Invention Grant
- Patent Title: System for identifying anomalies in an information system
-
Application No.: US15618893Application Date: 2017-06-09
-
Publication No.: US10339309B1Publication Date: 2019-07-02
- Inventor: John Howard Kling , Mark Earl Brubaker , Ronald James Kuhlmeier , Brian D. Diederich , Brandon Matthew Sloane , Rachel Yun Kim Bierner , Cora Yan Quon
- Applicant: Bank of America Corporation
- Applicant Address: US NC Charlotte
- Assignee: Bank of America Corporation
- Current Assignee: Bank of America Corporation
- Current Assignee Address: US NC Charlotte
- Agency: Moore & Van Allen PLLC
- Agent Michael A. Springs; Peter B. Stewart
- Main IPC: G06F21/00
- IPC: G06F21/00 ; G06F21/55 ; G06F16/28 ; G06F16/901

Abstract:
A system for identifying anomalies in an information system is typically configured for: collecting information regarding a hierarchy of capabilities, a hierarchy of resources, capability instances, and resource instances of the information system; storing, in a graph database, nodes corresponding to the hierarchy of capabilities, hierarchy of resources, capability instances, and resource instances; collecting information regarding relationships among the hierarchy of capabilities, hierarchy of resources, capability instances, and resource instances; defining, in the graph database, edges corresponding to the relationships among the hierarchy of capabilities, hierarchy of resources, capability instances, and resource instances; collecting event and/or state data for the information system; comparing the event and/or state data to the graph database and determining that an event and/or state is anomalous; and, in response to determining that the event and/or state is anomalous, taking an information security action.
Information query