Advanced Threat Modeling and Risk Assessment in DevSecOps
.MP4, AVC, 1280x720, 30 fps | English, AAC, 2 Ch | 1h 38m | 176 MB
Instructor: Tino Šokić
.MP4, AVC, 1280x720, 30 fps | English, AAC, 2 Ch | 1h 38m | 176 MB
Instructor: Tino Šokić
This course provides a structured approach to understanding threat modeling principles, risk assessment methodologies, and their application within modern CI/CD pipelines. Aimed at DevSecOps professionals, developers, and security practitioners, the course explores key concepts such as attack surfaces, vulnerabilities, risk scoring models, and the use of threat intelligence to enhance security decision-making. Instructor Tino Šokić covers popular frameworks like MITRE ATT&CK and OWASP Top 10, practical techniques for performing quick risk assessments, and the tools available for managing threat modeling. Check out this course to find out how you can apply continuous threat modeling, communicate risk effectively, and integrate security seamlessly into DevSecOps workflows.
Learning objectives
- Integrate threat modeling and security testing into your DevSecOps pipeline, ensuring continuous security validation throughout the software development lifecycle.
- Perform systematic risk assessments by evaluating threat likelihood and impact, and develop prioritized mitigation strategies aligned with your organization’s security objectives.
- Develop a risk-aware mindset for secure development and promote collaboration between development, security, and operations teams to proactively address risks.
- Continuously improve threat modeling and risk management by establishing repeatable, scalable threat modeling practices.