Name
C1. Scaling Threat Modeling with Security Champions
Track
AppSec & DevSecOps
Date
Wednesday, June 9, 2021
Time
10:00 AM - 11:00 AM
Description

Threat modeling is a great way for security teams and development teams to come together and ask “what could go wrong?” in a system. Often, traditional methodologies have heavy process and time requirements and don’t fit with modern iterative development processes. At Slack, we’re teaching our security champions threat modeling that they can apply while working with their team. Our program has the goal of providing the benefits of threat modeling at the speed of modern development.

Learner Objectives

What is threat modeling? What is a security champion at Slack? Why is threat modeling helpful for security orgs? What are drawbacks to only having security do threat modeling? How can security champions help scale threat modeling across an organization?