Movatterモバイル変換


[0]ホーム

URL:


US20120084867A1 - Method, system, and computer program product for assessing information security - Google Patents

Method, system, and computer program product for assessing information security
Download PDF

Info

Publication number
US20120084867A1
US20120084867A1US13/316,126US201113316126AUS2012084867A1US 20120084867 A1US20120084867 A1US 20120084867A1US 201113316126 AUS201113316126 AUS 201113316126AUS 2012084867 A1US2012084867 A1US 2012084867A1
Authority
US
United States
Prior art keywords
information
infrastructure
questions
user
enterprise
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Abandoned
Application number
US13/316,126
Inventor
Charlie C. Baggett, Jr.
John J. Adams
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Individual
Original Assignee
Individual
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by IndividualfiledCriticalIndividual
Priority to US13/316,126priorityCriticalpatent/US20120084867A1/en
Publication of US20120084867A1publicationCriticalpatent/US20120084867A1/en
Abandonedlegal-statusCriticalCurrent

Links

Images

Classifications

Definitions

Landscapes

Abstract

Methods and systems to assess information security based on based on a combination of user-responses to computer-selected queries and results of a testing/diagnostic application. Users may be interviewed based on areas of expertise. Information security assessment may be performed with respect to domains of an enterprise, the results of which may be rolled-up to assess information security across the enterprise. A system may include application-specific questions and vulnerabilities, industry specific questions and vulnerabilities, a repository of expert knowledge, and/or working aids. A system may include an inference engine, which may include a logic-based inference engine, a knowledge-based inference engine, and/or an artificial intelligence inference engine. A system may include an application-specific tool to configure the system to assess security of information handled by a third party application program.

Description

Claims (20)

15. A non-transitory computer readable medium encoded with a computer program, including instructions to cause a processor to:
select information handling questions from a database of information handling questions based on one or more of an entity type and user area of expertise, wherein the information handling questions relate to one or more of information technology (IT) infrastructure and information handling policy;
present the selected questions to one or more users;
receive user responses to the selected questions;
receive information collected from within the IT infrastructure by a computer program executing within the IT infrastructure;
evaluate the user responses in combination with the information collected from within the IT infrastructure; and
assess information security based on results of the evaluating.
US13/316,1262000-04-262011-12-09Method, system, and computer program product for assessing information securityAbandonedUS20120084867A1 (en)

Priority Applications (1)

Application NumberPriority DateFiling DateTitle
US13/316,126US20120084867A1 (en)2000-04-262011-12-09Method, system, and computer program product for assessing information security

Applications Claiming Priority (3)

Application NumberPriority DateFiling DateTitle
US09/558,387US6925443B1 (en)2000-04-262000-04-26Method, system and computer program product for assessing information security
US11/144,946US8121892B2 (en)2000-04-262005-06-06Method, system, and computer program product for assessing information security
US13/316,126US20120084867A1 (en)2000-04-262011-12-09Method, system, and computer program product for assessing information security

Related Parent Applications (1)

Application NumberTitlePriority DateFiling Date
US11/144,946ContinuationUS8121892B2 (en)2000-04-262005-06-06Method, system, and computer program product for assessing information security

Publications (1)

Publication NumberPublication Date
US20120084867A1true US20120084867A1 (en)2012-04-05

Family

ID=24229345

Family Applications (3)

Application NumberTitlePriority DateFiling Date
US09/558,387Expired - Fee RelatedUS6925443B1 (en)2000-04-262000-04-26Method, system and computer program product for assessing information security
US11/144,946Expired - Fee RelatedUS8121892B2 (en)2000-04-262005-06-06Method, system, and computer program product for assessing information security
US13/316,126AbandonedUS20120084867A1 (en)2000-04-262011-12-09Method, system, and computer program product for assessing information security

Family Applications Before (2)

Application NumberTitlePriority DateFiling Date
US09/558,387Expired - Fee RelatedUS6925443B1 (en)2000-04-262000-04-26Method, system and computer program product for assessing information security
US11/144,946Expired - Fee RelatedUS8121892B2 (en)2000-04-262005-06-06Method, system, and computer program product for assessing information security

Country Status (3)

CountryLink
US (3)US6925443B1 (en)
AU (1)AU2001253901A1 (en)
WO (1)WO2001082205A1 (en)

Cited By (15)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US20120278269A1 (en)*2009-01-072012-11-01Oracle International CorporationMethods, systems, and computer program product for implementing expert assessment of a product
US8984644B2 (en)2003-07-012015-03-17Securityprofiling, LlcAnti-vulnerability system, method, and computer program product
US9100431B2 (en)2003-07-012015-08-04Securityprofiling, LlcComputer program product and apparatus for multi-path remediation
US9118710B2 (en)2003-07-012015-08-25Securityprofiling, LlcSystem, method, and computer program product for reporting an occurrence in different manners
US9117069B2 (en)2003-07-012015-08-25Securityprofiling, LlcReal-time vulnerability monitoring
US9118709B2 (en)2003-07-012015-08-25Securityprofiling, LlcAnti-vulnerability system, method, and computer program product
US9118711B2 (en)2003-07-012015-08-25Securityprofiling, LlcAnti-vulnerability system, method, and computer program product
US9118708B2 (en)2003-07-012015-08-25Securityprofiling, LlcMulti-path remediation
US9350752B2 (en)2003-07-012016-05-24Securityprofiling, LlcAnti-vulnerability system, method, and computer program product
RU2623808C2 (en)*2015-09-302017-06-29Акционерное общество "Лаборатория Касперского"Method of application of safety policies for computer safety
US9817978B2 (en)2013-10-112017-11-14Ark Network Security Solutions, LlcSystems and methods for implementing modular computer system security solutions
US11997123B1 (en)*2015-07-152024-05-28Management Analytics, Inc.Scaleable cyber security assessment system and method
US12229479B1 (en)2023-05-052025-02-18Management Analytics, Inc.Cognology and cognometrics system and method
RU2844014C1 (en)*2024-12-252025-07-23Федеральное государственное казенное военное образовательное учреждение высшего образования Академия Федеральной службы охраны Российской ФедерацииMethod for evaluating information security level of local computer network based on evaluating effect of potentially possible techniques for implementing computer attacks on provided communication services
US12406111B2 (en)2007-08-232025-09-02Management Analytics, Inc.Cognology and cognometrics system and method

