Invention Grant
- Patent Title: System and method for enumerating and remediating gaps in cybersecurity defenses
-
Application No.: US17104030Application Date: 2020-11-25
-
Publication No.: US11930032B2Publication Date: 2024-03-12
- Inventor: Stephen H. Campbell
- Applicant: Stephen H. Campbell
- Applicant Address: US MA Hopkinton
- Assignee: Stephen H. Campbell
- Current Assignee: Stephen H. Campbell
- Current Assignee Address: US MA Hopkinton
- Agency: Prince Lobel Tye LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L9/40 ; H04L41/16

Abstract:
A method for identifying gaps in an organization's cyber defenses, and identifying and prioritizing remediations that are designed to eliminate those gaps, including using multiple choice questionnaires, wherein the answers to a series of multiple choice questions are scored for inherent risk, selecting security controls and calculating expected maturity scores for these controls based on the inherent risk score, using multiple choice questionnaires, wherein the answers to a series of multiple-choice questions are scored for actual control maturity, aggregating said actual and expected maturity scores and comparing these to identify and quantify gaps, and recommending and prioritizing control improvements that are designed to raise the score to an expected level. These steps are implemented using a computing device. In this manner the organization can identify a sequenced set of concrete steps it can take to achieve reasonable and effective security.
Public/Granted literature
- US20210234885A1 System and Method for Enumerating and Remediating Gaps in Cybersecurity Defenses Public/Granted day:2021-07-29
Information query