Invention Grant
- Patent Title: Security incident and event management use case selection
-
Application No.: US17070058Application Date: 2020-10-14
-
Publication No.: US11494488B2Publication Date: 2022-11-08
- Inventor: Tousif Ahmed Syed , Tamer Aboualy , Dusty Boshoff
- Applicant: International Business Machines Corporation
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agent Rachel M. Yadlosky
- Main IPC: G06F21/55
- IPC: G06F21/55 ; G06F21/62

Abstract:
A method, system, and computer program product for adaptive network provisioning. The method may include storing a plurality of use case records in a use case repository, where each use case record provides a diagnostic definition of a security threat to a SIEM environment. The method may also include storing metadata for a plurality of attributes of subscribers to the SIEM environment. The method may also include storing use cases that the subscribers have deployed from the use case repository. The method may also include setting up a new subscriber, where setting up the new subscriber includes: receiving a set of attributes of the new subscriber; searching a metadata store to identify subscribers with attributes that are similar to the set of attributes; and selecting an initial set of use cases for the new subscriber based on use cases deployed by the identified subscribers.
Public/Granted literature
- US20220114252A1 SECURITY INCIDENT AND EVENT MANAGEMENT USE CASE SELECTION Public/Granted day:2022-04-14
Information query