Invention Grant
- Patent Title: System and method for scalable cyber-risk assessment of computer systems
-
Application No.: US17174307Application Date: 2021-02-11
-
Publication No.: US11886598B2Publication Date: 2024-01-30
- Inventor: Candan Bolukbas , Robert Maley , Ferhat Dikbiyik
- Applicant: NormShield, Inc.
- Applicant Address: US VA Vienna
- Assignee: NormShield, Inc.
- Current Assignee: NormShield, Inc.
- Current Assignee Address: US VA Vienna
- Agency: Rauschenbach Patent Law Group, PLLC
- Agent Kurt Rauschenbach
- Main IPC: G06F21/00
- IPC: G06F21/00 ; G06F21/57

Abstract:
A method of cyber risk assessment includes receiving request for a quantitative cyber risk assessment from an entity associated with a domain name. Entity information is non-intrusively gathered from a plurality of data sources about the entity based on the domain name. A digital footprint of the entity is discovered based the associated domain name using non-intrusive information gathering. At least one characteristic of the entity is classified to determine an entity classification and at least one entity risk quantification parameter. At least one control item is fetched from the knowledge database. An entity technical finding is determined based on the fetched at least one control item and based on the discovered digital footprint. At least one industry-related quantification parameter is fetched based on the entity technical finding and based on the entity classification. A quantitative risk value is calculated from a determination of loss frequency and loss magnitude.
Public/Granted literature
- US20210334387A1 System and Method for Scalable Cyber-Risk Assessment of Computer Systems Public/Granted day:2021-10-28
Information query