Families Citing this family (254)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US7383233B1 (en)*1999-12-032008-06-03General Electric CompanyMethod of designing an electronic transaction system
WO2001084446A1 (en)*2000-05-042001-11-08General Electric Capital CorporationMethods and systems for compliance program assessment
US7287280B2 (en)*2002-02-122007-10-23Goldman Sachs & Co.Automated security management
US20020169738A1 (en)*2001-05-102002-11-14Giel Peter VanMethod and system for auditing an enterprise configuration
US7861161B1 (en)*2001-06-192010-12-28Microstrategy, Inc.Report system and method using prompt objects
US20030028464A1 (en)*2001-07-072003-02-06Kosinski Bruce C.Method and system for assisting participants in an investment plan
US7281020B2 (en)*2001-12-122007-10-09Naomi FineProprietary information identification, management and protection
US20050166259A1 (en)*2002-01-102005-07-28Neupart ApsInformation security awareness system
US8256002B2 (en)2002-01-182012-08-28Alcatel LucentTool, method and apparatus for assessing network security
US20030233575A1 (en)*2002-06-122003-12-18Kimmo SyrjanenMethod of analysing level of information security in an organization
HK1079879A1 (en)*2002-06-182006-04-13Computer Associates Think, Inc.Methods and systems for managing enterprise assets
US7930753B2 (en)*2002-07-012011-04-19First Data CorporationMethods and systems for performing security risk assessments of internet merchant entities
US8230497B2 (en)*2002-11-042012-07-24Hewlett-Packard Development Company, L.P.Method of identifying software vulnerabilities on a computer system
US6983221B2 (en)*2002-11-272006-01-03Telos CorporationEnhanced system, method and medium for certifying and accrediting requirements compliance utilizing robust risk assessment model
US20040103309A1 (en)*2002-11-272004-05-27Tracy Richard P.Enhanced system, method and medium for certifying and accrediting requirements compliance utilizing threat vulnerability feed
US20040225583A1 (en)*2003-05-082004-11-11International Business Machines CorporationArchitecture and application return-on-investment metrics
US7966663B2 (en)*2003-05-202011-06-21United States Postal ServiceMethods and systems for determining privacy requirements for an information resource
US8046819B2 (en)*2003-05-202011-10-25United States Postal ServiceMethods and systems for determining security requirements for an information resource
US20050050346A1 (en)*2003-08-282005-03-03Felactu Odessa JohnDynamic comprehensive global enterprise defensive security system
US7813947B2 (en)*2003-09-232010-10-12Enterra Solutions, LlcSystems and methods for optimizing business processes, complying with regulations, and identifying threat and vulnerabilty risks for an enterprise
US20050065904A1 (en)*2003-09-232005-03-24Deangelis Stephen F.Methods for optimizing business processes, complying with regulations, and identifying threat and vulnerabilty risks for an enterprise
US20050065941A1 (en)*2003-09-232005-03-24Deangelis Stephen F.Systems for optimizing business processes, complying with regulations, and identifying threat and vulnerabilty risks for an enterprise
US20050102534A1 (en)*2003-11-122005-05-12Wong Joseph D.System and method for auditing the security of an enterprise
US7801758B2 (en)*2003-12-122010-09-21The Pnc Financial Services Group, Inc.System and method for conducting an optimized customer identification program
US20050137918A1 (en)*2003-12-172005-06-23International Business Machines CorporationMethod, system and program product for assessing an enterprise architecture
US7665119B2 (en)2004-09-032010-02-16Secure Elements, Inc.Policy-based selection of remediation
US20100153156A1 (en)*2004-12-132010-06-17Guinta Lawrence RCritically/vulnerability/risk logic analysis methodology for business enterprise and cyber security
US20080082348A1 (en)*2006-10-022008-04-03Paulus Sachar MEnterprise Integrity Content Generation and Utilization
US20070100643A1 (en)*2005-10-072007-05-03Sap AgEnterprise integrity modeling
US8781930B2 (en)*2005-10-072014-07-15Sap AgEnterprise integrity simulation
US8959568B2 (en)*2007-03-142015-02-17Microsoft CorporationEnterprise security assessment sharing
US8955105B2 (en)2007-03-142015-02-10Microsoft CorporationEndpoint enabled for enterprise security assessment sharing
US8413247B2 (en)*2007-03-142013-04-02Microsoft CorporationAdaptive data collection for root-cause analysis and intrusion detection
US20080229419A1 (en)*2007-03-162008-09-18Microsoft CorporationAutomated identification of firewall malware scanner deficiencies
US8424094B2 (en)*2007-04-022013-04-16Microsoft CorporationAutomated collection of forensic evidence associated with a network security incident
US9118706B2 (en)*2007-06-292015-08-25Verizon Patent And Licensing Inc.Using imported data from security tools
US8099787B2 (en)*2007-08-152012-01-17Bank Of America CorporationKnowledge-based and collaborative system for security assessment of web applications
US8607311B2 (en)*2007-12-212013-12-10Microsoft CorporationDelegation in logic-based access control
US8010560B2 (en)*2007-12-212011-08-30Microsoft CorporationAbducing assertion to support access query
US8839344B2 (en)*2008-01-282014-09-16Microsoft CorporationAccess policy analysis
US20090217185A1 (en)*2008-02-222009-08-27Eugene GoldfarbContainer generation system for a customizable application
US8515786B2 (en)2008-02-222013-08-20Accenture Global Services GmbhRule generation system adapted for an insurance claim processing system
US8478769B2 (en)2008-02-222013-07-02Accenture Global Services LimitedConversational question generation system adapted for an insurance claim processing system
WO2009116126A1 (en)*2008-03-172009-09-24富士通株式会社Information acquisition support apparatus
US8881266B2 (en)*2008-11-132014-11-04Palo Alto Research Center IncorporatedEnterprise password reset
US20110066476A1 (en)*2009-09-152011-03-17Joseph Fernard LewisBusiness management assessment and consulting assistance system and associated method
US10282703B1 (en)2011-07-282019-05-07Intuit Inc.Enterprise risk management
US8751540B2 (en)*2011-08-082014-06-10Jukka SAPPINENDynamic assessment system
US10445508B2 (en)2012-02-142019-10-15Radar, LlcSystems and methods for managing multi-region data incidents
US20130238396A1 (en)*2012-03-062013-09-12Jukka SAPPINENMethod, system and apparatus for designing assessment report
US9129132B2 (en)2012-05-232015-09-08Wal-Mart Stores, Inc.Reporting and management of computer systems and data sources
US9015792B2 (en)2012-05-232015-04-21Wal-Mart Stores, Inc.Reporting and management of computer systems and data sources
US20140172495A1 (en)*2012-12-162014-06-19Mcafee, Inc.System and method for automated brand protection
US9471892B2 (en)*2013-03-142016-10-18Profiles International, Inc.System and method for embedding report descriptors into an XML string to assure report consistency
US9729583B1 (en)2016-06-102017-08-08OneTrust, LLCData processing systems and methods for performing privacy assessments and monitoring of new versions of computer code for privacy compliance
US10181051B2 (en)2016-06-102019-01-15OneTrust, LLCData processing systems for generating and populating a data inventory for processing data access requests
US10289867B2 (en)2014-07-272019-05-14OneTrust, LLCData processing systems for webform crawling to map processing activities and related methods
US10019597B2 (en)2016-06-102018-07-10OneTrust, LLCData processing systems and communications systems and methods for integrating privacy compliance systems with software development and agile tools for privacy design
US9851966B1 (en)2016-06-102017-12-26OneTrust, LLCData processing systems and communications systems and methods for integrating privacy compliance systems with software development and agile tools for privacy design
US10719608B2 (en)*2015-02-062020-07-21Honeywell International Inc.Patch monitoring and analysis
US20170017982A1 (en)*2015-07-132017-01-19Keith Douglas TRIPPIESystem and method of providing an information technology services report
US10277619B1 (en)2015-10-232019-04-30Nationwide Mutual Insurance CompanySystem and methods of identifying system vulnerabilities
US10706447B2 (en)*2016-04-012020-07-07OneTrust, LLCData processing systems and communication systems and methods for the efficient generation of privacy risk assessments
US9892441B2 (en)2016-04-012018-02-13OneTrust, LLCData processing systems and methods for operationalizing privacy compliance and assessing the risk of various respective privacy campaigns
US10176502B2 (en)2016-04-012019-01-08OneTrust, LLCData processing systems and methods for integrating privacy information management systems with data loss prevention tools or other tools for privacy design
