The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Dec. 07, 2021

Filed:

Apr. 09, 2019
Applicant:

International Business Machines Corporation, Armonk, NY (US);

Inventors:

Barny S. Sanchez, Charlton, MA (US);

Duc H. Nguyen, Atlanta, GA (US);

Edward P. Gurnee, Dunwoody, GA (US);

Ratnakar Pawar, Dunwoody, GA (US);

Carlos J. Muentes, Marietta, GA (US);

Attorneys:
Primary Examiner:
Int. Cl.
CPC ...
G06F 21/55 (2013.01); G06F 16/2455 (2019.01);
U.S. Cl.
CPC ...
G06F 21/554 (2013.01); G06F 16/2455 (2019.01); G06F 2221/034 (2013.01);
Abstract

A network-accessible cyber-threat security analytics service is configured to characterize and respond to a description that includes threat indicators (e.g., IOCs), and an initial severity. Enterprises register with the service by providing identifying information, such as industry, geographies, and the like. For each threat indicator, a query is sent to each of a set of one or more security knowledge bases, and at least some of the queries are scoped by the enterprise industry/geo information specified. The knowledge bases may vary but typically include: a managed security service, a cyber threat intelligence service, and a federated search engine that searches across one or more enterprise-connected data sources. Responses to the queries are collected. A response provides an indication whether the threat indicator identified in the query has been sighted in the knowledge base and the frequency. The system then adjusts the initial severity to reflect the indications returned from querying the security knowledge bases.


Find Patent Forward Citations

Loading…