The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Mar. 08, 2016

Filed:

Jun. 30, 2011
Applicants:

Yedidya Dotan, Tel Aviv, IL;

Lawrence N. Friedman, Arlington, MA (US);

Manoj Nair, Somerville, MA (US);

Riaz Zolfonoon, Concord, MA (US);

Inventors:

Yedidya Dotan, Tel Aviv, IL;

Lawrence N. Friedman, Arlington, MA (US);

Manoj Nair, Somerville, MA (US);

Riaz Zolfonoon, Concord, MA (US);

Assignee:

EMC Corporation, Hopkinton, MA (US);

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
G06F 21/55 (2013.01); H04L 9/00 (2006.01); H04L 29/06 (2006.01);
U.S. Cl.
CPC ...
H04L 63/1441 (2013.01); G06F 21/552 (2013.01); G06F 21/554 (2013.01); H04L 63/1416 (2013.01);
Abstract

Embodiments relate to the generation of alerts in an event management system based upon risk. When an event device associated with the event management system, presents a logon page to a client device, the event device includes a beacon as part of the page to monitor and collect web device profile characteristics related to the client device. In response to a logon attempt by the client device, an event management device receives a notification regarding logon attempt and a risk assessment associated with the web device profile characteristics of the client device. Based upon a correlation of the notification and the corresponding risk assessment, the event management device can generate an alert, such as a SIEM alert, and can include an indication of priority, whether relatively low or high, and/or a confidence factor, whether or not the alert can be suppressed as part of the alert.


Find Patent Forward Citations

Loading…