×

Estimating and visualizing security risk in information technology systems

  • US 8,402,546 B2
  • Filed: 11/19/2008
  • Issued: 03/19/2013
  • Est. Priority Date: 11/19/2008
  • Status: Expired due to Fees
First Claim
Patent Images

1. A computer-readable medium not comprising a propagated data signal containing instructions which, when executed by one or more processors disposed in an electronic device, perform a method for estimating risk for an IT asset in an enterprise network, the method comprising the steps of:

  • receiving an assessment about a security state of the IT asset, the assessment being configured for communicating data indicating a type of problem with the IT asset, a severity of the problem, and a level of confidence that the problem with the IT asset exists;

    applying a value of the IT asset and the data from the assessment to estimate a discrete risk category that is applicable to the IT asset;

    estimating a security risk for the IT asset using a continuous risk expression; and

    providing a visualization of the continuous risk expression through a GUI, the GUI including a dial indicator.

View all claims
  • 2 Assignments
Timeline View
Assignment View
    ×
    ×