Security for network computing environment using centralized security system

    公开(公告)号:US11109229B2

    公开(公告)日:2021-08-31

    申请号:US16506567

    申请日:2019-07-09

    IPC分类号: H04W12/06 H04L29/06 G06F8/65

    摘要: Systems, methods, and articles of manufacture comprising processor-readable storage media are provided for implementing security for a network environment using a centralized smart security system. For example, a method includes implementing a network comprising a plurality of network devices which collectively generate data that is utilized by a computing system to execute an application, and implementing a centralized security system as a computing node within the network to manage security operations within the network and to establish secured and trusted communications between the network devices and the computing system. The network devices may comprise wireless sensor devices operating in a wireless sensor network, wherein the computing system executes an IoT (Internet of Things) application which processes the data that is generated by the wireless sensor devices.

    Calculating asset value using multi-dimensional models

    公开(公告)号:US10915961B1

    公开(公告)日:2021-02-09

    申请号:US15669523

    申请日:2017-08-04

    IPC分类号: G06Q40/06 G06Q40/08

    摘要: At least one asset of a given enterprise is identified. The enterprise has a plurality of groups associated therewith. A valuation is computed for the asset using a multi-dimensional model configured to generate cross-group impact values with respect to the asset and two or more of the groups associated with the enterprise. In one example, the multi-dimensional model is in the form of a matrix data structure and the cross-group impact values are off-diagonal entries of the matrix data structure.

    Data management for extended multi-cloud environment

    公开(公告)号:US10698879B1

    公开(公告)日:2020-06-30

    申请号:US15730990

    申请日:2017-10-12

    摘要: In an extended cloud computing environment comprising a plurality of computing resources associated with an enterprise, a method maintains a distributed ledger integrated with a data sharing system, wherein a given node associated with the distributed ledger and a given node associated with the data sharing system are associated with a given one of the plurality of computing resources in the extended cloud computing environment. The method manages one or more data sets processed by the plurality of computing resources in association with the distributed ledger and the data sharing system, wherein managing comprises storing transactions associated with the one or more data sets on the distributed ledger to enable one or more of the plurality of computing resources to access the stored transactions.

    Automated security incident ranking

    公开(公告)号:US10587642B1

    公开(公告)日:2020-03-10

    申请号:US15660628

    申请日:2017-07-26

    IPC分类号: H04L29/06 G06N20/00

    摘要: At least one security incident indicative of at least one security event that may impact or has impacted one or more assets associated with an organization is obtained. The at least one security incident is automatically ranked based on one or more of: (i) one or more rankings associated with one or more security incidents that precede the at least one security incident in time; and (ii) one or more values attributed to the one or more assets of the organization. The ranking of the at least one security incident is presented to an entity to make an assessment of the security event.

    Decentralized identities for cross-enterprise authentication and/or authorization

    公开(公告)号:US10587413B1

    公开(公告)日:2020-03-10

    申请号:US15660335

    申请日:2017-07-26

    摘要: At least one identity for a given entity of a first enterprise is established in accordance with a decentralized identity management system maintained in accordance with a distributed ledger. The identity of the given entity of the first enterprise and a set of attributes relating to the identity are defined by at least one cryptographically signed token file. The cryptographically signed token file is referenced in the distributed ledger enabling a second enterprise to authenticate and/or authorize the given entity in accordance with at least one of the set of attributes.

    Blockchain functionalities in data storage system

    公开(公告)号:US10530859B1

    公开(公告)日:2020-01-07

    申请号:US15361651

    申请日:2016-11-28

    发明人: Stephen Todd

    IPC分类号: H04L9/06 H04L29/08 G06F3/06

    摘要: An apparatus in one embodiment comprises one or more processing devices operatively coupled to form a data storage system. The data storage system comprises a data storage manager configured to provide integrated control for a set of logic modules, wherein the set of logic modules comprise at least one blockchain logic module and one or more of a file storage logic module, a block storage logic module, and an object storage logic module. The data storage system further comprises a plurality of storage volumes operatively coupled to the data storage manager and configured to store data associated with each of the set of logic modules, under control of the data storage manager, in accordance with selectable storage capacity allocations for each of the set of logic modules.

    Distributed ledger for multi-cloud operational state

    公开(公告)号:US10484341B1

    公开(公告)日:2019-11-19

    申请号:US15499224

    申请日:2017-04-27

    IPC分类号: H04L29/06 G06F8/60

    摘要: An apparatus comprises at least one processing device having a processor coupled to a memory. The processing device is configured to implement a first ledger node of a first cloud. The first ledger node of the first cloud is configured to communicate over one or more networks with a plurality of additional ledger nodes associated with respective additional clouds. The first ledger node is further configured to obtain a transaction associated with a cloud-related operational state. The first ledger node is further configured to broadcast the transaction to the additional ledger nodes. A cryptographic block characterizing at least the transaction is generated and entered into a blockchain distributed ledger collectively maintained by the first and additional ledger nodes. The first and additional ledger nodes collectively maintain the blockchain distributed ledger on a peer-to-peer basis without utilizing a centralized transaction authority.

    Distributed ledger for peer-to-peer cloud data asset valuation

    公开(公告)号:US11481740B1

    公开(公告)日:2022-10-25

    申请号:US15496464

    申请日:2017-04-25

    摘要: An apparatus comprises at least one processing device having a processor coupled to a memory. The processing device is configured to implement a first ledger node of a first cloud. The first ledger node of the first cloud is configured to communicate over one or more networks with a plurality of additional ledger nodes associated with respective additional clouds. The first ledger node is further configured to obtain a transaction associated with a valuation of a data asset. The first ledger node is further configured to broadcast the valuation transaction to the additional ledger nodes. A cryptographic block characterizing at least the valuation transaction is generated and entered into a blockchain distributed ledger collectively maintained by the first and additional ledger nodes. The first and additional ledger nodes collectively maintain the blockchain distributed ledger on a peer-to-peer basis without utilizing a centralized transaction authority.

    Tamper proof logging for automated processes

    公开(公告)号:US11205102B1

    公开(公告)日:2021-12-21

    申请号:US15496492

    申请日:2017-04-25

    IPC分类号: G06K9/62 G06N20/00 G06F9/30

    摘要: A manifest for an automated system is generated, wherein the manifest comprises a record of a plurality of algorithms configured to be used in operation of the automated system. An operational audit branch is generated from the manifest in response to execution of one or more algorithms of the plurality of algorithms. The generation of the operational audit branch comprises recording one or more inputs used by the one or more algorithms, and recording one or more outputs generated by the one or more algorithms.

    Embedded data valuation and metadata binding

    公开(公告)号:US10719480B1

    公开(公告)日:2020-07-21

    申请号:US15353947

    申请日:2016-11-17

    发明人: Stephen Todd

    IPC分类号: G06F16/00 G06F16/16 G06F16/13

    摘要: A method performed by one or more processing devices that are part of a data storage environment includes the following steps. A data set is obtained. Valuation metadata generated for the data set is obtained. The valuation metadata is bound to the data set. The data set and the bound valuation metadata are processed as a single data storage item within the data storage environment. Processing may include, but is not limited to, storing, scaling, accessing, migrating, and deleting.