Invention Grant
- Patent Title: Systems and techniques for guiding a response to a cybersecurity incident
-
Application No.: US17188526Application Date: 2021-03-01
-
Publication No.: US11750626B2Publication Date: 2023-09-05
- Inventor: Christopher Lord , Benjamin Johnson , Doran Smestad , Joshua Hartley
- Applicant: Carbon Black, Inc.
- Applicant Address: US CA Palo Alto
- Assignee: Carbon Black, Inc.
- Current Assignee: Carbon Black, Inc.
- Current Assignee Address: US CA Palo Alto
- Agency: Barta, Jones & Foley, PLLC
- Main IPC: H04L9/40
- IPC: H04L9/40 ; G06N5/04

Abstract:
A cybersecurity engine can guide a forensic investigation of a security incident by estimating the utility of investigating events associated with the security incident, selecting a subset of such events based on the estimated utilities, and presenting data associated with the selected events to the investigator. A method for guiding a response to a security incident may include estimating, for each of a plurality of security events associated with the security incident, a utility of investigating the security event. The method may further include selecting a subset of the security events based, at least in part, on the estimated utilities of investigating the security events. The method may further include guiding the response to the security incident by presenting, to a user, data corresponding to the selected security events.
Public/Granted literature
- US20210185065A1 SYSTEMS AND TECHNIQUES FOR GUIDING A RESPONSE TO A CYBERSECURITY INCIDENT Public/Granted day:2021-06-17
Information query