Skip to content

Threat Modeling in a Zero Trust World

Photo of Steve Pinkham
Hosted By
Steve P.
Threat Modeling in a Zero Trust World

Details

Zero trust is all the rage. Nevertheless, zero trust has vast implications for AppSec and threat modeling. Zero trust threat modeling means the death of the trust boundary and assumes attackers are in the environment, and data sources and flows can no longer hide.
Apply the concept of zero trust to threat modeling by understanding what changes and considering a threat model of the zero-trust architecture. Explore new design principles in a zero-trust threat model and apply a mnemonic and taxonomy of threats impacting zero-trust applications.
Long live the threat model, but say goodbye to the trust boundary.

Photo of OWASP Triangle Chapter group
OWASP Triangle Chapter
See more events