×

Threat Modeling Systems and Related Methods Including Compensating Controls

  • US 20190205544A1
  • Filed: 02/07/2019
  • Published: 07/04/2019
  • Est. Priority Date: 05/17/2017
  • Status: Active Grant
First Claim
Patent Images

1. A threat modeling method, comprising:

  • in response to receiving one or more user inputs, using one or more interfaces displayed on one or more displays of one or more computing devices communicatively coupled with one or more databases;

    storing a plurality of threat model components in the one or more databases;

    storing a plurality of threats in the one or more databases;

    associating each threat with at least one of the threat model components through the one or more databases;

    storing a plurality of security requirements in the one or more databases, including storing an indication of whether each security requirement is a compensating control;

    associating each compensating control with at least one of the threats through the one or more databases;

    displaying a relational diagram of one of a system, an application, and a process, using visual representations of one or more of the threat model components, the relational diagram defining a threat model;

    generating and displaying a threat report displaying each threat that is associated through the one or more databases with one of the threat model components included in the threat model; and

    ;

    generating and displaying a report displaying each compensating control that is associated through the one or more databases with one of the threats included in the threat report.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×