Loading…
Friday April 11, 2025 9:15am - 10:00am ADT
201
Threat modeling is an essential part of the system development lifecycle and should be continuously updated whenever a system undergoes changes. Traditionally, security architects create an initial threat model and review it periodically, but this approach can leave critical risks undetected between review cycles. Agile threat modeling integrates developers into the process, allowing security concerns to be addressed as soon as changes are committed. This presentation explores threat modeling in the context of machine learning (ML) pipelines, demonstrating how application-specific risks can be combined with ML model risk cards. Key topics include the importance of threat modeling in ML development, different methodologies such as STRIDE, LINDDUN, and MITRE ATLAS, and how they work together. A hands-on example will showcase "Threat Modeling as Code" using ThreAgile, an open-source tool applied to a personal assistant GenAI project. The session will conclude with best practices and an overview of the limitations of various threat modeling approaches.
Speakers
avatar for Natalia Semenova

Natalia Semenova

Senior Security Architect, EPAM Canada
Natalia is a cybersecurity professional with 15+ years of international experience in the industry, including Finland, Germany, UK, New Zealand and Canada. She started her career in the academic environment as a PhD in mathematical statistics and cryptography, but later transitioned... Read More →
Friday April 11, 2025 9:15am - 10:00am ADT
201

Sign up or log in to save this to your schedule, view media, leave feedback and see who's attending!

Share Modal

Share this link via

Or copy link