In this DevSecOps Live event, we explore the advantages and limitations of "Threat Modeling As Code" and how it has been expressed as Threat Modeling From/In/With Code - focusing on a Threat Modeling With Code tool, pyTM.
📚 The talk covers:
✅ New approaches to Threat Modeling
✅ Learning to Threat Model with code
✅ Advantages of writing Threat Model with code
Link to the full DevSecOps LIVE: • Threat modeling with code - Practical DevS...
🎤 Speakers: Izar Tarandach
About Practical DevSecOps
Practical DevSecOps offers vendor-neutral, practical, and hands-on DevSecOps training and certification programs for IT Professionals. Our online training and certifications are focused on modern areas of information security, including DevOps Security, Cloud-Native Security, Cloud Security & Container security. The certifications are achieved after rigorous tests(12-24 hour exams) of skill and are considered the most valuable in the information security field.
00:00 What is Threat Modeling?
1:35 Artifacts to Threat Modeling
2:44 Key Takeaways