Patent · US Active

System and method for automatic calculation of cyber-risk in business-critical applications

US9923917B2 · kind B2 · utility

9Cited by
1References
21Claims
0Family size

Assignee

Inventors

Key dates

Filing dateOct 27, 2015
Grant dateMar 20, 2018
Priority date
Expiry dateApr 22, 2036

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L2463/102
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A system for calculating cyber-risk in a software application includes a cyber-risk calculator. The cyber-risk calculator receives a security assessment result sample having a list of security modules, each security module listing including a respective result of a security assessment of the application identifying a vulnerability and/or misconfiguration capable of being exploited and/or abused. When run in a risk calculation mode, the cyber-risk calculator determines a world partition of the application in the security assessment result sample belongs to, references a set of parameters from a parametrization database according to the world partition corresponding to the application, determines a cyber-risk exposure level for the application based upon the security assessment result sample and the set of parameters, and reports results of the cyber-risk calculation.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.