No, We Won't Be Threat Modeling - Izar Tarandach
Threat Modeling has been growing as a discipline for the last few years, and much has been said about methodologies, how-to's, what to expect, what value to extract from it, and how to get it into the organization. But we haven't explored as much the failing modes of that introduction - how security practitioners can deal with individuals or organizations that are less receptive of the idea of Threat Modeling, can't see the value, don't have the resources or are just plain not interested in it. In this talk we will explore ways to deal with hearing "no" about Threat Modeling, and how to turn that into a "yes, but" that will eventually grow into a "yes".
This talk is aimed at anyone with an interest in the process of Threat Modeling and in the process of adding Threat Modeling as a tool to their practice. Developers, Managers and Security Practitioners should all leave this talk with a number of tested suggestions on how to meet and surpass the most common obstacles to introducing Threat Modeling at an organization of any size.
Presenter: Izar Tarandach, Datadog, Sr. Staff Engineer
(Contrast Room, Day 1, Session 4)
Видео No, We Won't Be Threat Modeling - Izar Tarandach канала LASCON
This talk is aimed at anyone with an interest in the process of Threat Modeling and in the process of adding Threat Modeling as a tool to their practice. Developers, Managers and Security Practitioners should all leave this talk with a number of tested suggestions on how to meet and surpass the most common obstacles to introducing Threat Modeling at an organization of any size.
Presenter: Izar Tarandach, Datadog, Sr. Staff Engineer
(Contrast Room, Day 1, Session 4)
Видео No, We Won't Be Threat Modeling - Izar Tarandach канала LASCON
Комментарии отсутствуют
Информация о видео
16 ноября 2022 г. 5:17:04
01:01:57
Другие видео канала