Scaling threat modeling?
More documentation won't help you.
More documentation leads to checkbox compliance, missed opportunities, and analysis paralysis.
Value:
-A culture of finding and fixing design issues over checkbox compliance
-People and collaboration over processes, methodologies, and tools
-A journey of understanding over a security or privacy snapshot
-Doing threat modeling over talking about it
-Continuous refinement over a single delivery
- Agile Threat Modeling Manifesto (1/4)




