THREAT MITIGATION SYSTEM AND METHOD
A computer-implemented method, computer program product and computing system for: establishing connectivity with a plurality of security-relevant subsystems within a computing platform; and mapping one or more data fields of a unified platform to one or more data fields of each of the plurality of security-relevant subsystems.
1 .- 90 . (canceled)
91 . A computer-implemented method, executed on a computing device, comprising:
establishing connectivity with a plurality of security-relevant subsystems within a computing platform, including utilizing a respective application programming interface (API) for accessing each of the plurality of security-relevant subsystems;
defining a unified query on a unified platform concerning the plurality of security-relevant subsystems; and
denormalizing the unified query to define a subsystem-specific query for each of the plurality of security-relevant subsystems, thus defining a plurality of subsystem-specific queries.
92 . The computer-implemented method of claim 91 , further comprising:
mapping one or more data fields of the unified platform to one or more data fields of each of the plurality of security-relevant subsystems, including:
mapping one or more data fields within a query structure of the unified platform to one or more data fields within a query structure of each of the plurality of security-relevant subsystems.
93 . The computer-implemented method of claim 91 , further comprising:
mapping one or more data fields of the unified platform to one or more data fields of each of the plurality of security-relevant subsystems, including:
mapping one or more data fields within a result set structure of each of the plurality of security-relevant subsystems to one or more data fields within a result set structure of the unified platform.
94 . The computer-implemented method of claim 91 , further comprising:
mapping one or more data fields of the unified platform to one or more data fields of each of the plurality of security-relevant subsystems, including:
mapping one or more data fields of the unified platform to one or more data fields of each of the plurality of security-relevant subsystems at a defined periodicity.
95 . The computer-implemented method of claim 91 , further comprising:
mapping one or more data fields of the unified platform to one or more data fields of each of the plurality of security-relevant subsystems, including:
proactively mapping one or more data fields of the unified platform to one or more data fields of each of the plurality of security-relevant subsystems.
96 . The computer-implemented method of claim 91 , further comprising:
mapping one or more data fields of the unified platform to one or more data fields of each of the plurality of security-relevant subsystems, including:
reactively mapping one or more data fields of the unified platform to one or more data fields of each of the plurality of security-relevant subsystems.
97 . The computer-implemented method of claim 91 , further comprising:
providing the plurality of subsystem-specific queries to the plurality of security-relevant subsystems.
98 . The computer-implemented method of claim 97 , further comprising:
receiving a plurality of subsystem-specific results sets from the plurality of security-relevant subsystems that were generated in response to the plurality of subsystem-specific queries.
99 . The computer-implemented method of claim 98 , further comprising:
normalizing the plurality of subsystem-specific results sets received from the plurality of security-relevant subsystems to define a unified result set.
100 . The computer-implemented method of claim 99 , further comprising:
providing the unified result set to a third-party.
101 . A computer program product residing on a non-transitory computer readable medium having a plurality of instructions stored thereon which, when executed by a processor, cause the processor to perform operations comprising:
establishing connectivity with a plurality of security-relevant subsystems within a computing platform, including utilizing a respective application programming interface (API) for accessing each of the plurality of security-relevant subsystems;
defining a unified query on a unified platform concerning the plurality of security-relevant subsystems; and
denormalizing the unified query to define a subsystem-specific query for each of the plurality of security-relevant subsystems, thus defining a plurality of subsystem-specific queries.
102 . The computer program product of claim 101 , further comprising:
mapping one or more data fields of the unified platform to one or more data fields of each of the plurality of security-relevant subsystems, including:
mapping one or more data fields within a query structure of the unified platform to one or more data fields within a query structure of each of the plurality of security-relevant subsystems.
103 . The computer program product of claim 101 , further comprising:
mapping one or more data fields of the unified platform to one or more data fields of each of the plurality of security-relevant subsystems, including:
mapping one or more data fields within a result set structure of each of the plurality of security-relevant subsystems to one or more data fields within a result set structure of the unified platform.
