Threat Analysis Countermeasures Mapped to Functional Layers

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing threat analysis systems, such as those described in PTL 1, provide abstract countermeasures that are difficult for development personnel to implement effectively, as they do not clearly associate countermeasures with specific functional layers of a system, leading to inefficiencies in addressing security threats.

Innovation Solution

A threat analysis system that includes an input unit, analyzer, countermeasure processor, and output unit to generate concrete countermeasures associated with specific functional layers, enabling development personnel to easily identify and execute appropriate countermeasures.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If abstract management countermeasures are provided in threat analysis, then security coverage is comprehensive, but ease of implementation by development personnel deteriorates

Engineering Contradiction:
Improvesecurity coverageVSAvoidease of implementation
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent segments countermeasures into two distinct levels: abstract management countermeasures (providing comprehensive security coverage) and concrete countermeasures (providing implementation guidance). The countermeasure processor divides each management countermeasure into specific concrete countermeasures associated with particular functional layers, allowing development personnel to implement security measures at their specific work levels while maintaining comprehensive security coverage through the abstract level.

Inventive Principle:
Principle #1Segmentation

2Ease of operation

If concrete countermeasures associated with functional layers are provided, then ease of implementation by development personnel improves, but device complexity increases

Engineering Contradiction:
Improveease of implementationVSAvoidsystem complexity
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The countermeasure processor acts as an intermediary that automatically translates abstract management countermeasures into concrete countermeasures associated with specific functional layers. This intermediary component handles the complexity of decomposition and association internally, presenting simplified concrete countermeasures to development personnel without requiring them to understand the underlying complex transformation process.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system performs preliminary action by pre-decomposing management countermeasures into concrete countermeasures and pre-associating them with relevant functional layers before presentation to development personnel. This advance preparation of countermeasure structures eliminates the need for development personnel to manually analyze and decompose security measures, reducing their workload while the system handles the complexity in advance.

Inventive Principle:
Principle #10Preliminary action

3Productivity

If detailed concrete countermeasures are generated, then productivity of security activities improves, but loss of time in processing countermeasures increases

Engineering Contradiction:
Improveproductivity of security activitiesVSAvoidtime for countermeasure processing
Core Design Contradiction:
ProductivityVSLoss of time

Solution Approach 1:

The countermeasure processor implements self-service by automatically decomposing management countermeasures and associating them with functional layers without requiring manual intervention from security experts or development personnel. The system autonomously performs the time-consuming tasks of countermeasure decomposition, functional layer identification, and association, thereby generating detailed concrete countermeasures that improve security productivity while minimizing the time investment required from human users.

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS20260030351A1Threat analysis system and threat analysis method
Publication Date: 2026.01.29 PANASONIC AUTOMOTIVE SYST CO LTD
  • US20260030351A1 patent drawing
  • US20260030351A1 patent drawing
  • US20260030351A1 patent drawing

AI summary

A threat analysis system analyzes a security threat to an analysis target system and includes: an input unit that obtains design information on design of the analysis target system; an analyzer that analyzes a threat to the analysis target system based on design information to output first analysis result information indicating: an asset handled by the analysis target system; a threat to the asset; and a management countermeasure against the threat to the asset; a countermeasure processor that generates second analysis result information including the first analysis result information and one or more concrete countermeasures that are concretized from the management countermeasure and each associated with a corresponding functional layer included in the analysis target system by combining the first analysis result information and the one or more concrete countermeasures; and an output unit that outputs the second analysis result information.