Threat mitigation system and method
A computer-implemented method, computer program product and computing system for: detecting one or more security events within a computing platform of a client; notifying the client of the one or more security events within the computing platform; determining if the client responded to the one or more security events within the computing platform; and providing a response report to the client that quantifies client response performance based, at least in part, upon if the client responded to the one or more security events within the computing platform.
1. A computer-implemented method, executed on a computing device, comprising:
detecting, using artificial intelligence/machine learning, one or more security events within a computing platform of a client;
notifying the client of the one or more security events within the computing platform;
determining if the client responded to the one or more security events within the computing platform;
determining how long it took the client to resolve the one or more security events; and
providing a response report to the client that quantifies client response performance based, at least in part, upon if the client responded to the one or more security events within the computing platform, wherein the response report includes time-based resolution performance for the client sorted by security even severity, wherein the response report compares a response rate of the client to the response rate of a third party including a customer index as a sliding scale grade concerning the response performance of the client versus the response performance of the third-parties, the response rate of the client based upon failure of the client to respond to detected security events the client was notified of, and wherein the client is one or more of a user, an owner, and an operator of the computing platform.
2. The computer-implemented method of claim 1 wherein the response report defines a client response rate with respect to if the client responded to the one or more security events within the computing platform.
3. The computer-implemented method of claim 1 wherein the third-parties include one or more of:
other clients regardless of industry; and
other clients in the same industry as the client.
4. The computer-implemented method of claim 1 wherein the response report defines time-based response performance over a defined period of time.
5. The computer-implemented method of claim 4 wherein the time-based response performance includes time-based response performance for the client.
6. The computer-implemented method of claim 4 wherein the time-based response performance includes time-based response performance for third-parties.
7. The computer-implemented method of claim 6 wherein the third-parties include one or more of:
other clients regardless of industry; and
other clients in the same industry as the client.
8. A computer program product residing on a non-transitory computer readable medium having a plurality of instructions stored thereon which, when executed by a processor, cause the processor to perform operations comprising:
detecting, using artificial intelligence/machine learning, one or more security events within a computing platform of a client;
notifying the client of the one or more security events within the computing platform;
determining if the client responded to the one or more security events within the computing platform;
determining how long it took the client to resolve the one or more security events; and
providing a response report to the client that quantifies client response performance based, at least in part, upon if the client responded to the one or more security events within the computing platform, wherein the response report includes time-based resolution performance for the client sorted by security even severity, wherein the response report compares a response rate of the client to the response rate of a third party including a customer index as a sliding scale grade concerning the response performance of the client versus the response performance of the third-parties, the response rate of the client based upon failure of the client to respond to detected security events the client was notified of, and wherein the client is one or more of a user, an owner, and an operator of the computing platform.
9. The computer program product of claim 8 wherein the response report defines a client response rate with respect to if the client responded to the one or more security events within the computing platform.
10. The computer program product of claim 8 wherein the third-parties include one or more of:
other clients regardless of industry; and
other clients in the same industry as the client.
11. The computer program product of claim 8 wherein the response report defines time-based response performance over a defined period of time.
12. The computer program product of claim 11 wherein the time-based response performance includes time-based response performance for the client.
13. The computer program product of claim 11 wherein the time-based response performance includes time-based response performance for third-parties.
14. The computer program product of claim 13 wherein the third-parties include one or more of:
other clients regardless of industry; and
other clients in the same industry as the client.
15. A computing system including a processor and memory configured to perform operations comprising:
detecting, using artificial intelligence/machine learning, one or more security events within a computing platform of a client;
notifying the client of the one or more security events within the computing platform;
determining if the client responded to the one or more security events within the computing platform;
determining how long it took the client to resolve the one or more security events; and
providing a response report to the client that quantifies client response performance based, at least in part, upon if the client responded to the one or more security events within the computing platform, wherein the response report includes time-based resolution performance for the client sorted by security even severity, wherein the response report compares a response rate of the client to the response rate of a third party including a customer index as a sliding scale grade concerning the response performance of the client versus the response performance of the third-parties, the response rate of the client based upon failure of the client to respond to detected security events the client was notified of, and wherein the client is one or more of a user, an owner, and an operator of the computing platform.
16. The computing system of claim 15 wherein the response report defines a client response rate with respect to if the client responded to the one or more security events within the computing platform.
17. The computing system of claim 15 wherein the third-parties include one or more of:
other clients regardless of industry; and
other clients in the same industry as the client.
18. The computing system of claim 15 wherein the response report defines time-based response performance over a defined period of time.
19. The computing system of claim 18 wherein the time-based response performance includes time-based response performance for the client.
20. The computing system of claim 18 wherein the time-based response performance includes time-based response performance for third-parties.
21. The computing system of claim 20 wherein the third-parties include one or more of:
other clients regardless of industry; and
other clients in the same industry as the client.