US9892443B2 (en)2016-04-012018-02-13OneTrust, LLCData processing systems for modifying privacy campaign data via electronic messaging systems
US11004125B2 (en)*2016-04-012021-05-11OneTrust, LLCData processing systems and methods for integrating privacy information management systems with data loss prevention tools or other tools for privacy design
US10176503B2 (en)2016-04-012019-01-08OneTrust, LLCData processing systems and methods for efficiently assessing the risk of privacy campaigns
US9898769B2 (en)2016-04-012018-02-20OneTrust, LLCData processing systems and methods for operationalizing privacy compliance via integrated mobile applications
US10026110B2 (en)2016-04-012018-07-17OneTrust, LLCData processing systems and methods for generating personal data inventories for organizations and other entities
US9892444B2 (en)2016-04-012018-02-13OneTrust, LLCData processing systems and communication systems and methods for the efficient generation of privacy risk assessments
US11244367B2 (en)*2016-04-012022-02-08OneTrust, LLCData processing systems and methods for integrating privacy information management systems with data loss prevention tools or other tools for privacy design
US9892442B2 (en)2016-04-012018-02-13OneTrust, LLCData processing systems and methods for efficiently assessing the risk of privacy campaigns
US12288233B2 (en)2016-04-012025-04-29OneTrust, LLCData processing systems and methods for integrating privacy information management systems with data loss prevention tools or other tools for privacy design
US10423996B2 (en)2016-04-012019-09-24OneTrust, LLCData processing systems and communication systems and methods for the efficient generation of privacy risk assessments
WO2017200942A1 (en)*2016-05-152017-11-23John StevenSystems and methods for model-based analysis of software
US11074367B2 (en)2016-06-102021-07-27OneTrust, LLCData processing systems for identity validation for consumer rights requests and related methods
US11403377B2 (en)2016-06-102022-08-02OneTrust, LLCPrivacy management systems and methods
US10706131B2 (en)2016-06-102020-07-07OneTrust, LLCData processing systems and methods for efficiently assessing the risk of privacy campaigns
US10032172B2 (en)2016-06-102018-07-24OneTrust, LLCData processing systems for measuring privacy maturity within an organization
US10289870B2 (en)2016-06-102019-05-14OneTrust, LLCData processing systems for fulfilling data subject access requests and related methods
US11100444B2 (en)2016-06-102021-08-24OneTrust, LLCData processing systems and methods for providing training in a vendor procurement process
US10896394B2 (en)2016-06-102021-01-19OneTrust, LLCPrivacy management systems and methods
US10614247B2 (en)2016-06-102020-04-07OneTrust, LLCData processing systems for automated classification of personal information from documents and related methods
US10440062B2 (en)2016-06-102019-10-08OneTrust, LLCConsent receipt management systems and related methods
US11038925B2 (en)2016-06-102021-06-15OneTrust, LLCData processing systems for data-transfer risk identification, cross-border visualization generation, and related methods
US10353673B2 (en)2016-06-102019-07-16OneTrust, LLCData processing systems for integration of consumer feedback with data subject access requests and related methods
US11144622B2 (en)2016-06-102021-10-12OneTrust, LLCPrivacy management systems and methods
US11366909B2 (en)2016-06-102022-06-21OneTrust, LLCData processing and scanning systems for assessing vendor risk
US11146566B2 (en)2016-06-102021-10-12OneTrust, LLCData processing systems for fulfilling data subject access requests and related methods
US10607028B2 (en)2016-06-102020-03-31OneTrust, LLCData processing systems for data testing to confirm data deletion and related methods
US10685140B2 (en)2016-06-102020-06-16OneTrust, LLCConsent receipt management systems and related methods
US10510031B2 (en)2016-06-102019-12-17OneTrust, LLCData processing systems for identifying, assessing, and remediating data processing risks using data modeling techniques
US10509920B2 (en)2016-06-102019-12-17OneTrust, LLCData processing systems for processing data subject access requests
US10565236B1 (en)2016-06-102020-02-18OneTrust, LLCData processing systems for generating and populating a data inventory
US11238390B2 (en)2016-06-102022-02-01OneTrust, LLCPrivacy management systems and methods
US11392720B2 (en)2016-06-102022-07-19OneTrust, LLCData processing systems for verification of consent and notice processing and related methods
US11138299B2 (en)2016-06-102021-10-05OneTrust, LLCData processing and scanning systems for assessing vendor risk
US10708305B2 (en)2016-06-102020-07-07OneTrust, LLCAutomated data processing systems and methods for automatically processing requests for privacy-related information
US10642870B2 (en)2016-06-102020-05-05OneTrust, LLCData processing systems and methods for automatically detecting and documenting privacy-related aspects of computer software
US11651104B2 (en)2016-06-102023-05-16OneTrust, LLCConsent receipt management systems and related methods
US11651106B2 (en)2016-06-102023-05-16OneTrust, LLCData processing systems for fulfilling data subject access requests and related methods
US10769301B2 (en)2016-06-102020-09-08OneTrust, LLCData processing systems for webform crawling to map processing activities and related methods
US11562097B2 (en)2016-06-102023-01-24OneTrust, LLCData processing systems for central consent repository and related methods
US12045266B2 (en)2016-06-102024-07-23OneTrust, LLCData processing systems for generating and populating a data inventory
US11188615B2 (en)2016-06-102021-11-30OneTrust, LLCData processing consent capture systems and related methods
US11228620B2 (en)2016-06-102022-01-18OneTrust, LLCData processing systems for data-transfer risk identification, cross-border visualization generation, and related methods
US10565161B2 (en)2016-06-102020-02-18OneTrust, LLCData processing systems for processing data subject access requests
US10848523B2 (en)2016-06-102020-11-24OneTrust, LLCData processing systems for data-transfer risk identification, cross-border visualization generation, and related methods
US10678945B2 (en)2016-06-102020-06-09OneTrust, LLCConsent receipt management systems and related methods
US10496803B2 (en)2016-06-102019-12-03OneTrust, LLCData processing systems and methods for efficiently assessing the risk of privacy campaigns
US11222139B2 (en)2016-06-102022-01-11OneTrust, LLCData processing systems and methods for automatic discovery and assessment of mobile software development kits
US11636171B2 (en)2016-06-102023-04-25OneTrust, LLCData processing user interface monitoring systems and related methods
US10839102B2 (en)2016-06-102020-11-17OneTrust, LLCData processing systems for identifying and modifying processes that are subject to data subject access requests
US11134086B2 (en)2016-06-102021-09-28OneTrust, LLCConsent conversion optimization systems and related methods
US10706379B2 (en)2016-06-102020-07-07OneTrust, LLCData processing systems for automatic preparation for remediation and related methods
US12118121B2 (en)2016-06-102024-10-15OneTrust, LLCData subject access request processing systems and related methods
US11025675B2 (en)2016-06-102021-06-01OneTrust, LLCData processing systems and methods for performing privacy assessments and monitoring of new versions of computer code for privacy compliance
US10437412B2 (en)2016-06-102019-10-08OneTrust, LLCConsent receipt management systems and related methods
US10783256B2 (en)2016-06-102020-09-22OneTrust, LLCData processing systems for data transfer risk identification and related methods
US10586075B2 (en)2016-06-102020-03-10OneTrust, LLCData processing systems for orphaned data identification and deletion and related methods
US10873606B2 (en)2016-06-102020-12-22OneTrust, LLCData processing systems for data-transfer risk identification, cross-border visualization generation, and related methods
US11210420B2 (en)2016-06-102021-12-28OneTrust, LLCData subject access request processing systems and related methods
US11200341B2 (en)2016-06-102021-12-14OneTrust, LLCConsent receipt management systems and related methods
US11277448B2 (en)2016-06-102022-03-15OneTrust, LLCData processing systems for data-transfer risk identification, cross-border visualization generation, and related methods
US10706176B2 (en)2016-06-102020-07-07OneTrust, LLCData-processing consent refresh, re-prompt, and recapture systems and related methods
US10565397B1 (en)2016-06-102020-02-18OneTrust, LLCData processing systems for fulfilling data subject access requests and related methods
US10713387B2 (en)2016-06-102020-07-14OneTrust, LLCConsent conversion optimization systems and related methods
