Vulnerability Threat Management Platform for Risk Prioritization
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Enterprises face challenges in efficiently prioritizing and addressing IT security risks due to the vast amount of data generated from multiple security vulnerability assessment tools and third-party auditors, leading to increased costs and inefficiencies in defending against potential attacks.
Innovation Solution
A vulnerability threat management platform that correlates vulnerability data with breach data from various sources, providing a risk score and ordered list of remediations to help prioritize and address the most critical vulnerabilities effectively.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If multiple security vulnerability assessment tools are used to comprehensively assess IT assets, then the coverage and thoroughness of vulnerability detection is improved, but the amount of data generated increases significantly, leading to increased complexity in analysis and prioritization
Solution Approach 1:
The patent combines vulnerability data from multiple security assessment tools and third-party auditors into a single unified platform. This consolidation merges disparate data sources that individually provide incomplete information, creating a comprehensive view of IT asset vulnerabilities while eliminating the need to separately analyze multiple tool outputs.
Solution Approach 2:
The patent introduces a correlation engine as an intermediary component that processes and correlates vulnerability data with breach data from multiple sources. This intermediary automatically analyzes the combined data, identifies patterns, and generates prioritized remediation recommendations, eliminating the need for manual analysis of complex multi-source data.
2Measurement precision
If enterprises manually analyze vulnerability data from multiple sources to prioritize security risks, then the accuracy of risk prioritization can be improved, but the time and resources required for analysis increase significantly
Solution Approach 1:
The patent implements a self-service automated prioritization system that independently analyzes vulnerability and breach data without requiring manual intervention. The correlation engine automatically correlates data from multiple sources, assesses risk levels, and generates prioritized remediation lists, enabling the system to serve itself rather than requiring security teams to perform time-consuming manual analysis.
Solution Approach 2:
The patent incorporates feedback mechanisms where the system continuously monitors vulnerability data and breach data, automatically adjusting risk assessments based on new information. The correlation engine learns from patterns in the data and refines its prioritization algorithms over time, improving accuracy while maintaining automated operation.
3Reliability
If enterprises invest in numerous security vulnerability assessment tools to cover all potential attack vectors, then the security coverage is improved, but the cost of acquiring and managing these tools increases
Solution Approach 1:
The patent creates a universal platform that performs multiple security assessment functions through a single system. The correlation engine can process and correlate data from various vulnerability assessment tools and third-party auditors, providing comprehensive security coverage while eliminating the need to purchase and manage multiple specialized tools.
Data Source
AI summary
Techniques for ranking a set of vulnerabilities of a computing asset and set of remediations for a computing asset, and determining a risk score for one or more computing assets are provided. In one technique, vulnerabilities of computing assets in a customer network are received at a vulnerability intelligence platform. Breach data indicating set of breaches that occurred outside customer network is also received. A subset of the set of vulnerabilities that are most vulnerable to a breach is identified based on the breach data. In another technique, multiple vulnerabilities of a computing asset are determined. A risk score is generated for the computing asset based on the vulnerabilities. In another technique, multiple remediations associated with a risk score and multiple vulnerabilities are identified. The remediations are ordered based on the remediations that would reduce the risk score the most if those remediations were applied to remove the corresponding vulnerabilities.


