Listen "Akira Brand -- Gaining Experience by Threat Modeling"
Episode Synopsis
Akira Brand joins Chris to talk about her journey into threat modeling, her early experiences, some lessons learned, and how she knew her threat model was successful. Akira's experiences emphasize the importance of collaboration, understanding the application, and using tools and diagrams to aid the process.Akira is a visual thinker and draws parallels between surgical checklists and the STRIDE model. Akira emphasizes the importance of a comprehensive approach, likening the STRIDE model to a surgeon's checklist that ensures all potential threats are addressed.In her initial foray into threat modeling, she identified a significant security risk due to excessive permissions in an application. To understand and address this, she delved deep into the application's architecture, relying on data flow diagrams and a hands-on approach rather than a purely theoretical one.Akira's story underscores the power of collaboration. Her challenges were overcome by the combined efforts of teams from engineering, data analytics, and security. She believes that the true measure of success in threat modeling is when diverse teams come together to create holistic security solutions.Welcome to Smart Threat Modeling. Devici makes threat modeling simple, actionable, and scalable. Identify and deal with threats faster than ever. Build three free models and collaborate with up to ten people in our Free Forever plan. Get started at devici.com and threat model for free! Smart threat modeling for development teams.
More episodes of the podcast The Threat Modeling Podcast
Nandita Rao Narla -- Privacy Threat Modeling
23/01/2024
A Comprehensive Threat Modeling Strategy
08/08/2023
Software-Centric Threat Modeling
11/07/2023
Product-led threat modeling
06/06/2023
What is the Essence of Threat Modeling?
26/04/2023
The Threat Modeling Podcast -- Coming Soon!
04/04/2023
ZARZA We are Zarza, the prestigious firm behind major projects in information technology.