Threat Model versus Risk Model

From Open Risk Manual

Threat Model versus Risk Model

The concepts of Threat Model and Risk Model have some overlap but also significant differences in context and implications.

Overlap Areas

Differences and Nuance

  • The term model in threat model means primarily a conceptual identification of a system's characteristics (it is a system model). The term model in risk model frequently implies a Quantitative Risk Model