首页> 外国专利> Creating Timeline Views of Information Technology Event Investigations

Creating Timeline Views of Information Technology Event Investigations

机译:创建信息技术事件调查的时间表视图

摘要

Techniques and mechanisms are disclosed that enable network security analysts and other users to efficiently conduct network security investigations and to produce useful representations of investigation results. As used herein, a network security investigation generally refers to an analysis by an analyst (or team of analysts) of one or more detected network events that may pose internal and/or external threats to a computer network under management. A network security application provides various interfaces that enable users to create investigation timelines, where the investigation timelines display a collection of events related to a particular network security investigation. A network security application further provides functionality to monitor and log user interactions with the network security application, where particular logged user interactions may also be added to one or more investigation timelines.
机译:公开了使网络安全分析人员和其他用户能够有效地进行网络安全调查并产生调查结果的有用表示的技术和机制。如本文所使用的,网络安全调查通常是指由分析师(或分析师团队)对一个或多个检测到的网络事件进行的分析,这些事件可能对受管理的计算机网络构成内部和/或外部威胁。网络安全应用程序提供了各种接口,使用户能够创建调查时间表,其中调查时间表显示与特定网络安全调查相关的事件的集合。网络安全应用程序还提供了监视和记录用户与网络安全应用程序交互的功能,其中特定的已记录用户交互也可以添加到一个或多个调查时间线上。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号