書誌事項

Threat modeling

Frank Swiderski and Window Snyder

Microsoft Press, c2004

  • : pbk

大学図書館所蔵 件 / 1

この図書・雑誌をさがす

注記

Includes index

内容説明・目次

内容説明

Threat modeling has become one of the top security analysis methodologies that Microsoft's developers use to identify risks and make better design, coding, and testing decisions. This book provides a clear, concise explanation of the threat-modeling process, describing a structured approach you can use to assess the security vulnerabilities for any application, regardless of platform. Software designers and developers discover how to use threat modeling during the specification phase of a new project or a major revision-from verifying application architecture to identifying and evaluating threats and designing countermeasures. Test engineers discover how to apply threat-modeling principles when creating test plans to verify results. It's the essential, high-level reference for software professionals responsible for designing, refining, and maximizing the security features in their application architecture.

目次

Introduction Why threat modeling How an adversary sees an application Modeling the application The threat profile Choosing what to model Testing based on a threat model Making threat modeling work

「Nielsen BookData」 より

詳細情報

ページトップへ