发明名称 Diversity Analysis with Actionable Feedback Methodologies
摘要 Various embodiments of the present technology include methods of assessing risk of a cyber security failure in a computer network of an entity. Various embodiments also include automatically determining, based on the assessed risk, a change or a setting to at least one element of policy criteria of a cyber security policy, automatically recommending, based on the assessed risk, computer network changes to reduce the assessed risk, and providing one or more recommended computer network changes to reduce the assessed risk. Various embodiments further include enactment by the entity of at least one of the one or more of the recommended computer network changes to reduce the assessed risk to the entity, determining that the entity has enacted at least a portion of the recommended computer network changes, and in response, automatically reassessing the risk of a cyber security failure based on the enacted recommended computer network changes.
申请公布号 US2016234247(A1) 申请公布日期 2016.08.11
申请号 US201615099297 申请日期 2016.04.14
申请人 Cyence Inc. 发明人 Ng George Y.;Rosace, III Philip A.
分类号 H04L29/06 主分类号 H04L29/06
代理机构 代理人
主权项 1. A method, comprising: assessing risk of a cyber security failure in a computer network of an entity, using a computer agent configured to collect information from at least publicly accessible Internet elements; automatically determining, based on the assessed risk, a change or a setting to at least one element of policy criteria of a cyber security policy; automatically recommending, based on the assessed risk, computer network changes to reduce the assessed risk; providing one or more recommended computer network changes to reduce the assessed risk, enactment by the entity of at least one of the one or more of the recommended computer network changes to reduce the assessed risk to the entity; determining that the entity has enacted at least a portion of the recommended computer network changes, and in response, automatically reassessing the risk of a cyber security failure in the computer network of the entity based on the enacted recommended computer network changes; and dynamically re-determining, based on the reassessed risk of a cyber security failure in the computer network of the entity, the change or the setting to the at least one element of policy criteria of the cyber security policy.
地址 San Mateo CA US