User Behavior Profile Security Analysis

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing security systems fail to effectively manage and analyze user behavior to detect potential security risks, particularly when users' actions become malicious due to internal or external factors, and their mental state affects the integrity and confidentiality of secure assets.

Innovation Solution

A method and system for defining and managing user profiles by monitoring electronically observable user behavior, converting it into electronic information, generating a user behavior profile, and analyzing events within a security environment using contextual information and temporal data, incorporating blockchain technology for secure data storage.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional security systems are used to monitor user behavior, then basic security monitoring is provided, but the systems fail to detect malicious behavior caused by internal or external factors affecting users

Engineering Contradiction:
Improvedetection accuracyVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system segments user behavior analysis into multiple dimensions including electronically observable behavior, contextual information, and temporal patterns. Each dimension is analyzed separately and then integrated to form a comprehensive security assessment, allowing detection of subtle malicious behaviors without requiring a single overly complex monitoring system

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The system dynamically adapts security monitoring based on changing user behavior patterns and contextual factors. It continuously updates the understanding of user behavior baselines and adjusts detection thresholds in real-time, enabling reliable detection of malicious behavior even when system conditions change

Inventive Principle:
Principle #15Dynamics

2Reliability

If comprehensive user behavior monitoring is implemented to detect malicious actions, then security detection capability is improved, but operational overhead increases

Engineering Contradiction:
Improvesecurity detection capabilityVSAvoidoperational overhead
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The system implements partial monitoring by focusing on electronically observable user behavior and key contextual factors rather than attempting to monitor all possible user activities. This selective approach provides sufficient security detection capability while reducing the operational overhead associated with comprehensive monitoring of every user action

Inventive Principle:
Principle #16Partial or excessive action

Solution Approach 2:

The system automatically analyzes user behavior patterns and generates security assessments without requiring constant human intervention. The automated analysis of electronically observable behavior and contextual information reduces operational overhead while maintaining high security detection capability

Inventive Principle:
Principle #25Self-service

3Speed

If user behavior profiles are generated using electronic information, then real-time security analysis is enabled, but data processing complexity increases

Engineering Contradiction:
Improvereal-time analysis speedVSAvoiddata processing complexity
Core Design Contradiction:
SpeedVSDevice complexity

Solution Approach 1:

The system extracts only the most relevant electronically observable user behavior data and contextual information needed for security analysis, rather than processing all available data. This extraction of essential elements enables real-time security analysis while keeping data processing complexity manageable by focusing on critical security indicators

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentUS11082440B2User profile definition and management
Publication Date: 2021.08.03 FORCEPOINT LLC
  • US11082440B2 patent drawing
  • US11082440B2 patent drawing
  • US11082440B2 patent drawing

AI summary

A method, system and computer-usable medium for performing a security analysis operation within a security environment, comprising: monitoring electronically-observable user behavior about a particular entity; maintaining a state about the particular entity, the state representing a context of a particular event; converting the electronically-observable user behavior into electronic information representing the electronically-observable user behavior; generating a user behavior profile based upon the electronic information representing the electronically-observable user behavior; and, analyzing the event using the state of the entity and the user behavior profile.