×

Systems and methods for implementing and scoring computer network defense exercises

  • US 9,325,728 B1
  • Filed: 07/22/2013
  • Issued: 04/26/2016
  • Est. Priority Date: 01/27/2005
  • Status: Expired due to Fees
First Claim
Patent Images

1. A process for scoring a client network system defense training exercise implemented over a services-oriented architecture comprising:

  • receiving by at least one server machine from the client network system data related to a defense training exercise at an end of one or more of predetermined scoring cycles or upon request, the data including one or more of a current list of client network system vulnerabilities, details of client system vulnerability fixes, details of client system vulnerability identifications and details of client system vulnerability exploitations, wherein the details include a unique identifier for each of a vulnerability fixer, a vulnerability identifier and a vulnerability exploiter and a time value for each of time to fix, time to identify and time to exploit;

    applying a set of scoring rules by a scoring engine of the at least one server machine to the details to determine one or more base scores at the end of one or more of predetermined scoring cycles or upon request from a second server machine for each participant in the defense training exercise, wherein the participant is an individual user or a group of users;

    determining an actual score for each participant using the one or more base scores at the end of the defense training exercise;

    receiving by at least one server machine from the client network system at the end of one or more of predetermined scoring cycles or upon request, data related to the operation and maintenance of one or more critical services of the client network system, including details related to percentage up time of the one or more critical services; and

    applying the set of scoring rules by the scoring engine of the at least one server machine to the details related to percentage up time of the one or more critical services and, where applicable, including the result in the calculation of the one or more objective scores for each participant.

View all claims
  • 6 Assignments
Timeline View
Assignment View
    ×
    ×