⛏️ Get Splunky!
Lv.1Intern
0 XP
0
Home Map Stats Drill Board Log In
Back to Floor
Intel Operations • Room 2

Threat Modeling for Architects

Architectural threat modeling is the practice of systematically identifying potential threats against a system before those threats materialize. Common frameworks include STRIDE (Spoofing, Tampering, Repudiation, Information Disclosure, Denial of Service, Elevation of Privilege) and PASTA (Process for Attack Simulation and Threat Analysis).

Architects use threat models to prioritize which detection capabilities to build. A threat model for a financial institution will weight insider threats and fraud differently than one for a healthcare organization that focuses on ransomware and PHI exfiltration. The model drives the detection roadmap.

STRIDE is focused on *what* can go wrong; PASTA is focused on *how* an attacker would achieve it. Both are valuable at the architect level.

Knowledge Check

Prove your understanding to clear the room (Rewards XP)
❤️❤️❤️
Question 1 of 1
In the STRIDE threat model, what does the "E" represent?
AEnumeration
BEncryption
CElevation of Privilege
DExfiltration