| CPC H04L 63/20 (2013.01) [H04L 41/024 (2013.01); H04L 63/1416 (2013.01); H04L 63/145 (2013.01)] | 27 Claims |

|
1. A computer-implemented method, executed on a computing device, comprising:
establishing connectivity with a plurality of security-relevant subsystems within a computing platform;
defining a unified query on a unified platform concerning the plurality of security-relevant subsystems;
defining a plurality of subsystem-specific queries on the unified platform concerning the plurality of security-relevant subsystems, including denormalizing the unified query to define a subsystem-specific query for each of the plurality of security-relevant subsystems, thus defining the plurality of subsystem-specific queries, and mapping one or more data fields of the unified platform to one or more data fields of each of the plurality of security-relevant subsystems, wherein one or more of the plurality of subsystem-specific queries has a defined execution schedule; and
providing the plurality of subsystem-specific queries to the plurality of security-relevant subsystems.
|