IP Library Granted Patent US 11,799,894
Granted Patent B2
US 11,799,894 · App. 16/566,449 · Granted Oct 24, 2023

Dual network security assessment engine

Inventors: Alain G. Sauve (Ottawa, CA); Syed Kamran Bilgrami (Ottawa, CA)
Assignee: Avast Software s.r.o.
H04L63/1433G06F16/285
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,799,894
App. No.
16/566,449
Filed
Sep 10, 2019
Granted
Oct 24, 2023
Kind
B2
Examiner
CHEN, CAI Y
Art Unit
2425
USPC
726/25
Abstract

A method of determining the security condition of a network includes executing an agent program on one or more computerized devices coupled to the network. Each executing agent program executes one or more security tests and reports the results of such tests to a network assessment engine, and the network assessment engine determines an authoritative security test score and a configurable security test score for the network based on a weighted combination of the security test results.

Claims (30)

1. A method of determining the security condition of a network, comprising:

executing an agent program on one or more computerized devices coupled to the network, each executing agent program operable to execute one or more security tests and to report the results of such tests to a network assessment engine; and

determining via the network assessment engine a pre-configured authoritative security test score and a user-configurable security test score for the network, the pre-configured authoritative security test score and the user-configurable security test score each based on a differently-weighted combination of the received security test results.

2. The method of determining the security condition of a network of claim 1 , wherein the executing an agent program on one or more computerized devices and the determining via the network assessment engine an authoritative and a configurable security test score for the network are performed at regular intervals.

3. The method of determining the security condition of a network of claim 1 , wherein the network assessment engine is operable to trigger execution of the agent program on one or more of the computerized devices.

4. The method of determining the security condition of a network of claim 1 , wherein weightings for the security test results used in determining the authoritative security test score are configured by a network assessment engine provider based on changes in security threats.

5. The method of determining the security condition of a network of claim 1 , wherein weightings for the security test results used in determining the configurable security test score are configured by a user to provide a customized view of potential network security threats.

6. The method of determining the security condition of a network of claim 1 , further comprising removing unassessed tests from being factored into at least one of the authoritative and configurable security test scores.

7. The method of determining the security condition of a network of claim 1 , wherein the security test results are categorized into a plurality of sub-categories which are used to generate sub-category scores.

8. The method of determining the security condition of a network of claim 7 , wherein a weighted combination of the security test results categorized into each of the sub-categories is used to generate the sub-category score for each sub-category, and the weighted combination of sub-category scores is used to generate at least one of the authoritative and configurable security test scores.

9. The method of determining the security condition of a network of claim 7 , wherein the security test results are categorized into sub-categories by security risk type.

10. The method of determining the security condition of a network of claim 1 , wherein the configurable security test score is derived from at least one additional or changed test relative to the tests used to derive the authoritative security test score.

11. A computerized network assessment system, comprising:

a processor operable to execute computer instructions, and

a set of executable computer instructions configured when executed to:

receive from one or more agent programs on one or more computerized devices coupled to a network being tested the results of one or more security tests executed by the agent programs; and

determine a pre-configured authoritative security test score and a user-configurable security test score for the network, the pre-configured authoritative security test score and the user-configurable security test score each based on a differently-weighted combination of the received security test results.

12. The computerized network assessment system of claim 11 , wherein the set of executable instructions when executed are further operable to trigger execution of the security tests on one or more of the computerized devices.

13. The computerized network assessment system of claim 11 , wherein weightings for the security test results used in determining the authoritative security test score are configured by a network assessment engine provider based on changes in security threats, and weightings for the security test results used in determining the configurable security test score are configured by a user to provide a customized view of potential network security threats.

14. The computerized network assessment system of claim 11 , wherein determining security test scores for the network further comprises removing unassessed tests from being factored into at least one of the authoritative and configurable security test scores.

15. The computerized network assessment system of claim 11 , the instructions when executed further operable to categorize the security test results into a plurality of sub-categories and to use the sub-categories to generate sub-category scores.

16. The computerized network assessment system of claim 15 , wherein a weighted combination of the security test results categorized into each of the sub-categories is used to generate the sub-category score for each sub-category, and the weighted combination of sub-category scores is used to generate at least one of the authoritative and configurable security test scores.

17. The computerized network assessment system of claim 15 , wherein the security test results are categorized into sub-categories by security risk type.

18. The computerized network assessment system of claim 11 , wherein the configurable security test score is derived from at least one additional or changed test relative to the tests used to derive the authoritative security test score.

19. A computerized network testing device, comprising:

a processor operable to execute computer instructions, and

a set of executable computer instructions configured when executed to:

run one or more security tests on a network being tested; and

report the results of the one or more security tests to a network assessment system operable to determine a pre-configured authoritative security test score and a user-configurable security test score for the network, the pre-configured authoritative security test score and the user-configurable security test score each based on a differently-weighted combination of the received security test results.

20. The computerized network testing device of claim 19 , the set of executable instructions further operated when executed to run the one or more security tests based on data received from the network assessment system.