首页> 外国专利> AUTOMATED ONBOARDING OF DETECTIONS FOR SECURITY OPERATIONS CENTER MONITORING

AUTOMATED ONBOARDING OF DETECTIONS FOR SECURITY OPERATIONS CENTER MONITORING

机译:自动进行安全操作中心监控的检测

摘要

Methods, systems, apparatuses, and computer program products are provided for evaluating security detections. A detection instance obtainer obtains detection instances from a pool, such as a security detections pool. The detection instances may be obtained for detections that meet a predetermined criterion, such as detections that have not been onboarded or rejected, or detections that have generated detection instances for a threshold time period. The detection may be onboarded or rejected automatically based on a volume thresholder and/or a detection performance evaluator. For instance, the volume thresholder may be configured to automatically onboard the detection if the volume of the detection instances is below a first threshold, and reject the detection if the volume is above a second threshold. The detection performance evaluator may be configured to onboard or reject the detection based on an efficacy of the detection (e.g., based on a true positive rate of the detection instances).
机译:提供了用于评估安全检测的方法,系统,装置和计算机程序产品。检测实例获取器从诸如安全检测池之类的池中获取检测实例。可以针对满足预定标准的检测(例如尚未上载或拒绝的检测或已在阈值时间段内生成检测实例的检测)获取检测实例。可以基于音量阈值器和/或检测性能评估器来自动进行检测或拒绝检测。例如,音量阈值器可以被配置为:如果检测实例的音量低于第一阈值,则自动进行检测,并且如果音量高于第二阈值,则拒绝检测。检测性能评估器可以被配置为基于检测的功效(例如,基于检测实例的真实阳性率)在检测上或拒绝检测。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号