Brett Crawley -- Threat Modeling Gameplay with EoP

The Application Security Podcast - Podcast tekijän mukaan Chris Romeo and Robert Hurlbut - Tiistaisin

Podcast artwork

Kategoriat:

Brett Crawley discusses the Elevation of Privilege (EoP) card game, a powerful tool for threat modeling in software development. The discussion explores recent extensions to the game including privacy-focused suits and TRIM (Transfer, Retention/Removal, Inference, Minimization) categories. Crawley emphasizes that threat modeling shouldn't end with the game but should be an ongoing process throughout an application's lifecycle, ideally starting before implementation. He also shares insights fr...

Visit the podcast's native language site