US11157600B2 (en)2016-06-102021-10-26OneTrust, LLCData processing and scanning systems for assessing vendor risk
US10585968B2 (en)2016-06-102020-03-10OneTrust, LLCData processing systems for fulfilling data subject access requests and related methods
US11151233B2 (en)2016-06-102021-10-19OneTrust, LLCData processing and scanning systems for assessing vendor risk
US10846433B2 (en)2016-06-102020-11-24OneTrust, LLCData processing consent management systems and related methods
US10282692B2 (en)2016-06-102019-05-07OneTrust, LLCData processing systems for identifying, assessing, and remediating data processing risks using data modeling techniques
US10997318B2 (en)2016-06-102021-05-04OneTrust, LLCData processing systems for generating and populating a data inventory for processing data access requests
US10909488B2 (en)2016-06-102021-02-02OneTrust, LLCData processing systems for assessing readiness for responding to privacy-related incidents
US10346638B2 (en)2016-06-102019-07-09OneTrust, LLCData processing systems for identifying and modifying processes that are subject to data subject access requests
US11294939B2 (en)2016-06-102022-04-05OneTrust, LLCData processing systems and methods for automatically detecting and documenting privacy-related aspects of computer software
US11138242B2 (en)2016-06-102021-10-05OneTrust, LLCData processing systems and methods for automatically detecting and documenting privacy-related aspects of computer software
US10289866B2 (en)2016-06-102019-05-14OneTrust, LLCData processing systems for fulfilling data subject access requests and related methods
US11416589B2 (en)2016-06-102022-08-16OneTrust, LLCData processing and scanning systems for assessing vendor risk
US10726158B2 (en)2016-06-102020-07-28OneTrust, LLCConsent receipt management and automated process blocking systems and related methods
US11087260B2 (en)2016-06-102021-08-10OneTrust, LLCData processing systems and methods for customizing privacy training
US10762236B2 (en)2016-06-102020-09-01OneTrust, LLCData processing user interface monitoring systems and related methods
US11461500B2 (en)2016-06-102022-10-04OneTrust, LLCData processing systems for cookie compliance testing with website scanning and related methods
US10181019B2 (en)2016-06-102019-01-15OneTrust, LLCData processing systems and communications systems and methods for integrating privacy compliance systems with software development and agile tools for privacy design
US10509894B2 (en)2016-06-102019-12-17OneTrust, LLCData processing and scanning systems for assessing vendor risk
US10284604B2 (en)2016-06-102019-05-07OneTrust, LLCData processing and scanning systems for generating and populating a data inventory
US11544667B2 (en)2016-06-102023-01-03OneTrust, LLCData processing systems for generating and populating a data inventory
US10318761B2 (en)2016-06-102019-06-11OneTrust, LLCData processing systems and methods for auditing data request compliance
US10102533B2 (en)2016-06-102018-10-16OneTrust, LLCData processing and communications systems and methods for the efficient implementation of privacy by design
US10592648B2 (en)2016-06-102020-03-17OneTrust, LLCConsent receipt management systems and related methods
US11222309B2 (en)2016-06-102022-01-11OneTrust, LLCData processing systems for generating and populating a data inventory
US11366786B2 (en)2016-06-102022-06-21OneTrust, LLCData processing systems for processing data subject access requests
US10430740B2 (en)2016-06-102019-10-01One Trust, LLCData processing systems for calculating and communicating cost of fulfilling data subject access requests and related methods
US10282559B2 (en)2016-06-102019-05-07OneTrust, LLCData processing systems for identifying, assessing, and remediating data processing risks using data modeling techniques
US10416966B2 (en)2016-06-102019-09-17OneTrust, LLCData processing systems for identity validation of data subject access requests and related methods
US10282700B2 (en)2016-06-102019-05-07OneTrust, LLCData processing systems for generating and populating a data inventory
US11343284B2 (en)2016-06-102022-05-24OneTrust, LLCData processing systems and methods for performing privacy assessments and monitoring of new versions of computer code for privacy compliance
US10204154B2 (en)2016-06-102019-02-12OneTrust, LLCData processing systems for generating and populating a data inventory
US11625502B2 (en)2016-06-102023-04-11OneTrust, LLCData processing systems for identifying and modifying processes that are subject to data subject access requests
US11188862B2 (en)2016-06-102021-11-30OneTrust, LLCPrivacy management systems and methods
US11586700B2 (en)2016-06-102023-02-21OneTrust, LLCData processing systems and methods for automatically blocking the use of tracking tools
US12381915B2 (en)2016-06-102025-08-05OneTrust, LLCData processing systems and methods for performing assessments and monitoring of new versions of computer code for compliance
US11416109B2 (en)2016-06-102022-08-16OneTrust, LLCAutomated data processing systems and methods for automatically processing data subject access requests using a chatbot
US11023842B2 (en)2016-06-102021-06-01OneTrust, LLCData processing systems and methods for bundled privacy policies
US10572686B2 (en)2016-06-102020-02-25OneTrust, LLCConsent receipt management systems and related methods
US11301796B2 (en)2016-06-102022-04-12OneTrust, LLCData processing systems and methods for customizing privacy training
US11418492B2 (en)2016-06-102022-08-16OneTrust, LLCData processing systems and methods for using a data model to select a target data asset in a data migration
US11727141B2 (en)2016-06-102023-08-15OneTrust, LLCData processing systems and methods for synching privacy-related user consent across multiple computing devices
US12052289B2 (en)2016-06-102024-07-30OneTrust, LLCData processing systems for data-transfer risk identification, cross-border visualization generation, and related methods
US10798133B2 (en)2016-06-102020-10-06OneTrust, LLCData processing systems for data-transfer risk identification, cross-border visualization generation, and related methods
US10885485B2 (en)2016-06-102021-01-05OneTrust, LLCPrivacy management systems and methods
US11416798B2 (en)2016-06-102022-08-16OneTrust, LLCData processing systems and methods for providing training in a vendor procurement process
US10740487B2 (en)2016-06-102020-08-11OneTrust, LLCData processing systems and methods for populating and maintaining a centralized database of personal data
US11438386B2 (en)2016-06-102022-09-06OneTrust, LLCData processing systems for data-transfer risk identification, cross-border visualization generation, and related methods
US11475136B2 (en)2016-06-102022-10-18OneTrust, LLCData processing systems for data transfer risk identification and related methods
US11295316B2 (en)2016-06-102022-04-05OneTrust, LLCData processing systems for identity validation for consumer rights requests and related methods
US10275614B2 (en)2016-06-102019-04-30OneTrust, LLCData processing systems for generating and populating a data inventory
US10454973B2 (en)2016-06-102019-10-22OneTrust, LLCData processing systems for data-transfer risk identification, cross-border visualization generation, and related methods
US11354434B2 (en)2016-06-102022-06-07OneTrust, LLCData processing systems for verification of consent and notice processing and related methods
US10853501B2 (en)2016-06-102020-12-01OneTrust, LLCData processing and scanning systems for assessing vendor risk
US11057356B2 (en)2016-06-102021-07-06OneTrust, LLCAutomated data processing systems and methods for automatically processing data subject access requests using a chatbot
US10878127B2 (en)2016-06-102020-12-29OneTrust, LLCData subject access request processing systems and related methods
US10776517B2 (en)2016-06-102020-09-15OneTrust, LLCData processing systems for calculating and communicating cost of fulfilling data subject access requests and related methods
US10997315B2 (en)2016-06-102021-05-04OneTrust, LLCData processing systems for fulfilling data subject access requests and related methods
US10803200B2 (en)2016-06-102020-10-13OneTrust, LLCData processing systems for processing and managing data subject access in a distributed environment
US10467432B2 (en)2016-06-102019-11-05OneTrust, LLCData processing systems for use in automatically generating, populating, and submitting data subject access requests
US10776514B2 (en)2016-06-102020-09-15OneTrust, LLCData processing systems for the identification and deletion of personal data in computer systems
US10353674B2 (en)2016-06-102019-07-16OneTrust, LLCData processing and communications systems and methods for the efficient implementation of privacy by design
