrics from detailed tenant data, removing individual tenant identifiers and sensitive details. The system takes out specific data elements (aggregated statistics) while leaving the detailed source data secured in the multitenant environment, thus improving benchmark data quality without compromising tenant privacy.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent introduces an intermediary benchmarking service layer between tenants and third-party benchmarking providers. This intermediary receives detailed data requests, processes them through secure aggregation functions, and returns only anonymized benchmark results. The intermediary acts as a mediator that enables benchmarking while protecting tenant data privacy through controlled data exposure.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Measurement precision

If tenants share detailed data with third parties, then the accuracy of benchmark comparisons improves, but tenant reluctance to use the service increases

Engineering Contradiction:
Improvebenchmark accuracyVSAvoidtenant participation willingness
Core Design Contradiction:
Measurement precisionVSEase of operation

Solution Approach 1:

The patent segments the data sharing process into distinct layers: detailed tenant data remains segmented and secured in individual tenant environments, while only aggregated benchmark metrics are shared externally. This segmentation allows accurate benchmarking through comprehensive data aggregation while maintaining tenant control and reducing participation barriers.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent implements self-service benchmarking where tenants can independently configure their benchmarking participation, select which metrics to share, and control their privacy settings without requiring direct interaction with third-party benchmarking providers. This self-service approach reduces tenant reluctance by providing control and transparency while maintaining benchmark accuracy.

Inventive Principle:
Principle #25Self-service

3Loss of information

If third parties require detailed tenant data for benchmarking, then the comprehensiveness of analysis improves, but data security risks increase

Engineering Contradiction:
Improveanalysis completenessVSAvoiddata security
Core Design Contradiction:
Loss of informationVSReliability

Solution Approach 1:

The patent performs preliminary aggregation and anonymization of tenant data within the secure multitenant environment before any data leaves the system. The data is pre-processed to combine multiple tenant records into aggregated statistics, removing identifying information in advance. This preliminary action ensures analysis completeness through comprehensive data pooling while maintaining security by never exposing detailed individual records to third parties.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS10606906B1Summary based privacy security for benchmarking
Publication Date: 2020.03.31 WORKDAY INC
  • US10606906B1 patent drawing
  • US10606906B1 patent drawing
  • US10606906B1 patent drawing

AI summary

A system for summary based privacy security for benchmarks including an interface and a processor. The interface is configured to receive an indication to opt-in to a benchmark category from a tenant, where opting-in includes a privacy level. The interface is also configured to provide a benchmark data request to a tenant system, where the benchmark data request includes a requirement to summarize tenant data for the benchmark data request compatible with the privacy level. The processor is configured to combine summarized tenant data with prior commingled benchmark data to update a commingled benchmark database, where the commingled benchmark database includes data from a plurality of tenants. The processor is also configured to determine a benchmark compatible with the privacy level using the commingled benchmark database.