Transcription of Guide to Data -Centric System Threat Modeling
{{id}} {{{paragraph}}}
Draft NIST Special Publication 800-154 1 2 Guide to data -Centric System 3 Threat Modeling 4 5 6 7 Murugiah Souppaya 8 Karen Scarfone 9 10 11 12 13 14 15 16 C O M P U T E R S E C U R I T Y 17 18 19 Draft NIST Special Publication 800-154 20 21 22 Guide to data -Centric System 23 Threat Modeling 24 25 26 Murugiah Souppaya 27 Computer Security Division 28 Information Technology Laboratory 29 30 Karen Scarfone 31 Scarfone Cybersecurity 32 Clifton, VA 33 34 35 36 37 38 39 40 March 2016 41 42 43 44 45 46 Department of Commerce 47 Penny Pritzker, Secretary 48 49 National Institute of Standards and Technology 50 Willie May, Under Secretary of Commerce for Standards and Technology and Director 51 i Authority 52 This publication has been developed by NIST in accordance with its statutory responsibilities under the 53 Federal Information Security Modernization Act (FISMA) of 2014, 44 3541 et seq.
102 Threat modeling is a form of risk assessment that models aspects of the attack and defense sides of a 103 particular logical entity, such as a piece of data, an application, a host, a system, or an environment. This 104 publication examines data-centric system threat modeling, which is threat modeling that is focused on
Domain:
Source:
Link to this page:
Please notify us if you found a problem with this document:
{{id}} {{{paragraph}}}