US10796260B2 (en)2016-06-102020-10-06OneTrust, LLCPrivacy management systems and methods
US12299065B2 (en)2016-06-102025-05-13OneTrust, LLCData processing systems and methods for dynamically determining data processing consent configurations
US10452864B2 (en)2016-06-102019-10-22OneTrust, LLCData processing systems for webform crawling to map processing activities and related methods
US10949170B2 (en)2016-06-102021-03-16OneTrust, LLCData processing systems for integration of consumer feedback with data subject access requests and related methods
US11354435B2 (en)2016-06-102022-06-07OneTrust, LLCData processing systems for data testing to confirm data deletion and related methods
US10592692B2 (en)2016-06-102020-03-17OneTrust, LLCData processing systems for central consent repository and related methods
US10606916B2 (en)2016-06-102020-03-31OneTrust, LLCData processing user interface monitoring systems and related methods
US10235534B2 (en)2016-06-102019-03-19OneTrust, LLCData processing systems for prioritizing data subject access requests for fulfillment and related methods
US11328092B2 (en)2016-06-102022-05-10OneTrust, LLCData processing systems for processing and managing data subject access in a distributed environment
US12136055B2 (en)2016-06-102024-11-05OneTrust, LLCData processing systems for identifying, assessing, and remediating data processing risks using data modeling techniques
US11675929B2 (en)2016-06-102023-06-13OneTrust, LLCData processing consent sharing systems and related methods
US11227247B2 (en)2016-06-102022-01-18OneTrust, LLCData processing systems and methods for bundled privacy policies
US10949565B2 (en)2016-06-102021-03-16OneTrust, LLCData processing systems for generating and populating a data inventory
US10909265B2 (en)2016-06-102021-02-02OneTrust, LLCApplication privacy scanning systems and related methods
US10242228B2 (en)2016-06-102019-03-26OneTrust, LLCData processing systems for measuring privacy maturity within an organization
US10169609B1 (en)2016-06-102019-01-01OneTrust, LLCData processing systems for fulfilling data subject access requests and related methods
US10496846B1 (en)2016-06-102019-12-03OneTrust, LLCData processing and communications systems and methods for the efficient implementation of privacy by design
US11336697B2 (en)2016-06-102022-05-17OneTrust, LLCData processing systems for data-transfer risk identification, cross-border visualization generation, and related methods
US10776518B2 (en)2016-06-102020-09-15OneTrust, LLCConsent receipt management systems and related methods
US10503926B2 (en)2016-06-102019-12-10OneTrust, LLCConsent receipt management systems and related methods
US11416590B2 (en)2016-06-102022-08-16OneTrust, LLCData processing and scanning systems for assessing vendor risk
US10438017B2 (en)2016-06-102019-10-08OneTrust, LLCData processing systems for processing data subject access requests
US10706174B2 (en)2016-06-102020-07-07OneTrust, LLCData processing systems for prioritizing data subject access requests for fulfillment and related methods
US10944725B2 (en)2016-06-102021-03-09OneTrust, LLCData processing systems and methods for using a data model to select a target data asset in a data migration
US11481710B2 (en)2016-06-102022-10-25OneTrust, LLCPrivacy management systems and methods
US10346637B2 (en)2016-06-102019-07-09OneTrust, LLCData processing systems for the identification and deletion of personal data in computer systems
US11520928B2 (en)2016-06-102022-12-06OneTrust, LLCData processing systems for generating personal data receipts and related methods
US11222142B2 (en)2016-06-102022-01-11OneTrust, LLCData processing systems for validating authorization for personal data collection, storage, and processing
US11341447B2 (en)2016-06-102022-05-24OneTrust, LLCPrivacy management systems and methods
US10452866B2 (en)2016-06-102019-10-22OneTrust, LLCData processing systems for fulfilling data subject access requests and related methods
US11010717B2 (en)*2016-06-212021-05-18The Prudential Insurance Company Of AmericaTool for improving network security
US20180260828A1 (en)*2017-03-102018-09-13Lucid Holdings, LLCSystem for preventing website redirection
US10860721B1 (en)*2017-05-042020-12-08Mike GentileInformation security management improvement system
US10013577B1 (en)2017-06-162018-07-03OneTrust, LLCData processing systems for identifying whether cookies contain personally identifying information
US9858439B1 (en)2017-06-162018-01-02OneTrust, LLCData processing systems for identifying whether cookies contain personally identifying information
US10810006B2 (en)2017-08-282020-10-20Bank Of America CorporationIndicator regression and modeling for implementing system changes to improve control effectiveness
US11023812B2 (en)2017-08-282021-06-01Bank Of America CorporationEvent prediction and impact mitigation system
US10877443B2 (en)2017-09-202020-12-29Bank Of America CorporationSystem for generation and execution of improved control effectiveness
US10824734B2 (en)2017-11-302020-11-03Bank Of America CorporationSystem for recurring information security threat assessment
US10607013B2 (en)2017-11-302020-03-31Bank Of America CorporationSystem for information security threat assessment and event triggering
US10616261B2 (en)2017-11-302020-04-07Bank Of America CorporationSystem for information security threat assessment based on data history
US10104103B1 (en)2018-01-192018-10-16OneTrust, LLCData processing systems for tracking reputational risk via scanning and registry lookup
US10803202B2 (en)2018-09-072020-10-13OneTrust, LLCData processing systems for orphaned data identification and deletion and related methods
US11544409B2 (en)2018-09-072023-01-03OneTrust, LLCData processing systems and methods for automatically protecting sensitive data within privacy management systems
US11144675B2 (en)2018-09-072021-10-12OneTrust, LLCData processing systems and methods for automatically protecting sensitive data within privacy management systems
CN109861977B (en)*2018-12-282021-04-30北京红山瑞达科技有限公司Method for promoting personnel network security awareness to be improved
US11463467B2 (en)2020-01-092022-10-04Kyndryl, Inc.Advanced risk evaluation for servers
WO2022011142A1 (en)2020-07-082022-01-13OneTrust, LLCSystems and methods for targeted data discovery
EP4189569B1 (en)2020-07-282025-09-24OneTrust LLCSystems and methods for automatically blocking the use of tracking tools
US20230289376A1 (en)2020-08-062023-09-14OneTrust, LLCData processing systems and methods for automatically redacting unstructured data from a data subject access request
US11436373B2 (en)2020-09-152022-09-06OneTrust, LLCData processing systems and methods for detecting tools for the automatic blocking of consent requests
US11526624B2 (en)2020-09-212022-12-13OneTrust, LLCData processing systems and methods for automatically detecting target data transfers and target data processing
US12265896B2 (en)2020-10-052025-04-01OneTrust, LLCSystems and methods for detecting prejudice bias in machine-learning models
US11397819B2 (en)2020-11-062022-07-26OneTrust, LLCSystems and methods for identifying data processing activities based on data discovery results
US11687528B2 (en)2021-01-252023-06-27OneTrust, LLCSystems and methods for discovery, classification, and indexing of data in a native computing system
US11442906B2 (en)2021-02-042022-09-13OneTrust, LLCManaging custom attributes for domain objects defined within microservices
US20240111899A1 (en)2021-02-082024-04-04OneTrust, LLCData processing systems and methods for anonymizing data samples in classification analysis
US11601464B2 (en)2021-02-102023-03-07OneTrust, LLCSystems and methods for mitigating risks of third-party computing system functionality integration into a first-party computing system
US11775348B2 (en)2021-02-172023-10-03OneTrust, LLCManaging custom workflows for domain objects defined within microservices
US11546661B2 (en)2021-02-182023-01-03OneTrust, LLCSelective redaction of media content
WO2022192269A1 (en)2021-03-082022-09-15OneTrust, LLCData transfer discovery and analysis systems and related methods
US11562078B2 (en)2021-04-162023-01-24OneTrust, LLCAssessing and managing computational risk involved with integrating third party computing functionality within a computing system
US12153704B2 (en)2021-08-052024-11-26OneTrust, LLCComputing platform for facilitating data exchange among computing environments
US11620142B1 (en)2022-06-032023-04-04OneTrust, LLCGenerating and customizing user interfaces for demonstrating functions of interactive user environments
CN120234408B (en)*2025-05-292025-09-16深圳华为云计算技术有限公司 Data flywheel fine-tuning method and device

