CISSP Mastery
Back to Security and Risk Management
1.10 ~30 min

Threat modeling concepts and methodologies

Overview

Threat modeling identifies and rates threats systematically. Know STRIDE (Microsoft), PASTA, DREAD, and attack trees, and where reduction analysis fits.

Key topics to master

  • STRIDE
  • PASTA
  • DREAD
  • Attack trees
  • Reduction analysis