IP Library Granted Patent US 10,951,641
Granted Patent B2
US 10,951,641 · App. 16/432,626 · Granted Mar 16, 2021

Threat mitigation system and method

Inventors: Brian P. Murphy (Tampa, FL); Joe Partlow (Tampa, FL); Colin O'Connor (Tampa, FL); Jason Pfeiffer (Tampa, FL)
Assignee: ReliaQuest Holdings, LLC
H04L63/1425G06F8/65G06F21/53G06F21/55G06F21/554G06F21/56G06F21/561G06F21/562G06F21/566G06F21/568G06F21/577G06F30/20G06K9/6256G06N20/00H04L63/0227H04L63/0263H04L63/145H04L63/1416H04L63/1433H04L63/1441H04L63/164H04L63/20G06F2221/034G06F2221/2115
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,951,641
App. No.
16/432,626
Granted
Mar 16, 2021
Kind
B2
Abstract

A computer-implemented method, computer program product and computing system for: obtaining system-defined consolidated platform information for a computing platform from an independent information source; obtaining client-defined consolidated platform information for the computing platform from a client information source; and presenting differential consolidated platform information for the computing platform to the third-party.

Claims (45)

1. A computer-implemented method, executed on a computing device, comprising:

generating, via a Security Information and Event Management system, system-defined consolidated platform information from a plurality of security-relevant subsystems within a computing platform, the plurality of security-relevant subsystems including one or more of Content Delivery Network systems, Database Activity Monitoring systems, User Behavior Analytic systems, Mobile Device Management systems, Identity and Access Management systems, and Domain Name Server systems;

obtaining the system-defined consolidated platform information for the computing platform from an independent information source, wherein the system-defined consolidated platform information defines what security-relevant subsystems are present on the computing platform;

obtaining client-defined consolidated platform information for the computing platform from a client information source, wherein the client-defined consolidated platform information defines what security-relevant subsystems the client believes are present on the computing platform;

presenting differential consolidated platform information for the computing platform to a third-party;

processing at least one of the system-defined consolidated platform information and the client-defined consolidated platform information to identify one or more non-deployed security-relevant subsystems; and

generating a list of the one or more non-deployed security-relevant subsystems, wherein generating the list of the one or more non-deployed security-relevant subsystems includes ranking and recommending the non-deployed security-relevant subsystems from the plurality of security-relevant subsystems within the computing platform.

2. The computer-implemented method of claim 1 further comprising:

comparing the system-defined consolidated platform information to the client-defined consolidated platform information to define the differential consolidated platform information for the computing platform.

3. The computer-implemented method of claim 2 further comprising:

processing the system-defined consolidated platform information prior to comparing the system-defined consolidated platform information to the client-defined consolidated platform information to define differential consolidated platform information for the computing platform.

4. The computer-implemented method of claim 1 wherein the system-defined consolidated platform information is obtained from one or more log files defined for the computing platform.

5. The computer-implemented method of claim 1 wherein the system-defined consolidated platform information is obtained from two or more security-relevant subsystems deployed within the computing platform.

6. The computer-implemented method of claim 1 wherein the client-defined consolidated platform information is obtained from one or more client-completed questionnaires.

7. The computer-implemented method of claim 1 wherein the client-defined consolidated platform information is obtained from one or more client-deployed platform monitors.

8. A computer program product residing on a non-transitory computer readable medium having a plurality of instructions stored thereon which, when executed by a processor, cause the processor to perform operations comprising:

generating, via a Security Information and Event Management system, system-defined consolidated platform information from a plurality of security-relevant subsystems within a computing platform, the plurality of security-relevant subsystems including one or more of Content Delivery Network systems, Database Activity Monitoring systems, User Behavior Analytic systems, Mobile Device Management systems, Identity and Access Management systems, and Domain Name Server systems;

obtaining the system-defined consolidated platform information for the computing platform from an independent information source, wherein the system-defined consolidated platform information defines what security-relevant subsystems are present on the computing platform;

obtaining client-defined consolidated platform information for the computing platform from a client information source, wherein the client-defined consolidated platform information defines what security-relevant subsystems the client believes are present on the computing platform;

presenting differential consolidated platform information for the computing platform to a third-party;

processing at least one of the system-defined consolidated platform information and the client-defined consolidated platform information to identify one or more non-deployed security-relevant subsystems; and

generating a list of the one or more non-deployed security-relevant subsystems, wherein generating the list of the one or more non-deployed security-relevant subsystems includes ranking and recommending the non-deployed security-relevant subsystems from the plurality of security-relevant subsystems within the computing platform.