Citations (2)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US6298445B1 (en)*1998-04-302001-10-02Netect, Ltd.Computer security
US6374358B1 (en)*1998-08-052002-04-16Sun Microsystems, Inc.Adaptive countermeasure selection method and apparatus

Family Cites Families (19)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US5485409A (en)1992-04-301996-01-16International Business Machines CorporationAutomated penetration analysis system and method
US5963931A (en)1992-10-051999-10-05Expert Systems Publishing Co.Computer-assisted decision management system
US6161101A (en)1994-12-082000-12-12Tech-Metrics International, Inc.Computer-aided methods and apparatus for assessing an organization process or system
US5737494A (en)1994-12-081998-04-07Tech-Metrics International, Inc.Assessment methods and apparatus for an organizational process or system
CN101398871B (en)1995-02-132011-05-18英特特拉斯特技术公司Systems and methods for secure transaction management and electronic rights protection
JP2923552B2 (en)1995-02-131999-07-26富士通株式会社 Method of constructing organization activity database, input method of analysis sheet used for it, and organization activity management system
US5701400A (en)1995-03-081997-12-23Amado; Carlos ArmandoMethod and apparatus for applying if-then-else rules to data sets in a relational data base and generating from the results of application of said rules a database of diagnostics linked to said data sets to aid executive analysis of financial data
US5892903A (en)1996-09-121999-04-06Internet Security Systems, Inc.Method and apparatus for detecting and identifying security vulnerabilities in an open network computer communication system
US5784539A (en)1996-11-261998-07-21Client-Server-Networking Solutions, Inc.Quality driven expert system
US6151581A (en)1996-12-172000-11-21Pulsegroup Inc.System for and method of collecting and populating a database with physician/patient data for processing to improve practice quality and healthcare delivery
US5850516A (en)1996-12-231998-12-15Schneier; BruceMethod and apparatus for analyzing information systems using stored tree database structures
US6088801A (en)1997-01-102000-07-11Grecsek; Matthew T.Managing the risk of executing a software process using a capabilities assessment and a policy
US6076166A (en)1997-01-172000-06-13Philips Electronics North America CorporationPersonalizing hospital intranet web sites
US5991743A (en)1997-06-301999-11-23General Electric CompanySystem and method for proactively monitoring risk exposure
US6021404A (en)1997-08-182000-02-01Moukheibir; Nabil W.Universal computer assisted diagnosis
US6112190A (en)1997-08-192000-08-29Citibank, N.A.Method and system for commercial credit analysis
US6064972A (en)1997-09-172000-05-16At&T CorpRisk management technique for network access
US6151584A (en)1997-11-202000-11-21Ncr CorporationComputer architecture and method for validating and collecting and metadata and data about the internet and electronic commerce environments (data discoverer)
US6158010A (en)1998-10-282000-12-05Crosslogix, Inc.System and method for maintaining security in a distributed computer network

