发明名称 SYSTEMS, STRUCTURES, AND PROCESSES FOR INTERCONNECTED DEVICES AND RISK MANAGEMENT
摘要 Techniques are provided that produce a risk profile consisting of a risk score and trends of risk scores across devices and sensors in a machine-to-machine (M2M) or Internet of things (IOT) environment. For example, a device is assigned a risk score which is based on baseline factors such as expected network packets between two devices, normal network packets, access to critical devices, authorized access requests from one device to another device, normal communications to a device, and the critical ports of a device; access to and conflicts across physical, logical, and operational systems; historical and current usage of these systems, and anomalies from normal behavior patterns. Techniques encompass risk management by computing a risk score in a timely fashion in accordance with an architecture that enables achieving the required scaling necessitated by the huge number of devices in the machine-to-machine (M2M) or Internet of things (IOT) environment.
申请公布号 US2016267408(A1) 申请公布日期 2016.09.15
申请号 US201615138070 申请日期 2016.04.25
申请人 Alert Enterprise 发明人 SINGH Subrat Narendra;KAKKERA Srinivasa;LI Kiu;SAKALA Prathap
分类号 G06Q10/06;G06N7/00;H04W4/00 主分类号 G06Q10/06
代理机构 代理人
主权项 1. A computer-implemented method for providing entity risk score intelligence in a machine-machine environment, comprising the steps of: receiving baseline scoring data, associated with valid devices on a machine-machine network, at an entity warehouse, wherein the entity warehouse comprises a risk scoring and predictive analytics engine that provides entity risk score intelligence, said risk score intelligence having a risk score, regarding an entity based in part an said baseline scoring data; performing, at the entity warehouse, ongoing monitoring of (a) behavior and anomaly processes and data of said valid devices and (b) changes and behaviors processes and data of said valid devices, wherein each such processes and data impact the entity risk score intelligence; and wherein said risk scoring and predictive analytics engine uses a risk score configuration on said baseline scoring data, wherein said risk score configuration comprises configurable baseline contributing factors; training and screening contributing factors; and on-going usage contributing factors; providing response and alerting when said risk score exceeds a defined threshold; wherein said risk score configuration comprises: profile attributes to be set, conditions for the profile attributes to be set, values for the profile attribute conditions to be set, and corresponding points to be assigned;training or screening conditions to be set, conditions for the training or screening to be set, values for the training or screening conditions to be set, and corresponding points to be assigned;on-going usage conditions to be set, conditions for the on-going usage to be set, values for the on-going usage conditions to be set, and corresponding points to be assigned; andsetting an indicator indicating that a simulation is to be run; wherein the risk scoring and predictive analytics engine runs on a big data platform and uses in-memory database processing; and wherein one or more steps are performed on at least a processor coupled to at least a memory.
地址 Fremont CA US
您可能感兴趣的专利