首页> 外国专利> METHOD AND APPARATUS FOR REDUCING SECURITY RISK IN A NETWORKED COMPUTER SYSTEM ARCHITECTURE

METHOD AND APPARATUS FOR REDUCING SECURITY RISK IN A NETWORKED COMPUTER SYSTEM ARCHITECTURE

机译:用于降低网络计算机系统架构中的安全风险的方法和装置

摘要

A method may comprise: receiving, at a security computing system in a network communicatively coupled to a configuration management database, CMDB, external vulnerability data from an external source; identifying, using configuration item data stored in the CMDB and the external vulnerability data, configuration items in the network to which a respective vulnerability applies; inferring a network topology based on CMDB information; determining an original risk level for each identified configuration item based on the configuration item data stored in the CMDB and on the external vulnerability data; calculating a context dependent risk for each identified configuration item based on the respective original risk level, the network topology, and CMDB information; and prioritizing vulnerability remediation work based on the calculated context dependent risk.
机译:一种方法可以包括:在通信地耦合到配置管理数据库,CMDB,外部源的网络中的安全计算系统中接收。 识别,使用存储在CMDB中的配置项数据和外部漏洞数据,相应漏洞所适用的网络中的配置项; 基于CMDB信息推断网络拓扑; 基于存储在CMDB中的配置项和外部漏洞数据的配置项数据确定每个识别的配置项的原始风险等级; 基于各自的原始风险等级,网络拓扑和CMDB信息计算每个识别的配置项的上下文相关风险; 基于计算的上下文依赖风险,优先级漏洞修复工作。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号