Advanced intelligence engine
First Claim
Patent Images
1. A method for use in monitoring one or more platforms of one or more data systems, comprising:
- first evaluating, by a processor using a first rule block, structured data received from one or more platforms over at least one communications network;
first determining, from the first evaluating, that a result is one of at least first and second outcomes;
accessing, by the processor, a linking relationship object in the first rule block to identify a data field in the structured data;
extracting, by the processor, a content of the data field from the structured data;
second evaluating, by the processor using a second rule block, structured data associated with the extracted content received from the one or more platforms;
second determining, from the second evaluating, whether a result is one of at least first and second outcomes; and
analyzing the results of the first and second determining to determine an event of interest.
4 Assignments
0 Petitions
Accused Products
Abstract
An advanced intelligence engine (AIE) for use in identifying what may be complex events or developments on one or more data platforms or networks from various types of structured or normalized data generated by one or more disparate data sources. The AIE may conduct one or more types of quantitative, correlative, behavioral and corroborative analyses to detect events from what may otherwise be considered unimportant or non-relevant information spanning one or more time periods. Events generated by the AIE may be passed to an event manager to determine whether further action is required such as reporting, remediation, and the like.
63 Citations
24 Claims
-
1. A method for use in monitoring one or more platforms of one or more data systems, comprising:
-
first evaluating, by a processor using a first rule block, structured data received from one or more platforms over at least one communications network; first determining, from the first evaluating, that a result is one of at least first and second outcomes; accessing, by the processor, a linking relationship object in the first rule block to identify a data field in the structured data; extracting, by the processor, a content of the data field from the structured data; second evaluating, by the processor using a second rule block, structured data associated with the extracted content received from the one or more platforms; second determining, from the second evaluating, whether a result is one of at least first and second outcomes; and analyzing the results of the first and second determining to determine an event of interest. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10, 11, 12)
-
-
13. A non-transitory, computer-readable storage medium, storing program instructions that when executed on one or more computers cause the one or more computers to perform:
-
first evaluating, using a first rule block, structured data received from one or more platforms over at least one communications network; first determining, from the first evaluating, that a result is one of at least first and second outcomes; accessing a linking relationship object in the first rule block to identify a data field in the structured data; extracting a content of the data field from the structured data; second evaluating, using a second rule block, structured data associated with the extracted content received from the one or more platforms; second determining, from the second evaluating, whether a result is one of at least first and second outcomes; and analyzing the results of the first and second determining to determine an event of interest. - View Dependent Claims (14, 15, 16, 17, 18, 19, 20, 21, 22, 23, 24)
-
Specification