The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Dec. 28, 2021

Filed:

Jan. 04, 2019
Applicant:

Fortinet, Inc., Sunnyvale, CA (US);

Inventors:

Matthew Stephen Sweeney, Rochester, NY (US);

Casey Corcoran, Baltimore, MD (US);

John Camp, Baltimore, MD (US);

Chris Wacker, Baltimore, MD (US);

Brit Wanick, Baltimore, MD (US);

Derek Gabbard, Baltimore, MD (US);

Assignee:

Fortinet, Inc., Sunnyvale, CA (US);

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
H04L 29/06 (2006.01); H04L 12/24 (2006.01); H04L 12/26 (2006.01); G06Q 10/06 (2012.01); G06F 21/57 (2013.01);
U.S. Cl.
CPC ...
H04L 63/20 (2013.01); G06F 21/577 (2013.01); G06Q 10/0635 (2013.01); H04L 41/069 (2013.01); H04L 41/0686 (2013.01); H04L 41/0816 (2013.01); H04L 41/0883 (2013.01); H04L 41/142 (2013.01); H04L 41/145 (2013.01); H04L 43/045 (2013.01); H04L 43/06 (2013.01); H04L 63/1425 (2013.01); H04L 63/1433 (2013.01); H04L 63/1441 (2013.01); G06F 2221/034 (2013.01);
Abstract

Method and system embodiments for assessing control maturity in security operations environments are described. According to some embodiments, the method facilitates a nonintrusive, automated means to configure and detect security controls installed in an Information Technology (IT) environment. The system verifies that these controls function as expected over a specified period of time and then maps each security control to a cell in a matrix of operational functions crossed with asset classes. The system captures metrics for security control activity that are displayed in the matrix to facilitate an assessment of security control architectural maturity. The system automatically generates visual and textual reports that provide recommendations to improve cybersecurity by enhancing existing and adding new controls, specify a suggested timeline for introducing those controls, and document gaps in compliance. The reports include automated remediation recommendations per compliance framework, including the ability to apply custom frameworks.


Find Patent Forward Citations

Loading…