Главная
Study mode:
on
1
Introduction
2
Who am I
3
How projects go nuclear
4
Visa
5
What Should Threat Modeling Do
6
Flaws vs Bugs
7
Solution Design
8
Security Framework
9
Mitigations
10
Dataflow Diagrams
11
The Final Sprint
12
Emergent Design
13
Open Sam
14
Rapid Prototype
15
Rapid Prototyping
16
Planning
17
Data Flow Diagram
18
Project Overview
19
Elevation of Privilege
20
Sprint Zero
21
Example
22
Defense
23
Rule of Thumb
24
Ranking Components
25
Create
26
Rules
27
Zone Math
28
State Case
29
Mitigation Patterns
Description:
Explore the Rapid Threat Model Prototyping (RTMP) process in this 34-minute OWASP Global AppSec Tel Aviv conference talk. Learn how to accelerate software threat analysis tenfold in fast-paced Agile/DevOps environments. Discover techniques for building security into software design, identifying high-threat areas, and removing flaws before coding begins. Gain insights into just-in-time design processes, automated analysis workflows, and effective threat modeling strategies. Understand the challenges of traditional threat modeling in continuous integration environments and how RTMP addresses these issues. Delve into topics such as security frameworks, mitigations, dataflow diagrams, and mitigation patterns to enhance your approach to software security.

Bringing Rapid Prototyping to the Threat Model Process

OWASP Foundation
Add to list
0:00 / 0:00