Threat modeling is a way of thinking about what can go wrong and how to prevent it. Instinctively, we all think this way in regard to our own personal security and safety. When it comes to building or evaluating information systems, we need to develop a similar mindset. In this workshop, you'll learn practical strategies to develop a Threat Modeling Mindset by: understanding a system, identifying threats and vulnerabilities, determining mitigations, and applying the mitigations through risk management.
Speaker: Robert Hurlbut
Full recap & slides: https://threatmodelingconnect.discourse.group/t/recap-developing-a-threat-modeling-mindset-threat-modeling-fundamentals-workshop/861
---------------------------------------------------
CHAPTERS
00:00 Intro
02:00 Agenda
04:23 What is a threat modeling mindset?
08:18 Overview of the threat modeling process
08:57 Step 0: Assemble the team
14:38 Step 1: Be strategic as in 'understanding your system and data flows'
21:49 Step 2: Be curious / asking questions as in 'identifying threats'
37:35 Step 3: Be prepared / focused defense as in 'documenting threats'
48:47 Step 4: Be active as in 'review & follow-through'
52:06 Key takeaways
---------------------------------------------------
WHO WE ARE
Threat Modeling Connect is the world’s largest community of threat modeling practitioners. Our mission is to make threat modeling accessible to all through events, expert content, and free-to-use resources.
____________________________
JOIN OUR COMMUNITY
► Subscribe to our newsletter: https://www.threatmodelingconnect.com...
► Join the community forum: https://threatmodelingconnect.discour...
► Find our upcoming events: https://lu.ma/threatmodelingconnect
____________________________
EVENTS
► Upcoming events: https://lu.ma/threatmodelingconnect
► Recordings: https://www.threatmodelingconnect.com...
RESOURCES
► Member newsletter: https://www.threatmodelingconnect.com...
► Community forum: https://threatmodelingconnect.discour...
► Guides: https://www.threatmodelingconnect.com...
► Blog: https://www.threatmodelingconnect.com...
► Threat model collections: https://www.threatmodelingconnect.com...
FOLLOW US
►LinkedIn: / threatmodelingconnect
►Twitter: / tmconnecthq