Threat Modeling
Threat modeling is a practice to identify potential threats and security issues that may negatively impact an application, an IT system, or a business process, … Read More
Threat modeling is a practice to identify potential threats and security issues that may negatively impact an application, an IT system, or a business process, … Read More
Updated 9 February 2024: The CISO Security Mind Map has been updated from the 2023, to the 2024 version. The 2024 version includes the latest … Read More
In this article I’ll provide an explanation of commonly used threat modeling terminology. These are all terms that you’ll no doubt hear about if involved … Read More
Threat modeling with STRIDE using a threat modeling tool is a great way to get started with threat modeling right away, without the complexities of … Read More
The challenges of rolling out threat modeling at a large company are many. In this article, I’ll explain these challenges and present potential solutions. These … Read More
The advantages of using a threat modeling tool for PASTA consist of: Before I move on, what is PASTA: PASTA is a type of threat … Read More
The advantages of using a threat modeling tool for STRIDE consist of: Before I move on, what is STRIDE threat modeling: STRIDE is a type … Read More
You can perform threat modeling without any tooling whatsoever. In that case, all you need is motivation, a whiteboard (or a digital equivalent), good teamwork, … Read More
In this article, I’ll provide STRIDE threat modeling frequently asked questions and answers. What is STRIDE Threat Modeling? STRIDE threat modeling is a threat modeling … Read More
In this article, I describe how to use Data Flow Diagrams in threat modeling. Data Flow Diagrams (or DFDs for short) are used extensively in … Read More