- Patent Title: Detecting a missing security alert using a machine learning model
-
Application No.: US16368704Application Date: 2019-03-28
-
Publication No.: US11363036B2Publication Date: 2022-06-14
- Inventor: Roy Levin , Mathias A. M. Scherman
- Applicant: Microsoft Technology Licensing, LLC
- Applicant Address: US WA Redmond
- Assignee: Microsoft Technology Licensing, LLC
- Current Assignee: Microsoft Technology Licensing, LLC
- Current Assignee Address: US WA Redmond
- Agency: Fiala & Weaver P.L.L.C.
- Main IPC: H04L9/40
- IPC: H04L9/40

Abstract:
Methods, systems, and apparatuses are provided for detecting a missing security alert by receiving an alert sequence generated by a network security provider, applying the received alert sequence to a security incident model, receiving an indication from the security incident model that the received alert sequence corresponds to a security incident defined by a predetermined sequence of alerts that includes at least one alert missing from the received alert sequence, and generating a notification to the network security provider that indicates at least one of the security incident or the missing alert(s). In addition, the security incident model may be generated by providing a set of historical alerts and a set of historical security incidents to a machine learning algorithm to generate the security incident model.
Public/Granted literature
- US20200314118A1 DETECTING A MISSING SECURITY ALERT USING A MACHINE LEARNING MODEL Public/Granted day:2020-10-01
Information query