Three Must Have DevSecOps Threat Modeling Tools for 2022

Three Must Have DevSecOps Threat Modeling Tools for 2022

If you’re intent on creating secure software, then eventually you’re going to have to evolve from DevOps to DevSecOps. But as InfoQ is quick to point out, “DevSecOps isn’t possible by going about normal day-to-day DevOps processes. You can’t tell team members to just...
Why Every Business Needs to Threat Model Like a Bank

Why Every Business Needs to Threat Model Like a Bank

Banks are the original threat modelers. Going back to the days when they hired the Pinkerton Agency to protect their valuables being transported by stagecoach, banks have always tried to stay one step ahead of their adversaries. Of course, when it comes to protecting...
Gain Insight Into Your Attack Surface AND Compliance Requirements With Threat Modeling

Gain Insight Into Your Attack Surface AND Compliance Requirements With Threat Modeling

If you haven’t kept up with the evolution of threat modeling, you probably envision threat modeling as simply a visualization tool or a framework like STRIDE. And while there was a time when this was the sum total of threat modeling capability, these are really just...
What Are the Stages of a Threat Modeling Program

What Are the Stages of a Threat Modeling Program

If you follow our blog and understand our philosophy then you already know we think Threat Modeling is a Process Not a Project. It’s not a one-time deliverable with a beginning, a middle and an end. Instead, it’s an ongoing series of steps that an organization...