Assessment type-variable enterprise security impact analysis
US9762603B2 · kind B2 · utility
Assignee
Inventors
Key dates
| Filing date | May 8, 2015 |
| Grant date | Sep 12, 2017 |
| Priority date | — |
| Expiry date | Jun 16, 2035 |
Classification
- Technology area (CPC G)Physics
- CPC primaryG06Q10/0635
- WIPO fieldComputer technology
- WIPO sectorElectrical engineering
Abstract
A data management service identifies sensitive data stored on enterprise databases according to record classification rules that classify a data record as having a sensitive data type if the data record includes fields matching at least one of the record classification rules. Methods and systems rely on a set of impact factors each having a set of set of value bands representing a range for the impact factor and a corresponding value (between 0 and 1). The factors, ranges, and values all are customizable for an organization. Impact scoring calculations take into account each of the impact factors, and each is weighted to represent a specific risk perception or assessment type. A similar impact scoring is applied to data quality using volume of data as a key attribute of the quality.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.