首页> 外国专利> SYSTEM AND METHOD FOR SECURITY ANALYST MODELING AND MANAGEMENT

SYSTEM AND METHOD FOR SECURITY ANALYST MODELING AND MANAGEMENT

机译:安全分析师建模和管理系统和方法

摘要

Systems and methods for managing incoming cybersecurity events. Incoming security events are first classified based on stored event profiles from previous events. Multiple analysts with relevant experience and background are determined based on the analysts' stored profiles. The incoming event is assigned and dispatched as necessary to one of these analysts. Analyst stress levels and mood is assessed, and the assessments are stored in the analyst profiles. Analyst resolution steps and performance against those steps in resolving the events are also stored in the relevant analyst profiles and in an event record database. QA reviews of resolved events are conducted when norm deviant circumstances arise. AI and process mining techniques are used in classifying the incoming events, assigning the incoming events to the relevant analyst, and determining lessons to be learned from previous events. The analyst profiles models specific analyst behaviour and are used for assigning incoming events.
机译:用于管理传入网络安全事件的系统和方法。传入的安全事件首先根据来自先前事件的存储事件配置文件分类。具有相关经验和背景的多个分析师根据分析师的存储资料确定。根据这些分析师之一,将传入事件分配和分派。评估分析师压力水平和情绪,并将评估存储在分析师配置文件中。分析器解决方法的分析步骤和性能解决这些事件的步骤也存储在相关的分析额和事件记录数据库中。当规范的偏差情况出现时,QA QA询问是在规范的情况下进行的。 AI和Process挖掘技术用于对传入事件进行分类,将传入事件分配给相关的分析师,并确定从以前的事件中学到的课程。分析器配置文件模型特定的分析员行为,用于分配传入事件。

著录项

  • 公开/公告号US2022027831A1

    专利类型

  • 公开/公告日2022-01-27

    原文格式PDF

  • 申请/专利权人 PENFIELD.AI INC.;

    申请/专利号US202117443688

  • 发明设计人 HASSAN KHAN;TAHSEEN SHABAB;

    申请日2021-07-27

  • 分类号G06Q10/06;G06Q10/10;G06Q30;G06F16/906;G06N20;G09B19;

  • 国家 US

  • 入库时间 2022-08-24 23:33:07

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号