首页> 外国专利> KNOWLEDGE GRAPH FOR REAL TIME INDUSTRIAL CONTROL SYSTEM SECURITY EVENT MONITORING AND MANAGEMENT

KNOWLEDGE GRAPH FOR REAL TIME INDUSTRIAL CONTROL SYSTEM SECURITY EVENT MONITORING AND MANAGEMENT

机译:知识图表实时工业控制系统安全事件监控和管理

摘要

Methods and systems are disclosed for security management in an industrial control system (ICS). An event entity detection and linking module generates a model for a plurality of event entities extracted from a plurality of different data sources including one ICS data source and one IT data source. The model encodes a set of linked event entities and their relationships, each event entity associated with a vector of attributevalue pairs. A data standardization of domain knowledge includes translating, by a machine learning application, extracted knowledge base information to rules for the constraints and using the rules to validate the constraints and to add new constraints. A fusion module performs temporal correlation detection across data streams of the different data sources for establishing causality between triplets of association models within a defined time span.
机译:在工业控制系统(ICS)中的安全管理公开了方法和系统。事件实体检测和链接模块为从包括一个IC数据源和一个IT数据源的多个不同的数据源提取的多个事件实体生成模型。该模型对一组链接的事件实体及其关系进行编码,每个事件实体都与attributevalue对的向量相关联。域知识的数据标准化包括通过计算机学习应用程序将知识库信息提取为约束的规则以及使用规则来验证约束并添加新约束的规则。融合模块在不同数据源的数据流中执行时间相关检测,用于在定义的时间跨度内建立关联模型的三胞胎之间的因果关系。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号