US 11,757,916 B1
Methods and apparatus for analyzing and scoring digital risks
Bryan Woolgar-O'Neil, Cambridge (GB); Laura Elizabeth Aylward, London (GB); Robert Alexander Campbell, London (GB); Russell James Bentley, Bristol (GB); Thomas Edward Hoskin, Kingston Upon Thames (GB); Abhay Arvind Shete, London (GB); Benjamin Raymond Gilbert, London (GB); Georgios Louis Promponas, London (GB); Thomas Arthur Wedge, Southampton (GB); Attila Szasz, London (GB); Christos Rigas, London (GB); James David Cockrill, Essex (GB); and Soyeb Moinuddin Shaikh, Hertfordshire (GB)
Assigned to DIGITAL SHADOWS LTD., London (GB)
Filed by Digital Shadows Ltd., London (GB)
Filed on Jun. 30, 2020, as Appl. No. 16/916,912.
Claims priority of provisional application 62/871,602, filed on Jul. 8, 2019.
Claims priority of provisional application 62/871,598, filed on Jul. 8, 2019.
Claims priority of provisional application 62/871,601, filed on Jul. 8, 2019.
Int. Cl. H04L 29/06 (2006.01); H04L 9/40 (2022.01); G06Q 10/0635 (2023.01); H04L 9/06 (2006.01); H04L 61/4511 (2022.01)
CPC H04L 63/1433 (2013.01) [G06Q 10/0635 (2013.01); H04L 9/0643 (2013.01); H04L 61/4511 (2022.05); H04L 63/1441 (2013.01)] 7 Claims
OG exemplary drawing
 
1. A method, comprising:
receiving information associated with a digital risk;
retrieving data based on the information associated with the digital risk, the data including: (i) a business value of an asset related to the digital risk; (ii) an attribute of an entity affected by the digital risk; and (iii) nature and confidence information associated with detection of the digital risk; and
calculating, using a processor, a risk score based on the retrieved data, calculating the risk score including:
calculating a risk likelihood score based on the nature and confidence information associated with the detection of the digital risk;
calculating a risk impact score based on: (i) a likely threat score (LTS) representing a likelihood that a threat associated with the digital risk occurs; and (ii) an asset threat score (ATS) representing a consequence of an occurrence of the threat, wherein calculating the risk impact score includes calculating: risk impact score=ATS×AW+LTS×RIW, wherein AW is an asset weight and RIW is risk impact weight, and wherein calculating the LTS is based on the attribute of the entity affected by the digital risk; and
calculating the risk score based on the risk likelihood score and the risk impact score.