Patents Assigned to VARONIS SYSTEMS LTD.
-
Patent number: 11308206Abstract: A system for monitoring actual access to data elements in an enterprise computer network and providing associated data, the system including an at least near real time data element audit subsystem providing audit output data including at least one of a time stamp, identification of an accessor, user depository stored data regarding the accessor, accessed data element data, affected data element data, type of access operation, source IP address of access and access outcome data, in at least near real time, relating to actual access to data elements in the enterprise computer network, and an additional data providing subsystem receiving in at least near real time at least a part of the audit output data and utilizing the at least part of the audit output data for providing additional data which is not part of the audit output data.Type: GrantFiled: October 28, 2020Date of Patent: April 19, 2022Assignee: VARONIS SYSTEMS LTD.Inventor: Yakov Faitelson
-
Patent number: 11030307Abstract: A system for monitoring actual access to data elements in an enterprise computer network and providing associated data, the system including an at least near real time data element audit subsystem providing audit output data including at least one of a time stamp, identification of an accessor, user depository stored data regarding the accessor, accessed data element data, affected data element data, type of access operation, source IP address of access and access outcome data, in at least near real time, relating to actual access to data elements in the enterprise computer network, and an additional data providing subsystem receiving in at least near real time at least a part of the audit output data and utilizing the at least part of the audit output data for providing additional data which is not part of the audit output data.Type: GrantFiled: June 1, 2017Date of Patent: June 8, 2021Assignee: VARONIS SYSTEMS LTD.Inventor: Yakov Faitelson
-
Patent number: 10853486Abstract: A system for monitoring actual access to data elements in an enterprise computer network and providing associated data, the system including an at least near real time data element audit subsystem providing audit output data including at least one of a time stamp, identification of an accessor, user depository stored data regarding the accessor, accessed data element data, affected data element data, type of access operation, source IP address of access and access outcome data, in at least near real time, relating to actual access to data elements in the enterprise computer network, and an additional data providing subsystem receiving in at least near real time at least a part of the audit output data and utilizing the at least part of the audit output data for providing additional data which is not part of the audit output data.Type: GrantFiled: November 7, 2017Date of Patent: December 1, 2020Assignee: VARONIS SYSTEMS LTD.Inventor: Yakov Faitelson
-
Patent number: 10229191Abstract: A system for identifying data of interest from among a multiplicity of data elements residing on multiple platforms in an enterprise, the system including background data characterization functionality characterizing the data of interest at least by at least one content characteristic thereof and at least one access metric thereof, the at least one access metric being selected from data access permissions and actual data access history and near real time data matching functionality selecting the data of interest by considering only data elements which have the at least one content characteristic thereof and the at least one access metric thereof from among the multiplicity of data elements.Type: GrantFiled: March 7, 2012Date of Patent: March 12, 2019Assignee: VARONIS SYSTEMS LTD.Inventors: Yakov Faitelson, Ohad Korkus, David Bass, Ophir Kretzer-Katzir
-
Publication number: 20070094265Abstract: Methods and systems are provided for evaluating atypical user data access activities within the scope of an automatically generated file security policy in organizations with multiple diverse access control models and multiple diverse file server protocols. The system monitors access to storage elements within the network. The recorded data traffic is analyzed to assess simultaneous data access groupings and user groupings, which reflect the actual organizational structure. The learned structure is then transformed into a dynamic file security policy, which is constantly adapted to organizational changes over time. The system provides a decision assistance interface for tracking abnormal user behavior.Type: ApplicationFiled: December 7, 2006Publication date: April 26, 2007Applicant: VARONIS SYSTEMS LTD.Inventor: Ohad Korkus
-
Publication number: 20060277184Abstract: Methods and systems are provided for defining and creating an automatic file security policy and a semi-automatic method of managing file access control in organizations with multiple diverse access control models and multiple diverse file server protocols. The system monitors access to storage elements within the network. The recorded data traffic is analyzed to assess simultaneous data access groupings and user groupings, which reflect the actual organizational structure. The learned structure is then transformed into a dynamic file security policy, which is constantly adapted to organizational changes over time. The system provides a decision assistance interface for interactive management of the file access control and for tracking abnormal user behavior.Type: ApplicationFiled: October 25, 2005Publication date: December 7, 2006Applicant: VARONIS SYSTEMS LTD.Inventors: Yakov Faitelson, Jacob Goldberger, Ohad Korkus