104 . The computer program product of claim 101 , further comprising:
mapping one or more data fields of the unified platform to one or more data fields of each of the plurality of security-relevant subsystems, including:
mapping one or more data fields of the unified platform to one or more data fields of each of the plurality of security-relevant subsystems at a defined periodicity.
105 . The computer program product of claim 101 , further comprising:
mapping one or more data fields of the unified platform to one or more data fields of each of the plurality of security-relevant subsystems, including:
proactively mapping one or more data fields of the unified platform to one or more data fields of each of the plurality of security-relevant subsystems.
106 . The computer program product of claim 101 , further comprising:
mapping one or more data fields of the unified platform to one or more data fields of each of the plurality of security-relevant subsystems, including:
reactively mapping one or more data fields of the unified platform to one or more data fields of each of the plurality of security-relevant subsystems.
107 . The computer program product of claim 101 , further comprising:
providing the plurality of subsystem-specific queries to the plurality of security-relevant subsystems.
108 . The computer program product of claim 107 , further comprising:
receiving a plurality of subsystem-specific results sets from the plurality of security-relevant subsystems that were generated in response to the plurality of subsystem-specific queries.
109 . The computer program product of claim 108 , further comprising:
normalizing the plurality of subsystem-specific results sets received from the plurality of security-relevant subsystems to define a unified result set.
110 . The computer program product of claim 109 , further comprising:
providing the unified result set to a third-party.
111 . A computing system including a processor and memory configured to perform operations comprising:
establishing connectivity with a plurality of security-relevant subsystems within a computing platform, including utilizing a respective application programming interface (API) for accessing each of the plurality of security-relevant subsystems;
defining a unified query on a unified platform concerning the plurality of security-relevant subsystems; and
denormalizing the unified query to define a subsystem-specific query for each of the plurality of security-relevant subsystems, thus defining a plurality of subsystem-specific queries.
112 . The computing system of claim 111 , further comprising:
mapping one or more data fields of the unified platform to one or more data fields of each of the plurality of security-relevant subsystems, including:
mapping one or more data fields within a query structure of the unified platform to one or more data fields within a query structure of each of the plurality of security-relevant subsystems.
113 . The computing system of claim 111 , further comprising:
mapping one or more data fields of the unified platform to one or more data fields of each of the plurality of security-relevant subsystems, including:
mapping one or more data fields within a result set structure of each of the plurality of security-relevant subsystems to one or more data fields within a result set structure of the unified platform.
114 . The computing system of claim 111 , further comprising:
mapping one or more data fields of the unified platform to one or more data fields of each of the plurality of security-relevant subsystems, including:
mapping one or more data fields of the unified platform to one or more data fields of each of the plurality of security-relevant subsystems at a defined periodicity.
115 . The computing system of claim 111 , further comprising:
mapping one or more data fields of the unified platform to one or more data fields of each of the plurality of security-relevant subsystems, including:
proactively mapping one or more data fields of the unified platform to one or more data fields of each of the plurality of security-relevant subsystems.
116 . The computing system of claim 111 , further comprising:
mapping one or more data fields of the unified platform to one or more data fields of each of the plurality of security-relevant subsystems, including:
reactively mapping one or more data fields of the unified platform to one or more data fields of each of the plurality of security-relevant subsystems.
117 . The computing system of claim 111 , further comprising:
providing the plurality of subsystem-specific queries to the plurality of security-relevant subsystems.
118 . The computing system of claim 117 , further comprising:
receiving a plurality of subsystem-specific results sets from the plurality of security-relevant subsystems that were generated in response to the plurality of subsystem-specific queries.
119 . The computing system of claim 118 , further comprising:
normalizing the plurality of subsystem-specific results sets received from the plurality of security-relevant subsystems to define a unified result set.
120 . The computing system of claim 119 , further comprising:
providing the unified result set to a third-party.