Dashboard > JavaPolis 2004 > ... > JavaPolis BOFs > BOF 17
JavaPolis 2004 Log In   View a printable version of the current page.
BOF 17
Added by Stephan Janssen, last edited by Dirk Dussart on Dec 15, 2004  (view change)

Host

Dirk Dussart

BOF Topic

Security Requirements Gathering/Threat Modelling

Developers, designers and architects are more and more faced with security questions and decisions because more and more businesses want their applications to be secure. But what does this mean "to be secure"? Does this mean that we need SSL, crypto algorithms, ... ? In this BOF session we will present the audience with a couple of simple tools they can use to gather security requirements from business and incorporate these requirements in the design through a process of threat modelling. Threat modelling, as described by Howard & LeBlanc (Microsoft) is a process that has drawn inspiration from risk management and applies it to application design.

In this session we will walk you through a small threat modelling exercise.

Target Audience

This track is especially geared towards developers, designers and architects that have to take important security decisions while building security sensitive applications.

Related JavaPolis presentations

  • [link]

Interesting Links

Site powered by a free Open Source Project / Non-profit License (more) of Confluence - the Enterprise wiki.
Learn more or evaluate Confluence for your organisation.
Hosted by JavaLobby
Powered by Atlassian Confluence, the Enterprise Wiki. (Version: 2.2.5 Build:#520 Jun 27, 2006) - Bug/feature request - Contact Administrators