Invention Grant
US07770203B2 Method of integrating a security operations policy into a threat management vector
有权
将安全操作策略集成到威胁管理向量中的方法
- Patent Title: Method of integrating a security operations policy into a threat management vector
- Patent Title (中): 将安全操作策略集成到威胁管理向量中的方法
-
Application No.: US11736068Application Date: 2007-04-17
-
Publication No.: US07770203B2Publication Date: 2010-08-03
- Inventor: John J. McKenna
- Applicant: John J. McKenna
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agency: Hoffman Warnick LLC
- Agent John Pivnichny
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F21/00

Abstract:
The invention relates to the integration of a security operations policy into a threat management vector. In one embodiment, a method according to the invention includes receiving at least one threat management vector (TMV) from a TMV generator, the TMV including a root vulnerability vector, at least one system vector, at least one system level vector, and a countermeasures payload including intrusion detection countermeasures (IDC), intrusion response countermeasures (IRC), and vulnerability remediation countermeasures (VRC); forwarding to the TMDC a TMV including only the root vulnerability vector, the at least one system vector, and the at least one system level vector; propagating the TMV through a hierarchy of policy mediation regions (PMRs), each PMR being operable to refine at least one of the IDC, the IRC, and the VRC; refining at least one of the IDC, the IRC, and the VRC to conform to a security operations policy of the PMR; forwarding the refined TMV to a threat management domain controller (TMDC); recording refinements made by each PMR to each of the IDC, the IRC, and the VRC; transferring the recorded refinements to a threat management control book (TMCB); and marking the refined TMV as having been refined by each PMR making a refinement.
Public/Granted literature
- US20080263664A1 METHOD OF INTEGRATING A SECURITY OPERATIONS POLICY INTO A THREAT MANAGEMENT VECTOR Public/Granted day:2008-10-23
Information query