首页> 外国专利> Managing security actions in a computing environment based on communication activity of a security threat

Managing security actions in a computing environment based on communication activity of a security threat

机译:根据安全威胁的通信活动管理计算环境中的安全措施

摘要

Systems, methods, and software described herein provide security actions based on the current state of a security threat. In one example, a method of operating an advisement system in a computing environment with a plurality of computing assets includes identifying a security threat within the computing environment. The method further includes, in response to identifying the security threat, obtaining state information for the security threat within the computing environment, and determining a current state for the security threat within the computing environment. The method also provides obtaining enrichment information for the security threat and determining one or more security actions for the security threat based on the enrichment information and the current state for the security threat.
机译:本文所述的系统,方法和软件基于安全威胁的当前状态提供安全动作。在一个示例中,一种在具有多个计算资产的计算环境中操作建议系统的方法包括识别该计算环境内的安全威胁。该方法还包括:响应于识别安全威胁,获得计算环境内的安全威胁的状态信息,以及确定计算环境内的安全威胁的当前状态。该方法还提供获得针对安全威胁的充实信息,并基于充实信息和针对安全威胁的当前状态来确定针对安全威胁的一个或多个安全动作。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号