Threat Model

From Open Risk Manual
Revision as of 10:27, 14 October 2021 by Wiki admin (talk | contribs) (Created page with "== Definition == A '''Threat Model''' is a formal representation of the risk landscape faced by an individual or organization that explicitly focuses on risks that can be clas...")
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)

Definition

A Threat Model is a formal representation of the risk landscape faced by an individual or organization that explicitly focuses on risks that can be classified as threats.

Classification

  • Attacker centric, focusing on Threat Actor identification and analysis
  • Asset centric, focusing on Asset identification and analysis
  • System centric