Developer-Driven Threat Modeling Lessons Learned in the Trenches

被引:51
作者
Dhillon, Danny
机构
关键词
application security; risk analysis; secure architecture; Secure design; security development life cycle; software security; threat modeling;
D O I
10.1109/MSP.2011.47
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Threat modeling at the design phase is one of the most proactive ways to build more secure software. Identifying and resolving potential security issues early avoids costly reengineering that occurs later in the development life cycle. However, traditional approaches to threat modeling require significant security expertise and the ability to think like an attackercharacteristics that not all software designers and engineers possess. This article describes a large software vendor's real-world experiences with threat modeling, including major challenges encountered, lessons learned, evolution of a threat-modeling approach, and a description of the company's current developer-driven approach. © 2006 IEEE.
引用
收藏
页码:41 / 47
页数:7
相关论文
empty
未找到相关数据