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US6298445B1 (en)*1998-04-302001-10-02Netect, Ltd.Computer security
US6374358B1 (en)*1998-08-052002-04-16Sun Microsystems, Inc.Adaptive countermeasure selection method and apparatus

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
Cortez, "Information Policy Audit: A Case Study of an Organizational Analysis Tool" (Spring 1996)*

Cited By (23)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US10104110B2 (en)2003-07-012018-10-16Securityprofiling, LlcAnti-vulnerability system, method, and computer program product
US9225686B2 (en)2003-07-012015-12-29Securityprofiling, LlcAnti-vulnerability system, method, and computer program product
US9100431B2 (en)2003-07-012015-08-04Securityprofiling, LlcComputer program product and apparatus for multi-path remediation
US9118710B2 (en)2003-07-012015-08-25Securityprofiling, LlcSystem, method, and computer program product for reporting an occurrence in different manners
US9117069B2 (en)2003-07-012015-08-25Securityprofiling, LlcReal-time vulnerability monitoring
US9118709B2 (en)2003-07-012015-08-25Securityprofiling, LlcAnti-vulnerability system, method, and computer program product
US9118711B2 (en)2003-07-012015-08-25Securityprofiling, LlcAnti-vulnerability system, method, and computer program product
US10154055B2 (en)2003-07-012018-12-11Securityprofiling, LlcReal-time vulnerability monitoring
US10050988B2 (en)2003-07-012018-08-14Securityprofiling, LlcComputer program product and apparatus for multi-path remediation
US9350752B2 (en)2003-07-012016-05-24Securityprofiling, LlcAnti-vulnerability system, method, and computer program product
US8984644B2 (en)2003-07-012015-03-17Securityprofiling, LlcAnti-vulnerability system, method, and computer program product
US10021124B2 (en)2003-07-012018-07-10Securityprofiling, LlcComputer program product and apparatus for multi-path remediation
US9118708B2 (en)2003-07-012015-08-25Securityprofiling, LlcMulti-path remediation
US12406111B2 (en)2007-08-232025-09-02Management Analytics, Inc.Cognology and cognometrics system and method
US9454727B2 (en)*2009-01-072016-09-27Oracle International CorporationMethods, systems, and computer program product for implementing expert assessment of a product
US20120278269A1 (en)*2009-01-072012-11-01Oracle International CorporationMethods, systems, and computer program product for implementing expert assessment of a product
US9817978B2 (en)2013-10-112017-11-14Ark Network Security Solutions, LlcSystems and methods for implementing modular computer system security solutions
US11997123B1 (en)*2015-07-152024-05-28Management Analytics, Inc.Scaleable cyber security assessment system and method
US12273369B2 (en)2015-07-152025-04-08Management Analytics, Inc.Scaleable risk management assessment system and method
RU2623808C2 (en)*2015-09-302017-06-29Акционерное общество "Лаборатория Касперского"Method of application of safety policies for computer safety
US12229479B1 (en)2023-05-052025-02-18Management Analytics, Inc.Cognology and cognometrics system and method
US12346638B2 (en)2023-05-052025-07-01Management Analytics, Inc.Cognology and cognometrics system and method
RU2844014C1 (en)*2024-12-252025-07-23Федеральное государственное казенное военное образовательное учреждение высшего образования Академия Федеральной службы охраны Российской ФедерацииMethod for evaluating information security level of local computer network based on evaluating effect of potentially possible techniques for implementing computer attacks on provided communication services