9. The computer program product of claim 8 further comprising:

comparing the system-defined consolidated platform information to the client-defined consolidated platform information to define the differential consolidated platform information for the computing platform.

10. The computer program product of claim 9 further comprising:

processing the system-defined consolidated platform information prior to comparing the system-defined consolidated platform information to the client-defined consolidated platform information to define differential consolidated platform information for the computing platform.

11. The computer program product of claim 8 wherein the system-defined consolidated platform information is obtained from one or more log files defined for the computing platform.

12. The computer program product of claim 8 wherein the system-defined consolidated platform information is obtained from two or more security-relevant subsystems deployed within the computing platform.

13. The computer program product of claim 8 wherein the client-defined consolidated platform information is obtained from one or more client-completed questionnaires.

14. The computer program product of claim 8 wherein the client-defined consolidated platform information is obtained from one or more client-deployed platform monitors.

15. A computing system including a processor and memory configured to perform operations comprising:

generating, via a Security Information and Event Management system, system-defined consolidated platform information from a plurality of security-relevant subsystems within a computing platform, the plurality of security-relevant subsystems including one or more of Content Delivery Network systems, Database Activity Monitoring systems, User Behavior Analytic systems, Mobile Device Management systems, Identity and Access Management systems, and Domain Name Server systems;

obtaining the system-defined consolidated platform information for the computing platform from an independent information source, wherein the system-defined consolidated platform information defines what security-relevant subsystems are present on the computing platform;

obtaining client-defined consolidated platform information for the computing platform from a client information source, wherein the client-defined consolidated platform information defines what security-relevant subsystems the client believes are present on the computing platform;

presenting differential consolidated platform information for the computing platform to a third-party;

processing at least one of the system-defined consolidated platform information and the client-defined consolidated platform information to identify one or more non-deployed security-relevant subsystems; and

generating a list of the one or more non-deployed security-relevant subsystems, wherein generating the list of the one or more non-deployed security-relevant subsystems includes ranking and recommending the non-deployed security-relevant subsystems from the plurality of security-relevant subsystems within the computing platform.

16. The computing system of claim 15 further comprising:

comparing the system-defined consolidated platform information to the client-defined consolidated platform information to define the differential consolidated platform information for the computing platform.

17. The computing system of claim 16 further comprising:

processing the system-defined consolidated platform information prior to comparing the system-defined consolidated platform information to the client-defined consolidated platform information to define differential consolidated platform information for the computing platform.

18. The computing system of claim 15 wherein the system-defined consolidated platform information is obtained from one or more log files defined for the computing platform.

19. The computing system of claim 15 wherein the system-defined consolidated platform information is obtained from two or more security-relevant subsystems deployed within the computing platform.

20. The computing system of claim 15 wherein the client-defined consolidated platform information is obtained from one or more client-completed questionnaires.

21. The computing system of claim 15 wherein the client-defined consolidated platform information is obtained from one or more client-deployed platform monitors.

Assignments (4)
RELEASE OF SECURITY INTEREST Recorded May 1, 2024
From: SIXTH STREET SPECIALTY LENDING, INC.
To: RELIAQUEST HOLDINGS, LLC
Reel/Frame 067277/0607 →
SECURITY INTEREST Recorded Apr 30, 2024
From: RELIAQUEST HOLDINGS, LLC
To: GOLUB CAPITAL LLC, AS COLLATERAL AGENT
Reel/Frame 067274/0381 →
SECURITY INTEREST Recorded Oct 8, 2020
From: RELIAQUEST HOLDINGS, LLC
To: SIXTH STREET SPECIALTY LENDING, INC., AS COLLATERAL AGENT
Reel/Frame 054013/0548 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 7, 2020
From: MURPHY, BRIAN P.; PARTLOW, JOE; O'CONNOR, COLIN; PFEIFFER, JASON
To: RELIAQUEST HOLDINGS, LLC
Reel/Frame 052333/0915 →
Continuity (4)
Provisional Application 62681279 · Jun 6, 2018
Provisional Application 62737558 · Sep 27, 2018
Provisional Application 62817943 · Mar 13, 2019
Related Publication 20190379690A1 · Dec 12, 2019