Further reading
To learn more about the topics that were covered in this chapter, take a look at the following resources:
- Threat Modeling: Design for Security, by Adam Shostack
- Mozilla’s Rapid Risk Assessment documentation: https://infosec.mozilla.org/guidelines/risk/rapid_risk_assessment.html
- Slack’s goSDL GitHub repository: https://github.com/slackhq/goSDL
- Microsoft Threat Modeling Tool feature overview: https://learn.microsoft.com/en-us/azure/security/develop/threat-modeling-tool-feature-overview?source=recommendations
- Microsoft Secure Development Lifecycle: https://www.microsoft.com/en-us/securityengineering/sdl
- Cybersecurity-Centric Business Culture: https://www.researchgate.net/publication/371399113_The_Role_of_Organizational_Culture_in_Cybersecurity_Building_a_Security-First_Culture