IP Library Granted Patent US 9,754,225
Granted Patent B2
US 9,754,225 · App. 13/053,503 · Granted Sep 5, 2017

Automated risk assessment and management

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,754,225
App. No.
13/053,503
Granted
Sep 5, 2017
Kind
B2
Abstract

Automated risk assessment and management techniques are provided. Assets of an enterprise are monitored within an enterprise repository via their electronic identities. The identities are annotated with business defined values. The annotations can dynamically change based on dynamic policy evaluation and evolving actions of the assets, the state of the enterprise, and/or the state of an enterprise system. The annotations are accumulated and used in customized calculations for purposes of driving automated actions of the enterprise and producing a variety of reporting features.

Claims (14)

1. A method for automated security processing, the method implemented in a non-transitory machine-readable storage medium as executable instructions that are processed by one or more processors configured to perform the method, comprising:

assigning, by the one or more processors, base annotations to a resource identity associated with a resource in an enterprise data store and identifying the resource as a resource type that is one of:

a service, a system, a device, a directory, a data store, a workflow, a workload, and combinations and collections thereof, and wherein assigning further includes assigning each base annotation as a name-value pair to the resource identity, each base annotation having a name portion that identifies an annotation type and a value portion, and identifying each name-value pair as one of:

a business-value name and a business value, a threat-level name and a threat-level value, a threat-potential name and a threat-potential value, a role name and a role value, and an asset name and a risk value assigned to that asset name, each value assigned according to a predefined scale for the corresponding annotation type;

performing, by the one or more processors, a number of iterations, the number of iterations is a depth of a hierarchy used for annotating assignments of enterprise resources and each iteration calculating new annotations using the value portions of the name-value pairs, and each iteration based at least in part on the value portions of prior annotations and the new annotations assigned to the resource identity in the enterprise data store, wherein for a first iteration the base annotations are the prior annotations, wherein the hierarchy is for available annotations within an enterprise, wherein calculating further includes summing the value portions for same annotation types during each iteration to arrive at revised total annotation type values; and

monitoring, by the one or more processors, the enterprise data store for the resource identity based on the base annotations and the new annotations to perform one or more automated actions, wherein monitoring further includes dynamically changing security within an enterprise system for the resource type based on the revised total annotation type values and dynamically providing automated security processing.

2. The method of claim 1 , wherein assigning further includes automatically assigning the base annotations to the resource identity based on the resource type associated with the resource asset identity in the enterprise data store.

3. The method of claim 1 , wherein assigning further includes receiving the base annotations via an interface from an administrator.

4. The method of claim 1 , wherein assigning further includes obtaining the base annotations via Application Programming Interface (API) instructions from an automated service.

5. The method of claim 1 , wherein performing further includes acquiring a predefined calculation for each level of iteration, each predefined calculation associated with a particular annotation type.

6. The method of claim 1 , wherein performing further includes processing at least one calculation for at least one level of iteration to produce a particular new annotation associated with enterprise risk assessment for the resource.

7. The method of claim 1 , wherein monitoring further includes processing at least one action that changes a particular new annotation based on detected resource actions of the resource within an enterprise network.

8. The method of claim 7 , wherein processing further includes changing access privileges for the resource with respect to another resource in response to the particular new annotation and the detected resource actions.

9. The method of claim 7 , wherein processing further includes sending a notification to one or more additional resources in response to the particular new annotation and the detected resource actions.

Assignments (12)
RELEASE OF SECURITY INTEREST REEL/FRAME 035656/0251 Recorded Feb 2, 2023
From: JPMORGAN CHASE BANK, N.A.
To: BORLAND SOFTWARE CORPORATION; ATTACHMATE CORPORATION; NETIQ CORPORATION; MICRO FOCUS (US), INC.; MICRO FOCUS SOFTWARE INC. (F/K/A NOVELL, INC.)
Reel/Frame 062623/0009 →
RELEASE OF SECURITY INTEREST REEL/FRAME 044183/0718 Recorded Feb 2, 2023
From: JPMORGAN CHASE BANK, N.A.
To: MICRO FOCUS LLC (F/K/A ENTIT SOFTWARE LLC); BORLAND SOFTWARE CORPORATION; MICRO FOCUS (US), INC.; SERENA SOFTWARE, INC; ATTACHMATE CORPORATION; MICRO FOCUS SOFTWARE INC. (F/K/A NOVELL, INC.); NETIQ CORPORATION
Reel/Frame 062746/0399 →
CORRECTIVE ASSIGNMENT TO CORRECT THE TO CORRECT TYPO IN APPLICATION NUMBER 10708121 WHICH SHOULD BE 10708021 PREVIOUSLY RECORDED ON REEL 042388 FRAME 0386. ASSIGNOR(S) HEREBY CONFIRMS THE NOTICE OF SUCCESSION OF AGENCY. Recorded Jul 26, 2018
From: BANK OF AMERICA, N.A., AS PRIOR AGENT
To: JPMORGAN CHASE BANK, N.A., AS SUCCESSOR AGENT
Reel/Frame 048793/0832 →
SECURITY INTEREST Recorded Oct 11, 2017
From: ENTIT SOFTWARE LLC; ATTACHMATE CORPORATION; BORLAND SOFTWARE CORPORATION; NETIQ CORPORATION; MICRO FOCUS (US), INC.; MICRO FOCUS SOFTWARE, INC.; ARCSIGHT, LLC; SERENA SOFTWARE, INC.
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 044183/0718 →
NOTICE OF SUCCESSION OF AGENCY Recorded May 2, 2017
From: BANK OF AMERICA, N.A., AS PRIOR AGENT
To: JPMORGAN CHASE BANK, N.A., AS SUCCESSOR AGENT
Reel/Frame 042388/0386 →
CHANGE OF NAME Recorded Sep 13, 2016
From: NOVELL, INC.
To: MICRO FOCUS SOFTWARE INC.
Reel/Frame 040020/0703 →
SECURITY INTEREST Recorded May 13, 2015
From: MICRO FOCUS (US), INC.; BORLAND SOFTWARE CORPORATION; ATTACHMATE CORPORATION; NETIQ CORPORATION; NOVELL, INC.
To: BANK OF AMERICA, N.A.
Reel/Frame 035656/0251 →
RELEASE OF SECURITY INTEREST RECORDED AT REEL/FRAME 028252/0316 Recorded Nov 24, 2014
From: CREDIT SUISSE AG
To: NOVELL, INC.
Reel/Frame 034469/0057 →
RELEASE OF SECURITY INTEREST RECORDED AT REEL/FRAME 028252/0216 Recorded Nov 24, 2014
From: CREDIT SUISSE AG
To: NOVELL, INC.
Reel/Frame 034470/0680 →
GRANT OF PATENT SECURITY INTEREST SECOND LIEN Recorded May 23, 2012
From: NOVELL, INC.
To: CREDIT SUISSE AG, AS COLLATERAL AGENT
Reel/Frame 028252/0316 →
GRANT OF PATENT SECURITY INTEREST FIRST LIEN Recorded May 23, 2012
From: NOVELL, INC.
To: CREDIT SUISSE AG, AS COLLATERAL AGENT
Reel/Frame 028252/0216 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 24, 2011
From: WORWETZ, MARK; SCHEUBER-HEINZ, VOLKER GUNNAR; THURGOOD, BRENT; HARDMAN, JON
To: NOVELL, INC.
Reel/Frame 026014/0348 →