IP Library Patent Application 16863622
Patent Application
App. No. 16/863,622

Method for Defining and Computing Analytic Features

Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US None
App. No.
16/863,622
Abstract

A system, method, and computer-readable medium are disclosed for constructing a distribution of interrelated event features. In various embodiments constructing the distribution includes: receiving a stream of events, the stream of events comprising a plurality of events; generating a query relating to the plurality of events, the query comprising condition information, the condition information defining a subset of query relevant events; processing the query relating to the plurality of events, extracting features from the plurality of events based upon the query; constructing a distribution of the features from the plurality of events based upon the query; and, analyzing the distribution of the features from the plurality of events based upon the query.

Claims (56)

1 . A computer-implementable method for constructing a distribution of interrelated event features, comprising:

receiving a stream of events, the stream of events comprising a plurality of events;

generating a query relating to the plurality of events, the query comprising condition information, the condition information defining a subset of query relevant events;

processing the query relating to the plurality of events,

extracting features from the plurality of events based upon the query;

constructing a distribution of the features from the plurality of events based upon the query; and,

analyzing the distribution of the features from the plurality of events based upon the query.

2 . The method of claim 1 , wherein:

the query comprises a domain specific language (DSL) query.

3 . The method of claim 2 , wherein:

the DSL query comprises a plurality of Boolean predicates.

4 . The method of claim 3 , wherein:

the plurality of Boolean predicates comprise a matching query predicate and a conditioning query predicate.

5 . The method of claim 4 , wherein:

the analyzing the distribution of features is performed by a DSL query processing module.

6 . The method of claim 5 , wherein:

the conditioning query is implemented to cause the DSL query processing module to identify a subset of conditions of analytic utility.

7 . A system comprising:

a processor;

a data bus coupled to the processor; and

a non-transitory, computer-readable storage medium embodying computer program code, the non-transitory, computer-readable storage medium being coupled to the data bus, the computer program code interacting with a plurality of computer operations and comprising instructions executable by the processor and configured for:

receiving a stream of events, the stream of events comprising a plurality of events;

generating a query relating to the plurality of events, the query comprising condition information, the condition information defining a subset of query relevant events;

processing the query relating to the plurality of events,

extracting features from the plurality of events based upon the query;

constructing a distribution of the features from the plurality of events based upon the query; and,

analyzing the distribution of the features from the plurality of events based upon the query.

8 . The system of claim 7 , wherein:

the query comprises a domain specific language (DSL) query.

9 . The system of claim 8 , wherein:

the DSL query comprises a plurality of Boolean predicates.

10 . The system of claim 9 , wherein:

the plurality of Boolean predicates comprise a matching query predicate and a conditioning query predicate.

11 . The system of claim 10 , wherein:

the analyzing the distribution of features is performed by a DSL query processing module.

12 . The system of claim 11 , wherein:

the conditioning query is implemented to cause the DSL query processing module to identify a subset of conditions of analytic utility.

13 . A non-transitory, computer-readable storage medium embodying computer program code, the computer program code comprising computer executable instructions configured for:

receiving a stream of events, the stream of events comprising a plurality of events;

generating a query relating to the plurality of events, the query comprising condition information, the condition information defining a subset of query relevant events;

processing the query relating to the plurality of events,

extracting features from the plurality of events based upon the query;

constructing a distribution of the features from the plurality of events based upon the query; and,

analyzing the distribution of the features from the plurality of events based upon the query.

14 . The non-transitory, computer-readable storage medium of claim 13 , wherein:

the query comprises a domain specific language (DSL) query.

15 . The non-transitory, computer-readable storage medium of claim 14 , wherein:

the DSL query comprises a plurality of Boolean predicates.

16 . The non-transitory, computer-readable storage medium of claim 15 , wherein:

the plurality of Boolean predicates comprise a matching query predicate and a conditioning query predicate.

17 . The non-transitory, computer-readable storage medium of claim 16 , wherein:

the analyzing the distribution of features is performed by a DSL query processing module.

18 . The non-transitory, computer-readable storage medium of claim 17 , wherein:

the conditioning query is implemented to cause the DSL query processing module to identify a subset of conditions of analytic utility.

19 . The non-transitory, computer-readable storage medium of claim 13 , wherein the computer executable instructions are deployable to a client system from a server system at a remote location.

20 . The non-transitory, computer-readable storage medium of claim 13 , wherein the computer executable instructions are provided by a service provider to a user on an on-demand basis.

Assignments (5)
CHANGE OF NAME Recorded Mar 21, 2025
From: FORCEPOINT FEDERAL HOLDINGS LLC
To: EVERFOX HOLDINGS LLC
Reel/Frame 070588/0074 →
PARTIAL PATENT RELEASE AND REASSIGNMENT AT REEL/FRAME 055052/0302 Recorded Oct 3, 2023
From: CREDIT SUISSE, AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
To: FORCEPOINT FEDERAL HOLDINGS LLC (F/K/A FORCEPOINT LLC)
Reel/Frame 065103/0147 →
SECURITY INTEREST Recorded Sep 29, 2023
From: FORCEPOINT FEDERAL HOLDINGS LLC
To: APOLLO ADMINISTRATIVE AGENCY LLC, AS COLLATERAL AGENT
Reel/Frame 065086/0822 →
CHANGE OF NAME Recorded May 12, 2021
From: FORCEPOINT LLC
To: FORCEPOINT FEDERAL HOLDINGS LLC
Reel/Frame 056216/0309 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 30, 2020
From: RENNER, WILLIAM; LUIGGI, EDUARDO; POIREL, CHRISTOPHER
To: FORCEPOINT, LLC
Reel/Frame 052541/0922 →