Virtual Security Officer for SME Network Auditing

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Small and medium enterprises (SMEs) face challenges in managing and protecting their computing environments from cyber security threats due to a lack of resources, expertise, and economy of scale in existing cyber security solutions, which are often designed for larger organizations, and require efficient tools to assess and improve their cyber security posture.

Innovation Solution

A Virtual Security Officer (VSO) device that automates the auditing process by scanning and analyzing network security configurations, generating a cyber-security check report, and providing recommendations to enhance security levels, including discovery of hosts, OS, services, password settings, anti-malware detection, patch level assessment, and data leakage prevention, thereby facilitating compliance with standards like BSI and ISACA.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Measurement precision

If manual security auditing processes are used to ensure comprehensive security assessment, then security assessment accuracy is improved, but time consumption and resource requirements increase significantly

Engineering Contradiction:
Improvesecurity assessment accuracyVSAvoidauditing time
Core Design Contradiction:
Measurement precisionVSLoss of time

Solution Approach 1:

The system enables automated self-auditing where the security auditing device automatically discovers network devices, collects configuration data, performs security assessments, and generates compliance reports without requiring manual intervention from security experts, thus resolving the contradiction between assessment accuracy and time consumption

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent replaces manual mechanical auditing processes with automated electronic systems that use scripts, APIs, and automated discovery mechanisms to collect and analyze security data, substituting human labor with machine-based automated assessment processes

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

2Reliability

If comprehensive security auditing is performed on all network devices, then security coverage is improved, but system complexity and resource requirements increase

Engineering Contradiction:
Improvesecurity coverageVSAvoidauditing system complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The auditing system is divided into modular components including network discovery modules, data collection modules, assessment modules, and reporting modules that can independently audit different network segments and device types, reducing overall system complexity while maintaining comprehensive security coverage

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The security auditing device is designed as a universal platform capable of auditing multiple device types (routers, switches, firewalls, servers, workstations) and multiple security standards (ISO 27001, BSI, ISACA) through a single integrated system, reducing complexity compared to multiple specialized tools

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Productivity

If automated network scanning and device discovery are performed, then auditing efficiency is improved, but network load and potential security risks increase

Engineering Contradiction:
Improveauditing efficiencyVSAvoidnetwork load
Core Design Contradiction:
ProductivityVSObject-affected harmful factors

Solution Approach 1:

The system performs network discovery and device scanning in periodic batches rather than continuously, allowing network devices to process requests in manageable intervals, thus improving auditing efficiency while controlling network load to acceptable levels

Inventive Principle:
Principle #19Periodic action

Solution Approach 2:

The patent introduces an Active Directory integration layer that acts as an intermediary to obtain device lists and authentication credentials, enabling automated auditing without direct extensive scanning of the entire network, thereby reducing network load while maintaining efficiency

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentEP3188436B1Platform for protecting small and medium enterprises from cyber security threats
Publication Date: 2020.02.05 DEUTSCHE TELEKOM AG
  • EP3188436B1 patent drawingFigure 1~2
  • EP3188436B1 patent drawingFigure 3A~3B
  • EP3188436B1 patent drawingFigure 4~5

AI summary

The present invention relates to a device for protecting networked environment from cyber security threats, wherein said device is operable to: (a) perform one or more auditing stages that examine and analyze the network by retrieving information from network devices, thereby allowing to automatically monitor, scan and learn the network and its security configurations; (b) generate a cyber-security check report that reflects the results of the one or more auditing stages; and (c) give recommendations according to said report in order to increase the security level of the network.