{"id":10988,"date":"2022-04-21T11:08:33","date_gmt":"2022-04-21T09:08:33","guid":{"rendered":"https:\/\/www.dp-institute.eu\/?p=10988"},"modified":"2024-01-09T16:06:30","modified_gmt":"2024-01-09T15:06:30","slug":"dice-threat-modeling-in-4-steps","status":"publish","type":"post","link":"https:\/\/www.dp-institute.eu\/nl\/dice-threat-modeling-in-4-steps\/","title":{"rendered":"DICE – threat modeling in 4 steps"},"content":{"rendered":"

Is securing systems a game or a gamble? As the attacking factor is uncertain and unpredictable, you might have the feeling that security is more like a gamble. However, you can turn security into a game that – when using the right tactics – can be won. In this article we will present threat modeling as an effective way to turn the table and get a better control on your application risk. We will introduce you to the 4 steps of threat modeling with the DICE acronym. <\/strong><\/p>\n

Threat modeling<\/a>\u00a0is performed through a series of multi-stakeholder workshops. Architects, developers and system administrators are guided through the threat modeling process. It is the primary security analysis task executed during the software design stage. Threat modeling is typically performed in 4 stages or steps:<\/p>\n