Travel Security Framework for Device Scanning

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Users traveling to countries with high security threats face risks of data and device compromise due to inadequate cybersecurity measures, especially when using third-party travel services.

Innovation Solution

A system and method that receive travel data to identify countries with high security threats, perform data security scans on user devices, generate reports on security issues, and temporarily remove data security exceptions for users traveling to these countries, while providing pre-travel data security training and post-travel surveys.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If users travel to countries with high security threats using third-party travel services, then travel convenience is improved, but data and device security deteriorates

Engineering Contradiction:
Improvetravel convenienceVSAvoiddata and device security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system performs preliminary data security scans on user devices before travel begins and establishes a security baseline. This preliminary action allows the system to detect any security issues that arise during travel by comparing post-travel scan results against the pre-travel baseline, thereby maintaining security monitoring without interfering with travel convenience.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces a computing device that acts as an intermediary between the user's device and the third-party travel services. This intermediary system monitors security conditions, manages security exceptions, and coordinates scans without requiring users to change their travel behavior, thus preserving ease of operation while improving security through automated monitoring and comparison of security states.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If data security scans are performed on user devices, then security issue detection is improved, but user device performance deteriorates

Engineering Contradiction:
Improvesecurity issue detectionVSAvoiduser device performance
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The system performs data security scans at specific partial moments (before travel and after travel) rather than continuously monitoring. This partial action approach detects security issues that arise during travel while minimizing the impact on user device performance during normal usage, as scans are conducted at discrete time points rather than continuously.

Inventive Principle:
Principle #16Partial or excessive action

Solution Approach 2:

The patent implements periodic security scanning at predetermined intervals - specifically before travel begins and after travel concludes. This periodic action ensures security monitoring occurs at critical moments while allowing the device to operate normally between scans, thus maintaining user device performance while still achieving reliable security issue detection through time-based scheduling.

Inventive Principle:
Principle #19Periodic action

3Reliability

If data security exceptions are removed for users traveling to high-risk countries, then security control is improved, but user accessibility to data deteriorates

Engineering Contradiction:
Improvesecurity controlVSAvoiduser accessibility to data
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system applies preliminary anti-action by removing data security exceptions before the user travels to high-risk countries. This preemptive measure ensures that security controls are in place before potential threats can occur, preventing unauthorized access rather than merely responding to it. The exception removal is temporary and automatically reversed after travel, balancing security control with user accessibility.

Inventive Principle:
Principle #9Preliminary anti-action

Solution Approach 2:

The patent implements dynamic management of data security exceptions based on the user's travel status. Exceptions are removed when the user is traveling to or in high-risk countries and automatically restored after travel concludes. This dynamic approach adjusts security controls in real-time according to changing risk conditions, maintaining both security control during travel and user accessibility when not traveling.

Inventive Principle:
Principle #15Dynamics

Data Source

PatentUS9934543B2Secure traveler framework
Publication Date: 2018.04.03 BANK OF AMERICA CORP
  • US9934543B2 patent drawing
  • US9934543B2 patent drawing
  • US9934543B2 patent drawing

AI summary

A user, such as an employee of an institution, may travel overseas where data or devices may be compromised. Described herein is a system and method for receiving travel data for the user from a travel data source and receiving a list of countries with a high level of security threats where data security may be an issue. Based on the travel data for the user and the list of countries with a high level of security threats, it may be determined whether the user is entering a country with a high level of security threats. If so, one or more user devices associated with the user may be determined, and data security scans of the devices may be generated before, during, and/or after travel. Data security issues may be determined based on a comparison of the scans. A report of the issues may optionally be generated.