- Patent Title: Graph model for alert interpretation in enterprise security system
-
Application No.: US16161564Application Date: 2018-10-16
-
Publication No.: US10885185B2Publication Date: 2021-01-05
- Inventor: LuAn Tang , Zhengzhang Chen , Zhichun Li , Zhenyu Wu , Jumpei Kamimura , Haifeng Chen
- Applicant: NEC Laboratories America, Inc.
- Applicant Address: US NJ Princeton
- Assignee: NEC Laboratories America, Inc.
- Current Assignee: NEC Laboratories America, Inc.
- Current Assignee Address: US NJ Princeton
- Agent Joseph Kolodka
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F21/55 ; H04L12/24 ; G06F21/57

Abstract:
A computer-implemented method for implementing alert interpretation in enterprise security systems is presented. The computer-implemented method includes employing a plurality of sensors to monitor streaming data from a plurality of computing devices, generating alerts based on the monitored streaming data, automatically analyzing the alerts, in real-time, by using a graph-based alert interpretation engine employing process-star graph models, retrieving a cause of the alerts, an aftermath of the alerts, and baselines for the alert interpretation, and integrating the cause of the alerts, the aftermath of the alerts, and the baselines to output an alert interpretation graph to a user interface of a user device.
Public/Granted literature
- US20190121969A1 Graph Model for Alert Interpretation in Enterprise Security System Public/Granted day:2019-04-25
Information query