Not logged in.

Contribution Details

Type Conference or Workshop Paper
Scope Discipline-based scholarship
Published in Proceedings Yes
Title CoReTM: An Approach Enabling Cross-Functional Collaborative Threat Modeling
Organization Unit
Authors
  • Jan Von der Assen
  • Muriel Figueredo Franco
  • Christian Killer
  • Eder J Scheid
  • Burkhard Stiller
Presentation Type paper
Item Subtype Original Work
Refereed Yes
Status Published in final form
Event Title IEEE International Conference on Cyber Security and Resilience
Event Type conference
Event Location Rhodes, Greece
Event Start Date July 27 - 2022
Event End Date July 29 - 2022
Place of Publication Virtually, Europe
Publisher IEEE
Abstract Text Threat Modeling is a structured process to identify critical assets in an organization and the threats posed by adversarial agents. The goal of applying such a process is to achieve a shared understanding of the inherent risks and potential counter-measures that can be put in place. In practice, threat modeling is a collaborative process combining stakeholders' perceptions in a holistic view of the threat landscape. However, this paper points out that related work mainly focuses on adapting models to technical aspects of architectural decisions. Thus, non-technical stakeholders are not included in the process.This paper proposes CoReTM, a novel overarching approach to applying well-established threat modeling methodologies in a collaborative setting. The resulting approach allows organizations to extend threat modeling to non-technical stakeholders in an automated way while supporting on-site, remote, or hybrid operations in a synchronous or asynchronous fashion.
Digital Object Identifier 10.1109/CSR54599.2022.9850283
Other Identification Number merlin-id:23190
PDF File Download from ZORA
Export BibTeX
EP3 XML (ZORA)