发明名称 METHOD OF AUTOMATING SECURITY RISK ASSESSMENT AND MANAGEMENT WITH A COST-OPTIMIZED ALLOCATION PLAN
摘要 A method of automating security risk assessment and management and corrective feedback with a cost-optimized allocation plan is disclosed. The method, operable in a computer system, includes presenting an on-line survey questionnaire and receiving, in response to the on-line survey questionnaire, a user-provided answer. The method further includes extracting data from the computer system and calculating, in response to the user-provided answer and the extracted data, a security risk. The method also includes producing, in response to the security risk, the cost-optimized allocation plan. The data and the user-provided answer are recorded in a data repository. The cost-optimized allocation plan is produced using a game-theoretical approach. The cost-allocation allocation plan includes changes to break even a cost differential of an expected cost of loss (ECL), and further assigns realistic market-oriented mitigation costs to each line of action for the user's computer or system.
申请公布号 US2010241478(A1) 申请公布日期 2010.09.23
申请号 US20090407892 申请日期 2009.03.20
申请人 SAHINOGLU MEHMET 发明人 SAHINOGLU MEHMET
分类号 G06Q10/00;G06N5/02;G06Q50/00 主分类号 G06Q10/00
代理机构 代理人
主权项
地址