IP Library Granted Patent US 10,606,708
Granted Patent B2
US 10,606,708 · App. 15/844,940 · Granted Mar 31, 2020

Risk measurement driven data protection strategy

Inventors: Adam Banasik (Przemkowska, PL); Tomasz M. Gasiorowski (Kruszyn, PL); Daisy Mae L. Jose (Apex, NC); Geri D. McGrath (Cary, NC)
Assignee: International Business Machines Corporation
G06F11/1461G06F11/1458G06F11/2069G06F11/2094G06F21/577G06F21/6245G06F2221/034
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,606,708
App. No.
15/844,940
Granted
Mar 31, 2020
Kind
B2
Abstract

Techniques are disclosed for dynamically changing a data protection plan based on a risk score. The risk score is continuously or periodically recalculated based on situational factors that are detected from external modules. The situational factors can include natural phenomena such as weather, fire, and seismic activity. The situational factors can include manmade phenomena such as financial conditions, political stability in the region where the data resides, war, terrorist attacks, and the like. The situational factors are retrieved from one or more external modules. The external modules may be IoT (Internet of Things) modules. The external modules are monitored, and as new data from the external modules becomes available, a risk score for stored data is computed. The risk score is then used to select an appropriate data protection plan.

Claims (30)

1. A computer system comprising:

a processor;

a memory coupled to the processor, the memory containing instructions, that when executed by the processor, perform the steps of:

assessing an initial criticality of data stored on a computer system;

computing an initial risk score based on the initial criticality and a plurality of situational factors received from one or more external modules, wherein the one or more external modules comprises a web crawler, and wherein the plurality of situational factors includes a stock activity level and a stock price;

selecting an initial data protection plan based on the initial risk score, wherein the initial risk score is based on factors including: the stock activity level being within a predetermined threshold, and the stock price being within a predefined range;

monitoring the one or more external modules and computing a new risk score based on detected changes of the plurality of situational factors, wherein the detected change is that the stock activity level exceeded the predetermined threshold and the stock price extending outside the predefined range;

selecting a different data protection plan in response to the new risk score; and

backup data to a remote physical location based on the selected different data protection plan.

2. The computer system of claim 1 , wherein assessing an initial criticality includes receiving an industry category or a system type category.

3. The computer system of claim 1 , wherein assessing an initial criticality includes receiving a data importance category or a data activity category.

4. The computer system of claim 1 , wherein the monitoring the one or more external modules includes monitoring a temperature module or a precipitation module.

5. The computer system of claim 1 , wherein the monitoring the one or more external modules includes monitoring a fire detection module or a seismic activity module.

6. The computer system of claim 1 , wherein the monitoring the one or more external modules includes monitoring a moisture sensor module or a financial activity module.

7. The computer system of claim 1 , wherein the monitoring the one or more external modules includes monitoring a subset of external modules configured and disposed within a predetermined distance of the computer system.

8. The computer system of claim 1 , wherein the different data protection plan includes data mirroring, an increased frequency of backups, or an increased retention period.

9. A computer program product for implementing a data protection strategy for an electronic computing device comprising a computer readable storage medium having program instructions embodied therewith, the program instructions executable by a processor to cause the electronic device to:

assess an initial criticality of data stored on a computer system;

compute an initial risk score based on the initial criticality and a plurality of situational factors received from one or more external modules, wherein the one or more external modules comprises a web crawler, and wherein the plurality of situational factors includes a stock activity level and a stock price;

select an initial data protection plan based on the initial risk score, wherein the initial risk score is based on factors including: the stock activity level being within a predetermined threshold, and the stock price being within a predefined range;

monitor the one or more external modules and computing a new risk score based on detected changes in the plurality of situational factors, wherein the detected change is that the stock activity level exceeded the predetermined threshold and the stock price extending outside the predefined range;

select a different data protection plan in response to the new risk score; and

backup data to a remote physical location based on the selected different data protection plan.

10. The computer program product of claim 9 , wherein assessing an initial criticality includes receiving an industry category or a system type category.

11. The computer program product of claim 9 , wherein assessing an initial criticality includes receiving a data importance category or a data activity category.

12. The computer program product of claim 9 , wherein the monitoring the one or more external modules includes monitoring a temperature module or a precipitation module.

13. The computer program product of claim 9 , wherein the monitoring the one or more external modules includes monitoring a fire detection module or a seismic activity module.

14. The computer program product of claim 9 , wherein the monitoring the one or more external modules includes monitoring a moisture sensor module or a financial activity module.

15. The computer program product of claim 9 , wherein the monitoring the one or more external modules includes monitoring a subset of external modules configured and disposed within a predetermined distance of the computer system.

16. The computer program product of claim 9 , wherein the different data protection plan includes data mirroring, an increased frequency of backups, or an increased retention period.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 13, 2021
From: INTERNATIONAL BUSINESS MACHINES CORPORATION
To: KYNDRYL, INC.
Reel/Frame 057885/0644 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 18, 2017
From: BANASIK, ADAM; GASIOROWSKI, TOMASZ M.; JOSE, DAISY MAE L.; MCGRATH, GERI D.
To: INTERNATIONAL BUSINESS MACHINES CORPORATION
Reel/Frame 044420/0529 →
Continuity (2)
Continuation 15397900 · Jan 4, 2017
Related Publication 20180189147A1 · Jul 5, 2018