- Patent Title: Modifying incident response time periods based on incident volume
-
Application No.: US17513595Application Date: 2021-10-28
-
Publication No.: US11805148B2Publication Date: 2023-10-31
- Inventor: Sourabh Satish , Oliver Friedrichs , Atif Mahadik , Govind Salinas
- Applicant: Splunk Inc.
- Applicant Address: US CA San Francisco
- Assignee: Splunk Inc.
- Current Assignee: Splunk Inc.
- Current Assignee Address: US CA San Francisco
- Agency: NICHOLSON DE VOS WEBSTER & ELLIOT LLP
- Main IPC: H04L9/40
- IPC: H04L9/40 ; G06F21/55 ; G06F16/28 ; H04L47/2425 ; H04L29/06

Abstract:
Systems, methods, and software described herein provide for managing service level agreements (SLAs) for security incidents in a computing environment. In one example, an advisement system identifies a rule set for a security incident based on enrichment information obtained for the security incident, wherein the rule set is associated with action recommendations to be taken against the incident. The advisement system further identifies a default SLA for the security incident based on the rule set, and obtains environmental characteristics related to the security incident. Based on the environmental characteristics, the advisement system determines a modified SLA for the security incident.
Information query