IP Library › Granted Patent US 11,870,812
Granted Patent B2
US 11,870,812 · App. 17/219,841 · Granted Jan 9, 2024

Cyberrisk governance system and method to automate cybersecurity detection and resolution in a network

Inventor: Stanley Yuen Li (Hong Kong, HK)
H04L63/20G06F16/27G06N20/00
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,870,812
App. No.
17/219,841
Filed
Mar 31, 2021
Granted
Jan 9, 2024
Kind
B2
Art Unit
2498
USPC
726/23
Abstract

A cyberrisk governance method to automate cybersecurity detection and resolution in a network is disclosed. The method includes monitoring data related to one or more cybersecurity, Information Technology (IT) operation responses, and governance controls to address regulation, compliance and enterprise risk. Further, the method includes detecting one or more threats in the data using Machine Learning (ML). The one or more threats correspond to at least a malware detection, an intrusion detection, fraud detection for IT, and user behavioral analysis for the internet of things (IoT). The method further includes generating a report for a user based at least on the detected one or more threats. The generated report includes one or more security information and one or more security patches. Thereafter, the method includes sending the generated report to the user, thereby automating cybersecurity detection and resolution in the network.

Claims (36)

1. A cyberrisk governance method to automate cybersecurity detection and provide resolution in a network, the method comprising:

monitoring data related to one or more cybersecurity, Information Technology (IT) operation responses, and governance controls to address regulation, compliance, and enterprise risk;

detecting one or more threats in the data using Machine Learning (ML), wherein the one or more threats correspond to at least a malware detection, an intrusion detection, identified vulnerabilities, system administration threats, a scoring risk in the network for operational technology (OT), fraud detection for IT, and user behavioral analysis for the internet of things (IoT);

generating a report, for a user, based at least on the detected one or more threats, wherein the generated report includes one or more security information and one or more security patches;

sending the report to the user, thereby automating cybersecurity detection and resolution in the network;

receiving, from the user, an input corresponding to a selection of a security patch from the one or more security patches; and

executing the selected security patch in the network to eliminate the one or more threats.

2. The method of claim 1 , further comprising consolidating the data and storing the consolidated data in a database.

3. The method of claim 2 , wherein the database has an additional layer of security with tokenization for users to control the consolidated data utilizing Distributed Ledger Technology (DLT).

4. The method of claim 2 , wherein the consolidated data is integrated and classified into GraphQL using a blockchain technology.

5. The method of claim 1 , wherein the data corresponds to unstructured and structured data, the unstructured and structured data including at least user device information, and wherein the user device information includes at least one of user security profile, security patches, historical data, security level, user activity logs, security information, or Common Vulnerabilities and Exposure (CVE) information.

6. The method of claim 1 , wherein the one or more security information includes at least one or more security alerts for malicious attacks, Common Vulnerabilities and Exposure (CVE) information, and cybersecurity authorities.

7. The method of claim 1 , wherein the ML is trained based at least on historical data and one or more feedbacks from the users.

8. A cyberrisk governance system to automate cybersecurity detection and resolution in a network, the system comprising:

a security data management module configured to monitor data related to one or more cybersecurity, Information Technology (IT) operation responses, and governance controls to address regulation, compliance and enterprise risk;

an artificial threat detection and report generator module configured to detect one or more threats in the data using Machine Learning (ML), wherein the one or more threats correspond to at least a malware detection, an intrusion detection, a scoring risk in the network for operational technology (OT), fraud detection for IT, and user behavioral analysis for the internet of things (IoT); and

a user portal and control management module configured to:

generate a report, for a user, based at least on the detected one or more threats, wherein the generated report includes one or more security information and one or more security patches;

send the report to the user, thereby automating cybersecurity detection and resolution in the network;

receive, from the user, an input corresponding to a selection of a security patch from the one or more security patches; and

execute the selected security patch in the network to eliminate the one or more threats.

9. The system of claim 8 , wherein the data is consolidated and stored in a database.

10. The system of claim 9 , wherein the database has an additional layer of security with tokenization for users to control the consolidated data utilizing Distributed Ledger Technology (DLT).

11. The system of claim 9 , wherein the consolidated data is integrated and classified into GraphQL using a blockchain technology.

12. The system of claim 8 , wherein the ML is trained based at least on historical data and one or more feedbacks from the users.

13. A non-transitory computer program product to automate cybersecurity detection and resolution in a network, the computer program product comprising program code to:

monitor data related to one or more cybersecurity and Information Technology (IT) operation responses, and governance controls to address regulation, compliance, and enterprise risk;

detect one or more threats in the data using Machine Learning (ML), wherein the one or more threats correspond to at least a malware detection, an intrusion detection, a scoring risk in the network for operational technology (OT), fraud detection for IT, and user behavioral analysis for the internet of things (IoT);

generate a report for a user based at least on the detected one or more threats, wherein the generated report includes one or more security information and one or more security patches;

send the report to the user, thereby automating cybersecurity detection and resolution in the network;

receive, from the user, an input corresponding to a selection of a security patch from the one or more security patches; and

execute the selected security patch in the network to eliminate the one or more threats.

14. The computer program product of claim 13 , comprising the program code to consolidate the data and store the consolidated data in a database.

15. The computer program product of claim 14 , wherein the database has an additional layer of security with tokenization for users to control the consolidated data utilizing Distributed Ledger Technology (DLT).

16. The computer program product of claim 14 , wherein the consolidated data is integrated and classified into GraphQL using a blockchain technology.

17. The computer program product of claim 13 , wherein the ML is trained based at least on historical data and one or more feedbacks from the users.

Continuity (1)
Related Publication 20220329630A1 · Oct 13, 2022
Cited By (14)
US 12,189,787 US 12,206,688 US 12,231,460 US 12,236,491 US 12,244,703 US 12,333,612 US 12,335,282 US 12,363,156 US 12,395,505 US 12,513,167 US 12,549,589 US 12,554,847 US 12,694,104 US 12,739,107