LogRhythm Granted Comprehensive US Patent for Integrated Log and Event Management Platform

Innovation Centers on Content-Aware Log Processing, Management, Analysis and Event Management

Jan. 28, 2010 – LogRhythm, the company that makes log data useful, today announced that it has received a patent from the United States Patent & Trademark Office for several key components of the technology underlying the LogRhythm log and event management platform (Title: Log Collection, Structuring and Processing: U.S. Patent # 7,653,633). The patent covers innovations developed by LogRhythm that span content-aware log processing, log management, log analysis, and event management.

“Our vision has always been to deliver the next generation solution for Log Management, Analysis and Security Event Management,” said Chris Petersen, co-founder and CTO of LogRhythm. “This patent validates we were first to understand and deliver a truly integrated, content-aware solution capable of addressing future needs. The technological approach and methods covered by this patent form the foundation for the future of Security Information & Event Management, or what we like to call SIEM.”

Highlights of LogRhythm Patent

The comprehensive patent issued to LogRhythm by the United States Patent & Trademark Office includes claims relating to:

  • Content-based log processing – parsing logs into content data fields
  • Intelligent log archiving – archiving log data such that archiving rules are based in part on log content
  • Content-based log and event prioritization
  • Event processing – the further processing of logs first designated as events
  • Log classification – where log processing is related to application monitoring, security, operations, auditing or regulatory compliance
  • Identification and use of log data content specifying host, log source, IP address, program and login
  • Application of metadata to parsed logs for use in archiving or restoration
  • Use of an agent for monitoring and collecting logs, associating metadata with parsed logs, and/or forwarding log data
  • Tagging logs with metadata and/or use of regular expressions for deeper log processing, analysis, correlation, alerting and/or search
  • Accessing Windows event log data and collecting those logs via standard logging and message protocols
  • Identification of Windows event log time stamp
  • Time stamp normalization of Windows event logs across time zones, local clock offsets and platform times

About LogRhythm

LogRhythm is a world leader in NextGen SIEM, empowering organizations on six continents to successfully reduce risk by rapidly detecting, responding to and neutralizing damaging cyberthreats. The LogRhythm platform combines user and entity behavior analytics (UEBA), network traffic and behavior analytics (NTBA) and security automation & orchestration (SAO) in a single end-to-end solution. LogRhythm’s Threat Lifecycle Management (TLM) framework serves as the foundation for the AI-enabled security operations center (SOC), helping customers measurably secure their cloud, physical and virtual infrastructures for both IT and OT environments. Built for security professionals by security professionals, the LogRhythm platform has won many accolades, including being positioned as a Leader in Gartner’s SIEM Magic Quadrant.