US 12,437,077 B2
Monitoring and remediation of cybersecurity risk based on calculation of cyber-risk domain scores
Rodrigo Ernesto Santos Loureiro, Haymarket, VA (US)
Assigned to CYBER CONNECTIVE CORPORATION, Wilmington, DE (US)
Filed by CYBER CONNECTIVE CORPORATION, Wilmington, DE (US)
Filed on Oct. 20, 2022, as Appl. No. 17/970,449.
Prior Publication US 2024/0134990 A1, Apr. 25, 2024
Prior Publication US 2024/0232367 A9, Jul. 11, 2024
Int. Cl. H04L 29/06 (2006.01); G06F 21/57 (2013.01)
CPC G06F 21/577 (2013.01) [G06F 2221/034 (2013.01)] 20 Claims
OG exemplary drawing
 
1. An apparatus comprising:
at least one processor;
a non-transitory processor readable medium storing machine-readable instructions that cause the at least one processor to:
normalize values in data collected from multiple data sources to enable the values to be interoperable with each other;
apply predetermined weighting factors to the normalized values to generate weighted values;
calculate, from the weighted values, scores for a plurality of cyber-risk domains related to cybersecurity of an organization, wherein the values in the data collected from multiple data sources are normalized to cause the scores to be between a lower limit value and an upper limit value, and wherein the plurality of cyber-risk domains are related to cybersecurity postures of various divisions within the organization;
identify a first set of the plurality of cyber-risk domains that are assigned to a first role in the organization;
identify a second set of the plurality of cyber-risk domains that are assigned to a second role in the organization, wherein the second set of the plurality of cyber-risk domains differs from the first set of the plurality of cyber-risk domains;
generate a first dashboard to include the first set of the plurality of cyber-risk domains and the calculated scores for the first set of the plurality of cyber-risk domains;
generate a second dashboard to include the second set of the plurality of cyber-risk domains and the calculated scores for the second set of the plurality of cyber-risk domains; and
output the first dashboard and the second dashboard to enable monitoring and remediation of cybersecurity issues in the organization.