发明名称 Method of assuring enterprise security standards compliance
摘要 A method, apparatus, and computer instructions for providing a current and complete security compliance view of an enterprise system. The present invention provides the ability to gain a real-time security posture and security compliance view of an enterprise and to assess the risk impact of known threats and attacks to continued business operations at various levels is provided. Responsive to a change to an enterprise environment, a request, or an external threat, an administrator loads or updates at least one of a Critical Application Operations database, a Historical database, an Access Control database, a Connectivity database, and a Threat database. Based on a comparison of information in the databases against similar security data elements from company or external policies, the administrator may generate a Security Compliance view of the enterprise. A Security Posture view may also be generated by comparing the Security Compliance view against data in the Threat database.
申请公布号 US2006156408(A1) 申请公布日期 2006.07.13
申请号 US20050033436 申请日期 2005.01.11
申请人 INTERNATIONAL BUSINESS MACHINES CORPORATION 发明人 HIMBERGER KEVIN D.;JEFFRIES CLARK D.;LINGAFELT CHARLES S.;ROGINSKY ALLEN L.;SINGLETON PHILLIP
分类号 H04L9/32;G06F7/04;G06F7/58;G06F9/00;G06F11/00;G06F11/22;G06F11/30;G06F11/32;G06F11/34;G06F11/36;G06F12/14;G06F12/16;G06F15/16;G06F15/18;G06F17/00;G06F17/30;G06K9/00;G06K19/00;G08B23/00 主分类号 H04L9/32
代理机构 代理人
主权项
地址