Method and device for key generation
US-9049594-B2 · Jun 2, 2015 · US
US10412113B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-10412113-B2 |
| Application number | US-201816215103-A |
| Country | US |
| Kind code | B2 |
| Filing date | Dec 10, 2018 |
| Priority date | Dec 8, 2017 |
| Publication date | Sep 10, 2019 |
| Grant date | Sep 10, 2019 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
A system and method that enables the configuration of computer security of a subject entity at a computer security platform includes collecting a corpus of security data relating to one or more security configurations of the network maintained by the subject entity, analyzing the corpus of security data to determine one or more vulnerability factors and one or more security behaviors relating to the subject entity, generating a security assessment for the subject entity based on the analysis of the corpus of security data, generating a computer security policy for the security environment based on the security assessment, and providing, to the subject entity, a security policy recommendation incorporating at least a subset of the generated computer security policy.
Opening claim text (preview).
What is claimed is: 1. A method for configuring computer security of a subject entity at a computer security platform, the method comprising: monitoring a security environment maintained by the subject entity; collecting a corpus of security data, the security data comprising security environment data relating to one or more security configurations of a network maintained by the subject entity; analyzing the corpus of security data to determine one or more vulnerability factors and one or more security behaviors relating to the subject entity; generating a security assessment for the subject entity based on the analysis of the corpus of security data; generating a computer security policy for the security environment based on the security assessment, comprising one or more computer security configurations; providing, to the subject entity, a security policy recommendation incorporating at least a subset of the generated computer security policy; receiving a recommendation response from the subject entity declining to accept the security policy recommendation; and responsive to the recommendation response declining to accept the security policy recommendation, providing an alternative security policy recommendation to the subject entity based on the recommendation response. 2. The method of claim 1 , wherein analyzing the corpus of security data, generating the security assessment, and/or generating the computer security policy comprises performing one or more machine learning techniques on one or more neural networks. 3. The method of claim 1 , wherein monitoring the security environment comprises monitoring authentication activity within the security environment. 4. The method of claim 1 , wherein the corpus of security data further comprises historical authentication data relating to one or more authentications performed using authentication services of the computer security platform. 5. The method of claim 4 , wherein the authentication services comprise multi-factor authentication services. 6. The method of claim 1 , wherein the security data further comprises global security environment data aggregated from a plurality of additional subject entities. 7. The method of claim 1 , wherein the security data further comprises user-submitted risk tolerance data. 8. The method of claim 1 , wherein the security data comprises one or more current security policy configurations of the subject entity. 9. The method of claim 1 , wherein the vulnerability factors comprise one or more attack vectors. 10. The method of claim 1 , wherein analyzing the corpus of security data comprises filtering the corpus of security data based on probative security value regarding a state of the network maintained by the subject entity. 11. The method of claim 10 , wherein probative security value relates at least to a probability of the existence of that malicious software exists within the security environment, and wherein analyzing the corpus of security data further comprises detecting one or more predetermined features of known malicious software within the security environment. 12. The method of claim 1 , wherein generating the security assessment comprises generating a risk score for the security environment. 13. The method of claim 1 , wherein generating the computer security policy comprises generating one or more crowd-sourced computer security configurations. 14. The method of claim 1 , further comprising: receiving a second recommendation response from the subject entity accepting the alternative security policy recommendation; and implementing at least a subset of a computer security policy of the alternative security policy recommendation, based on the second recommendation response. 15. The method of claim 1 , further comprising: receiving a second recommendation response from the subject entity adjusting one or more components of the alternative security policy recommendation; and implementing at least a subset of the adjusted security policy of the alternative security policy recommendation, based on the second recommendation response. 16. A system for configuring computer security of a subject entity, the system comprising: a security environment maintained by the subject entity; and a computer security platform implemented via one or more web servers or a distributed computing system, the one or more web servers or the distributed computing system comprising a non-transitory computer-readable medium storing computer instructions that when executed by one or more computer processors enables the computer security platform to: collect a corpus of security data, the security data comprising security environment data relating to one or more security configurations of the security environment maintained by the subject entity; analyze the corpus of security data to determine one or more vulnerability factors and one or more security behaviors relating to the subject entity; generate a security assessment for the subject entity based on the analysis of the corpus of security data; generate a computer security policy for the security environment based on the security assessment, comprising one or more computer security configurations; and provide, to the subject entity, a security policy recommendation incorporating at least a subset of the generated computer security policy; receive a recommendation response from the subject entity declining to accept the security policy recommendation; and responsive to the recommendation response declining to accept the security policy recommendation, provide one or more alternative security policy recommendations to the subject entity based on the recommendation response.
Neural networks · CPC title
Machine learning · CPC title
for authentication of entities (cryptographic mechanisms or cryptographic arrangements for entity authentication H04L9/32) · CPC title
Vulnerability analysis · CPC title
for managing network security; network security policies in general (filtering policies H04L63/0227) · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.