Also Published As

Publication numberPublication date
AU2001253901A1 (en)2001-11-07
WO2001082205A1 (en)2001-11-01
US8121892B2 (en)2012-02-21
US6925443B1 (en)2005-08-02
US20050234755A1 (en)2005-10-20

Similar Documents

PublicationPublication DateTitle
US6925443B1 (en)Method, system and computer program product for assessing information security
US11930032B2 (en)System and method for enumerating and remediating gaps in cybersecurity defenses
US12381915B2 (en)Data processing systems and methods for performing assessments and monitoring of new versions of computer code for compliance
US20050102534A1 (en)System and method for auditing the security of an enterprise
Bartock et al.Cybersecurity event recovery
US20060136327A1 (en)Risk control system
Johnson et al.Security policies and implementation issues
NyanchamaEnterprise Vulnerability Management and Its Role in Information Security Management.
Shukla et al.A quantitative framework for security assurance evaluation and selection of cloud services: a case study
Curtis et al.Cybersecurity capability maturity model for information technology services (c2m2 for it services), version 1.0
Subriadi et al.The consistency of using failure mode effect analysis (FMEA) on risk assessment of information technology
DoshiCISA-Certified information systems auditor study guide
HenryThe human side of information security
KahramanEvaluating IT security performance with quantifiable metrics
Fenton et al.Organizing for success: Some human resources issues in information security
US20060107313A1 (en)Method, system, and medium for the analysis of information system security
MorelloTowards standardization of audit procedures for the new version of ISO/IEC 27002
Bertoglio et al.Understanding the Penetration Test Workflow: a security test with Tramonto in an e-Government application
UnterwandlingOptimization of IT security in healthcare facilities
Pinckard et al.A Mapping of the Federal Financial Institutions Examination Council (FFIEC) Cybersecurity Assessment Tool (CAT) to the Cyber Resilience Review (CRR)
NikumaaVulnerability Management Process
ABAZIA New Approach and Framework for Risk Assessment Maturity
EpsteinA survey of vendor software assurance practices
PeltonenRoadmap to Information Security: Theoretical study about information security with the views of practitioners
GumaAN ASSESSMENT OF INFORMATION SECURITY AND AWARENESS LEVELS IN SMALL TO MEDIUM ORGANIZATIONS: A CASE STUDY OF MASVINGO

Legal Events

DateCodeTitleDescription
STCBInformation on status: application discontinuation

Free format text:ABANDONED -- FAILURE TO RESPOND TO AN OFFICE ACTION


[8]ページ先頭

©2009-2025 Movatter.jp