×

Provision and execution of customized security assessments of resources in a virtual computing environment

  • US 10,643,002 B1
  • Filed: 09/28/2017
  • Issued: 05/05/2020
  • Est. Priority Date: 09/28/2017
  • Status: Active Grant
First Claim
Patent Images

1. A system, comprising:

  • an electronic data store storing;

    a security assessment data object containing a plurality of parameter-value pairs; and

    an ingestion function that associates the security assessment data object with sensor results produced by a first sensor and comprising a plurality of data elements, such that each parameter-value pair of the plurality of parameter-value pairs has a corresponding data element of the plurality of data elements; and

    a security assessment system comprising one or more hardware computing devices in communication with the electronic data store and configured to execute specific computer-executable instructions that upon execution cause the security assessment system to;

    receive information describing a first rules package comprising a plurality of rules that evaluate security characteristics of a computing resource, the first rules package being prevented from accessing the sensor results to evaluate the security characteristics, a first rule of the plurality of rules being configured to read instances of the security assessment data object;

    receive a request to perform a security assessment of a first virtual machine instance, the security assessment using the first sensor and the first rules package;

    cause the first sensor to perform a data collection action on the first virtual machine instance to produce the sensor results;

    using the ingestion function, copy the data elements in the sensor data that correspond to the plurality of parameter-value pairs in the security assessment data object into a first instance of the security assessment data object; and

    cause the first rule of the first rules package to be executed against the first instance of the security assessment data object to produce an assessment result.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×