SYSTEM AND METHOD FOR PREDICTING SIGNS OF INFORMATION SECURITY INCIDENTS IN AUTOMATED CONTROL SYSTEMS Russian patent published in 2024 - IPC G06F21/55 

Abstract RU 2815595 C1

FIELD: information security.

SUBSTANCE: technical result is achieved when implementing a method for predicting signs of information security incidents in an automated control system, in which performing: collecting events from heterogeneous sources, aggregating events to reduce the number of recurring events, determining the category of events, normalizing events in accordance with the category, enrichment of incoming events with missing and additional information for correct operation of correlation rules, determination of cause-and-effect relationships between normalized and information-enriched events to identify significant information and predict information security incidents, recording in a chronological sequence of events received from sources into an event database, displaying screen notifications on predicted information security incidents on a console.

EFFECT: high efficiency of predicting signs of information security incidents by information protection and event management systems in automated control systems.

1 cl, 2 dwg

Similar patents RU2815595C1

Title Year Author Number
SYSTEM AND METHOD OF AUTOMATIC INVESTIGATION OF SAFETY INCIDENTS IN AUTOMATED SYSTEM 2017
  • Kozlov Denis Viktorovich
RU2664018C1
SYSTEM AND METHOD OF CORRELATING EVENTS FOR DETECTING INFORMATION SECURITY INCIDENT 2019
  • Lyukshin Ivan Stanislavovich
  • Kiryukhin Andrej Aleksandrovich
  • Lukiyan Dmitrij Sergeevich
  • Filonov Pavel Vladimirovich
RU2739864C1
METHOD OF CONSTRUCTING SYSTEM FOR DETECTING INFORMATION SECURITY INCIDENTS IN AUTOMATED CONTROL SYSTEMS 2020
  • Pogorelov Vladislav Vasilevich
  • Drobotun Evgenij Borisovich
  • Kozlov Denis Viktorovich
  • Aksenov Mikhail Aleksandrovich
RU2742179C1
SYSTEM AND METHOD OF INTERCEPTING FILE STREAMS 2023
  • Matveev Lev Lazarevich
RU2816551C1
SYSTEM AND METHOD FOR PREVENTION SAFETY INCIDENTS BASED ON USER DANGER RATING 2011
  • Zajtsev Oleg Vladimirovich
  • Boronin Valerij Andreevich
RU2477929C2
INTELLIGENT RISK AND VULNERABILITY MANAGEMENT SYSTEM FOR INFRASTRUCTURE ELEMENTS 2020
  • Ryupichev Dmitrij Yurevich
  • Novikov Evgenij Aleksandrovich
  • Nichiporchuk Maksim Mikhajlovich
  • Makhmutov Rustem Dmitrievich
  • Efendyan Grant Sergeevich
RU2747476C1
METHOD OF COMPUTER SECURITY DISTRIBUTED EVENTS INVESTIGATION 2015
  • Gajnov Artur Evgenevich
  • Zavodtsev Ilya Valentinovich
RU2610395C1
INTELLIGENT CONTROL SYSTEM FOR CYBERTHREATS 2019
  • Ryupichev Dmitrij Yurevich
  • Novikov Evgenij Aleksandrovich
  • Nichiporchuk Maksim Mikhajlovich
RU2702269C1
METHOD FOR FILTERING EVENTS FOR TRANSMISSION TO REMOTE DEVICE 2022
  • Pintiiskii Vladislav Valerevich
  • Tarakanov Dmitrii Vladimirovich
  • Shulmin Aleksei Sergeevich
  • Ovcharik Vladislav Ivanovich
  • Kuskov Vladimir Anatolevich
RU2813239C1
METHOD AND SYSTEM OF CYBER TRAINING 2022
  • Bogdanov Vladimir Nikolaevich
  • Vikhlyantsev Petr Sergeevich
  • Anisimov Aleksandr Dmitrievich
  • Gerasimov Aleksandr Nikolaevich
  • Shmyrin Evgenij Aleksandrovich
  • Vikhlyantsev Aleksandr Petrovich
  • Serdyukov Nikolaj Nikolaevich
  • Kostyulin Ilya Nikolaevich
RU2808388C1

RU 2 815 595 C1

Authors

Kozlov Denis Viktorovich

Dates

2024-03-19Published

2023-04-11Filed