Invention Grant
- Patent Title: Security actions for computing assets based on enrichment information
-
Application No.: US15924759Application Date: 2018-03-19
-
Publication No.: US10476905B2Publication Date: 2019-11-12
- Inventor: Sourabh Satish , Oliver Friedrichs , Atif Mahadik , Govind Salinas
- Applicant: SPLUNK INC.
- Applicant Address: US CA San Francisco
- Assignee: Splunk Inc.
- Current Assignee: Splunk Inc.
- Current Assignee Address: US CA San Francisco
- Agency: Nicholson De Vos Webster & Elliott LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F21/55 ; G06F16/28 ; H04L12/851

Abstract:
Systems, methods, and software described herein provide enhancements for implementing security actions in a computing environment. In one example, a method of operating an advisement system to provide actions in a computing environment includes identifying a security incident in the computing environment, identifying a criticality rating for the asset, and obtaining enrichment information for the security incident from one or more internal or external sources. The method also provides identifying a severity rating for the security incident based on the enrichment information, and determining one or more security actions based on the enrichment information. The method further includes identifying effects of the one or more security actions on operations of the computing environment based on the criticality rating and the severity rating, and identifying a subset of the one or more security actions to respond to the security incident based on the effects.
Public/Granted literature
- US20180316718A1 SECURITY ACTIONS FOR COMPUTING ASSETS BASED ON ENRICHMENT INFORMATION Public/Granted day:2018-11-01
Information query