Threat Modelling Workshop

No ratings

Presented at ITWeb Security Summit 2010 by

Security is a trade-off. Within systems, we choose to protect what we think will be likely attacks knowing that there is rarely the time or budget to defend against all threats. So too across the organisation, security teams are rarely larger than a handful of staff, and often no more than one or two. The chosen priorities are often driven by our intuitions, direction from the business, compliance, audit findings or in some cases, the latest hype cycle. With all of these drivers it's easy for security to blow in the wind, instead of being the wind. What's needed is a method of thinking about security risks in a methodical and systematic way. A way to enumerate all the potential threats, systematically represent systems, their vulnerabilities and controls and combine them to provide a prioritised view of information security risks to an organisation or system. With such a view, the other drivers can line up behind it. Several methods of threat modelling exist, with Microsoft having recently rejuvenated the field with the incorporation of threat modelling in their Secure Development Lifecycle. This and other threat modelling approaches will be examined. The practical threat modelling workshop will present such a methodology and will engage participants in understanding a practical threat modelling approach. In particular, participants will: • Learn the fundamentals of the risk equation "risk = threat x vulnerability x impact" • Look at various threat modelling approaches • Learn how to use the SensePost corporate threat modelling tool • Develop a sample threat model Participants will also be provided with a free copy of the Corporate Threat Modelling Tool tool, and the ability to use it within their organisations.