17931297. SECURITY BREACH AUTO-CONTAINMENT AND AUTO-REMEDIATION IN A MULTI-TENANT CLOUD ENVIRONMENT FOR BUSINESS CONTINUITY simplified abstract (INTERNATIONAL BUSINESS MACHINES CORPORATION)

From WikiPatents
Jump to navigation Jump to search

SECURITY BREACH AUTO-CONTAINMENT AND AUTO-REMEDIATION IN A MULTI-TENANT CLOUD ENVIRONMENT FOR BUSINESS CONTINUITY

Organization Name

INTERNATIONAL BUSINESS MACHINES CORPORATION

Inventor(s)

Arielle Tovah Orazio of WOOD-RIDGE NJ (US)

Lloyd Wellington Mascarenhas of White Plains NY (US)

Matthias Seul of Folsom CA (US)

SECURITY BREACH AUTO-CONTAINMENT AND AUTO-REMEDIATION IN A MULTI-TENANT CLOUD ENVIRONMENT FOR BUSINESS CONTINUITY - A simplified explanation of the abstract

This abstract first appeared for US patent application 17931297 titled 'SECURITY BREACH AUTO-CONTAINMENT AND AUTO-REMEDIATION IN A MULTI-TENANT CLOUD ENVIRONMENT FOR BUSINESS CONTINUITY

Simplified Explanation

The abstract describes a method for identifying and containing security breaches in a multi-tenant cloud environment.

  • Method involves identifying compromised tenant in a cloud environment with virtual machines.
  • Storing snapshots of compromised VMs.
  • Automatically containing the security breach by mitigating the compromised tenant.
  • Automatically remediating salvageable images by migrating unaffected tenants to a sandbox for testing.
  • Verifying the unaffected tenants in the sandbox and migrating them to a new cloud container in the production environment.

Potential Applications

This technology can be applied in cloud security management, incident response, and disaster recovery in multi-tenant environments.

Problems Solved

This technology addresses the challenges of identifying and containing security breaches in complex cloud environments with multiple tenants.

Benefits

The method automates the containment and remediation process, reducing manual intervention and minimizing the impact of security breaches on other tenants in the environment.

Potential Commercial Applications

Optimizing Cloud Security: Automating security breach identification and containment can help cloud service providers enhance their security measures and protect their tenants' data.


Original Abstract Submitted

One embodiment of the invention provides a method comprising identifying a tenant compromised by a security breach in a multi-tenant cloud environment including at least one virtual machine (VM), and storing at least one snapshot of the at least one VM. The method further comprises automatically performing containment of the security breach by mitigating the tenant compromised by the security breach. The method further comprises automatically performing remediation of at least one salvageable image in the environment by migrating one or more other tenants not yet compromised by the security breach in the environment to a sandbox, verifying the one or more other tenants are not compromised by the security breach by testing the one or more other tenants in the sandbox for a probationary period, and migrating the one or more other tenants to a new cloud container in production environment in response to the verifying.