EP2207323A1

Adaptive security for portable information devices

Abstract

A portable information device includes a dynamically configurable security arrangement in which operational settings are automatically and dynamically configured for either thick client of thin client protection schemes bused at least in part on the current location of the device.

EP2207323A1, drawing sheet 1
Sheet 1 of 17

Term

2.3 yearsto projected expiry

Projected expiry 28 January 2029, counted from filing; an application has no term until it is granted.

  1. Priority
  2. Filed
  3. Published
  4. Today
  5. Projected expiry

20 claims: 7 independent, 13 dependent

  1. 1
    A portable information device having a dynamically configurable security arrangement, the device comprising:computer circuitry, including a processor operatively coupled to a data store;a user interface, including display and user input devices;wireless communications circuitry;anda power supply configured to provide power to the computer circuitry, user interface, and wireless communications circuitry, the power supply including an on-board energy source;wherein the computer circuitry includes a security arrangement comprising:a configurable security module arranged to facilitate security services in the portable information device;a location determining module configured to determine and provide an indication of a current location of the portable information device;a location profile database containing security risk profile information for a plurality of local networks at a plurality of geographic locations;anda security configuration module arranged to use the indication of the present location to assess a current security risk to which the portable information device is exposed based on risk profile information contained in the location profile database corresponding to the present location, and arranged dynamically to configure the security module to facilitate whether certain ones of the security services are selectively provided by either a security server that is located remotely from the portable information device;or by the security module.
  2. 12
    A method for automatically configuring a security module on a portable information device, the method comprising:automatically determining, by the portable information device, a current location of the portable information device;automatically maintaining, by the portable information device, a location profile database containing security risk profile information for a plurality of local networks at a plurality of geographic locations;automatically re-assessing, by the portable information device, a current security risk to which the portable information device is exposed based on risk profile information contained in the location profile database corresponding to the present location;andautomatically re-configuring the security module based on the current security risk such that the security module facilitates selectively providing security services by either a security server that is located remotely from the portable information device;or by the security module.
  3. 16
    A method according to any of claims 12-15, further comprising:re-assessing a current state of computing capacity availability of the portable information device;andre-configuring the security module in response to the current state of computing capacity availability.
  4. 17
    A method according to any of claims 12-16, further comprising:storing a plurality of threat definitions, and scanning data stored in, or communicated with, the portable information device for any presence of security threats based on the plurality of threat definitions.
  5. 18
    A method according to any of claims 12-17, wherein the automatically reconfiguring of the security module includes configuring the security module based on available network communications bandwidth of the portable information device.
  6. 19
    A method according to any of claims 12-18, wherein the automatically reconfiguring of the security module includes configuring the security module based on available computing capacity of the portable information device.
  7. 20
    A method according to any of claims 12-19, further comprising:obtaining at least one parameter from the user selected from the group consisting of: security risk tolerance information, user experience requirements, or any combination thereof;andconfiguring the security module based on the at least one parameter.