US2019068705A1PendingUtilityA1

Enterprise level security orchestration

Assignee: CYBRIC INCPriority: Jul 13, 2015Filed: Oct 24, 2018Published: Feb 28, 2019
Est. expiryJul 13, 2035(~9 yrs left)· nominal 20-yr term from priority
H04L 67/1095G06F 8/61G06F 9/45512G06F 21/577
49
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

Enterprise level security orchestration coordinates the safeguarding functions of safeguard software packages with respect to an installation. Multiple safeguard software packages may be deployed on an installation at a storage location. The multiple safeguard software packages may provide different safeguarding functions to applications or application data on the installation. An orchestration tool on the installation may interface with the multiple safeguard software packages. Accordingly, the orchestration tool may execute an orchestration routine that calls the individual safeguard software packages to perform the different safeguarding functions.

Claims

exact text as granted — not AI-modified
1 . A system, comprising:
 one or more processors; and   a storage location including memory that stores a plurality of computer-executable components, the plurality of computer-executable components comprising:
 a plurality of safeguard software packages that are deployed on an installation at the storage location, the plurality of the safeguard software packages providing different safeguarding functions to at least one application or application data of the installation; and 
 an orchestration tool on the installation that interfaces with the plurality of safeguard software packages, the orchestration tool executing at least one orchestration routine that calls individual safeguard software packages of the plurality of safeguard software packages to perform the different safeguarding functions. 
   
     
     
         2 . The system of  claim 1 , wherein the plurality of computer-executable components further comprise a corresponding safeguard interface module for each safeguard software package deployed on the installation, and wherein each corresponding safeguard interface module calls an associated safeguard software package to perform a safeguarding function based on a call that is invoked by an orchestration routine run by the orchestration tool. 
     
     
         3 . The system of  claim 1 , wherein the orchestration tool controls orchestration software distributed to a cloud location, the orchestration tool directing the orchestration software to create a mirror of the installation at the cloud location such that the orchestration tool executes an orchestration routine with respect to the mirror of the installation at the cloud location. 
     
     
         4 . The system of  claim 1 , wherein a safeguard software package detects an alert during performance of a safeguarding function according to the orchestration routine, and wherein the alert is presented via a dashboard user interface that is provided by the orchestration tool. 
     
     
         5 . The system of  claim 1 , wherein the orchestration tool controls orchestration software to create a plurality of mirrors of the installation, and wherein the orchestration tool includes a scheduler that directs synchronous executions of a first safeguarding function by a first safeguard software package on a first mirror and a second safeguarding function by a second safeguard software package on a second mirror. 
     
     
         6 . The system of  claim 1 , wherein the orchestration tool controls orchestration software to create a plurality of mirrors of the installation for multiple security methodologies, and wherein the orchestration tool includes an analytic engine that identifies threats based on alerts provided by corresponding safeguard software packages implemented in the multiple security methodologies. 
     
     
         7 . The system of  claim 6 , wherein the orchestration tool includes a remediation engine comprising at least one machine learning logic module, and wherein the at least one machine learning logic module detects a threat pattern based on threats identified by the analytics engine. 
     
     
         8 . The system of  claim 1 , wherein the orchestration tool is implemented using a either a monolithic architecture or a micro-services architecture. 
     
     
         9 . A computer-implemented method, comprising:
 deploying a plurality of safeguard software packages to an installation at a storage location that is provided by one or more computing instances, individual safeguard software packages of the plurality of the safeguard software packages providing different safeguarding functions to at least one application or application data of the installation;   installing, via the one or more computing instances, an orchestration tool on the installation that interfaces with the plurality of safeguard software packages, the orchestration tool to perform at least one orchestration routine that calls the individual safeguard software packages to perform the different safeguarding functions;   providing, via the one or more computing instances, a corresponding safeguard interface module for each safeguard software package of the plurality of safeguard software packages, each corresponding safeguard interface module to call an associated safeguard software package to perform a safeguarding function based on a call that is invoked by an orchestration routine run by the orchestration tool; and   performing, via the one or more computing instances, a scan of the installation by executing the orchestration routine using the orchestration tool to provide a data baseline for a security state of the installation.   
     
     
         10 . The computer-implemented method of  claim 9 , further comprising:
 installing orchestration software that is communicatively controlled by the orchestration tool at an external cloud that is different from the storage location or at a private cloud that is implemented by an enterprise that controls the storage location; and   directing, via the orchestration tool, the orchestration software to create a mirror of the installation at the external cloud or the private cloud,   wherein the performing includes executing the orchestration routine via the orchestration tool to call one or more safeguard software packages in the mirror to perform the different safeguarding functions for one or more applications in the mirror of the installation.   
     
     
         11 . The computer-implemented method of  claim 9 , further comprising directing, via the orchestration tool, the orchestration software to create a mirror of the at least one application or the application data in the installation at a local area network (LAN) storage of the storage location, wherein the performing includes executing the orchestration routine via the orchestration tool to call the individual safeguard software packages to perform the different safeguarding functions on the mirror of the at least one application or the application data stored at the LAN storage. 
     
     
         12 .- 21 . (canceled)

Join the waitlist — get patent alerts

Track US2019068705A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.