DinisCruz / Book_Software_Quality

Content for 'Measuring Software Quality using Application Security' book published at LeanPub
Apache License 2.0
38 stars 14 forks source link

expand on 'Not doing a threat model is not thinking about end-to-end security design' #205

Open DinisCruz opened 7 years ago

DinisCruz commented 7 years ago

Where we need to open an RISK ticket saying "This app/feature has not done a Threat Model and considered its security implications"

as michael mentions here

image

in http://www.slideshare.net/DinisCruz/making-threat-modeling-so-easy